3aa69e5eda
k8s 1.33 에서 Deployment/ReplicaSet 에 추가된 .status.terminatingReplicas 를
ArgoCD v2.14.5(k8s 라이브러리 0.31/0.32)가 몰라, 클러스터가 1.33 이상이면
ServerSideApply=true 인 Application 이 전부 아래 오류로 죽는다.
ComparisonError: failed to calculate diff: error calculating structured
merge diff: .status.terminatingReplicas: field not declared in schema
v3.5.1 은 k8s 라이브러리 0.36.1 을 써서 해소된다. dev 클러스터(1.35.7+rke2r1)
에서 실제 발생·해소를 확인했다.
- manifests/helm/argo-cd/10.4.0/ 추가 (chart_updater 로 생성)
- custom-values.yaml 을 실제 배포 기준(dipup argo-cd-values.yaml.tpl)에 맞춤:
kong → apisix, server.extraArgs(--insecure), configs.cm/rbac 추가
- configs.params.controller.resource.health.persist=true 지정 —
ArgoCD v3.0 부터 리소스 health 를 CR 에 저장하지 않는 것이 기본값인데,
dip-console-api 가 .status.resources[].health 를 읽는다
- CUSTOM-README.md 는 현재 차트 기준 배포 가이드로 재작성.
승계된 cert-manager 예시가 10.4.0 에 없는 구버전 스키마(hosts/tls 리스트)라
Ingress 가 생성되지 않는 상태였던 것도 함께 수정
- breaking_change_check: breaking=false (제거 26건이 전부 미사용 key)
- scripts/deploy-test/deploy-test-argo-cd.sh 신규
같은 클러스터에 두 번째 argo-cd 를 띄우려면 crds.install=false 가 필수다 —
CRD 3종이 클러스터 전역이고 운영 릴리스가 소유해 Helm 이 ownership 충돌로
거부한다. Ingress 도 항상 끈다(운영과 host 충돌).
검증: 워크로드 롤아웃 / health.persist / api 버전 / admin 로그인
- argo-cd/7.8.11/BUILD-README.md 에 `helm repo add argo ...` 추가
chart_version_detector 가 이 한 줄을 정규식으로 뽑아 업스트림 레포를 정하는데,
argo-cd 에는 없어서 신규 버전 자동 감지가 조용히 실패하고 있었다
(repo: null → latest_version: null). CLAUDE.md 의 "변경 금지" 규정도
실제 파싱 계약에 맞게 정정했다.
Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
38 lines
2.4 KiB
Plaintext
38 lines
2.4 KiB
Plaintext
{{- if .Values.notifications.logLevel }}
|
|
DEPRECATED option notifications.logLevel - Use `configs.params."notificationscontroller.log.level"`
|
|
{{- end }}
|
|
{{- if .Values.notifications.logFormat }}
|
|
DEPRECATED option notifications.logFormat - Use `configs.params."notificationscontroller.log.format"`
|
|
{{- end }}
|
|
{{- if .Values.dex.logLevel }}
|
|
DEPRECATED option dex.logLevel - Use `configs.params."dexserver.log.level"`
|
|
{{- end }}
|
|
{{- if .Values.dex.logFormat }}
|
|
DEPRECATED option dex.logFormat - Use `configs.params."dexserver.log.format"`
|
|
{{- end }}
|
|
In order to access the server UI you have the following options:
|
|
|
|
{{ $rootpath := default "" (index .Values "configs" "params" "server.rootpath") -}}
|
|
1. kubectl port-forward service/{{ include "argo-cd.fullname" . }}-server -n {{ include "argo-cd.namespace" . }} 8080:443
|
|
{{ if $rootpath }}
|
|
and then open the browser on http://localhost:8080/{{ $rootpath }} and accept the certificate
|
|
{{ else }}
|
|
and then open the browser on http://localhost:8080 and accept the certificate
|
|
{{ end }}
|
|
2. enable ingress in the values file `server.ingress.enabled` and either
|
|
- Add the annotation for ssl passthrough: https://argo-cd.readthedocs.io/en/stable/operator-manual/ingress/#option-1-ssl-passthrough
|
|
- Set the `configs.params."server.insecure"` in the values file and terminate SSL at your ingress: https://argo-cd.readthedocs.io/en/stable/operator-manual/ingress/#option-2-multiple-ingress-objects-and-hosts
|
|
|
|
|
|
{{ if eq (toString (index .Values.configs.cm "admin.enabled")) "true" -}}
|
|
After reaching the UI the first time you can login with username: admin and the random password generated during the installation. You can find the password by running:
|
|
|
|
kubectl -n {{ include "argo-cd.namespace" . }} get secret argocd-initial-admin-secret -o jsonpath="{.data.password}" | base64 -d
|
|
|
|
(You should delete the initial secret afterwards as suggested by the Getting Started Guide: https://argo-cd.readthedocs.io/en/stable/getting_started/#4-login-using-the-cli)
|
|
{{ else if or (index .Values.configs.cm "dex.config") (index .Values.configs.cm "oidc.config") -}}
|
|
After reaching the UI the first time you can login using Dex or OIDC.
|
|
{{ else -}}
|
|
After reaching the UI the first time you cannot login with username and password since you've disabled it. You should enable admin back or configure Dex via `configs.cm.dex.config` or OIDC via `configs.cm.oidc.config`.
|
|
{{ end -}}
|