Skip to content

Commit 97e5e82

Browse files
committed
🔒 Add external-secret
1 parent d13267e commit 97e5e82

File tree

2 files changed

+4
-3
lines changed

2 files changed

+4
-3
lines changed

apps/karpenter/base/kustomization.yaml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ helmCharts:
1313
dnsPolicy: Default
1414
serviceAccount:
1515
annotations:
16-
eks.amazonaws.com/role-arn: arn:aws:iam::239468932737:role/KarpenterController-20240806113626522400000006
16+
eks.amazonaws.com/role-arn: arn:aws:iam::239468932737:role/vex-dev-usea1-eks-karpenter-controller
1717
# Failed to watch *v1.Lease: failed to list *v1.Lease: leases.coordination.k8s.io is forbidden: User "system:serviceaccount:karpenter:karpenter" cannot list resource "leases" in API group "coordination.k8s.io" in the namespace "kube-node-lease"
1818
additionalClusterRoleRules:
1919
- apiGroups: ["coordination.k8s.io"]
@@ -43,6 +43,7 @@ helmCharts:
4343
settings:
4444
clusterName: vex-dev-usea1-eks
4545
clusterEndpoint: https://DDC166ECE3AF805DA19B0CC5502AF3C0.gr7.us-east-1.eks.amazonaws.com
46-
defaultInstanceProfile: Karpenter-vex-dev-usea1-eks-20240806114336084400000001
46+
defaultInstanceProfile: vex-dev-usea1-eks-karpenter-node-role
47+
interruptionQueue: vex-dev-usea1-eks-karpenter
4748
featureGates:
4849
spotToSpotConsolidation: true

apps/karpenter/overlays/ops/ec2nodeclass.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ spec:
1616
volumeSize: 50Gi
1717
volumeType: gp3
1818
detailedMonitoring: true
19-
role: Karpenter-vex-dev-usea1-eks-20240806113626522400000005 #KarpenterNodeRole-vex-dev-usea1-eks
19+
role: vex-dev-usea1-eks-karpenter-node-role
2020
securityGroupSelectorTerms:
2121
- tags:
2222
karpenter.sh/discovery: vex-dev-usea1-eks

0 commit comments

Comments
 (0)