mirror of
https://github.com/immich-app/devtools.git
synced 2026-09-30 21:27:48 +08:00
69 lines
1.8 KiB
YAML
69 lines
1.8 KiB
YAML
apiVersion: grafana.integreatly.org/v1beta1
|
|
kind: Grafana
|
|
metadata:
|
|
name: grafana
|
|
namespace: data
|
|
labels:
|
|
dashboards: "grafana"
|
|
spec:
|
|
config:
|
|
server:
|
|
root_url: https://grafana.data.immich.cloud/
|
|
database:
|
|
wal: "true"
|
|
auth.generic_oauth:
|
|
enabled: "true"
|
|
client_id: ${quote}${GRAFANA_OAUTH_CLIENT_ID}${quote}
|
|
client_secret: ''
|
|
use_pkce: "true"
|
|
scopes: openid email profile groups offline_access
|
|
auth_url: https://zitadel.internal.immich.cloud/oauth/v2/authorize
|
|
token_url: https://zitadel.internal.immich.cloud/oauth/v2/token
|
|
api_url: https://zitadel.internal.immich.cloud/oidc/v1/userinfo
|
|
role_attribute_path: role
|
|
allow_assign_grafana_admin: "true"
|
|
auto_login: "true"
|
|
users:
|
|
viewers_can_edit: "true"
|
|
persistentVolumeClaim:
|
|
spec:
|
|
accessModes:
|
|
- ReadWriteOnce
|
|
resources:
|
|
requests:
|
|
storage: 20Gi
|
|
deployment:
|
|
spec:
|
|
template:
|
|
metadata:
|
|
labels:
|
|
dashboards: grafana
|
|
spec:
|
|
securityContext:
|
|
fsGroup: 472
|
|
volumes:
|
|
- name: grafana-data
|
|
persistentVolumeClaim:
|
|
claimName: grafana-pvc
|
|
ingress:
|
|
metadata:
|
|
annotations:
|
|
cert-manager.io/cluster-issuer: letsencrypt-production
|
|
spec:
|
|
ingressClassName: nginx
|
|
rules:
|
|
- host: &host grafana.data.immich.cloud
|
|
http:
|
|
paths:
|
|
- backend:
|
|
service:
|
|
name: grafana-service
|
|
port:
|
|
number: 3000
|
|
path: /
|
|
pathType: Prefix
|
|
tls:
|
|
- hosts:
|
|
- *host
|
|
secretName: grafana-tls-secret
|