externalSecrets
ExternalSecret objects to be generated by the chart. Each key is an ExternalSecret identifier.
object
Keys are identifiers for externalSecrets instances.
externalSecrets: main: enabled: true # ... configuration
secondary: enabled: true # ... configurationInstance Properties
Section titled “Instance Properties”Available properties:
| Property | Type | Required | Default | Description |
|---|---|---|---|---|
annotations | object / null | No | - | Annotations to set on the item. |
data | array | No | - | Mappings between Kubernetes Secret keys and provider data… |
dataFrom | array | No | - | Provider data sources whose values are merged into the ta… |
enabled | boolean | No | true | Set to false to disable the ExternalSecret. |
forceRename | string | No | - | Override the default resource name. Mutually exclusive wi… |
labels | object / null | No | - | Labels to set on the item. |
prefix | string | No | “ | Prefix to prepend to the resource name. Mutually exclusiv… |
refreshInterval | string | No | - | Amount of time before values are read again from the Secr… |
refreshPolicy | string | No | - | Policy controlling when the ExternalSecret is refreshed. |
secretStoreRef | object | No | - | SecretStore or ClusterSecretStore to fetch secret data fr… |
suffix | string | No | - | Suffix to append to the resource name. Defaults to the re… |
syncWindows | object | No | - | Time windows restricting when periodic refreshes may occu… |
target | object | No | - | Target Secret configuration. For more details, see https:… |
Property Details
Section titled “Property Details”Mappings between Kubernetes Secret keys and provider data. See https://external-secrets.io/latest/api/externalsecret/ for details.
dataFrom
Section titled “dataFrom”Provider data sources whose values are merged into the target Secret. See https://external-secrets.io/latest/api/externalsecret/ for details.
forceRename
Section titled “forceRename”Override the default resource name. Mutually exclusive with prefix and suffix.
prefix
Section titled “prefix”Prefix to prepend to the resource name. Mutually exclusive with forceRename.
refreshInterval
Section titled “refreshInterval”Amount of time before values are read again from the SecretStore provider.
suffix
Section titled “suffix”Suffix to append to the resource name. Defaults to the resource identifier if there are multiple items, otherwise empty. Mutually exclusive with forceRename.