apiVersion: apps/v1
kind: Deployment
metadata:
annotations:
deployment.kubernetes.io/revision: '1'
kubectl.kubernetes.io/last-applied-configuration: '{"apiVersion":"apps/v1","kind":"Deployment","metadata":{"annotations":{},"labels":{"app.kubernetes.io/instance":"vault-secrets-operator","app.kubernetes.io/managed-by":"Helm","app.kubernetes.io/name":"vault-secrets-operator","helm.sh/chart":"vault-secrets-operator-1.14.5"},"name":"vault-secrets-operator","namespace":"vault-secrets-operator"},"spec":{"replicas":1,"selector":{"matchLabels":{"app.kubernetes.io/instance":"vault-secrets-operator","app.kubernetes.io/name":"vault-secrets-operator"}},"template":{"metadata":{"labels":{"app.kubernetes.io/instance":"vault-secrets-operator","app.kubernetes.io/managed-by":"Helm","app.kubernetes.io/name":"vault-secrets-operator","helm.sh/chart":"vault-secrets-operator-1.14.5"}},"spec":{"containers":[{"args":["-leader-elect"],"command":["/manager"],"env":[{"name":"WATCH_NAMESPACE","value":""},{"name":"VAULT_ADDRESS","value":"http://192.168.1.3:8200"},{"name":"VAULT_AUTH_METHOD","value":"kubernetes"},{"name":"VAULT_TOKEN_PATH","value":""},{"name":"VAULT_KUBERNETES_PATH","value":"auth/kubernetes"},{"name":"VAULT_KUBERNETES_ROLE","value":"vault-secrets-operator"},{"name":"VAULT_APP_ROLE_PATH","value":"auth/approle"},{"name":"VAULT_RECONCILIATION_TIME","value":"60"}],"image":"ricoberger/vault-secrets-operator:1.14.5","imagePullPolicy":"IfNotPresent","livenessProbe":{"httpGet":{"path":"/healthz","port":"http"}},"name":"vault-secrets-operator","ports":[{"containerPort":8080,"name":"http-metrics","protocol":"TCP"},{"containerPort":8081,"name":"http","protocol":"TCP"}],"readinessProbe":{"httpGet":{"path":"/readyz","port":"http"}},"resources":{"requests":{"cpu":"50m","memory":"128Mi"}},"securityContext":{}}],"securityContext":{},"serviceAccountName":"vault-secrets-operator"}}}}
'
creationTimestamp: '2021-08-30T19:49:23Z'
generation: 1
labels:
app.kubernetes.io/instance: vault-secrets-operator
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: vault-secrets-operator
helm.sh/chart: vault-secrets-operator-1.14.5
managedFields:
- apiVersion: apps/v1
fieldsType: FieldsV1
fieldsV1:
f:metadata:
f:annotations:
.: {}
f:kubectl.kubernetes.io/last-applied-configuration: {}
f:labels:
.: {}
f:app.kubernetes.io/instance: {}
f:app.kubernetes.io/managed-by: {}
f:app.kubernetes.io/name: {}
f:helm.sh/chart: {}
f:spec:
f:progressDeadlineSeconds: {}
f:replicas: {}
f:revisionHistoryLimit: {}
f:selector: {}
f:strategy:
f:rollingUpdate:
.: {}
f:maxSurge: {}
f:maxUnavailable: {}
f:type: {}
f:template:
f:metadata:
f:labels:
.: {}
f:app.kubernetes.io/instance: {}
f:app.kubernetes.io/managed-by: {}
f:app.kubernetes.io/name: {}
f:helm.sh/chart: {}
f:spec:
f:containers:
k:{"name":"vault-secrets-operator"}:
.: {}
f:args: {}
f:command: {}
f:env:
.: {}
k:{"name":"VAULT_ADDRESS"}:
.: {}
f:name: {}
f:value: {}
k:{"name":"VAULT_APP_ROLE_PATH"}:
.: {}
f:name: {}
f:value: {}
k:{"name":"VAULT_AUTH_METHOD"}:
.: {}
f:name: {}
f:value: {}
k:{"name":"VAULT_KUBERNETES_PATH"}:
.: {}
f:name: {}
f:value: {}
k:{"name":"VAULT_KUBERNETES_ROLE"}:
.: {}
f:name: {}
f:value: {}
k:{"name":"VAULT_RECONCILIATION_TIME"}:
.: {}
f:name: {}
f:value: {}
k:{"name":"VAULT_TOKEN_PATH"}:
.: {}
f:name: {}
k:{"name":"WATCH_NAMESPACE"}:
.: {}
f:name: {}
f:image: {}
f:imagePullPolicy: {}
f:livenessProbe:
.: {}
f:failureThreshold: {}
f:httpGet:
.: {}
f:path: {}
f:port: {}
f:scheme: {}
f:periodSeconds: {}
f:successThreshold: {}
f:timeoutSeconds: {}
f:name: {}
f:ports:
.: {}
k:{"containerPort":8080,"protocol":"TCP"}:
.: {}
f:containerPort: {}
f:name: {}
f:protocol: {}
k:{"containerPort":8081,"protocol":"TCP"}:
.: {}
f:containerPort: {}
f:name: {}
f:protocol: {}
f:readinessProbe:
.: {}
f:failureThreshold: {}
f:httpGet:
.: {}
f:path: {}
f:port: {}
f:scheme: {}
f:periodSeconds: {}
f:successThreshold: {}
f:timeoutSeconds: {}
f:resources:
.: {}
f:requests:
.: {}
f:cpu: {}
f:memory: {}
f:securityContext: {}
f:terminationMessagePath: {}
f:terminationMessagePolicy: {}
f:dnsPolicy: {}
f:restartPolicy: {}
f:schedulerName: {}
f:securityContext: {}
f:serviceAccount: {}
f:serviceAccountName: {}
f:terminationGracePeriodSeconds: {}
manager: argocd-application-controller
operation: Update
time: '2021-08-30T19:49:23Z'
- apiVersion: apps/v1
fieldsType: FieldsV1
fieldsV1:
f:metadata:
f:annotations:
f:deployment.kubernetes.io/revision: {}
f:status:
f:availableReplicas: {}
f:conditions:
.: {}
k:{"type":"Available"}:
.: {}
f:lastTransitionTime: {}
f:lastUpdateTime: {}
f:message: {}
f:reason: {}
f:status: {}
f:type: {}
k:{"type":"Progressing"}:
.: {}
f:lastTransitionTime: {}
f:lastUpdateTime: {}
f:message: {}
f:reason: {}
f:status: {}
f:type: {}
f:observedGeneration: {}
f:readyReplicas: {}
f:replicas: {}
f:updatedReplicas: {}
manager: k3s
operation: Update
time: '2025-10-19T11:18:47Z'
name: vault-secrets-operator
namespace: vault-secrets-operator
resourceVersion: '3508216469'
uid: 3af225e0-774c-4047-81ac-86a8f80184ef
spec:
progressDeadlineSeconds: 600
replicas: 1
revisionHistoryLimit: 10
selector:
matchLabels:
app.kubernetes.io/instance: vault-secrets-operator
app.kubernetes.io/name: vault-secrets-operator
strategy:
rollingUpdate:
maxSurge: 25%
maxUnavailable: 25%
type: RollingUpdate
template:
metadata:
creationTimestamp: null
labels:
app.kubernetes.io/instance: vault-secrets-operator
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/name: vault-secrets-operator
helm.sh/chart: vault-secrets-operator-1.14.5
spec:
containers:
- args:
- -leader-elect
command:
- /manager
env:
- name: WATCH_NAMESPACE
- name: VAULT_ADDRESS
value: http://192.168.1.3:8200
- name: VAULT_AUTH_METHOD
value: kubernetes
- name: VAULT_TOKEN_PATH
- name: VAULT_KUBERNETES_PATH
value: auth/kubernetes
- name: VAULT_KUBERNETES_ROLE
value: vault-secrets-operator
- name: VAULT_APP_ROLE_PATH
value: auth/approle
- name: VAULT_RECONCILIATION_TIME
value: '60'
image: ricoberger/vault-secrets-operator:1.14.5
imagePullPolicy: IfNotPresent
livenessProbe:
failureThreshold: 3
httpGet:
path: /healthz
port: http
scheme: HTTP
periodSeconds: 10
successThreshold: 1
timeoutSeconds: 1
name: vault-secrets-operator
ports:
- containerPort: 8080
name: http-metrics
protocol: TCP
- containerPort: 8081
name: http
protocol: TCP
readinessProbe:
failureThreshold: 3
httpGet:
path: /readyz
port: http
scheme: HTTP
periodSeconds: 10
successThreshold: 1
timeoutSeconds: 1
resources:
requests:
cpu: 50m
memory: 128Mi
securityContext: {}
terminationMessagePath: /dev/termination-log
terminationMessagePolicy: File
dnsPolicy: ClusterFirst
restartPolicy: Always
schedulerName: default-scheduler
securityContext: {}
serviceAccount: vault-secrets-operator
serviceAccountName: vault-secrets-operator
terminationGracePeriodSeconds: 30
status:
availableReplicas: 1
conditions:
- lastTransitionTime: '2021-08-30T20:07:13Z'
lastUpdateTime: '2021-08-30T20:07:23Z'
message: ReplicaSet "vault-secrets-operator-84dd57c64f" has successfully progressed.
reason: NewReplicaSetAvailable
status: 'True'
type: Progressing
- lastTransitionTime: '2025-10-19T11:18:47Z'
lastUpdateTime: '2025-10-19T11:18:47Z'
message: Deployment has minimum availability.
reason: MinimumReplicasAvailable
status: 'True'
type: Available
observedGeneration: 1
readyReplicas: 1
replicas: 1
updatedReplicas: 1