apiVersion: terdut.ryuvia.com/v1alpha1 kind: TerdutServer metadata: labels: app.kubernetes.io/name: terdut-operator app.kubernetes.io/managed-by: kustomize name: terdutserver-sample spec: # An already-running terdut-server this TerdutServer represents — Stage 1 # never creates or manages a Deployment/Service for it (ROADMAP.md). endpoint: "http://terdut.oncall.svc.cluster.local:8080" # Bring-your-own instance credential (DESIGN.md §6): mint this once, # manually, with your own admin session -- # curl -H "Authorization: Bearer " \ # -X POST "$ENDPOINT/api/service-accounts" \ # -d '{"name":"terdut-operator","scope":"instance"}' # -- then create this Secret, in the OPERATOR's own namespace, from the # "key" field of that response: # kubectl create secret generic terdutserver-sample-creds \ # -n --from-literal=token= credentialsSecretRef: name: terdutserver-sample-creds key: token