token_expiration: int
max_file_size: int
site_url: Optional[str]
+ ingress_class: Optional[str]
ingress_whitelist_source_range: Optional[str]
tls_secret_name: Optional[str]
mysql_host: Optional[str]
mysql_port: Optional[int]
mysql_root_password: Optional[str]
+ image_pull_policy: Optional[str]
@validator("max_file_size")
def validate_max_file_size(cls, v):
raise ValueError("Mysql port out of range")
return v
+ @validator("image_pull_policy")
+ def validate_image_pull_policy(cls, v):
+ values = {
+ "always": "Always",
+ "ifnotpresent": "IfNotPresent",
+ "never": "Never",
+ }
+ v = v.lower()
+ if v not in values.keys():
+ raise ValueError("value must be always, ifnotpresent or never")
+ return values[v]
+
class ConfigLdapModel(ModelValidator):
ldap_enabled: bool
pod_spec_builder = PodSpecV3Builder()
# Build Container
- container_builder = ContainerV3Builder(self.app.name, image_info)
+ container_builder = ContainerV3Builder(
+ self.app.name, image_info, config.image_pull_policy
+ )
container_builder.add_port(name=self.app.name, port=PORT)
# Build files
{"LDAP_GROUP_TREE_DN": config_ldap.ldap_group_tree_dn}
)
+ if config_ldap.ldap_tls_cacert_base64:
+ container_builder.add_envs(
+ {"LDAP_TLS_CACERT_BASE64": config_ldap.ldap_tls_cacert_base64}
+ )
+
if config_ldap.ldap_use_starttls:
container_builder.add_envs(
{
str(config.max_file_size) + "m"
if config.max_file_size > 0
else config.max_file_size
- ),
- "kubernetes.io/ingress.class": "public",
+ )
}
+ if config.ingress_class:
+ annotations["kubernetes.io/ingress.class"] = config.ingress_class
ingress_resource_builder = IngressResourceV3Builder(
f"{self.app.name}-ingress", annotations
)