5341253573
Go builds on CI and laptops each rebuild the same packages from scratch. A GOCACHEPROG backend needs an S3 bucket plus credentials before anything can point at it, so provision those first. The bucket lives in the woodpecker namespace because CI is the primary consumer and reads the Secret there. - add Bucket and ObjectStoreUser for the shared Go build cache - use default (replicated) placement rather than the ec target, since a build cache is millions of small objects - purge and drop the bucket and user on delete; the cache is disposable Nothing consumes the bucket yet. Reviewed-on: #489 Co-authored-by: unkin-agent <unkin-agent@unkin.net> Co-committed-by: unkin-agent <unkin-agent@unkin.net>
34 lines
1.0 KiB
YAML
34 lines
1.0 KiB
YAML
---
|
|
apiVersion: kustomize.config.k8s.io/v1beta1
|
|
kind: Kustomization
|
|
|
|
resources:
|
|
- namespace.yaml
|
|
- cnpg_cluster.yaml
|
|
- cnpg_backup.yaml
|
|
- cnpg_pooler.yaml
|
|
- gocache_bucket.yaml
|
|
- serviceaccount_arrproxy_ci.yaml
|
|
- serviceaccount_autobackup_operator_ci.yaml
|
|
- serviceaccount_ghp.yaml
|
|
- serviceaccount_golib_ci.yaml
|
|
- serviceaccount_kea_operator_ci.yaml
|
|
- serviceaccount_mediamark_ci.yaml
|
|
- serviceaccount_plugin_docker_buildx.yaml
|
|
- serviceaccount_jellyfin_ha_src.yaml
|
|
- serviceaccount_jellyfin_plugin_sso.yaml
|
|
- serviceaccount_repospawner_ci.yaml
|
|
- serviceaccount_terraform_artifactapi.yaml
|
|
- serviceaccount_terraform_authentik.yaml
|
|
- serviceaccount_terraform_enc.yaml
|
|
- serviceaccount_terraform_git.yaml
|
|
- serviceaccount_terraform_infra.yaml
|
|
- serviceaccount_terraform_prowlarr.yaml
|
|
- serviceaccount_terraform_rancher.yaml
|
|
- serviceaccount_terraform_radarr.yaml
|
|
- serviceaccount_terraform_sonarr.yaml
|
|
- serviceaccount_terraform_vault.yaml
|
|
- serviceaccount_vimpack_ci.yaml
|
|
- vaultauth.yaml
|
|
- vaultstaticsecret.yaml
|