From fdd4f24e87f92fd5ed5d650bcf81aab3931de869 Mon Sep 17 00:00:00 2001 From: nick-gorse Date: Tue, 16 Jun 2026 17:14:21 +0100 Subject: [PATCH] add helm to server --- .../production/argocd-server-patch.yaml | 40 +++++++++++++++++++ 1 file changed, 40 insertions(+) diff --git a/manifest/overlays/production/argocd-server-patch.yaml b/manifest/overlays/production/argocd-server-patch.yaml index 1aa8608..6adb2f3 100644 --- a/manifest/overlays/production/argocd-server-patch.yaml +++ b/manifest/overlays/production/argocd-server-patch.yaml @@ -22,6 +22,39 @@ spec: securityContext: runAsUser: 1000 allowPrivilegeEscalation: false + - name: ghcr-auth + image: quay.io/argoproj/argocd:v3.4.3 + securityContext: + allowPrivilegeEscalation: false + capabilities: + drop: + - ALL + readOnlyRootFilesystem: true + runAsNonRoot: true + seccompProfile: + type: RuntimeDefault + env: + - name: HELM_CONFIG_HOME + value: /helm-working-dir + - name: HELM_REGISTRY_CONFIG + value: /helm-working-dir/config.json + - name: GITEA_USERNAME + valueFrom: + secretKeyRef: + name: gitea-basic-authregcred + key: username + - name: GITEA_PASSWORD + valueFrom: + secretKeyRef: + name: gitea-basic-authregcred + key: password + volumeMounts: + - name: registry-auth-dir + mountPath: /helm-working-dir + command: + - /bin/bash + - -exc + - 'echo -n $GITEA_PASSWORD | helm registry login https://git.olb42.com/api/packages/olb42/helm/ --username $GITEA_USERNAME --password-stdin -' # ArgoPlane UI extension bundles. Copies only the enabled bundles into # the shared /tmp/extensions volume. "argoplane" is the required shell # bundle that renders the feature views (Metrics/Networking/Logs/Events) @@ -43,6 +76,13 @@ spec: volumeMounts: - name: extensions mountPath: /tmp/extensions/ + - name: registry-auth-dir + mountPath: /helm-working-dir + env: + - name: HELM_REGISTRY_CONFIG + value: /helm-working-dir/config.json volumes: - name: extensions + emptyDir: {} + - name: registry-auth-dir emptyDir: {} \ No newline at end of file