apps/<app>/uralkal mirrors apps/<app>/vad for all 36 apps from clusters/vad/kustomization.yaml, with domains remapped (not a suffix swap — vad's sarex-login.vadroad.ru etc. use a different host scheme than uralkal's login.sarex.local.uralkali.com). Two things are left as explicit placeholders pending real infra: the Zitadel client_id/org_id (TBD_URALKAL_ZITADEL_CLIENT_ID, since uralkal's Zitadel has no application registered yet) and the Kafka CA cert in pm/issues/message-hub/flows (copied from vad, will need swapping once uralkal's Kafka actually generates its own CA, same as vad's history). infrastructure/s3-proxy/uralkal: new component, nginx upstream points at the single uralkal minio endpoint (10.133.0.245:9000) from terraform, unlike vad's 4-node list. clusters/uralkal/kustomization.yaml: wires in s3-proxy + all 36 apps. infrastructure/istio-config/uralkal/istio-config.yaml: adds the 28 path-routed virtualServices under sarex.local.uralkali.com (mirroring vad's sarex.vadroad.ru routing, incl. the documentations-api CORS policy) plus stamp-verification/document-link/s3 on their already-declared hosts. Pre-existing zitadel/superset/camunda-operate blocks are untouched. apps/django/vad/backend.yaml: drop a stale explanatory comment (also removed from the uralkal copy before this commit). Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
75 lines
2.0 KiB
YAML
75 lines
2.0 KiB
YAML
---
|
|
apiVersion: helm.toolkit.fluxcd.io/v2
|
|
kind: HelmRelease
|
|
metadata:
|
|
name: bi-backend
|
|
namespace: bi
|
|
spec:
|
|
values:
|
|
services:
|
|
main:
|
|
envs:
|
|
- name: SETTINGS_DEBUG
|
|
value:
|
|
_default: "0"
|
|
|
|
- name: SETTINGS_VERIFY_SSL
|
|
value:
|
|
_default: "1"
|
|
|
|
- name: SETTINGS_API_V1_PREFIX
|
|
value:
|
|
_default: "/api/v1"
|
|
|
|
- name: AUTH_HOST
|
|
value:
|
|
_default: "https://sarex.local.uralkali.com"
|
|
|
|
- name: WORKER_TIMEOUT
|
|
value:
|
|
_default: "120"
|
|
|
|
- name: SUPERSET_HOST
|
|
value:
|
|
_default: "https://sarex-bi.sarex.local.uralkali.com/"
|
|
|
|
- name: PYTHONPATH
|
|
value:
|
|
_default: "src"
|
|
|
|
- name: ISSUES_SERVICE_HOST
|
|
value:
|
|
_default: "http://backend-svc.issues.svc.cluster.local"
|
|
|
|
- name: EAV_SERVICE_HOST
|
|
value:
|
|
_default: "http://backend-svc.eav.svc.cluster.local"
|
|
|
|
- name: PM_SERVICE_HOST
|
|
value:
|
|
_default: "http://backend-svc.pm.svc.cluster.local:8000"
|
|
|
|
- name: SUPERSET_SYSTEM_WIDGETS
|
|
value:
|
|
_default: '{"MDR": {"id": "e7343f21-1ee0-4a87-b712-e8cfd413cc49","name": "MDR"},"SC": {"id": "d63d25e4-eab6-452f-8b31-065094bc2cb6","name": "Стройконтроль"}}'
|
|
|
|
- name: SUPERSET_DOCUMENTATION_URL
|
|
value:
|
|
_default: "https://sarex.local.uralkali.com/documentations/"
|
|
|
|
- name: SUPERSET_JWT_SECRET
|
|
value:
|
|
_default: "6TosZjqxxZ3kAPiht4miaGICRV5AbfvuenWnYfOUnxfbYJJXUNWedOS0QeJQaryr"
|
|
|
|
- name: KAFKA_BOOTSTRAP_SERVERS
|
|
value:
|
|
_default: '["kafka-kafka-contour.kafka.svc.cluster.local:9092"]'
|
|
|
|
- name: KAFKA_TOPICS
|
|
value:
|
|
_default: '{"planning": "message-hub-prod"}'
|
|
|
|
- name: KAFKA_ENABLE
|
|
value:
|
|
_default: "0"
|