prole/k8s/openbao/deployment.yaml
chrisfu 6b89ea23d7 Stabilize deliverable k3d pipeline and refactor installer components
- Finalized stable, repeatable reset logic for the k3d pipeline.

- Refactored installer into modular components: core, milestone, runner, and state.

- Introduced new UI abstractions with support for ncurses and Tkinter.

- Updated initialization scripts and configurations for CloudNativePG, Kerberos, OpenBao, and Monitoring.

- Improved pipeline repair and port-forwarding mechanisms.
2026-02-15 00:03:24 -08:00

61 lines
1.3 KiB
YAML

apiVersion: apps/v1
kind: Deployment
metadata:
name: openbao
labels:
app: openbao
spec:
replicas: 1
selector:
matchLabels:
app: openbao
template:
metadata:
labels:
app: openbao
spec:
containers:
- name: openbao
image: ghcr.io/openbao/openbao:latest
imagePullPolicy: IfNotPresent
args:
- "server"
- "-dev"
- "-dev-listen-address=0.0.0.0:8200"
- "-dev-root-token-id=405f3fd4ceea0f00952532333e3035b240b404e9d30e0b7f"
ports:
- name: http
containerPort: 8200
env:
- name: VAULT_DEV_ROOT_TOKEN_ID
valueFrom:
secretKeyRef:
name: openbao-root
key: token
readinessProbe:
httpGet:
path: /v1/sys/health
port: 8200
initialDelaySeconds: 3
periodSeconds: 3
---
apiVersion: v1
kind: Service
metadata:
name: openbao
spec:
selector:
app: openbao
ports:
- name: http
port: 8200
targetPort: 8200
---
apiVersion: v1
kind: Secret
metadata:
name: openbao-root
type: Opaque
data:
token: NDA1ZjNmZDRjZWVhMGYwMDk1MjUzMjMzM2UzMDM1YjI0MGI0MDRlOWQzMGUwYjdm