-
Notifications
You must be signed in to change notification settings - Fork 123
/
Copy pathdeployment.yaml
87 lines (86 loc) · 2.2 KB
/
deployment.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
# this example runs in a rootless configuration
apiVersion: apps/v1
kind: Deployment
metadata:
name: omada-controller
spec:
replicas: 1
strategy:
type: Recreate
selector:
matchLabels:
app: omada-controller
template:
metadata:
labels:
app: omada-controller
spec:
securityContext:
runAsUser: 508
runAsGroup: 508
runAsNonRoot: true
fsGroup: 508
fsGroupChangePolicy: "OnRootMismatch"
seccompProfile:
type: RuntimeDefault
containers:
- name: omada-controller
image: mbentley/omada-controller:5.15
imagePullPolicy: Always
securityContext:
allowPrivilegeEscalation: false
capabilities:
drop:
- ALL
env:
- name: ROOTLESS
value: "true"
- name: MANAGE_HTTP_PORT
value: "8088"
- name: MANAGE_HTTPS_PORT
value: "8043"
- name: PORTAL_HTTP_PORT
value: "8088"
- name: PORTAL_HTTPS_PORT
value: "8843"
- name: PORT_APP_DISCOVERY
value: "27001"
- name: PORT_ADOPT_V1
value: "29812"
- name: PORT_UPGRADE_V1
value: "29813"
- name: PORT_MANAGER_V1
value: "29811"
- name: PORT_MANAGER_V2
value: "29814"
- name: PORT_DISCOVERY
value: "29810"
- name: PORT_TRANSFER_V2
value: "29815"
- name: PORT_RTTY
value: "29816"
- name: SHOW_SERVER_LOGS
value: "true"
- name: SHOW_MONGODB_LOGS
value: "false"
- name: SSL_CERT_NAME
value: tls.crt
- name: SSL_KEY_NAME
value: tls.key
- name: TZ
value: Etc/UTC
- name: SKIP_USERMOD
value: "true"
volumeMounts:
- name: omada-data
mountPath: /opt/tplink/EAPController/data
- name: omada-logs
mountPath: /opt/tplink/EAPController/logs
volumes:
- name: omada-data
persistentVolumeClaim:
claimName: omada-data-pvc
- name: omada-logs
persistentVolumeClaim:
claimName: omada-logs-pvc
restartPolicy: Always