如何在Kubernetes里给PostgreSQL创建secret
创建一个initdb.sql文件,输入如下内容:
-- This is a postgres initialization script for the postgres container.
-- Will be executed during container initialization ($> psql postgres -f initdb.sql)
CREATE ROLE adsuser WITH LOGIN PASSWORD 'initial' INHERIT CREATEDB;
CREATE DATABASE ads WITH ENCODING 'UNICODE' LC_COLLATE 'C' LC_CTYPE 'C' TEMPLATE template0;
GRANT ALL PRIVILEGES ON DATABASE ads TO adsuser;
CREATE SCHEMA ads AUTHORIZATION adsuser;
-- ALTER DATABASE ads SET search_path TO 'ads';
ALTER DATABASE ads OWNER TO adsuser;
执行如下命令下,将输出重定向到一个名为ads-db-secret的yaml文件里。
kubectl create secret generic ads-db-secret --from-file initdb.sql --dry-run -o yaml > ads-db-secret.yaml
这个secret文件如下:
![如何在Kubernetes里给PostgreSQL创建secret 如何在Kubernetes里给PostgreSQL创建secret](https://cdn.ancii.com/article/image/v1/V1/gl/_d/d_g1lVoFnaHF66uLvjLNgrNwLOlgxjAwTZLe7DAT3x2t904_cuYFw1FRoLgZPQB8cev1_mgrNOvChpTyh8dgekOaVnxFyWffgAZM7Q7BaCEscTCfsrs63c479zLGuwUxaMyZD3shmd8BUYQBXGheVXj5z-1gnOZUpa0dwSLTX5__IsNR4b6vPkB3LNWBww2G.jpg)
将自动生成的creationTimestamp删除,再添加postgres_password_value。
![如何在Kubernetes里给PostgreSQL创建secret 如何在Kubernetes里给PostgreSQL创建secret](https://cdn.ancii.com/article/image/v1/V1/gl/_d/d_g1lVoFnaHF66uLvjLNgrNwLOlgxjAwTZLe7DAT3x2t904_cuYFw1FRoLgZPQB8gLfN591S1vACc0Gq68tn7x7_Y1tnaLXe-QpS76N4H4MscTCfsrs63c479zLGuwUxaMyZD3shmd8BUYQBXGheVbSde5GZufnEzUg3D5l8dQ2T-LQ65_K1aUUOd8tUFmNE.jpg)
最后使用kubectl app生成secret。
![如何在Kubernetes里给PostgreSQL创建secret 如何在Kubernetes里给PostgreSQL创建secret](https://cdn.ancii.com/article/image/v1/V1/gl/_d/d_g1lVoFnaHF66uLvjLNgrNwLOlgxjAwTZLe7DAT3x2t904_cuYFw1FRoLgZPQB8Z1Fcb1JI8wXkFGuQFy01OXHUa3tTKayLzI48sqA_7JkscTCfsrs63c479zLGuwUxaMyZD3shmd8BUYQBXGheVXj5z-1gnOZUpa0dwSLTX5__IsNR4b6vPkB3LNWBww2G.jpg)
要获取更多Jerry的原创文章,请关注公众号"汪子熙":
![如何在Kubernetes里给PostgreSQL创建secret 如何在Kubernetes里给PostgreSQL创建secret](https://cdn.ancii.com/article/image/v1/V1/gl/_d/d_g1lVoFnaHF66uLvjLNgrNwLOlgxjAwTZLe7DAT3x2t904_cuYFw1FRoLgZPQB8K7gdM8gnGSzN8RP5ldmSoznjrqvKho3Fqs4_XBZSsFUP-PpFD76OUWGM57t7CEKQ7qC4HCdHZEnGUWeSsil818NOM-SYxbINt1Exa_4cYubMmE7PboFomS2ziSMb4EX7.jpg)