apiVersion: argoproj.io/v1alpha1 kind: Application metadata: name: helm-actual-budget namespace: argocd finalizers: - resources-finalizer.argocd.argoproj.io spec: destination: namespace: actual-budget server: https://kubernetes.default.svc project: default source: repoURL: https://community-charts.github.io/helm-charts targetRevision: 1.8.9 chart: actualbudget helm: values: | # Actual Budget configuration image: tag: "26.6.0" # Authentication configuration login: method: openid openid: enforce: true providerName: Authentik discoveryUrl: https://authentik.rubenhensen.nl/application/o/actualbudget/ authMethod: openid existingSecret: name: actualbudget-oidc-client-secret clientIdKey: client_id clientSecretKey: client_secret extraEnvVars: ACTUAL_OPENID_SERVER_HOSTNAME: https://ynab.rubenhensen.nl # Service configuration service: type: ClusterIP port: 5006 # Ingress configuration ingress: enabled: true className: nginx annotations: cert-manager.io/cluster-issuer: prod-cluster-issuer nginx.ingress.kubernetes.io/proxy-body-size: 50m hosts: - host: ynab.rubenhensen.nl paths: - path: / pathType: Prefix tls: - secretName: actual-budget-tls hosts: - ynab.rubenhensen.nl # Persistence configuration persistence: enabled: true storageClass: longhorn size: 10Gi accessModes: - ReadWriteOnce # Resource limits resources: requests: memory: "256Mi" cpu: "100m" limits: memory: "512Mi" cpu: "500m" syncPolicy: syncOptions: - CreateNamespace=true automated: selfHeal: true prune: true