Skip to content

Commit c9da5af

Browse files
authored
ROX-34341: use rotated ARO cluster manager credentials without funky overrides (#1808)
1 parent 5cdf077 commit c9da5af

2 files changed

Lines changed: 21 additions & 21 deletions

File tree

chart/infra-server/static/workflow-openshift-aro.yaml

Lines changed: 16 additions & 16 deletions
Original file line numberDiff line numberDiff line change
@@ -49,26 +49,26 @@ spec:
4949
- create
5050
- '{{ "{{" }}workflow.parameters.name{{ "}}" }}'
5151
env:
52-
- name: AZURE_SUBSCRIPTION_ID
52+
- name: AZURE_SP_TENANT_ID
5353
valueFrom:
5454
secretKeyRef:
5555
name: aro-cluster-manager
56-
key: AZURE_SUBSCRIPTION_ID
57-
- name: AZURE_SP_CLIENT_ID
56+
key: AZURE_SP_TENANT_ID
57+
- name: AZURE_SP_ARO_PASSWORD
5858
valueFrom:
5959
secretKeyRef:
6060
name: aro-cluster-manager
61-
key: AZURE_SP_CLIENT_ID
62-
- name: AZURE_SP_TENANT_ID
61+
key: AZURE_SP_ARO_PASSWORD
62+
- name: AZURE_SP_ARO_USERNAME
6363
valueFrom:
6464
secretKeyRef:
6565
name: aro-cluster-manager
66-
key: AZURE_SP_TENANT_ID
67-
- name: AZURE_SP_SECRET_VAL
66+
key: AZURE_SP_ARO_USERNAME
67+
- name: AZURE_SUBSCRIPTION_ID
6868
valueFrom:
6969
secretKeyRef:
7070
name: aro-cluster-manager
71-
key: AZURE_SP_SECRET_VAL
71+
key: AZURE_SUBSCRIPTION_ID
7272
- name: REDHAT_PULL_SECRET_BASE64
7373
valueFrom:
7474
secretKeyRef:
@@ -138,26 +138,26 @@ spec:
138138
- destroy
139139
- '{{ "{{" }}workflow.parameters.name{{ "}}" }}'
140140
env:
141-
- name: AZURE_SUBSCRIPTION_ID
141+
- name: AZURE_SP_TENANT_ID
142142
valueFrom:
143143
secretKeyRef:
144144
name: aro-cluster-manager
145-
key: AZURE_SUBSCRIPTION_ID
146-
- name: AZURE_SP_CLIENT_ID
145+
key: AZURE_SP_TENANT_ID
146+
- name: AZURE_SP_ARO_PASSWORD
147147
valueFrom:
148148
secretKeyRef:
149149
name: aro-cluster-manager
150-
key: AZURE_SP_CLIENT_ID
151-
- name: AZURE_SP_TENANT_ID
150+
key: AZURE_SP_ARO_PASSWORD
151+
- name: AZURE_SP_ARO_USERNAME
152152
valueFrom:
153153
secretKeyRef:
154154
name: aro-cluster-manager
155-
key: AZURE_SP_TENANT_ID
156-
- name: AZURE_SP_SECRET_VAL
155+
key: AZURE_SP_ARO_USERNAME
156+
- name: AZURE_SUBSCRIPTION_ID
157157
valueFrom:
158158
secretKeyRef:
159159
name: aro-cluster-manager
160-
key: AZURE_SP_SECRET_VAL
160+
key: AZURE_SUBSCRIPTION_ID
161161
- name: REDHAT_PULL_SECRET_BASE64
162162
valueFrom:
163163
secretKeyRef:

chart/infra-server/templates/aro/secrets.yaml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -6,13 +6,13 @@ metadata:
66
name: aro-cluster-manager
77
namespace: default
88
data:
9-
AZURE_SUBSCRIPTION_ID: |-
10-
{{ .Values.aroClusterManager.azureSubscriptionId | b64enc }}
11-
AZURE_SP_CLIENT_ID: |-
9+
AZURE_SP_ARO_PASSWORD: |-
10+
{{ .Values.aroClusterManager.azureSPSecretVal | b64enc }}
11+
AZURE_SP_ARO_USERNAME: |-
1212
{{ .Values.aroClusterManager.azureSPClientId | b64enc }}
1313
AZURE_SP_TENANT_ID: |-
1414
{{ .Values.aroClusterManager.azureSPTenantId | b64enc }}
15-
AZURE_SP_SECRET_VAL: |-
16-
{{ .Values.aroClusterManager.azureSPSecretVal | b64enc }}
15+
AZURE_SUBSCRIPTION_ID: |-
16+
{{ .Values.aroClusterManager.azureSubscriptionId | b64enc }}
1717
REDHAT_PULL_SECRET_BASE64: |-
1818
{{ .Values.aroClusterManager.redHatPullSecretBase64 | b64enc }}

0 commit comments

Comments
 (0)