diff --git a/assets/rancher-webhook/rancher-webhook-2.0.2+up0.3.2-rc7.tgz b/assets/rancher-webhook/rancher-webhook-2.0.2+up0.3.2-rc7.tgz deleted file mode 100644 index ceb8d07f2..000000000 Binary files a/assets/rancher-webhook/rancher-webhook-2.0.2+up0.3.2-rc7.tgz and /dev/null differ diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/Chart.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/Chart.yaml deleted file mode 100644 index 818c4da92..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/Chart.yaml +++ /dev/null @@ -1,18 +0,0 @@ -annotations: - catalog.cattle.io/certified: rancher - catalog.cattle.io/hidden: "true" - catalog.cattle.io/kube-version: '>= 1.16.0-0 < 1.26.0-0' - catalog.cattle.io/namespace: cattle-system - catalog.cattle.io/os: linux - catalog.cattle.io/permits-os: linux,windows - catalog.cattle.io/rancher-version: '>= 2.7.0-0 < 2.8.0-0' - catalog.cattle.io/release-name: rancher-webhook -apiVersion: v2 -appVersion: 0.3.2-rc7 -dependencies: -- condition: capi.enabled - name: capi - repository: "" -description: ValidatingAdmissionWebhook for Rancher types -name: rancher-webhook -version: 2.0.2+up0.3.2-rc7 diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/charts/capi/Chart.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/charts/capi/Chart.yaml deleted file mode 100644 index 388210bef..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/charts/capi/Chart.yaml +++ /dev/null @@ -1,4 +0,0 @@ -apiVersion: v2 -appVersion: 0.0.0 -name: capi -version: 0.0.0 diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/charts/capi/templates/service.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/charts/capi/templates/service.yaml deleted file mode 100644 index 08df65d62..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/charts/capi/templates/service.yaml +++ /dev/null @@ -1,13 +0,0 @@ -kind: Service -apiVersion: v1 -metadata: - name: webhook-service - annotations: - need-a-cert.cattle.io/secret-name: rancher-webhook-tls -spec: - ports: - - name: https - port: 443 - targetPort: 8777 - selector: - app: rancher-webhook diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/_helpers.tpl b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/_helpers.tpl deleted file mode 100644 index c37a65c6f..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/_helpers.tpl +++ /dev/null @@ -1,22 +0,0 @@ -{{- define "system_default_registry" -}} -{{- if .Values.global.cattle.systemDefaultRegistry -}} -{{- printf "%s/" .Values.global.cattle.systemDefaultRegistry -}} -{{- else -}} -{{- "" -}} -{{- end -}} -{{- end -}} - -{{- define "rancher-webhook.labels" -}} -app: rancher-webhook -{{- end }} - -{{- define "linux-node-tolerations" -}} -- key: "cattle.io/os" - value: "linux" - effect: "NoSchedule" - operator: "Equal" -{{- end -}} - -{{- define "linux-node-selector" -}} -kubernetes.io/os: linux -{{- end -}} \ No newline at end of file diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/deployment.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/deployment.yaml deleted file mode 100644 index e4270c1ec..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/deployment.yaml +++ /dev/null @@ -1,59 +0,0 @@ -apiVersion: apps/v1 -kind: Deployment -metadata: - name: rancher-webhook -spec: - selector: - matchLabels: - app: rancher-webhook - template: - metadata: - labels: - app: rancher-webhook - spec: - {{- if .Values.capi.enabled }} - volumes: - - name: tls - secret: - secretName: rancher-webhook-tls - {{- end }} - {{- if .Values.global.hostNetwork }} - hostNetwork: true - {{- end }} - nodeSelector: {{ include "linux-node-selector" . | nindent 8 }} - {{- if .Values.nodeSelector }} -{{ toYaml .Values.nodeSelector | indent 8 }} - {{- end }} - tolerations: {{ include "linux-node-tolerations" . | nindent 6 }} - {{- if .Values.tolerations }} -{{ toYaml .Values.tolerations | indent 6 }} - {{- end }} - containers: - - env: - - name: STAMP - value: "{{.Values.stamp}}" - - name: ENABLE_CAPI - value: "{{.Values.capi.enabled}}" - - name: ENABLE_MCM - value: "{{.Values.mcm.enabled}}" - - name: NAMESPACE - valueFrom: - fieldRef: - fieldPath: metadata.namespace - image: '{{ template "system_default_registry" . }}{{ .Values.image.repository }}:{{ .Values.image.tag }}' - name: rancher-webhook - imagePullPolicy: "{{ .Values.image.imagePullPolicy }}" - ports: - - name: https - containerPort: 9443 - - name: capi-https - containerPort: 8777 - {{- if .Values.capi.enabled }} - volumeMounts: - - name: tls - mountPath: /tmp/k8s-webhook-server/serving-certs - {{- end }} - serviceAccountName: rancher-webhook - {{- if .Values.priorityClassName }} - priorityClassName: "{{.Values.priorityClassName}}" - {{- end }} diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-cluster-role-binding.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-cluster-role-binding.yaml deleted file mode 100644 index ca439ff48..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-cluster-role-binding.yaml +++ /dev/null @@ -1,19 +0,0 @@ -{{- if .Values.preDelete.enabled }} -apiVersion: rbac.authorization.k8s.io/v1 -kind: ClusterRoleBinding -metadata: - name: rancher-webhook-pre-delete - labels: {{ include "rancher-webhook.labels" . | nindent 4 }} - annotations: - "helm.sh/hook": pre-delete - "helm.sh/hook-weight": "2" - "helm.sh/hook-delete-policy": before-hook-creation,hook-succeeded,hook-failed -roleRef: - apiGroup: rbac.authorization.k8s.io - kind: ClusterRole - name: rancher-webhook-pre-delete -subjects: - - kind: ServiceAccount - name: rancher-webhook-pre-delete - namespace: {{ .Release.Namespace }} -{{- end }} diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-cluster-role.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-cluster-role.yaml deleted file mode 100644 index 777392aad..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-cluster-role.yaml +++ /dev/null @@ -1,25 +0,0 @@ -{{- if .Values.preDelete.enabled }} -kind: ClusterRole -apiVersion: rbac.authorization.k8s.io/v1 -metadata: - name: rancher-webhook-pre-delete - labels: {{ include "rancher-webhook.labels" . | nindent 4 }} - annotations: - "helm.sh/hook": pre-delete - "helm.sh/hook-weight": "1" - "helm.sh/hook-delete-policy": before-hook-creation,hook-succeeded,hook-failed -rules: - - apiGroups: [ "admissionregistration.k8s.io" ] - resources: [ "mutatingwebhookconfigurations" ] - verbs: [ "delete" ] - resourceNames: [ "rancher.cattle.io" ] - - apiGroups: [ "" ] - resources: [ "serviceaccounts" ] - verbs: [ "get" ] -{{- if .Capabilities.APIVersions.Has "policy/v1beta1/PodSecurityPolicy" }} - - apiGroups: [ "policy" ] - resources: [ "podsecuritypolicies" ] - verbs: [ "use" ] - resourceNames: [ "rancher-webhook-pre-delete" ] -{{- end }} -{{- end }} diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-job.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-job.yaml deleted file mode 100644 index d3608f366..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-job.yaml +++ /dev/null @@ -1,39 +0,0 @@ -{{- if .Values.preDelete.enabled }} -apiVersion: batch/v1 -kind: Job -metadata: - name: rancher-webhook-pre-delete - namespace: {{ .Release.Namespace }} - labels: {{ include "rancher-webhook.labels" . | nindent 4 }} - annotations: - "helm.sh/hook": pre-delete - "helm.sh/hook-weight": "3" - "helm.sh/hook-delete-policy": before-hook-creation,hook-succeeded -spec: - backoffLimit: 3 - template: - metadata: - name: rancher-webhook-pre-delete - labels: {{ include "rancher-webhook.labels" . | nindent 8 }} - spec: - serviceAccountName: rancher-webhook-pre-delete - {{- if .Values.priorityClassName }} - priorityClassName: "{{.Values.priorityClassName}}" - {{- end }} - restartPolicy: OnFailure - nodeSelector: {{ include "linux-node-selector" . | nindent 8 }} - {{- if .Values.nodeSelector }} -{{ toYaml .Values.nodeSelector | indent 8 }} - {{- end }} - tolerations: {{ include "linux-node-tolerations" . | nindent 6 }} - {{- if .Values.tolerations }} -{{ toYaml .Values.tolerations | indent 6 }} - {{- end }} - containers: - - name: rancher-webhook-pre-delete - image: "{{ include "system_default_registry" . }}{{ .Values.preDelete.image.repository }}:{{ .Values.preDelete.image.tag }}" - imagePullPolicy: IfNotPresent - securityContext: - runAsUser: 0 - command: [ "kubectl", "delete", "--ignore-not-found=true", "mutatingwebhookconfigurations", "rancher.cattle.io" ] -{{- end }} diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-psp.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-psp.yaml deleted file mode 100644 index df29bf8ff..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-psp.yaml +++ /dev/null @@ -1,33 +0,0 @@ -{{- if and .Values.preDelete.enabled (.Capabilities.APIVersions.Has "policy/v1beta1/PodSecurityPolicy") }} -apiVersion: policy/v1beta1 -kind: PodSecurityPolicy -metadata: - name: rancher-webhook-pre-delete - labels: {{ include "rancher-webhook.labels" . | nindent 4 }} - annotations: - "helm.sh/hook": pre-delete - "helm.sh/hook-weight": "1" - "helm.sh/hook-delete-policy": before-hook-creation,hook-succeeded,hook-failed -spec: - privileged: false - hostNetwork: false - hostIPC: false - hostPID: false - runAsUser: - rule: 'RunAsAny' - seLinux: - rule: 'RunAsAny' - supplementalGroups: - rule: 'MustRunAs' - ranges: - - min: 1 - max: 65535 - fsGroup: - rule: 'MustRunAs' - ranges: - - min: 1 - max: 65535 - readOnlyRootFilesystem: false - volumes: - - 'secret' -{{- end }} diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-service-account.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-service-account.yaml deleted file mode 100644 index 93e215394..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/pre-delete-hook-service-account.yaml +++ /dev/null @@ -1,12 +0,0 @@ -{{- if .Values.preDelete.enabled }} -apiVersion: v1 -kind: ServiceAccount -metadata: - name: rancher-webhook-pre-delete - namespace: {{ .Release.Namespace }} - labels: {{ include "rancher-webhook.labels" . | nindent 4 }} - annotations: - "helm.sh/hook": pre-delete - "helm.sh/hook-weight": "1" - "helm.sh/hook-delete-policy": before-hook-creation,hook-succeeded,hook-failed -{{- end }} diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/rbac.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/rbac.yaml deleted file mode 100644 index 9afaae6c6..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/rbac.yaml +++ /dev/null @@ -1,12 +0,0 @@ -apiVersion: rbac.authorization.k8s.io/v1 -kind: ClusterRoleBinding -metadata: - name: rancher-webhook -roleRef: - apiGroup: rbac.authorization.k8s.io - kind: ClusterRole - name: cluster-admin -subjects: -- kind: ServiceAccount - name: rancher-webhook - namespace: {{.Release.Namespace}} diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/service.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/service.yaml deleted file mode 100644 index 74a8a9e5a..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/service.yaml +++ /dev/null @@ -1,13 +0,0 @@ -kind: Service -apiVersion: v1 -metadata: - name: rancher-webhook - namespace: cattle-system -spec: - ports: - - port: 443 - targetPort: 9443 - protocol: TCP - name: https - selector: - app: rancher-webhook diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/serviceaccount.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/serviceaccount.yaml deleted file mode 100644 index f9251b418..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/serviceaccount.yaml +++ /dev/null @@ -1,4 +0,0 @@ -apiVersion: v1 -kind: ServiceAccount -metadata: - name: rancher-webhook diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/webhook.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/webhook.yaml deleted file mode 100644 index 4f95ae896..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/templates/webhook.yaml +++ /dev/null @@ -1,19 +0,0 @@ -apiVersion: admissionregistration.k8s.io/v1 -kind: ValidatingWebhookConfiguration -metadata: - name: rancher.cattle.io -webhooks: -- admissionReviewVersions: - - v1 - - v1beta1 - clientConfig: - service: - name: rancher-webhook - namespace: cattle-system - path: /v1/webhook/validation - port: 443 - failurePolicy: Ignore - matchPolicy: Equivalent - name: rancher.cattle.io - sideEffects: None - timeoutSeconds: 10 diff --git a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/values.yaml b/charts/rancher-webhook/2.0.2+up0.3.2-rc7/values.yaml deleted file mode 100644 index 6c10caf31..000000000 --- a/charts/rancher-webhook/2.0.2+up0.3.2-rc7/values.yaml +++ /dev/null @@ -1,28 +0,0 @@ -image: - repository: rancher/rancher-webhook - tag: v0.3.2-rc7 - imagePullPolicy: IfNotPresent - -global: - cattle: - systemDefaultRegistry: "" - hostNetwork: false - -capi: - enabled: false - -mcm: - enabled: true - -preDelete: - enabled: true - image: - repository: rancher/kubectl - tag: v1.23.3 - -# tolerations for the webhook deployment. See https://kubernetes.io/docs/concepts/scheduling-eviction/taint-and-toleration/ for more info -tolerations: [] -nodeSelector: {} - -## PriorityClassName assigned to deployment. -priorityClassName: "" diff --git a/index.yaml b/index.yaml index 5ace8e775..3f9151deb 100755 --- a/index.yaml +++ b/index.yaml @@ -11731,18 +11731,18 @@ entries: catalog.cattle.io/rancher-version: '>= 2.7.0-0 < 2.8.0-0' catalog.cattle.io/release-name: rancher-webhook apiVersion: v2 - appVersion: 0.3.2-rc7 - created: "2023-01-05T13:16:31.116858-05:00" + appVersion: 0.3.2-rc8 + created: "2023-01-10T11:00:54.948658-07:00" dependencies: - condition: capi.enabled name: capi repository: "" description: ValidatingAdmissionWebhook for Rancher types - digest: 671f77e403dee89ac47eafcda2d4c538be12b2e0fdf9f69b6cef9e576d0f2976 + digest: 10a3789d302e1ad1d3ffd989552622c737e76a80c0e10bd3ba45e0c1653656c4 name: rancher-webhook urls: - - assets/rancher-webhook/rancher-webhook-2.0.2+up0.3.2-rc7.tgz - version: 2.0.2+up0.3.2-rc7 + - assets/rancher-webhook/rancher-webhook-2.0.2+up0.3.2-rc8.tgz + version: 2.0.2+up0.3.2-rc8 - annotations: catalog.cattle.io/certified: rancher catalog.cattle.io/hidden: "true"