Skip to content

Instantly share code, notes, and snippets.

@arunreddy
Created January 3, 2024 14:24
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save arunreddy/0cbc957f1bcc406eb4afc88ce785ca1e to your computer and use it in GitHub Desktop.
Save arunreddy/0cbc957f1bcc406eb4afc88ce785ca1e to your computer and use it in GitHub Desktop.
Infisical Manfiest
apiVersion: secrets.infisical.com/v1alpha1
kind: InfisicalSecret
metadata:
# Name of of this InfisicalSecret resource
name: dolphin-infisicalsecret
spec:
# The host that should be used to pull secrets from. If left empty, the value specified in Global configuration will be used
hostAPI: https://app.infisical.com/api
resyncInterval: 60
authentication:
serviceToken:
serviceTokenSecretReference:
secretName: k8s-infisical-dolphin
secretNamespace: infisical
secretsScope:
envSlug: staging
secretsPath: "/dolphin"
managedSecretReference:
secretName: dolphin # <-- the name of kubernetes secret that will be created
secretNamespace: protoml-stg # <-- where the kubernetes secret should be created
@arunreddy
Copy link
Author

Using the latest secrets management.

image

@arunreddy
Copy link
Author

Error: Failed to sync secrets. This can be caused by invalid service token or an invalid API host that is set. Check operator logs for more info

image

@arunreddy
Copy link
Author

Logs from Secrets Manager pod kubectl logs secrets-operato-controller-manager-77d9d59f84-gn7s8

ReconcileInfisicalSecret: Fetched secrets via service token
unable to reconcile Infisical Secret because [err=cross-namespace owner references are disallowed, owner's namespace default, obj's namespace protoml-stg]. Will requeue after [requeueTime=1m0s]
Manual re-sync interval set requeueAfter 1m0s
Requeue duration set requeueAfter 1m0s
Workspace ID: 6530b2ebe7ed0b2c31cd4123
TokenName: k8s-infisical-dolphin
ReconcileInfisicalSecret: Fetched secrets via service token
unable to reconcile Infisical Secret because [err=cross-namespace owner references are disallowed, owner's namespace default, obj's namespace protoml-stg]. Will requeue after [requeueTime=1m0s]
Manual re-sync interval set requeueAfter 1m0s
Requeue duration set requeueAfter 1m0s
Workspace ID: 6530b2ebe7ed0b2c31cd4123
TokenName: k8s-infisical-dolphin
ReconcileInfisicalSecret: Fetched secrets via service token
unable to reconcile Infisical Secret because [err=cross-namespace owner references are disallowed, owner's namespace default, obj's namespace protoml-stg]. Will requeue after [requeueTime=1m0s]

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment