Skip to content

fix: disable zitadel new login#986

Merged
bo0tzz merged 1 commit intomainfrom
fix/zitadel-login
Sep 22, 2025
Merged

fix: disable zitadel new login#986
bo0tzz merged 1 commit intomainfrom
fix/zitadel-login

Conversation

@bo0tzz
Copy link
Copy Markdown
Member

@bo0tzz bo0tzz commented Sep 22, 2025

No description provided.

@bo0tzz bo0tzz requested a review from a team as a code owner September 22, 2025 16:09
@github-actions
Copy link
Copy Markdown

--- kubernetes/apps/authentication/zitadel/app Kustomization: flux-system/zitadel HelmRelease: authentication/zitadel

+++ kubernetes/apps/authentication/zitadel/app Kustomization: flux-system/zitadel HelmRelease: authentication/zitadel

@@ -68,12 +68,14 @@

         - path: /
           pathType: Prefix
       tls:
       - hosts:
         - zitadel.internal.immich.cloud
         secretName: zitadel-tls
+    login:
+      enabled: false
     resources:
       limits:
         cpu: 1
         memory: 2Gi
       requests:
         cpu: 500m

@github-actions
Copy link
Copy Markdown

--- HelmRelease: authentication/zitadel Service: authentication/zitadel-login

+++ HelmRelease: authentication/zitadel Service: authentication/zitadel-login

@@ -1,22 +0,0 @@

----
-apiVersion: v1
-kind: Service
-metadata:
-  name: zitadel-login
-  labels:
-    app.kubernetes.io/name: zitadel-login
-    app.kubernetes.io/instance: zitadel
-    app.kubernetes.io/managed-by: Helm
-spec:
-  type: ClusterIP
-  ports:
-  - port: 3000
-    targetPort: 3000
-    protocol: TCP
-    name: http-server
-    appProtocol: kubernetes.io/http
-  selector:
-    app.kubernetes.io/name: zitadel-login
-    app.kubernetes.io/instance: zitadel
-    app.kubernetes.io/component: login
-
--- HelmRelease: authentication/zitadel Deployment: authentication/zitadel-login

+++ HelmRelease: authentication/zitadel Deployment: authentication/zitadel-login

@@ -1,83 +0,0 @@

----
-apiVersion: apps/v1
-kind: Deployment
-metadata:
-  name: zitadel-login
-  labels:
-    app.kubernetes.io/name: zitadel-login
-    app.kubernetes.io/instance: zitadel
-    app.kubernetes.io/managed-by: Helm
-    app.kubernetes.io/component: login
-spec:
-  revisionHistoryLimit: 10
-  replicas: 3
-  selector:
-    matchLabels:
-      app.kubernetes.io/name: zitadel-login
-      app.kubernetes.io/instance: zitadel
-      app.kubernetes.io/component: login
-  template:
-    metadata:
-      annotations:
-        checksum/configmap: c96816038670f56f06637832da682cd45d7d476b91965d4dd18c33ee635da635
-      labels:
-        app.kubernetes.io/name: zitadel-login
-        app.kubernetes.io/instance: zitadel
-        app.kubernetes.io/managed-by: Helm
-        app.kubernetes.io/component: login
-    spec:
-      serviceAccountName: zitadel-login
-      securityContext:
-        fsGroup: 1000
-        runAsNonRoot: true
-        runAsUser: 1000
-      enableServiceLinks: false
-      containers:
-      - name: zitadel-login
-        securityContext:
-          privileged: false
-          readOnlyRootFilesystem: true
-          runAsNonRoot: true
-          runAsUser: 1000
-        image: ghcr.io/zitadel/zitadel-login:v4.0.0
-        imagePullPolicy: IfNotPresent
-        env:
-        - name: NEXT_PUBLIC_BASE_PATH
-          value: /ui/v2/login
-        ports:
-        - containerPort: 3000
-          name: http-server
-          protocol: TCP
-        livenessProbe:
-          httpGet:
-            path: /ui/v2/login/healthy
-            port: http-server
-            scheme: HTTP
-          initialDelaySeconds: 0
-          periodSeconds: 5
-          failureThreshold: 3
-        readinessProbe:
-          httpGet:
-            path: /ui/v2/login/security
-            port: http-server
-            scheme: HTTP
-          initialDelaySeconds: 0
-          periodSeconds: 5
-          failureThreshold: 3
-        volumeMounts:
-        - name: login-config-dotenv
-          mountPath: /.env-file/
-          readOnly: true
-        - mountPath: /login-client
-          name: login-client
-          readOnly: true
-        resources: {}
-      volumes:
-      - name: login-config-dotenv
-        configMap:
-          name: zitadel-login-config-dotenv
-      - name: login-client
-        secret:
-          defaultMode: 444
-          secretName: login-client
-
--- HelmRelease: authentication/zitadel ServiceAccount: authentication/zitadel-login

+++ HelmRelease: authentication/zitadel ServiceAccount: authentication/zitadel-login

@@ -1,14 +0,0 @@

----
-apiVersion: v1
-kind: ServiceAccount
-metadata:
-  name: zitadel-login
-  labels:
-    app.kubernetes.io/name: zitadel-login
-    app.kubernetes.io/instance: zitadel
-    app.kubernetes.io/managed-by: Helm
-  annotations:
-    helm.sh/hook: pre-install,pre-upgrade
-    helm.sh/hook-delete-policy: before-hook-creation
-    helm.sh/hook-weight: '0'
-
--- HelmRelease: authentication/zitadel ConfigMap: authentication/zitadel-login-config-dotenv

+++ HelmRelease: authentication/zitadel ConfigMap: authentication/zitadel-login-config-dotenv

@@ -1,20 +0,0 @@

----
-apiVersion: v1
-kind: ConfigMap
-metadata:
-  name: zitadel-login-config-dotenv
-  annotations:
-    helm.sh/hook: pre-install,pre-upgrade
-    helm.sh/hook-delete-policy: before-hook-creation
-    helm.sh/hook-weight: '0'
-  labels:
-    app.kubernetes.io/name: zitadel-login
-    app.kubernetes.io/instance: zitadel
-    app.kubernetes.io/managed-by: Helm
-    app.kubernetes.io/component: login
-data:
-  .env: |-
-    ZITADEL_SERVICE_USER_TOKEN_FILE="/login-client/pat"
-    ZITADEL_API_URL="http://zitadel:8080"
-    CUSTOM_REQUEST_HEADERS="Host:zitadel.internal.immich.cloud"
-

@bo0tzz bo0tzz merged commit 91a7e7f into main Sep 22, 2025
12 checks passed
@bo0tzz bo0tzz deleted the fix/zitadel-login branch September 22, 2025 17:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants