feat(code-server): enable persistence and disable password (#1483)
* feat(code-server): enable persistence and allow both password and no-password setups * more fixes * test something * allow privilage escalation * reverse * just dont use password for codeserver (folks should use authelia) * fix securityContext * lint * rorfs
This commit is contained in:
@@ -21,7 +21,7 @@ name: code-server
|
|||||||
sources:
|
sources:
|
||||||
- https://github.com/cdr/code-server
|
- https://github.com/cdr/code-server
|
||||||
type: application
|
type: application
|
||||||
version: 2.0.20
|
version: 2.1.0
|
||||||
annotations:
|
annotations:
|
||||||
truecharts.org/catagories: |
|
truecharts.org/catagories: |
|
||||||
- media
|
- media
|
||||||
|
|||||||
@@ -183,9 +183,9 @@ questions:
|
|||||||
schema:
|
schema:
|
||||||
type: dict
|
type: dict
|
||||||
attrs:
|
attrs:
|
||||||
- variable: data
|
- variable: config
|
||||||
label: "App Data Storage"
|
label: "App Config Storage"
|
||||||
description: "Stores the Application Data."
|
description: "Stores the Application Config."
|
||||||
schema:
|
schema:
|
||||||
type: dict
|
type: dict
|
||||||
attrs:
|
attrs:
|
||||||
@@ -224,7 +224,7 @@ questions:
|
|||||||
description: "Path inside the container the storage is mounted"
|
description: "Path inside the container the storage is mounted"
|
||||||
schema:
|
schema:
|
||||||
type: string
|
type: string
|
||||||
default: "/home/coder"
|
default: "/config"
|
||||||
hidden: true
|
hidden: true
|
||||||
valid_chars: '^\/([a-zA-Z0-9._-]+(\s?[a-zA-Z0-9._-]+|\/?))+$'
|
valid_chars: '^\/([a-zA-Z0-9._-]+(\s?[a-zA-Z0-9._-]+|\/?))+$'
|
||||||
- variable: medium
|
- variable: medium
|
||||||
|
|||||||
@@ -3,22 +3,18 @@ image:
|
|||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
tag: v3.12.0@sha256:2853a8bdd8eed9c09bcd4b100b9d4be20c42a307b9d1cbae1a204276e948f9ce
|
tag: v3.12.0@sha256:2853a8bdd8eed9c09bcd4b100b9d4be20c42a307b9d1cbae1a204276e948f9ce
|
||||||
|
|
||||||
# PASSWORD: password
|
args:
|
||||||
# SUDO_PASSWORD: password
|
- --user-data-dir
|
||||||
# HASHED_PASSWORD
|
- "/config/.vscode"
|
||||||
|
- --auth
|
||||||
|
- none
|
||||||
|
|
||||||
env:
|
env: {}
|
||||||
PUID: 568
|
|
||||||
DOCKER_USER: "$USER"
|
|
||||||
# PROXY_DOMAIN: code-server.my.domain
|
# PROXY_DOMAIN: code-server.my.domain
|
||||||
|
|
||||||
securityContext:
|
securityContext:
|
||||||
readOnlyRootFilesystem: false
|
readOnlyRootFilesystem: false
|
||||||
runAsNonRoot: false
|
allowPrivilegeEscalation: true
|
||||||
|
|
||||||
podSecurityContext:
|
|
||||||
runAsUser: 0
|
|
||||||
runAsGroup: 0
|
|
||||||
|
|
||||||
service:
|
service:
|
||||||
main:
|
main:
|
||||||
@@ -28,8 +24,6 @@ service:
|
|||||||
targetPort: 8080
|
targetPort: 8080
|
||||||
|
|
||||||
persistence:
|
persistence:
|
||||||
data:
|
config:
|
||||||
enabled: true
|
|
||||||
mountPath: "/home/coder"
|
|
||||||
varrun:
|
|
||||||
enabled: true
|
enabled: true
|
||||||
|
mountPath: "/config"
|
||||||
|
|||||||
Reference in New Issue
Block a user