diff --git a/server/helm/templates/deployment.yaml b/server/helm/templates/deployment.yaml index 72fa944e..6ba12768 100644 --- a/server/helm/templates/deployment.yaml +++ b/server/helm/templates/deployment.yaml @@ -20,6 +20,15 @@ spec: labels: app: {{ .Release.Name }} spec: + serviceAccount: {{ .Release.Name }} + serviceAccountName: {{ .Release.Name }} + volumes: + - name: secrets-store-inline + csi: + driver: secrets-store.csi.k8s.io + readOnly: true + volumeAttributes: + secretProviderClass: {{ .Release.Name }} containers: - env: - name: DB_USERNAME @@ -118,10 +127,14 @@ spec: containerPort: {{ .Values.service.port }} protocol: TCP name: {{ .Release.Name }} + volumeMounts: + - name: secrets-store-inline + mountPath: "/mnt/secrets-store" + readOnly: true resources: limits: cpu: {{ .Values.resources.limits.cpu }} memory: {{ .Values.resources.limits.memory }} requests: cpu: {{ .Values.resources.requests.cpu }} - memory: {{ .Values.resources.requests.memory }} \ No newline at end of file + memory: {{ .Values.resources.requests.memory }}