69f2a2a6ec
artifactapi pulls its own images from itself, so a cold boot with every api pod down cannot pull them. Kubelet GC never removes images referenced by pods on the node, so a pod on every node holding the pinned tags keeps them local. - add image-keeper DaemonSet referencing the api and ui images as no-op init containers - run a static busybox as `true` inside the distroless api image - tolerate all taints, run at low priority with tiny non-root resources Reviewed-on: #535 Co-authored-by: unkin-agent <unkin-agent@unkin.net> Co-committed-by: unkin-agent <unkin-agent@unkin.net>
26 lines
509 B
YAML
26 lines
509 B
YAML
---
|
|
apiVersion: kustomize.config.k8s.io/v1beta1
|
|
kind: Kustomization
|
|
|
|
resources:
|
|
- api-deployment.yaml
|
|
- api-hpa.yaml
|
|
- configmap.yaml
|
|
- cnpg_cluster.yaml
|
|
- cnpg_backup.yaml
|
|
- cnpg_pooler.yaml
|
|
- gateway.yaml
|
|
- httproute.yaml
|
|
- image-keeper.yaml
|
|
- namespace.yaml
|
|
- oauth2-proxy-configmap.yaml
|
|
- oauth2-proxy-deployment.yaml
|
|
- redis-deployment.yaml
|
|
- services.yaml
|
|
- ui-deployment.yaml
|
|
- ui-hpa.yaml
|
|
- vaultauth.yaml
|
|
- vaultstaticsecret.yaml
|
|
- vmpodscrape.yaml
|
|
- vpa.yaml
|