52 lines
1.7 KiB
YAML
52 lines
1.7 KiB
YAML
jenkins:
|
|
# Fresh install. Dynamic Kubernetes build agents come from agent.enabled
|
|
# (chart default, not overridden here) — agent pods only exist during
|
|
# builds, matching claude.md's "idle cost is just the controller" note.
|
|
# Trimmed agent pod resources below anyway, since they still compete for
|
|
# the same 8GB box while a build is running.
|
|
|
|
controller:
|
|
image:
|
|
# Chart's default (unset here) falls back to appVersion 2.504.2 —
|
|
# but the chart's own bundled default plugin list (kubernetes,
|
|
# credentials, workflow-*, git, etc.) requires Jenkins core
|
|
# >= 2.504.3. Upstream inconsistency between the chart's pinned
|
|
# image tag and its own default plugins.txt, not our config —
|
|
# bumping the core image is the fix, not trimming plugins (several
|
|
# of them, especially `kubernetes`, are what dynamic build agents
|
|
# actually depend on).
|
|
tag: "2.504.3-jdk21"
|
|
resources:
|
|
requests:
|
|
cpu: 100m
|
|
memory: 512Mi
|
|
limits:
|
|
cpu: 500m
|
|
memory: 1Gi
|
|
admin:
|
|
# Vault-backed from the start (unlike gitea, which started as a
|
|
# plain kubectl secret and got migrated later) — see
|
|
# devops-infra-argo-config/secretstores/jenkins-admin-credentials.yaml
|
|
# and vault kv path secret/jenkins/admin.
|
|
existingSecret: jenkins-admin-credentials
|
|
userKey: jenkins-admin-user
|
|
passwordKey: jenkins-admin-password
|
|
ingress:
|
|
enabled: true
|
|
hostName: "jenkins.192.168.1.7.nip.io"
|
|
ingressClassName: contour
|
|
|
|
agent:
|
|
resources:
|
|
requests:
|
|
cpu: 250m
|
|
memory: 256Mi
|
|
limits:
|
|
cpu: 500m
|
|
memory: 512Mi
|
|
|
|
persistence:
|
|
enabled: true
|
|
storageClass: local-path
|
|
size: 5Gi
|