feat(k8s): add SOPS + AGE data encryption
This commit is contained in:
@@ -25,3 +25,7 @@ spec:
|
||||
sourceRef:
|
||||
kind: GitRepository
|
||||
name: flux-system
|
||||
decryption:
|
||||
provider: sops
|
||||
secretRef:
|
||||
name: sops-age
|
||||
|
||||
9
kubernetes/flux-system/sops-age-secret.yaml.example
Normal file
9
kubernetes/flux-system/sops-age-secret.yaml.example
Normal file
@@ -0,0 +1,9 @@
|
||||
# Manual step: create this secret before Flux can decrypt SOPS files
|
||||
# kubectl create secret generic sops-age --namespace=flux-system --from-file=age.agekey=<path-to-age.key>
|
||||
apiVersion: v1
|
||||
kind: Secret
|
||||
metadata:
|
||||
name: sops-age
|
||||
namespace: flux-system
|
||||
stringData:
|
||||
age.agekey: AGE-SECRET-KEY-XXXXXXXXXXXXXXXXXXXXX
|
||||
Reference in New Issue
Block a user