Skip to content

Commit f4da6eb

Browse files
committed
Update Helm release postgresql to v15
Signed-off-by: Renovate Bot <[email protected]>
1 parent 008b8d1 commit f4da6eb

File tree

13 files changed

+166
-48
lines changed

13 files changed

+166
-48
lines changed

class/defaults.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -62,7 +62,7 @@ parameters:
6262
version: v2.3.0
6363
postgresql:
6464
source: https://charts.bitnami.com/bitnami
65-
version: 12.12.10
65+
version: 15.2.4
6666
# FQDN should be overwritten on the cluster level
6767
fqdn: keycloak.example.com
6868
# Default path since Quarkus is "/" rather than "/auth"

tests/golden/builtin/builtin/builtin/01_keycloak_helmchart/postgresql/templates/primary/networkpolicy.yaml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -6,21 +6,21 @@ metadata:
66
app.kubernetes.io/instance: keycloak
77
app.kubernetes.io/managed-by: Helm
88
app.kubernetes.io/name: postgresql
9-
app.kubernetes.io/version: 15.4.0
10-
helm.sh/chart: postgresql-12.12.10
11-
name: keycloak-postgresql-ingress
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
11+
name: keycloak-postgresql
1212
namespace: syn-builtin
1313
spec:
14+
egress:
15+
- {}
1416
ingress:
15-
- from:
16-
- podSelector:
17-
matchLabels:
18-
app.kubernetes.io/instance: keycloakx
19-
app.kubernetes.io/name: keycloakx
20-
ports:
17+
- ports:
2118
- port: 5432
2219
podSelector:
2320
matchLabels:
2421
app.kubernetes.io/component: primary
2522
app.kubernetes.io/instance: keycloak
2623
app.kubernetes.io/name: postgresql
24+
policyTypes:
25+
- Ingress
26+
- Egress

tests/golden/builtin/builtin/builtin/01_keycloak_helmchart/postgresql/templates/primary/statefulset.yaml

Lines changed: 45 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ metadata:
66
app.kubernetes.io/instance: builtin
77
app.kubernetes.io/managed-by: commodore
88
app.kubernetes.io/name: keycloak
9-
app.kubernetes.io/version: 15.4.0
10-
helm.sh/chart: postgresql-12.12.10
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
1111
name: keycloak-postgresql
1212
namespace: syn-builtin
1313
spec:
@@ -29,8 +29,8 @@ spec:
2929
app.kubernetes.io/instance: keycloak
3030
app.kubernetes.io/managed-by: Helm
3131
app.kubernetes.io/name: postgresql
32-
app.kubernetes.io/version: 15.4.0
33-
helm.sh/chart: postgresql-12.12.10
32+
app.kubernetes.io/version: 16.2.0
33+
helm.sh/chart: postgresql-15.2.4
3434
name: keycloak-postgresql
3535
spec:
3636
affinity:
@@ -46,6 +46,7 @@ spec:
4646
app.kubernetes.io/name: postgresql
4747
topologyKey: kubernetes.io/hostname
4848
weight: 1
49+
automountServiceAccountToken: false
4950
containers:
5051
- env:
5152
- name: BITNAMI_DEBUG
@@ -125,20 +126,39 @@ spec:
125126
successThreshold: 1
126127
timeoutSeconds: 5
127128
resources:
128-
limits: {}
129+
limits:
130+
cpu: 150m
131+
ephemeral-storage: 1024Mi
132+
memory: 192Mi
129133
requests:
130-
cpu: 250m
131-
memory: 256Mi
134+
cpu: 100m
135+
ephemeral-storage: 50Mi
136+
memory: 128Mi
132137
securityContext:
133138
allowPrivilegeEscalation: false
134139
capabilities:
135140
drop:
136141
- ALL
142+
privileged: false
143+
readOnlyRootFilesystem: true
137144
runAsNonRoot: true
138145
runAsUser: 1001
146+
seLinuxOptions: {}
139147
seccompProfile:
140148
type: RuntimeDefault
141149
volumeMounts:
150+
- mountPath: /tmp
151+
name: empty-dir
152+
subPath: tmp-dir
153+
- mountPath: /opt/bitnami/postgresql/conf
154+
name: empty-dir
155+
subPath: app-conf-dir
156+
- mountPath: /opt/bitnami/postgresql/tmp
157+
name: empty-dir
158+
subPath: app-tmp-dir
159+
- mountPath: /opt/bitnami/postgresql/logs
160+
name: empty-dir
161+
subPath: app-logs-dir
142162
- mountPath: /opt/bitnami/postgresql/certs
143163
name: postgresql-certificates
144164
readOnly: true
@@ -166,15 +186,25 @@ spec:
166186
imagePullPolicy: IfNotPresent
167187
name: init-chmod-data
168188
resources:
169-
limits: {}
170-
requests: {}
189+
limits:
190+
cpu: 150m
191+
ephemeral-storage: 1024Mi
192+
memory: 192Mi
193+
requests:
194+
cpu: 100m
195+
ephemeral-storage: 50Mi
196+
memory: 128Mi
171197
securityContext:
172198
runAsGroup: 0
173199
runAsNonRoot: false
174200
runAsUser: 0
201+
seLinuxOptions: {}
175202
seccompProfile:
176203
type: RuntimeDefault
177204
volumeMounts:
205+
- mountPath: /tmp
206+
name: empty-dir
207+
subPath: tmp-dir
178208
- mountPath: /bitnami/postgresql
179209
name: data
180210
- mountPath: /dev/shm
@@ -185,8 +215,13 @@ spec:
185215
name: postgresql-certificates
186216
securityContext:
187217
fsGroup: 1001
188-
serviceAccountName: default
218+
fsGroupChangePolicy: Always
219+
supplementalGroups: []
220+
sysctls: []
221+
serviceAccountName: keycloak-postgresql
189222
volumes:
223+
- emptyDir: {}
224+
name: empty-dir
190225
- name: raw-certificates
191226
secret:
192227
secretName: keycloak-postgresql-tls

tests/golden/builtin/builtin/builtin/01_keycloak_helmchart/postgresql/templates/primary/svc-headless.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -8,8 +8,8 @@ metadata:
88
app.kubernetes.io/instance: keycloak
99
app.kubernetes.io/managed-by: Helm
1010
app.kubernetes.io/name: postgresql
11-
app.kubernetes.io/version: 15.4.0
12-
helm.sh/chart: postgresql-12.12.10
11+
app.kubernetes.io/version: 16.2.0
12+
helm.sh/chart: postgresql-15.2.4
1313
name: keycloak-postgresql-hl
1414
namespace: syn-builtin
1515
spec:

tests/golden/builtin/builtin/builtin/01_keycloak_helmchart/postgresql/templates/primary/svc.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ metadata:
66
app.kubernetes.io/instance: keycloak
77
app.kubernetes.io/managed-by: Helm
88
app.kubernetes.io/name: postgresql
9-
app.kubernetes.io/version: 15.4.0
10-
helm.sh/chart: postgresql-12.12.10
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
1111
name: keycloak-postgresql
1212
namespace: syn-builtin
1313
spec:
Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
apiVersion: v1
2+
automountServiceAccountToken: false
3+
kind: ServiceAccount
4+
metadata:
5+
labels:
6+
app.kubernetes.io/instance: keycloak
7+
app.kubernetes.io/managed-by: Helm
8+
app.kubernetes.io/name: postgresql
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
11+
name: keycloak-postgresql
12+
namespace: syn-builtin
Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
apiVersion: v1
2+
automountServiceAccountToken: false
3+
kind: ServiceAccount
4+
metadata:
5+
labels:
6+
app.kubernetes.io/instance: keycloak
7+
app.kubernetes.io/managed-by: Helm
8+
app.kubernetes.io/name: postgresql
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
11+
name: keycloak-postgresql
12+
namespace: syn-external

tests/golden/openshift-postgres/openshift-postgres/openshift-postgres/01_keycloak_helmchart/postgresql/templates/primary/networkpolicy.yaml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -6,21 +6,21 @@ metadata:
66
app.kubernetes.io/instance: keycloak
77
app.kubernetes.io/managed-by: Helm
88
app.kubernetes.io/name: postgresql
9-
app.kubernetes.io/version: 15.4.0
10-
helm.sh/chart: postgresql-12.12.10
11-
name: keycloak-postgresql-ingress
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
11+
name: keycloak-postgresql
1212
namespace: syn-openshift-postgres
1313
spec:
14+
egress:
15+
- {}
1416
ingress:
15-
- from:
16-
- podSelector:
17-
matchLabels:
18-
app.kubernetes.io/instance: keycloakx
19-
app.kubernetes.io/name: keycloakx
20-
ports:
17+
- ports:
2118
- port: 5432
2219
podSelector:
2320
matchLabels:
2421
app.kubernetes.io/component: primary
2522
app.kubernetes.io/instance: keycloak
2623
app.kubernetes.io/name: postgresql
24+
policyTypes:
25+
- Ingress
26+
- Egress

tests/golden/openshift-postgres/openshift-postgres/openshift-postgres/01_keycloak_helmchart/postgresql/templates/primary/statefulset.yaml

Lines changed: 46 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ metadata:
66
app.kubernetes.io/instance: openshift-postgres
77
app.kubernetes.io/managed-by: commodore
88
app.kubernetes.io/name: keycloak
9-
app.kubernetes.io/version: 15.4.0
10-
helm.sh/chart: postgresql-12.12.10
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
1111
name: keycloak-postgresql
1212
namespace: syn-openshift-postgres
1313
spec:
@@ -29,8 +29,8 @@ spec:
2929
app.kubernetes.io/instance: keycloak
3030
app.kubernetes.io/managed-by: Helm
3131
app.kubernetes.io/name: postgresql
32-
app.kubernetes.io/version: 15.4.0
33-
helm.sh/chart: postgresql-12.12.10
32+
app.kubernetes.io/version: 16.2.0
33+
helm.sh/chart: postgresql-15.2.4
3434
name: keycloak-postgresql
3535
spec:
3636
affinity:
@@ -46,6 +46,7 @@ spec:
4646
app.kubernetes.io/name: postgresql
4747
topologyKey: kubernetes.io/hostname
4848
weight: 1
49+
automountServiceAccountToken: false
4950
containers:
5051
- env:
5152
- name: BITNAMI_DEBUG
@@ -125,19 +126,38 @@ spec:
125126
successThreshold: 1
126127
timeoutSeconds: 5
127128
resources:
128-
limits: {}
129+
limits:
130+
cpu: 150m
131+
ephemeral-storage: 1024Mi
132+
memory: 192Mi
129133
requests:
130-
cpu: 250m
131-
memory: 256Mi
134+
cpu: 100m
135+
ephemeral-storage: 50Mi
136+
memory: 128Mi
132137
securityContext:
133138
allowPrivilegeEscalation: false
134139
capabilities:
135140
drop:
136141
- ALL
142+
privileged: false
143+
readOnlyRootFilesystem: true
137144
runAsNonRoot: true
145+
seLinuxOptions: {}
138146
seccompProfile:
139147
type: RuntimeDefault
140148
volumeMounts:
149+
- mountPath: /tmp
150+
name: empty-dir
151+
subPath: tmp-dir
152+
- mountPath: /opt/bitnami/postgresql/conf
153+
name: empty-dir
154+
subPath: app-conf-dir
155+
- mountPath: /opt/bitnami/postgresql/tmp
156+
name: empty-dir
157+
subPath: app-tmp-dir
158+
- mountPath: /opt/bitnami/postgresql/logs
159+
name: empty-dir
160+
subPath: app-logs-dir
141161
- mountPath: /opt/bitnami/postgresql/certs
142162
name: postgresql-certificates
143163
readOnly: true
@@ -156,28 +176,43 @@ spec:
156176
imagePullPolicy: IfNotPresent
157177
name: copy-certs
158178
resources:
159-
limits: {}
179+
limits:
180+
cpu: 150m
181+
ephemeral-storage: 1024Mi
182+
memory: 192Mi
160183
requests:
161-
cpu: 250m
162-
memory: 256Mi
184+
cpu: 100m
185+
ephemeral-storage: 50Mi
186+
memory: 128Mi
163187
securityContext:
164188
allowPrivilegeEscalation: false
165189
capabilities:
166190
drop:
167191
- ALL
192+
privileged: false
193+
readOnlyRootFilesystem: true
168194
runAsNonRoot: true
195+
seLinuxOptions: {}
169196
seccompProfile:
170197
type: RuntimeDefault
171198
volumeMounts:
199+
- mountPath: /tmp
200+
name: empty-dir
201+
subPath: tmp-dir
172202
- mountPath: /tmp/certs
173203
name: raw-certificates
174204
- mountPath: /opt/bitnami/postgresql/certs
175205
name: postgresql-certificates
176206
securityContext:
207+
fsGroupChangePolicy: Always
177208
seccompProfile:
178209
type: RuntimeDefault
179-
serviceAccountName: default
210+
supplementalGroups: []
211+
sysctls: []
212+
serviceAccountName: keycloak-postgresql
180213
volumes:
214+
- emptyDir: {}
215+
name: empty-dir
181216
- name: raw-certificates
182217
secret:
183218
secretName: keycloak-postgresql-tls

tests/golden/openshift-postgres/openshift-postgres/openshift-postgres/01_keycloak_helmchart/postgresql/templates/primary/svc-headless.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -8,8 +8,8 @@ metadata:
88
app.kubernetes.io/instance: keycloak
99
app.kubernetes.io/managed-by: Helm
1010
app.kubernetes.io/name: postgresql
11-
app.kubernetes.io/version: 15.4.0
12-
helm.sh/chart: postgresql-12.12.10
11+
app.kubernetes.io/version: 16.2.0
12+
helm.sh/chart: postgresql-15.2.4
1313
name: keycloak-postgresql-hl
1414
namespace: syn-openshift-postgres
1515
spec:

tests/golden/openshift-postgres/openshift-postgres/openshift-postgres/01_keycloak_helmchart/postgresql/templates/primary/svc.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,8 @@ metadata:
66
app.kubernetes.io/instance: keycloak
77
app.kubernetes.io/managed-by: Helm
88
app.kubernetes.io/name: postgresql
9-
app.kubernetes.io/version: 15.4.0
10-
helm.sh/chart: postgresql-12.12.10
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
1111
name: keycloak-postgresql
1212
namespace: syn-openshift-postgres
1313
spec:
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
apiVersion: v1
2+
automountServiceAccountToken: false
3+
kind: ServiceAccount
4+
metadata:
5+
labels:
6+
app.kubernetes.io/instance: keycloak
7+
app.kubernetes.io/managed-by: Helm
8+
app.kubernetes.io/name: postgresql
9+
app.kubernetes.io/version: 16.2.0
10+
helm.sh/chart: postgresql-15.2.4
11+
name: keycloak-postgresql
12+
namespace: syn-openshift-postgres

0 commit comments

Comments
 (0)