name: kuber-system services: kuber-server: build: context: . dockerfile: Dockerfile.server environment: PORT: "3000" KUBER_BOOTSTRAP_USERNAME: dmgnr KUBER_DATA_ROOT: /data KUBER_BUILD_DATA_CLAIM: kuber-system-kuber-build-data KUBER_REGISTRY_RESOLVE_ORIGIN: http://cncf-distribution-svc.registry.svc.cluster.local:5000 KUBER_INTERNAL_REGISTRY_HOST: cncf-distribution-svc.registry.svc.cluster.local:5000 KUBER_INTERNAL_REGISTRY_INSECURE: "true" ports: - kuber.astrxl.dev:3000 deploy: replicas: 1 volumes: - kuber-build-data:/data x-container: env: - name: KUBER_BOOTSTRAP_PASSWORD valueFrom: secretKeyRef: name: kuber-bootstrap key: password optional: true readinessProbe: httpGet: path: /api/v2/health port: 3000 initialDelaySeconds: 2 periodSeconds: 10 livenessProbe: httpGet: path: /api/v2/health port: 3000 initialDelaySeconds: 10 periodSeconds: 20 resources: requests: cpu: 50m memory: 64Mi limits: cpu: 500m memory: 256Mi securityContext: allowPrivilegeEscalation: false capabilities: drop: [ALL] readOnlyRootFilesystem: true runAsNonRoot: true runAsUser: 1000 runAsGroup: 1000 seccompProfile: type: RuntimeDefault x-deployment: spec: template: spec: serviceAccountName: kuber-server volumes: kuber-build-data: x-size: 20Gi x-diskTag: fast x-replicaCount: 2 x-dataLocality: none