olb042 158afef5a8
Validate manifests / validate (push) Failing after 26s
update chart url
2026-06-25 22:05:32 +01:00
2026-05-08 15:29:45 +01:00
2026-06-25 22:05:32 +01:00
2026-04-20 01:19:54 +01:00
2026-05-13 15:20:58 +01:00

sealed-secrets

GitOps source for the cluster Sealed Secrets controller.

Current deployment

  • Bootstrap: enabled: true, applied from main
  • Argo application: sealed-secrets-production
  • Target namespace: kube-system
  • Helm chart: bitnami-labs/sealed-secrets
  • Chart version: 2.18.5
  • Helm release name: sealed-secrets-controller

Runtime

Argo CD renders the upstream Helm chart with values from manifest/overlays/production/helm-values/values.yaml. The controller name is kept as sealed-secrets-controller so kubeseal works with its default controller-name assumptions.

Secret migration workflow

Fetch the controller cert with kubeseal --fetch-cert --controller-namespace kube-system, seal app secrets into the owning app repo, then remove old SOPS/KSOPS secret generator entries only after the app syncs from the new SealedSecret path.

S
Description
GitOps source for Sealed Secrets
Readme
36 KiB