JJ Nilbodee
11/22/2022, 5:16 PMapiVersion: <http://secrets-store.csi.x-k8s.io/v1|secrets-store.csi.x-k8s.io/v1>
kind: SecretProviderClass
metadata:
name: airbyte-logs-secrets
spec:
provider: gcp
parameters:
secrets: |
- resourceName: "projects/<id>/secrets/data_airbyte-logs-secrets/versions/latest"
path: "secrets.json"
And in values.yaml I specify the logs section as follow:
gcs:
bucket: "<bucket-name>/logs"
# If you are mounting an existing secret to extraVolumes on scheduler, server and worker
# deployments, then set credentials to the path of the mounted JSON file
credentials: "secrets.json"
# If credentialsJson is set then credentials auto resolves (to /secrets/gcs-log-creds/gcp.json)
credentialsJson: ""
And also mount the volume to worker and server as follow:
extraVolumes:
- name: airbyte-logs-secrets
csi:
driver: <http://secrets-store.csi.k8s.io|secrets-store.csi.k8s.io>
readOnly: true
volumeAttributes:
secretProviderClass: airbyte-logs-secrets
However, I’m getting this erroruser
12/06/2022, 9:06 PM