File tree 7 files changed +19
-18
lines changed 7 files changed +19
-18
lines changed Original file line number Diff line number Diff line change @@ -60,7 +60,7 @@ module "dbsync_pgbouncer" {
60
60
61
61
namespace = var. namespace
62
62
pg_bouncer_replicas = var. pgbouncer_replicas
63
- certs_configmap_name = var. certs_configmap_name
63
+ certs_secret_name = var. certs_secret_name
64
64
pg_bouncer_auth_user_password = var. pgbouncer_auth_user_password
65
65
instance_role = " pgbouncer"
66
66
postgres_secret_name = var. postgres_secret_name
Original file line number Diff line number Diff line change @@ -7,7 +7,7 @@ variable "salt" {
7
7
description = " Salt used to identify all components as part of the cell. Should be unique between cells."
8
8
}
9
9
10
- variable "certs_configmap_name " {
10
+ variable "certs_secret_name " {
11
11
type = string
12
12
default = " pgbouncer-certs"
13
13
}
Load Diff This file was deleted.
Original file line number Diff line number Diff line change @@ -8,3 +8,15 @@ resource "kubernetes_secret" "postgres" {
8
8
}
9
9
type = " Opaque"
10
10
}
11
+
12
+ resource "kubernetes_secret" "pgbouncer_certs" {
13
+ metadata {
14
+ namespace = var. namespace
15
+ name = " pgbouncer-certs"
16
+ }
17
+
18
+ data = {
19
+ " tls.crt" = var.pgbouncer_server_crt
20
+ " tls.key" = var.pgbouncer_server_key
21
+ }
22
+ }
Original file line number Diff line number Diff line change @@ -26,7 +26,7 @@ variable "load_balancer" {
26
26
default = false
27
27
}
28
28
29
- variable "certs_configmap_name " {
29
+ variable "certs_secret_name " {
30
30
type = string
31
31
default = " pgbouncer-certs"
32
32
}
Original file line number Diff line number Diff line change @@ -269,8 +269,8 @@ resource "kubernetes_deployment_v1" "pgbouncer" {
269
269
270
270
volume {
271
271
name = " pgbouncer-certs"
272
- config_map {
273
- name = var. certs_configmap_name
272
+ secret {
273
+ secret_name = var. certs_secret_name
274
274
}
275
275
}
276
276
Original file line number Diff line number Diff line change @@ -17,8 +17,8 @@ pidfile=/opt/bitnami/pgbouncer/tmp/pgbouncer.pid
17
17
logfile = / opt/ bitnami/ pgbouncer/ logs/ pgbouncer. log
18
18
admin_users = postgres
19
19
client_tls_sslmode = allow
20
- client_tls_key_file = / certs/ server . key
21
- client_tls_cert_file = / certs/ server . crt
20
+ client_tls_key_file = / certs/ tls . key
21
+ client_tls_cert_file = / certs/ tls . crt
22
22
server_tls_sslmode = disable
23
23
ignore_startup_parameters = extra_float_digits,statement_timeout
24
24
stats_period = 60
You can’t perform that action at this time.
0 commit comments