|
| 1 | +{ |
| 2 | + lib, |
| 3 | + utils, |
| 4 | + values, |
| 5 | + chart, |
| 6 | + config, |
| 7 | + ... |
| 8 | +}: { |
| 9 | + templates.ws-server-service = lib.mkIf values.ws-server.enabled { |
| 10 | + apiVersion = "v1"; |
| 11 | + kind = "Service"; |
| 12 | + metadata = { |
| 13 | + name = "${chart.name}-ws-server"; |
| 14 | + labels = utils.appLabels "ws-server"; |
| 15 | + }; |
| 16 | + spec = { |
| 17 | + ports = [ |
| 18 | + { |
| 19 | + name = "http"; |
| 20 | + protocol = "TCP"; |
| 21 | + port = 3000; |
| 22 | + targetPort = 3000; |
| 23 | + } |
| 24 | + ]; |
| 25 | + selector = utils.appLabels "ws-server"; |
| 26 | + }; |
| 27 | + }; |
| 28 | + |
| 29 | + templates.ws-server-deployment = lib.mkIf values.ws-server.enabled { |
| 30 | + apiVersion = "apps/v1"; |
| 31 | + kind = "Deployment"; |
| 32 | + metadata = { |
| 33 | + name = "${chart.name}-ws-server"; |
| 34 | + labels = utils.appLabels "ws-server"; |
| 35 | + }; |
| 36 | + spec = { |
| 37 | + selector.matchLabels = utils.appLabels "ws-server"; |
| 38 | + template = { |
| 39 | + metadata.labels = utils.appLabels "ws-server"; |
| 40 | + spec = { |
| 41 | + imagePullSecrets = [ |
| 42 | + { |
| 43 | + name = "dockerconfigjson"; |
| 44 | + } |
| 45 | + ]; |
| 46 | + containers = [ |
| 47 | + { |
| 48 | + inherit (values.cardano-services) image; |
| 49 | + inherit (values.ws-server) resources; |
| 50 | + name = "ws-server"; |
| 51 | + ports = [ |
| 52 | + { |
| 53 | + containerPort = 3000; |
| 54 | + name = "http"; |
| 55 | + } |
| 56 | + ]; |
| 57 | + livenessProbe = { |
| 58 | + httpGet = { |
| 59 | + path = "/health"; |
| 60 | + port = 3000; |
| 61 | + }; |
| 62 | + }; |
| 63 | + securityContext = { |
| 64 | + runAsUser = 0; |
| 65 | + runAsGroup = 0; |
| 66 | + }; |
| 67 | + args = ["start-ws-server"]; |
| 68 | + env = utils.mkPodEnv ({ |
| 69 | + NETWORK = config.network; |
| 70 | + DB_CACHE_TTL = "7200"; |
| 71 | + OGMIOS_URL = "ws://${config.namespace}-cardano-core.${config.namespace}.svc.cluster.local:1337"; |
| 72 | + |
| 73 | + POSTGRES_POOL_MAX_DB_SYNC = "2"; |
| 74 | + POSTGRES_HOST_DB_SYNC = values.postgresName; |
| 75 | + POSTGRES_PORT_DB_SYNC = "5432"; |
| 76 | + POSTGRES_DB_DB_SYNC = "cardano"; |
| 77 | + POSTGRES_PASSWORD_DB_SYNC = { |
| 78 | + valueFrom.secretKeyRef = { |
| 79 | + name = "cardano-owner-user.${values.postgresName}.credentials.postgresql.acid.zalan.do"; |
| 80 | + key = "password"; |
| 81 | + }; |
| 82 | + }; |
| 83 | + POSTGRES_USER_DB_SYNC = { |
| 84 | + valueFrom.secretKeyRef = { |
| 85 | + name = "cardano-owner-user.${values.postgresName}.credentials.postgresql.acid.zalan.do"; |
| 86 | + key = "username"; |
| 87 | + }; |
| 88 | + }; |
| 89 | + POSTGRES_SSL_DB_SYNC = "true"; |
| 90 | + POSTGRES_SSL_CA_FILE_DB_SYNC = "/tls/ca.crt"; |
| 91 | + }); |
| 92 | + volumeMounts = [ |
| 93 | + { |
| 94 | + mountPath = "/tls"; |
| 95 | + name = "tls"; |
| 96 | + } |
| 97 | + ]; |
| 98 | + } |
| 99 | + ]; |
| 100 | + volumes = [ |
| 101 | + { |
| 102 | + name = "tls"; |
| 103 | + secret.secretName = "postgresql-server-cert"; |
| 104 | + } |
| 105 | + ]; |
| 106 | + }; |
| 107 | + }; |
| 108 | + }; |
| 109 | + }; |
| 110 | +} |
0 commit comments