Switch incomingAuth from anonymous to oidc, wiring Keycloak (home-lab realm at cloak.olb42.com) as the provider with clientId state-docs-vmcp. Secret ref (state-docs-vmcp-secret, key: client-secret) is added to kustomization as a TODO comment pending the sealed secret creation. Co-Authored-By: Claude Sonnet 4.6 <[email protected]>
21 lines
530 B
YAML
21 lines
530 B
YAML
apiVersion: kustomize.config.k8s.io/v1beta1
|
|
kind: Kustomization
|
|
|
|
namespace: toolhive-system
|
|
|
|
resources:
|
|
- mcp-kube-rbac.yaml
|
|
- mcp-servers/
|
|
- registry/
|
|
- vmcp-servers/
|
|
- ingressroute.yaml
|
|
- secrets/gitea-mcp-secret.sealed.secret.yaml
|
|
- secrets/argocd-mcp-secret.sealed.secret.yaml
|
|
# TODO: add after sealing — secrets/state-docs-vmcp-secret.sealed.secret.yaml
|
|
- mcp-tool-config-state-docs.yaml
|
|
- mcp-tool-config-ops.yaml
|
|
- mcp-tool-config-dev.yaml
|
|
- embedding-server.yaml
|
|
- mcp-group-homelab-core.yaml
|
|
|