renovate: add ssh signing
This commit is contained in:
@@ -27,6 +27,11 @@ spec:
|
|||||||
secretKeyRef:
|
secretKeyRef:
|
||||||
key: github-com-pat
|
key: github-com-pat
|
||||||
name: renovate-github-com-token
|
name: renovate-github-com-token
|
||||||
|
- name: RENOVATE_GIT_PRIVATE_KEY
|
||||||
|
valueFrom:
|
||||||
|
secretKeyRef:
|
||||||
|
key: ssh-key
|
||||||
|
name: renovate-ssh-key
|
||||||
- name: RENOVATE_AUTODISCOVER
|
- name: RENOVATE_AUTODISCOVER
|
||||||
value: 'false'
|
value: 'false'
|
||||||
- name: RENOVATE_BASE_DIR
|
- name: RENOVATE_BASE_DIR
|
||||||
|
|||||||
17
renovate/renovate-ssh-key.yaml
Normal file
17
renovate/renovate-ssh-key.yaml
Normal file
@@ -0,0 +1,17 @@
|
|||||||
|
apiVersion: external-secrets.io/v1
|
||||||
|
kind: ExternalSecret
|
||||||
|
metadata:
|
||||||
|
name: renovate-ssh-key
|
||||||
|
spec:
|
||||||
|
refreshInterval: 1h
|
||||||
|
secretStoreRef:
|
||||||
|
name: weyma-vault
|
||||||
|
kind: ClusterSecretStore
|
||||||
|
target:
|
||||||
|
name: renovate-ssh-key
|
||||||
|
creationPolicy: Owner
|
||||||
|
data:
|
||||||
|
- secretKey: ssh-key
|
||||||
|
remoteRef:
|
||||||
|
key: renovate
|
||||||
|
property: ssh-key
|
||||||
Reference in New Issue
Block a user