Try different service

Signed-off-by: Micke Nordin <kano@sunet.se>
This commit is contained in:
Micke Nordin 2025-01-31 08:59:20 +01:00
parent 3300338ae3
commit 69d19712e6
Signed by: Micke
GPG key ID: 0DA0A7A5708FE257
4 changed files with 27 additions and 48 deletions

View file

@ -58,10 +58,10 @@ spec:
containerPort: 8080
# - name: https
# containerPort: 8443
# readinessProbe:
# httpGet:
# path: /health/ready
# port: 9000
readinessProbe:
httpGet:
path: /health/ready
port: 9000
# initialDelaySeconds: 5 # Delay before the probe starts
# periodSeconds: 15
# timeoutSeconds: 3

View file

@ -1,14 +1,24 @@
apiVersion: v1
kind: Service
items:
- apiVersion: v1
kind: Service
metadata:
labels:
app: keycloak
name: keycloak
spec:
ports:
- port: 8080
protocol: TCP
targetPort: 8080
selector:
app: keycloak
sessionAffinity: None
type: ClusterIP
status:
loadBalancer: {}
kind: List
metadata:
name: keycloak
namespace: keycloak
labels:
app: keycloak
spec:
ports:
- name: http
port: 8080
targetPort: 8080
selector:
app: keycloak
resourceVersion: ""
selfLink: ""

View file

@ -7,7 +7,7 @@ spec:
project: default
source:
repoURL: https://platform.sunet.se/streams/streams-manifests.git
targetRevision: streams-manifests-2025-01-31-v03
targetRevision: streams-manifests-2025-01-31-v04
path: keycloak/overlays/test
destination:
server: https://kubernetes.default.svc

View file

@ -17,7 +17,6 @@ spec:
spec:
containers:
- name: keycloak
# image: quay.io/keycloak/keycloak:23.0.1
image: quay.io/keycloak/keycloak:26.1
args:
- "start"
@ -53,33 +52,3 @@ spec:
value: "true"
- name: KC_PROXY
value: "edge"
ports:
- name: http
containerPort: 8080
# - name: https
# containerPort: 8443
# readinessProbe:
# httpGet:
# path: /health/ready
# port: 9000
# initialDelaySeconds: 5 # Delay before the probe starts
# periodSeconds: 15
# timeoutSeconds: 3
# successThreshold: 1 # Number of successful probes to consider the pod ready
# failureThreshold: 5
volumeMounts:
# - mountPath: /opt/keycloak/data/h2/
# name: storage
- name: keycloak-tls-secret
mountPath: /etc/ssl/certs
readOnly: true
securityContext:
runAsUser: 1000
runAsGroup: 1000
volumes:
- name: storage
persistentVolumeClaim:
claimName: keycloak-pvc
- name: keycloak-tls-secret
secret:
secretName: keycloak-tls-secret