chore: disable sns-forwarder again for now

This commit is contained in:
Stefan Reimer 2021-08-05 14:01:25 +02:00
parent 5b18ae575b
commit 6e916135b2

View File

@ -208,57 +208,57 @@ kube-prometheus-stack:
# Add sns-forwarder to AlertManager pod, see: https://github.com/DataReply/alertmanager-sns-forwarder # Add sns-forwarder to AlertManager pod, see: https://github.com/DataReply/alertmanager-sns-forwarder
# uses the alertmanager serviceaccount to assume IAM role, requires annotation: kubezero.com/sns_forwarder_arn_prefix to point to SNSAlertHub # uses the alertmanager serviceaccount to assume IAM role, requires annotation: kubezero.com/sns_forwarder_arn_prefix to point to SNSAlertHub
# eg: "arn:aws:sns:eu-central-1:123456789012:" # eg: "arn:aws:sns:eu-central-1:123456789012:"
containers: #containers:
- name: alertmanager-sns-forwarder #- name: alertmanager-sns-forwarder
image: datareply/alertmanager-sns-forwarder:latest # image: datareply/alertmanager-sns-forwarder:latest
imagePullPolicy: Always # imagePullPolicy: Always
env: # env:
- name: SNS_FORWARDER_ARN_PREFIX # - name: SNS_FORWARDER_ARN_PREFIX
valueFrom: # valueFrom:
fieldRef: # fieldRef:
fieldPath: metadata.annotations['kubezero.com/sns_forwarder_ARN_PREFIX'] # fieldPath: metadata.annotations['kubezero.com/sns_forwarder_ARN_PREFIX']
- name: AWS_ROLE_ARN # - name: AWS_ROLE_ARN
valueFrom: # valueFrom:
fieldRef: # fieldRef:
fieldPath: metadata.annotations['kubezero.com/sns_forwarder_AWS_ROLE_ARN'] # fieldPath: metadata.annotations['kubezero.com/sns_forwarder_AWS_ROLE_ARN']
- name: AWS_WEB_IDENTITY_TOKEN_FILE # - name: AWS_WEB_IDENTITY_TOKEN_FILE
value: "/var/run/secrets/sts.amazonaws.com/serviceaccount/token" # value: "/var/run/secrets/sts.amazonaws.com/serviceaccount/token"
- name: AWS_STS_REGIONAL_ENDPOINTS # - name: AWS_STS_REGIONAL_ENDPOINTS
value: regional # value: regional
volumeMounts: # volumeMounts:
- name: aws-token # - name: aws-token
mountPath: "/var/run/secrets/sts.amazonaws.com/serviceaccount/" # mountPath: "/var/run/secrets/sts.amazonaws.com/serviceaccount/"
readOnly: true # readOnly: true
resources: # resources:
limits: # limits:
memory: 64Mi # memory: 64Mi
cpu: 100m # cpu: 100m
requests: # requests:
cpu: 25m # cpu: 25m
memory: 32Mi # memory: 32Mi
ports: # ports:
- containerPort: 9087 # - containerPort: 9087
name: webhook-port # name: webhook-port
livenessProbe: # livenessProbe:
httpGet: # httpGet:
path: /health # path: /health
port: webhook-port # port: webhook-port
initialDelaySeconds: 30 # initialDelaySeconds: 30
timeoutSeconds: 10 # timeoutSeconds: 10
readinessProbe: # readinessProbe:
httpGet: # httpGet:
path: /health # path: /health
port: webhook-port # port: webhook-port
initialDelaySeconds: 10 # initialDelaySeconds: 10
timeoutSeconds: 10 # timeoutSeconds: 10
volumes: #volumes:
- name: aws-token #- name: aws-token
projected: # projected:
sources: # sources:
- serviceAccountToken: # - serviceAccountToken:
path: token # path: token
expirationSeconds: 86400 # expirationSeconds: 86400
audience: "sts.amazonaws.com" # audience: "sts.amazonaws.com"
# Metrics adapter # Metrics adapter
prometheus-adapter: prometheus-adapter: