mirror of https://github.com/dapr/docs.git
Add disable-builtin-k8s-secret-store annotation option (#2548)
* Update Preview Features List (#2555) Updated resiliency to have a version introduced and fixed version introduced for pubsub routing Signed-off-by: greenie-msft <56556602+greenie-msft@users.noreply.github.com> * Add disable-builtin-k8s-secret-store annotation option Signed-off-by: Deepanshu Agarwal <deepanshu.agarwal1984@gmail.com> * Add k8s secret store description in secrets-overview Signed-off-by: Deepanshu Agarwal <deepanshu.agarwal1984@gmail.com> * Incorporating review comments from docs#2548 Signed-off-by: Deepanshu Agarwal <deepanshu.agarwal1984@gmail.com> * Correcting Docs Signed-off-by: Deepanshu Agarwal <deepanshu.agarwal1984@gmail.com> * Update daprdocs/content/en/developing-applications/building-blocks/secrets/secrets-overview.md Signed-off-by: Mark Fussell <markfussell@gmail.com> * Update daprdocs/content/en/reference/arguments-annotations-overview.md Signed-off-by: Mark Fussell <markfussell@gmail.com> Co-authored-by: greenie-msft <56556602+greenie-msft@users.noreply.github.com> Co-authored-by: Mark Fussell <markfussell@gmail.com>
This commit is contained in:
parent
6f75254db1
commit
dcc364a6e3
|
@ -17,6 +17,10 @@ Using Dapr's secret store building block typically involves the following:
|
|||
1. Retrieving secrets using the Dapr secrets API in the application code.
|
||||
1. Optionally, referencing secrets in Dapr component files.
|
||||
|
||||
{{% alert title="Note" color="primary" %}}
|
||||
By default, Dapr enables a built-in [Kubernetes secret store in Kubernetes mode]({{<ref "kubernetes-secret-store.md">}}) deployed either via the Helm defaults or `dapr init -k`. If you are using another secret store, you can disable (not configure) the Dapr Kubernetes secret store using the `disable-builtin-k8s-secret-store` setting, when set to `true` through the Helm settings. The default is `false`.
|
||||
{{% /alert %}}
|
||||
|
||||
## Setting up a secret store
|
||||
|
||||
See [Setup secret stores]({{< ref howto-secrets.md >}}) for guidance on how to setup a secret store with Dapr.
|
||||
|
|
|
@ -58,4 +58,5 @@ This table is meant to help users understand the equivalent options for running
|
|||
| not supported | not supported | | `dapr.io/sidecar-readiness-probe-threshold` | When the sidecar readiness probe fails, Kubernetes will try N times before giving up. In this case, the Pod will be marked Unready. Read more about `failureThreshold` [here](https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/#configure-probes). Default is `3`|
|
||||
| not supported | not supported | | `dapr.io/env` | List of environment variable to be injected into the sidecar. Strings consisting of key=value pairs separated by a comma.|
|
||||
| not supported | not supported | | `dapr.io/volume-mounts` | List of pod volumes to be mounted to the sidecar container in read-only mode. Strings consisting of `volume:path` pairs separated by a comma. Example, `"volume-1:/tmp/mount1,volume-2:/home/root/mount2"`. |
|
||||
| not supported | not supported | | `dapr.io/volume-mounts-rw` | List of pod volumes to be mounted to the sidecar container in read-write mode. Strings consisting of `volume:path` pairs separated by a comma. Example, `"volume-1:/tmp/mount1,volume-2:/home/root/mount2"`. |
|
||||
| not supported | not supported | | `dapr.io/volume-mounts-rw` | List of pod volumes to be mounted to the sidecar container in read-write mode. Strings consisting of `volume:path` pairs separated by a comma. Example, `"volume-1:/tmp/mount1,volume-2:/home/root/mount2"`. |
|
||||
| `--disable-builtin-k8s-secret-store` | not supported | | `dapr.io/disable-builtin-k8s-secret-store` | Disables BuiltIn Kubernetes secret store. Default value is false. See [Kubernetes secret store component]({{<ref "kubernetes-secret-store.md">}}) for details. |
|
Loading…
Reference in New Issue