fix: Use Doppler-backed Rancher bootstrap password
All checks were successful
Deploy Cluster / Terraform (push) Successful in 49s
Deploy Cluster / Ansible (push) Successful in 5m43s

This commit is contained in:
2026-03-28 22:51:38 +00:00
parent 0f4f0b09fb
commit a15fa50302
4 changed files with 28 additions and 0 deletions

View File

@@ -0,0 +1,21 @@
apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: rancher-bootstrap-password
namespace: flux-system
spec:
refreshInterval: 1h
secretStoreRef:
name: doppler-hetznerterra
kind: ClusterSecretStore
target:
name: rancher-bootstrap-password
creationPolicy: Owner
template:
type: Opaque
data:
bootstrapPassword: "{{ .RANCHER_BOOTSTRAP_PASSWORD }}"
data:
- secretKey: RANCHER_BOOTSTRAP_PASSWORD
remoteRef:
key: RANCHER_BOOTSTRAP_PASSWORD