|
34 | 34 | name: openldap |
35 | 35 | - containerPort: 636 |
36 | 36 | name: openldapssl |
37 | | - env: |
38 | | - - name: LDAP_LOG_LEVEL |
39 | | - value: "256" |
40 | | - - name: LDAP_ORGANISATION |
41 | | - value: "Example Inc." |
42 | | - - name: LDAP_DOMAIN |
43 | | - value: "example.org" |
44 | | - - name: LDAP_ADMIN_PASSWORD |
45 | | - value: "admin" |
46 | | - - name: LDAP_CONFIG_PASSWORD |
47 | | - value: "config" |
48 | | - - name: LDAP_READONLY_USER |
49 | | - value: "false" |
50 | | - - name: LDAP_READONLY_USER_USERNAME |
51 | | - value: "readonly" |
52 | | - - name: LDAP_READONLY_USER_PASSWORD |
53 | | - value: "readonly" |
54 | | - - name: LDAP_RFC2307BIS_SCHEMA |
55 | | - value: "false" |
56 | | - - name: LDAP_BACKEND |
57 | | - value: "mdb" |
58 | | - - name: LDAP_TLS |
59 | | - value: "true" |
60 | | - - name: LDAP_TLS_CRT_FILENAME |
61 | | - value: "ldap.crt" |
62 | | - - name: LDAP_TLS_KEY_FILENAME |
63 | | - value: "ldap.key" |
64 | | - - name: LDAP_TLS_DH_PARAM_FILENAME |
65 | | - value: "dhparam.pem" |
66 | | - - name: LDAP_TLS_CA_CRT_FILENAME |
67 | | - value: "ca.crt" |
68 | | - - name: LDAP_TLS_ENFORCE |
69 | | - value: "false" |
70 | | - - name: LDAP_TLS_CIPHER_SUITE |
71 | | - value: "SECURE256:+SECURE128:-VERS-TLS-ALL:+VERS-TLS1.2:-RSA:-DHE-DSS:-CAMELLIA-128-CBC:-CAMELLIA-256-CBC" |
72 | | - - name: LDAP_TLS_VERIFY_CLIENT |
73 | | - value: "demand" |
74 | | - - name: LDAP_REPLICATION |
75 | | - value: "false" |
76 | | - - name: LDAP_REPLICATION_CONFIG_SYNCPROV |
77 | | - value: "binddn=\"cn=admin,cn=config\" bindmethod=simple credentials=$LDAP_CONFIG_PASSWORD searchbase=\"cn=config\" type=refreshAndPersist retry=\"60 +\" timeout=1 starttls=critical" |
78 | | - - name: LDAP_REPLICATION_DB_SYNCPROV |
79 | | - value: "binddn=\"cn=admin,$LDAP_BASE_DN\" bindmethod=simple credentials=$LDAP_ADMIN_PASSWORD searchbase=\"$LDAP_BASE_DN\" type=refreshAndPersist interval=00:00:00:10 retry=\"60 +\" timeout=1 starttls=critical" |
80 | | - - name: LDAP_REPLICATION_HOSTS |
81 | | - value: "#PYTHON2BASH:['ldap://ldap-one-service', 'ldap://ldap-two-service']" |
82 | | - - name: KEEP_EXISTING_CONFIG |
83 | | - value: "false" |
84 | | - - name: LDAP_REMOVE_CONFIG_AFTER_SETUP |
85 | | - value: "true" |
86 | | - - name: LDAP_SSL_HELPER_PREFIX |
87 | | - value: "ldap" |
88 | 37 | volumes: |
89 | 38 | - name: ldap-data |
90 | 39 | hostPath: |
|
0 commit comments