diff --git a/drone-runner/deployment.yaml b/drone-runner/deployment.yaml index ab4d8c3..8330d5f 100644 --- a/drone-runner/deployment.yaml +++ b/drone-runner/deployment.yaml @@ -1,6 +1,7 @@ apiVersion: apps/v1 kind: Deployment metadata: + namespace: drone name: drone labels: app.kubernetes.io/name: drone @@ -15,14 +16,14 @@ spec: app.kubernetes.io/name: drone spec: containers: - - name: runner - image: drone/drone-runner-kube:latest - ports: - - containerPort: 3000 - env: - - name: DRONE_RPC_HOST - value: dci.osa.cubetiqs.com - - name: DRONE_RPC_PROTO - value: https - - name: DRONE_RPC_SECRET - value: super-duper-secret + - name: runner + image: drone/drone-runner-kube:latest + ports: + - containerPort: 3000 + env: + - name: DRONE_RPC_HOST + value: dci.cubetiqs.com + - name: DRONE_RPC_PROTO + value: https + - name: DRONE_RPC_SECRET + value: 1a6c2d8b6fac4bf9351e5149c39e7fc4 diff --git a/drone-runner/role.yaml b/drone-runner/role.yaml index 7b9f0ad..cbd8173 100644 --- a/drone-runner/role.yaml +++ b/drone-runner/role.yaml @@ -1,40 +1,40 @@ kind: Role apiVersion: rbac.authorization.k8s.io/v1 metadata: - namespace: default + namespace: drone name: drone rules: -- apiGroups: - - "" - resources: - - secrets - verbs: - - create - - delete -- apiGroups: - - "" - resources: - - pods - - pods/log - verbs: - - get - - create - - delete - - list - - watch - - update + - apiGroups: + - "" + resources: + - secrets + verbs: + - create + - delete + - apiGroups: + - "" + resources: + - pods + - pods/log + verbs: + - get + - create + - delete + - list + - watch + - update --- kind: RoleBinding apiVersion: rbac.authorization.k8s.io/v1 metadata: name: drone - namespace: default + namespace: drone subjects: -- kind: ServiceAccount - name: default - namespace: default + - kind: ServiceAccount + name: default + namespace: drone roleRef: kind: Role name: drone - apiGroup: rbac.authorization.k8s.io \ No newline at end of file + apiGroup: rbac.authorization.k8s.io