2023-07-17 22:15:22 +00:00
|
|
|
resource "docker_container" "{{.Node.DockerName}}-{{.Service.ID.TFString}}-sidecar" {
|
|
|
|
name = "{{.Node.DockerName}}-{{.Service.ID.TFString}}-sidecar"
|
|
|
|
network_mode = "container:${docker_container.{{.PodName}}.id}"
|
2023-09-06 23:46:34 +00:00
|
|
|
image = docker_image.{{.ImageResource}}.latest
|
|
|
|
restart = "on-failure"
|
2023-07-17 22:15:22 +00:00
|
|
|
|
|
|
|
{{- range $k, $v := .Labels }}
|
|
|
|
labels {
|
|
|
|
label = "{{ $k }}"
|
|
|
|
value = "{{ $v }}"
|
|
|
|
}
|
|
|
|
{{- end }}
|
|
|
|
|
|
|
|
volumes {
|
|
|
|
volume_name = "{{.TLSVolumeName}}"
|
|
|
|
container_path = "/consul/config/certs"
|
|
|
|
read_only = true
|
|
|
|
}
|
|
|
|
|
|
|
|
env = [
|
2023-09-06 23:46:34 +00:00
|
|
|
"DP_CONSUL_ADDRESSES=server.{{.Node.Cluster}}-consulcluster.lan",
|
|
|
|
"DP_SERVICE_NODE_NAME={{.Node.PodName}}",
|
|
|
|
"DP_PROXY_SERVICE_ID={{.Service.ID.Name}}-sidecar-proxy",
|
|
|
|
{{ if .Enterprise }}
|
|
|
|
"DP_SERVICE_NAMESPACE={{.Service.ID.Namespace}}",
|
|
|
|
"DP_SERVICE_PARTITION={{.Service.ID.Partition}}",
|
|
|
|
{{ end }}
|
|
|
|
{{ if .Token }}
|
|
|
|
"DP_CREDENTIAL_TYPE=static",
|
|
|
|
"DP_CREDENTIAL_STATIC_TOKEN={{.Token}}",
|
|
|
|
{{ end }}
|
|
|
|
// for demo purposes
|
|
|
|
"DP_ENVOY_ADMIN_BIND_ADDRESS=0.0.0.0",
|
|
|
|
"DP_ENVOY_ADMIN_BIND_PORT=19000",
|
|
|
|
"DP_LOG_LEVEL=trace",
|
|
|
|
"DP_CA_CERTS=/consul/config/certs/consul-agent-ca.pem",
|
|
|
|
"DP_CONSUL_GRPC_PORT=8503",
|
|
|
|
"DP_TLS_SERVER_NAME=server.{{.Node.Datacenter}}.consul",
|
2023-07-17 22:15:22 +00:00
|
|
|
]
|
|
|
|
|
|
|
|
command = [
|
|
|
|
"/usr/local/bin/consul-dataplane",
|
|
|
|
]
|
|
|
|
}
|