ArgoCD setup for bhav demo purposes
source <(kubectl completion bash)
complete -o default -F __start_kubectl k
do="-o yaml --dry-run=client"
ycrt="--format=yaml --cert=~/.seal/public-key-cert.pem"
Assumes your current context is set up.
kubectl create namespace argocd
kubectl apply -n argocd -f
helm repo add argo
helm install --namespace argocd --name argocd argo/argo-cd
Assumes amd arch.
sudo curl -sSL -o /usr/local/bin/argocd
sudo chmod +x /usr/local/bin/argocd
Deploy Bootstrap Application:
k apply -f ./bootstrap.yaml
If bootstrap was successful :^ ], just go to https://argocd.ingress.local
If not:
kubectl port-forward svc/argocd-server -n argocd 8080:443
Access via: https://localhost:8080/login
kubectl -n argocd get secret argocd-initial-admin-secret -o jsonpath="{.data.password}" | base64 -d
Don't forget to change the password.
When using plain deployments:
argocd app rollback <argocd_app_name> <history_id>
When using rollouts rollback is automatic based on provided analysis metric.
Example usage of sealed-secrets:
k create secret generic testsecret --from-literal=password=jasio1234 $do | kubeseal | tee sealed_secret.yaml
External Secrets can be used to mirror secrets stored in external vaults in a form of K8S Secret.
k -n monitoringv2 get secrets grafana -o jsonpath="{.data.admin-password}" | base64 --decode ; echo