fix: use configurable root credentials for dbinit job via values.yaml

dbInit.mysqlUser and dbInit.mysqlPasswordKey are now configurable in
values.yaml. Defaults to root/mysql-root-password since SQL migrations
need SUPER privilege for triggers with DEFINER=root@%.

App (hades-service) still connects as hades_user — only the migration
job uses root.

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
This commit is contained in:
Sagar Patil 2026-04-28 14:17:52 +05:30
parent ffb6b84b3c
commit 7a9c1db489
2 changed files with 4 additions and 2 deletions

View File

@ -50,12 +50,12 @@ spec:
- name: MYSQL_DATABASE - name: MYSQL_DATABASE
value: {{ include "hades.databaseName" . | quote }} value: {{ include "hades.databaseName" . | quote }}
- name: MYSQL_USER - name: MYSQL_USER
value: {{ include "hades.databaseUsername" . | quote }} value: {{ .Values.dbInit.mysqlUser | default "root" | quote }}
- name: MYSQL_PWD - name: MYSQL_PWD
valueFrom: valueFrom:
secretKeyRef: secretKeyRef:
name: {{ include "hades.databaseSecretName" . }} name: {{ include "hades.databaseSecretName" . }}
key: mysql-password key: {{ .Values.dbInit.mysqlPasswordKey | default "mysql-root-password" }}
command: command:
- /bin/bash - /bin/bash
- -c - -c

View File

@ -166,6 +166,8 @@ mysql:
# Automatically runs all SQL migration files from sql/ directory in alphabetical order # Automatically runs all SQL migration files from sql/ directory in alphabetical order
dbInit: dbInit:
enabled: true enabled: true
mysqlUser: "root"
mysqlPasswordKey: "mysql-root-password"
# ConfigMap for application configuration files # ConfigMap for application configuration files
config: config: