| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160 |
- apiVersion: apps/v1
- kind: StatefulSet
- metadata:
- name: {{ include "emqx.fullname" . }}
- namespace: {{ .Release.Namespace }}
- labels:
- app.kubernetes.io/name: {{ include "emqx.name" . }}
- helm.sh/chart: {{ include "emqx.chart" . }}
- app.kubernetes.io/instance: {{ .Release.Name }}
- app.kubernetes.io/managed-by: {{ .Release.Service }}
- spec:
- serviceName: {{ include "emqx.fullname" . }}-headless
- podManagementPolicy: {{ .Values.podManagementPolicy }}
- {{- if and .Values.persistence.enabled (not .Values.persistence.existingClaim) }}
- volumeClaimTemplates:
- - metadata:
- name: emqx-data
- namespace: {{ .Release.Namespace }}
- labels:
- app.kubernetes.io/name: {{ include "emqx.name" . }}
- helm.sh/chart: {{ include "emqx.chart" . }}
- app.kubernetes.io/instance: {{ .Release.Name }}
- app.kubernetes.io/managed-by: {{ .Release.Service }}
- annotations:
- {{- if .Values.persistence.storageClass }}
- volume.beta.kubernetes.io/storage-class: {{ .Values.persistence.storageClass | quote }}
- {{- else }}
- volume.alpha.kubernetes.io/storage-class: default
- {{- end }}
- spec:
- accessModes:
- - {{ .Values.persistence.accessMode | quote }}
- resources:
- requests:
- storage: {{ .Values.persistence.size | quote }}
- {{- end }}
- updateStrategy:
- type: RollingUpdate
- replicas: {{ .Values.replicaCount }}
- selector:
- matchLabels:
- app.kubernetes.io/name: {{ include "emqx.name" . }}
- app.kubernetes.io/instance: {{ .Release.Name }}
- template:
- metadata:
- labels:
- app: {{ include "emqx.name" . }}
- version: {{ .Chart.AppVersion }}
- app.kubernetes.io/name: {{ include "emqx.name" . }}
- app.kubernetes.io/instance: {{ .Release.Name }}
- {{- if .Values.recreatePods }}
- annotations:
- checksum/config: {{ include (print $.Template.BasePath "/configmap.yaml") . | sha256sum | quote }}
- {{- end }}
- spec:
- volumes:
- {{- if not .Values.persistence.enabled }}
- - name: emqx-data
- emptyDir: {}
- {{- else if .Values.persistence.existingClaim }}
- - name: emqx-data
- persistentVolumeClaim:
- {{- with .Values.persistence.existingClaim }}
- claimName: {{ tpl . $ }}
- {{- end }}
- {{- end }}
- {{- if .Values.emqxLicneseSecretName }}
- - name: emqx-license
- secret:
- secretName: {{ .Values.emqxLicneseSecretName }}
- {{- end }}
- serviceAccountName: {{ include "emqx.fullname" . }}
- {{- if .Values.podSecurityContext.enabled }}
- securityContext: {{- omit .Values.podSecurityContext "enabled" | toYaml | nindent 8 }}
- {{- end }}
- {{- if .Values.initContainers }}
- initContainers:
- {{ toYaml .Values.initContainers | indent 8 }}
- {{- end }}
- {{- if .Values.image.pullSecrets }}
- imagePullSecrets:
- {{- range .Values.image.pullSecrets }}
- - name: {{ . }}
- {{- end }}
- {{- end }}
- containers:
- - name: emqx
- image: "{{ .Values.image.repository }}:{{ .Chart.AppVersion }}"
- imagePullPolicy: {{ .Values.image.pullPolicy }}
- {{- if .Values.containerSecurityContext.enabled }}
- securityContext: {{- omit .Values.containerSecurityContext "enabled" | toYaml | nindent 12 }}
- {{- end }}
- ports:
- - name: mqtt
- containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__TCP__DEFAULT | default 1883 }}
- - name: mqttssl
- containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__SSL__DEFAULT | default 8883 }}
- - name: ws
- containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__WS__DEFAULT | default 8083 }}
- - name: wss
- containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__WSS__DEFAULT | default 8084 }}
- - name: dashboard
- containerPort: {{ .Values.emqxConfig.EMQX_DASHBOARD__LISTENER__HTTP | default 18083 }}
- {{- if not (empty .Values.emqxConfig.EMQX_LISTENERS__TCP__DEFAULT) }}
- - name: internalmqtt
- containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__TCP__DEFAULT }}
- {{- end }}
- {{- if not (empty .Values.emqxConfig.EMQX_DASHBOARD__LISTENER__HTTPS) }}
- - name: dashboardtls
- containerPort: {{ .Values.emqxConfig.EMQX_DASHBOARD__LISTENER__HTTPS }}
- {{- end }}
- - name: ekka
- containerPort: 4370
- envFrom:
- - configMapRef:
- name: {{ include "emqx.fullname" . }}-env
- {{- if .Values.envFromSecret }}
- - secretRef:
- name: {{ .Values.envFromSecret }}
- {{- end }}
- env:
- - name: EMQX_NAME
- value: {{ .Release.Name }}
- - name: EMQX_CLUSTER__K8S__APP_NAME
- value: {{ .Release.Name }}
- - name: EMQX_CLUSTER__DISCOVERY_STRATEGY
- value: k8s
- - name: EMQX_CLUSTER__K8S__SERVICE_NAME
- value: {{ include "emqx.fullname" . }}-headless
- - name: EMQX_CLUSTER__K8S__NAMESPACE
- value: {{ .Release.Namespace }}
- resources:
- {{ toYaml .Values.resources | indent 12 }}
- volumeMounts:
- - name: emqx-data
- mountPath: "/opt/emqx/data"
- {{ if .Values.emqxLicneseSecretName }}
- - name: emqx-license
- mountPath: "/opt/emqx/etc/emqx.lic"
- subPath: "emqx.lic"
- readOnly: true
- {{ end }}
- readinessProbe:
- httpGet:
- path: /api/v5/status
- port: {{ .Values.emqxConfig.EMQX_DASHBOARD__LISTENER__HTTP | default 18083 }}
- initialDelaySeconds: 5
- periodSeconds: 5
- {{- with .Values.nodeSelector }}
- nodeSelector:
- {{- toYaml . | nindent 8 }}
- {{- end }}
- {{- with .Values.affinity }}
- affinity:
- {{- toYaml . | nindent 8 }}
- {{- end }}
- {{- with .Values.tolerations }}
- tolerations:
- {{- toYaml . | nindent 8 }}
- {{- end }}
|