2023-12-18 18:16:01 +01:00
|
|
|
#!/bin/bash
|
|
|
|
|
|
|
|
if [ "$IMAGE_TAG" == "" ]; then
|
|
|
|
echo "Make sure IMAGE_TAG is set"
|
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
|
2023-12-19 11:47:37 +01:00
|
|
|
|
2024-02-07 22:46:35 +01:00
|
|
|
IMAGE_NAME=$FORGE_NAME/$CI_REPO
|
2023-12-18 18:16:01 +01:00
|
|
|
|
|
|
|
CONFIG_FILE=config.json
|
|
|
|
|
|
|
|
|
|
|
|
DEPLOYMENT_DIR=$PWD/deployment
|
|
|
|
INSTANCES_DIR=$DEPLOYMENT_DIR/instances
|
|
|
|
|
2023-12-19 11:56:45 +01:00
|
|
|
pushd $DEPLOYMENT_DIR > /dev/null
|
|
|
|
./decrypt-secrets.sh || exit 1
|
2023-12-19 12:05:07 +01:00
|
|
|
. /tmp/secrets
|
|
|
|
rm /tmp/secrets
|
2023-12-19 11:56:45 +01:00
|
|
|
popd > /dev/null
|
2023-12-18 18:16:01 +01:00
|
|
|
|
2023-12-18 21:41:21 +01:00
|
|
|
for NAMESPACE_DIR in `find $INSTANCES_DIR -type d -mindepth 1 -maxdepth 1`; do
|
2023-12-18 18:16:01 +01:00
|
|
|
NAMESPACE=`basename $NAMESPACE_DIR`
|
|
|
|
echo "Namespace: $NAMESPACE"
|
|
|
|
|
|
|
|
kubectl create namespace $NAMESPACE \
|
|
|
|
--dry-run=client \
|
|
|
|
-o yaml | \
|
|
|
|
kubectl -f - apply
|
|
|
|
|
|
|
|
pushd $NAMESPACE_DIR > /dev/null
|
2023-12-18 21:41:21 +01:00
|
|
|
for INSTANCE_DIR in `find . -type d -mindepth 1 -maxdepth 1`; do
|
2023-12-18 18:16:01 +01:00
|
|
|
pushd $INSTANCE_DIR > /dev/null
|
|
|
|
INSTANCE=`basename $INSTANCE_DIR`
|
|
|
|
echo "Instance: $INSTANCE"
|
|
|
|
|
2023-12-24 14:28:46 +01:00
|
|
|
# set secret configuration from encrypted and decrypted file
|
|
|
|
VARIABLE_PREFIX=`echo "$NAMESPACE""_""$INSTANCE" | tr - _`
|
|
|
|
|
|
|
|
|
2023-12-18 18:16:01 +01:00
|
|
|
# set MQTT_PASSWORD as secret
|
2023-12-24 14:28:46 +01:00
|
|
|
MQTT_PASSWORD_VARIABLE=$VARIABLE_PREFIX"_MQTT_PASSWORD"
|
2023-12-18 18:16:01 +01:00
|
|
|
MQTT_PASSWORD="${!MQTT_PASSWORD_VARIABLE}"
|
2023-12-19 13:03:32 +01:00
|
|
|
# echo "MQTT_PASSWORD_VARIABLE: $MQTT_PASSWORD_VARIABLE"
|
|
|
|
# echo "MQTT_PASSWORD: $MQTT_PASSWORD"
|
2023-12-18 18:16:01 +01:00
|
|
|
kubectl create secret generic $INSTANCE-mqtt-password \
|
|
|
|
--from-literal=MQTT_PASSWORD="$MQTT_PASSWORD" \
|
|
|
|
--dry-run=client \
|
|
|
|
-o yaml \
|
|
|
|
--save-config | \
|
2023-12-24 14:28:46 +01:00
|
|
|
kubectl apply -f - -n $NAMESPACE
|
2023-12-18 18:16:01 +01:00
|
|
|
|
2023-12-24 14:28:46 +01:00
|
|
|
|
|
|
|
LOGIN_VARIABLE=$VARIABLE_PREFIX"_PGUSER"
|
|
|
|
NEW_UDI_DB_LOGIN="${!LOGIN_VARIABLE}"
|
2023-12-24 14:41:49 +01:00
|
|
|
PASSWORD_VARIABLE=$VARIABLE_PREFIX"_PGPASSWORD"
|
2023-12-24 14:28:46 +01:00
|
|
|
NEW_UDI_DB_PASSWORD="${!PASSWORD_VARIABLE}"
|
|
|
|
DATABASE_VARIABLE=$VARIABLE_PREFIX"_PGDATABASE"
|
|
|
|
NEW_UDI_DB_DATABASE="${!DATABASE_VARIABLE}"
|
2025-01-09 16:18:53 +01:00
|
|
|
NEW_UDI_DB_HOST=database.database1.svc.cluster.local
|
2023-12-18 18:16:01 +01:00
|
|
|
|
|
|
|
kubectl create secret generic $INSTANCE-udi-db-cred \
|
|
|
|
--dry-run=client \
|
|
|
|
-o yaml \
|
|
|
|
--save-config \
|
|
|
|
--from-literal=PGUSER="$NEW_UDI_DB_LOGIN" \
|
|
|
|
--from-literal=PGPASSWORD="$NEW_UDI_DB_PASSWORD" \
|
|
|
|
--from-literal=PGDATABASE="$NEW_UDI_DB_DATABASE" \
|
|
|
|
--from-literal=PGHOST="$NEW_UDI_DB_HOST" \
|
|
|
|
--from-literal=PGSSLMODE="require" | \
|
|
|
|
kubectl apply -f - -n $NAMESPACE
|
|
|
|
|
|
|
|
# set configuration as configMap
|
|
|
|
kubectl create configmap $INSTANCE-udi-conf \
|
|
|
|
--from-literal=UDI_CONF="`cat $CONFIG_FILE`" \
|
|
|
|
--dry-run=client \
|
|
|
|
-o yaml \
|
|
|
|
--save-config | \
|
|
|
|
kubectl apply -f - -n $NAMESPACE
|
|
|
|
|
|
|
|
# prepare k8s deployment statement
|
|
|
|
cat $DEPLOYMENT_DIR/deploy-yml.tmpl | \
|
|
|
|
sed -e 's,%IMAGE%,'$IMAGE_NAME':'$IMAGE_TAG','g | \
|
|
|
|
sed -e 's,%PRE%,'$INSTANCE','g | \
|
|
|
|
kubectl apply -f - -n $NAMESPACE
|
|
|
|
|
|
|
|
popd > /dev/null
|
|
|
|
done
|
|
|
|
popd > /dev/null
|
|
|
|
done
|
|
|
|
|