Skip to content

Commit c60e1d9

Browse files
authored
chore(authentik): switch cache backend to dragonfly (#877)
Closes #670
1 parent 23a163d commit c60e1d9

File tree

2 files changed

+8
-38
lines changed

2 files changed

+8
-38
lines changed

kubernetes/main/apps/identity/authentik/app/helmrelease.yaml

+5-35
Original file line numberDiff line numberDiff line change
@@ -24,6 +24,10 @@ spec:
2424
log_level: debug
2525
error_reporting:
2626
enabled: false
27+
redis:
28+
host: dragonfly.database.svc.cluster.local
29+
port: 6379
30+
db: 2
2731
server:
2832
annotations:
2933
secret.reloader.stakater.com/reload: &secret authentik-secret
@@ -74,37 +78,7 @@ spec:
7478
rules:
7579
enabled: true
7680
redis:
77-
enabled: true
78-
auth:
79-
enabled: true
80-
master:
81-
persistence:
82-
enabled: true
83-
storageClass: longhorn
84-
size: 1Gi
85-
resources:
86-
requests:
87-
cpu: 15m
88-
memory: 20Mi
89-
limits:
90-
memory: 60Mi
91-
commonConfiguration: |-
92-
# Enable AOF https://redis.io/topics/persistence#append-only-file
93-
appendonly yes
94-
# Disable RDB persistence, AOF persistence already enabled.
95-
save ""
96-
maxmemory 94371840
97-
maxmemory-policy allkeys-lru
98-
metrics:
99-
enabled: true
100-
serviceMonitor:
101-
enabled: true
102-
resources:
103-
requests:
104-
cpu: 10m
105-
memory: 10Mi
106-
limits:
107-
memory: 20Mi
81+
enabled: false
10882
valuesFrom:
10983
- kind: Secret
11084
name: *secret
@@ -114,10 +88,6 @@ spec:
11488
name: *secret
11589
valuesKey: REDIS_PASSWORD
11690
targetPath: authentik.redis.password
117-
- kind: Secret
118-
name: *secret
119-
valuesKey: REDIS_PASSWORD
120-
targetPath: redis.auth.password
12191
- kind: Secret
12292
name: *secret
12393
valuesKey: INIT_POSTGRES_HOST

kubernetes/main/apps/identity/authentik/app/secret.sops.yaml

+3-3
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ stringData:
88
INIT_POSTGRES_PASS: ENC[AES256_GCM,data:6B3laoW3bTvFtha4bUT5vv04aVieeef0,iv:FB7esh7ivfz4RYFgK0RCL/L3phv9c6/9f6key8Thtkk=,tag:FvGnQVuphK463bcH9qgxzw==,type:str]
99
INIT_POSTGRES_SUPER_PASS: ENC[AES256_GCM,data:VcGOw+GfWp3UUvO6368Yt5y56D+JmYb7GAVDpvfQAX2t,iv:02KCwA46nzX8rq3A6Wci8KotAZjr9nnEXxr/QGn7vKg=,tag:zMPbDLfLYgq0hnOp2VTF4w==,type:str]
1010
INIT_POSTGRES_USER: ENC[AES256_GCM,data:c0NYVxhkMl2A,iv:rbqXHK8MTq0XovS7Nd4+7Ts3EjeQUps8zYmeTf/beIE=,tag:kTz6upYh9nU5wsgHXxgD3w==,type:str]
11-
REDIS_PASSWORD: ENC[AES256_GCM,data:v8qXmmu8xkw+ocj4Wa3hZbrWhhZS4eoY,iv:rzRLZJZBlHF2bspvI1hsd3vO54I4YySi/SELHXHEgDA=,tag:OhAYThd84tTZIG7UzsKxNQ==,type:str]
11+
REDIS_PASSWORD: ENC[AES256_GCM,data:6oH8K/Nf223e5DzkszCZsI5VG6BGFiN7FtYPFGNIMYTrxvqI,iv:AqkKZVkh1MR6+hn1a+QAbQ8edBSEh5DdHYRPGqCmyL4=,tag:IeoM3xpS+S7KGknIrn550w==,type:str]
1212
SECRET_KEY: ENC[AES256_GCM,data:ZAdt5u+gBsHps/HcEtTNbFsx1Ulrs5Osgocw/ueHdK2+u81WjLdB/r2b6NXLgFxYi3s=,iv:Uwn4MSCcikcevZ8S6AjlGAgZv4XV+8nzeAoNvrMsX4U=,tag:NEiVeGw6U0JrvIQmbGFxWw==,type:str]
1313
sops:
1414
kms: []
@@ -25,8 +25,8 @@ sops:
2525
ekoxSWY2dmlWK0k3bzhUdmo0ZzdvTzQKlBZSUqKIS0zDPmYiyDX/ynsV++620De6
2626
FT3clq2Hev74lzkqV2NKjuJNkuPFIxSAPoySw0VYWbrxCS1ztWs8wg==
2727
-----END AGE ENCRYPTED FILE-----
28-
lastmodified: "2024-01-05T13:02:06Z"
29-
mac: ENC[AES256_GCM,data:ErHphxf/T84T08gdjvz0R5j42G4YD0wkMUBmiAsz4QlXKoTEOn6bjNO7HeqV16m0tQmwl0fEEOaQTiK151IZXJFAeukVxq5d6MoiI0VRO9l9BnW9+KmSGROHrjMEJJjQw4fsZw8JGjf42BjLDhSoJDS212QdWl2M+1C5c8w5iN8=,iv:mYmSuOqqngrfKhsQ+MAEPDmqCOvmbIXGH2oQWsiNXbA=,tag:skCqeGQjVVIk/MYkByVG6A==,type:str]
28+
lastmodified: "2024-05-27T19:10:21Z"
29+
mac: ENC[AES256_GCM,data:erpiOPPJmAb0g/y3OUf5ex9bRPErm5MK3zBy6q2W+0+womc8YDrwfCuGFJcwPvpj9d22eBBzP/LT8AleNnwh7it24hOOwxY4ImqQ7Pvt28J36uFDwfnhv2iBBkYvXLd1oCgRx0Q/1Z+JTi6yFa6+sWM3aOWPnfZFFZNeRRAB5G8=,iv:1FSdzPgb+h7hE2HyL6YGwJaC45zSZO7NRaYrh2SKwUE=,tag:58RrxNVcB188XNbObkjD0w==,type:str]
3030
pgp: []
3131
encrypted_regex: ^(data|stringData)$
3232
version: 3.8.1

0 commit comments

Comments
 (0)