From 2988a6d3b4b02af9077e1b52ee04fcb856e2b04d Mon Sep 17 00:00:00 2001 From: nicholaskuechler Date: Tue, 25 Jun 2024 10:14:33 -0500 Subject: [PATCH] Switch secrets gen to use sealed secrets --- scripts/easy-secrets-gen.sh | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/scripts/easy-secrets-gen.sh b/scripts/easy-secrets-gen.sh index f12192fae..fd84a24b9 100755 --- a/scripts/easy-secrets-gen.sh +++ b/scripts/easy-secrets-gen.sh @@ -206,14 +206,14 @@ kubectl --namespace openstack \ --type Opaque \ --from-literal=username="nova" \ --from-literal=password="${NOVA_RABBITMQ_PASSWORD}" \ - --dry-run=client -o yaml > "${DEST_DIR}/secret-nova-rabbitmq-password.yaml" + --dry-run=client -o yaml | secret-seal-stdin "${DEST_DIR}/secret-nova-rabbitmq-password.yaml" [ ! -f "${DEST_DIR}/secret-nova-db-password.yaml" ] && \ kubectl --namespace openstack \ create secret generic nova-db-password \ --type Opaque \ --from-literal=password="${NOVA_DB_PASSWORD}" \ - --dry-run=client -o yaml > "${DEST_DIR}/secret-nova-db-password.yaml" + --dry-run=client -o yaml | secret-seal-stdin "${DEST_DIR}/secret-nova-db-password.yaml" [ ! -f "${DEST_DIR}/secret-nova-keystone-password.yaml" ] && \ kubectl --namespace openstack \ @@ -221,7 +221,7 @@ kubectl --namespace openstack \ --type Opaque \ --from-literal=username="nova" \ --from-literal=password="${NOVA_KEYSTONE_PASSWORD}" \ - --dry-run=client -o yaml > "${DEST_DIR}/secret-nova-keystone-password.yaml" + --dry-run=client -o yaml | secret-seal-stdin "${DEST_DIR}/secret-nova-keystone-password.yaml" if [ "x${DO_TMPL_VALUES}" = "xy" ]; then [ ! -f "${DEST_DIR}/secret-openstack.yaml" ] && \