#helm (2019-01)

Archive: https://archive.sweetops.com/helm/

2019-01-07

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
09:04:00 PM

@Erik Osterman (Cloud Posse) has joined the channel

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
Add istio gateway template by yciabaud · Pull Request #183 · cloudposse/charts

Hi there I made a little addition to your project, I made a PR from it it you are interested in it too. This adds the ability to create a istio gateway crd to expose istio services in an ingress ga…

Yoann avatar
Yoann
09:04:17 PM

@Yoann has joined the channel

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

We’ve added some comments. We can merge as soon as it’s updated.

loren avatar
loren
09:05:22 PM

@loren has joined the channel

Igor Rodionov avatar
Igor Rodionov
09:05:22 PM

@Igor Rodionov has joined the channel

Jan avatar
Jan
09:05:22 PM

@Jan has joined the channel

jdolitsky avatar
jdolitsky
09:05:22 PM

@jdolitsky has joined the channel

Daren avatar
Daren
09:05:22 PM

@Daren has joined the channel

michal.matyjek avatar
michal.matyjek
09:05:22 PM

@michal.matyjek has joined the channel

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)
09:07:44 PM

@Andriy Knysh (Cloud Posse) has joined the channel

conrad avatar
conrad
09:24:51 PM

@conrad has joined the channel

davidvasandani avatar
davidvasandani
03:02:02 AM

@davidvasandani has joined the channel

2019-01-10

sjsg344 avatar
sjsg344
03:23:55 PM

@sjsg344 has joined the channel

sjsg344 avatar
sjsg344

whatever happened to your guys openvpn helm chart? looks like the dockerhub image is missing and the github-pam authentication module does not exist

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)

@Igor Rodionov ^ do you have more info on that?

sjsg344 avatar
sjsg344

i was just messing around trying to take some inspiration from it for a OIDC enabled openvpn authentication helm repo

Igor Rodionov avatar
Igor Rodionov

Good question. We did not install it for quit long time

Igor Rodionov avatar
Igor Rodionov

I can try to install it on weekend

sjsg344 avatar
sjsg344

makes sense

sjsg344 avatar
sjsg344

no worries

Igor Rodionov avatar
Igor Rodionov

Ok

sjsg344 avatar
sjsg344

what do you guys use now to login to an internal subnet? something else?

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)

for k8s or EC2?

sjsg344 avatar
sjsg344

well for my own project i wanted to deploy something to k8s that would allow me to connect to both internal k8s services and ec2 subnets from routes

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)
cloudposse/charts

The “Cloud Posse” Distribution of Kubernetes Applications - cloudposse/charts

Jan avatar
cloudposse/terraform-aws-kops-vpc-peering

Terraform module to create a peering connection between a backing services VPC and a VPC created by Kops - cloudposse/terraform-aws-kops-vpc-peering

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)
cloudposse/helmfiles

Comprehensive Distribution of Helmfiles. Works with helmfile.d - cloudposse/helmfiles

Jan avatar

from routes as in onsite in your office?

Jan avatar

or k8s internal to vpc internal

sjsg344 avatar
sjsg344

as in anywhere. if it was my office i could just do a site-to-site. portal is interesting and ive seen similar things with zerotrust / trusted proxies but I am looking to connect to more than just web services

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)
cloudposse/bastion

Secure Bastion implemented as Docker Container running Alpine Linux with Google Authenticator & DUO MFA support - cloudposse/bastion

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)
cloudposse/terraform-aws-ec2-bastion-server

Terraform Module to define a generic Bastion host with parameterized user_data - cloudposse/terraform-aws-ec2-bastion-server

sjsg344 avatar
sjsg344

interesting i guess it could be solved with just forwarding from a bastion host

sjsg344 avatar
sjsg344

maybe i am trying to solve too many things at once

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)

yes, you can deploy bastion and then ssh to any of the nodes

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)

that’s what kops does as well (it installs a bastion)

sjsg344 avatar
sjsg344

yeah i was hoping to solve it with openvpn and not ssh but i suppose i can just develop my own solution and see if it works well enough for me

Jan avatar

otherwise I have a aws customer gateway vpn I built for use with geodessic that peers with a network device/router

1
Jan avatar

need to clean that up and contribute it

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)

please @Jan

Jan avatar

I will mate

Andriy Knysh (Cloud Posse) avatar
Andriy Knysh (Cloud Posse)

we need that module too

Jan avatar

just under time pressure currently

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

@Yoann just a few comments here: https://github.com/cloudposse/charts/pull/183

Add istio gateway template by yciabaud · Pull Request #183 · cloudposse/charts

Hi there I made a little addition to your project, I made a PR from it it you are interested in it too. This adds the ability to create a istio gateway crd to expose istio services in an ingress ga…

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

And we’re good to merge

Yoann avatar

Yes will have a look

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

ping @Igor Rodionov to get it reviewed

2019-01-12

tolstikov avatar
tolstikov
05:36:16 PM

@tolstikov has joined the channel

2019-01-16

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
aslafy-z/helm-git

Helm plugin to get charts from Git, even if non-packaged. - aslafy-z/helm-git

1
zadkiel avatar
zadkiel
07:36:45 AM

@zadkiel has joined the channel

2019-01-19

Daren avatar

I just came across this today https://github.com/helm/hub/blob/master/README.md. Instead of contributing charts directly to helm/stable and blocking on maintainer approval, you can get your public repo added to the official list

helm/hub

For the distributed charts search at hub.helm.sh (under development) - helm/hub

1
Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

Whoot! Will check this out on Monday

Daren avatar

Tuesday

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

Looks interesting

2019-01-21

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
ContainerSolutions/helm-monitor

Monitor K8S Helm release, rollback on metrics behavior (Prometheus, ElasticSearch, Sentry) - ContainerSolutions/helm-monitor

1
mumoshu avatar
mumoshu
01:40:52 AM

@mumoshu has joined the channel

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
01:40:55 AM
Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

this is amazing!

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

@dustinvb @Dan Garfield have you seen this?

dustinvb avatar
dustinvb
01:41:19 AM

@dustinvb has joined the channel

Dan Garfield avatar
Dan Garfield
01:41:19 AM

@Dan Garfield has joined the channel

2019-01-24

coreygale avatar
coreygale
04:15:06 AM

@coreygale has joined the channel

2019-01-27

aqua avatar
aqua
08:40:09 AM

@aqua has joined the channel

2019-01-28

awatson avatar
awatson
05:06:49 PM

@awatson has joined the channel

2019-01-30

krueger.andre avatar
krueger.andre

Hi, i want to use build-harness for my build stuff. Is there any way to decouple helm from docker builds? For my use case i want to build a helm chart without a image dependency. Correct me if i am wrong, but as far as i understand the image version of a docker should be the same as the version of a chart? https://github.com/cloudposse/build-harness/blob/master/modules/helm/Makefile.build#L80 . Would it make sense to get the option to skip this part?

cloudposse/build-harness

Collection of Makefiles to facilitate building Golang projects, Dockerfiles, Helm charts, and more - cloudposse/build-harness

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

I think we would be okay with that

cloudposse/build-harness

Collection of Makefiles to facilitate building Golang projects, Dockerfiles, Helm charts, and more - cloudposse/build-harness

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

@Igor Rodionov is the subject matter expert

Igor Rodionov avatar
Igor Rodionov

@krueger.andre you got it. Currently we use the same version. Currently there is no way to separate it. But if you will provide PR were IMAGE_VERSION would be defined with default value from TARGET_VERSION then we can merge it.

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

One thing: we barely build helm charts any more

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

we use monochart for 99% of apps we deploy

krueger.andre avatar
krueger.andre

nice, no i have not seen that. good generic approach. i will give it a try, but one question, when i use monochart for app, it makes no sense to declare a dependency to other non-monochart right? So each monchart is it’s own helm release?

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

Soooo we haven’t need to do this yet, but we have considered creating umbrella charts that include N or more monocharts

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

Since we use helmfile, we basically never need to mess with umbrella charts and requirements

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
cloudposse/helmfiles

Comprehensive Distribution of Helmfiles. Works with helmfile.d - cloudposse/helmfiles

krueger.andre avatar
krueger.andre

nice, i will check it out. thx for the quick response btw.! great support

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

at your service!

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

have you seen that yet?

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)

(just say’n… since it might reduce the need to build charts at all)

2019-01-31

Erik Osterman (Cloud Posse) avatar
Erik Osterman (Cloud Posse)
cloudposse/charts

The “Cloud Posse” Distribution of Kubernetes Applications - cloudposse/charts

    keyboard_arrow_up