From afac3508e6e95456cf584a7b260a83f124269c9a Mon Sep 17 00:00:00 2001 From: Chris Werner Rau Date: Wed, 22 Nov 2023 14:57:47 +0100 Subject: [PATCH] feat(base-cluster/monitoring): improve strength of generated grafana adminPassword --- .../monitoring/kube-prometheus-stack/grafana-secret.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/charts/base-cluster/templates/monitoring/kube-prometheus-stack/grafana-secret.yaml b/charts/base-cluster/templates/monitoring/kube-prometheus-stack/grafana-secret.yaml index ce7a0bf2a0..58fad99f0f 100644 --- a/charts/base-cluster/templates/monitoring/kube-prometheus-stack/grafana-secret.yaml +++ b/charts/base-cluster/templates/monitoring/kube-prometheus-stack/grafana-secret.yaml @@ -12,5 +12,5 @@ type: Opaque data: username: {{ "admin" | b64enc }} # This might change on every `template` call, this can be ignored - password: {{ include "common.secrets.passwords.manage" (dict "secret" $name "key" "password" "providedValues" (list "monitoring.grafana.adminPassword") "context" (dict "Values" .Values "Release" ((dict "IsUpgrade" false "IsInstall" true "Namespace" "monitoring") | mergeOverwrite (deepCopy .Release)))) }} -{{- end }} \ No newline at end of file + password: {{ include "common.secrets.passwords.manage" (dict "secret" $name "length" 40 "strong" true "key" "password" "providedValues" (list "monitoring.grafana.adminPassword") "context" (dict "Values" .Values "Release" ((dict "IsUpgrade" false "IsInstall" true "Namespace" "monitoring") | mergeOverwrite (deepCopy .Release)))) }} +{{- end }}