Remove obsolete wetty chart now that terminal access has been replaced by Teleport.

This cleanup retires the unused Helm chart and prevents future accidental redeployments.

Co-authored-by: Cursor <cursoragent@cursor.com>
This commit is contained in:
Jonny Ervine 2026-05-05 22:33:57 +08:00
parent 246479c30a
commit 4e7b9380aa
13 changed files with 0 additions and 442 deletions

View File

@ -1,22 +0,0 @@
# Patterns to ignore when building packages.
# This supports shell glob matching, relative path matching, and
# negation (prefixed with !). Only one pattern per line.
.DS_Store
# Common VCS dirs
.git/
.gitignore
.bzr/
.bzrignore
.hg/
.hgignore
.svn/
# Common backup files
*.swp
*.bak
*.tmp
*~
# Various IDEs
.project
.idea/
*.tmproj
.vscode/

View File

@ -1,23 +0,0 @@
apiVersion: v2
name: wetty
description: A Helm chart for Kubernetes
# A chart can be either an 'application' or a 'library' chart.
#
# Application charts are a collection of templates that can be packaged into versioned archives
# to be deployed.
#
# Library charts provide useful utilities or functions for the chart developer. They're included as
# a dependency of application charts to inject those utilities and functions into the rendering
# pipeline. Library charts do not define any templates and therefore cannot be deployed.
type: application
# This is the chart version. This version number should be incremented each time you make changes
# to the chart and its templates, including the app version.
version: 0.2.2
# This is the version number of the application being deployed. This version number should be
# incremented each time you make changes to the application.
appVersion: 2.7.0
icon: https://git.ervine.org/jonny/x86_64-alpine-wetty/raw/branch/master/tty.png

View File

@ -1,4 +0,0 @@
parameters:
REMOTE_SSH_USER: {{ .Values.config.remote_ssh_user }}
REMOTE_SSH_PORT: {{ .Values.config.remote_ssh_port }}
REMOTE_SSH_SERVER: {{ .Values.config.remote_ssh_server }}

View File

@ -1,21 +0,0 @@
1. Get the application URL by running these commands:
{{- if .Values.ingress.enabled }}
{{- range $host := .Values.ingress.hosts }}
{{- range .paths }}
http{{ if $.Values.ingress.tls }}s{{ end }}://{{ $host.host }}{{ . }}
{{- end }}
{{- end }}
{{- else if contains "NodePort" .Values.service.type }}
export NODE_PORT=$(kubectl get --namespace {{ .Release.Namespace }} -o jsonpath="{.spec.ports[0].nodePort}" services {{ include "wetty.fullname" . }})
export NODE_IP=$(kubectl get nodes --namespace {{ .Release.Namespace }} -o jsonpath="{.items[0].status.addresses[0].address}")
echo http://$NODE_IP:$NODE_PORT
{{- else if contains "LoadBalancer" .Values.service.type }}
NOTE: It may take a few minutes for the LoadBalancer IP to be available.
You can watch the status of by running 'kubectl get --namespace {{ .Release.Namespace }} svc -w {{ include "wetty.fullname" . }}'
export SERVICE_IP=$(kubectl get svc --namespace {{ .Release.Namespace }} {{ include "wetty.fullname" . }} --template "{{"{{ range (index .status.loadBalancer.ingress 0) }}{{.}}{{ end }}"}}")
echo http://$SERVICE_IP:{{ .Values.service.port }}
{{- else if contains "ClusterIP" .Values.service.type }}
export POD_NAME=$(kubectl get pods --namespace {{ .Release.Namespace }} -l "app.kubernetes.io/name={{ include "wetty.name" . }},app.kubernetes.io/instance={{ .Release.Name }}" -o jsonpath="{.items[0].metadata.name}")
echo "Visit http://127.0.0.1:8080 to use your application"
kubectl --namespace {{ .Release.Namespace }} port-forward $POD_NAME 8080:80
{{- end }}

View File

@ -1,63 +0,0 @@
{{/* vim: set filetype=mustache: */}}
{{/*
Expand the name of the chart.
*/}}
{{- define "wetty.name" -}}
{{- default .Chart.Name .Values.nameOverride | trunc 63 | trimSuffix "-" -}}
{{- end -}}
{{/*
Create a default fully qualified app name.
We truncate at 63 chars because some Kubernetes name fields are limited to this (by the DNS naming spec).
If release name contains chart name it will be used as a full name.
*/}}
{{- define "wetty.fullname" -}}
{{- if .Values.fullnameOverride -}}
{{- .Values.fullnameOverride | trunc 63 | trimSuffix "-" -}}
{{- else -}}
{{- $name := default .Chart.Name .Values.nameOverride -}}
{{- if contains $name .Release.Name -}}
{{- .Release.Name | trunc 63 | trimSuffix "-" -}}
{{- else -}}
{{- printf "%s-%s" .Release.Name $name | trunc 63 | trimSuffix "-" -}}
{{- end -}}
{{- end -}}
{{- end -}}
{{/*
Create chart name and version as used by the chart label.
*/}}
{{- define "wetty.chart" -}}
{{- printf "%s-%s" .Chart.Name .Chart.Version | replace "+" "_" | trunc 63 | trimSuffix "-" -}}
{{- end -}}
{{/*
Common labels
*/}}
{{- define "wetty.labels" -}}
helm.sh/chart: {{ include "wetty.chart" . }}
{{ include "wetty.selectorLabels" . }}
{{- if .Chart.AppVersion }}
app.kubernetes.io/version: {{ .Chart.AppVersion | quote }}
{{- end }}
app.kubernetes.io/managed-by: {{ .Release.Service }}
{{- end -}}
{{/*
Selector labels
*/}}
{{- define "wetty.selectorLabels" -}}
app.kubernetes.io/name: {{ include "wetty.name" . }}
app.kubernetes.io/instance: {{ .Release.Name }}
{{- end -}}
{{/*
Create the name of the service account to use
*/}}
{{- define "wetty.serviceAccountName" -}}
{{- if .Values.serviceAccount.create -}}
{{ default (include "wetty.fullname" .) .Values.serviceAccount.name }}
{{- else -}}
{{ default "default" .Values.serviceAccount.name }}
{{- end -}}
{{- end -}}

View File

@ -1,39 +0,0 @@
apiVersion: v1
kind: ConfigMap
metadata:
name: wetty-config
#name: {{ .Values.config.configMapName }}
labels:
{{- include "wetty.labels" . | nindent 4 }}
data:
config.json: "{ \n \"ssh\": {\n \"user\": \"{{ .Values.config.remote_ssh_user }}\", // default user to
use when ssh-ing\n \"host\": \"{{ .Values.config.remote_ssh_server }}\", // Server to ssh
to\n \"auth\": \"{{ .Values.config.remote_ssh_auth }}\", // shh authentication, method. Defaults
to \"password\", you can use \"publickey,password\" instead'\n \"key\":
\"/src/.ssh/id_ecdsa\", // path to an optional client private key, connection
will be password-less and insecure!\n \"port\": {{ .Values.config.remote_ssh_port }}, // Port to ssh to\n
\ },\n \"server\": {\n \"base\": \"{{ .Values.config.wetty_base }}\", // URL base to serve resources
from\n \"port\": 3000, // Port to listen on\n \"host\": \"0.0.0.0\",
// listen on all interfaces or can be 127.0.0.1 with nginx\n \"title\":
\"WeTTy - The Web Terminal Emulator\", // Page title\n \"bypassHelmet\":
false // Disable Helmet security checks\n },\n \"forceSSH\": false, // Force
sshing to local machine over login if running as root\n \"command\": \"login\",
// Command to run on server. Login will use ssh if connecting to different server\n}\n"
---
apiVersion: v1
kind: ConfigMap
metadata:
name: wetty-key-copy
#name: {{ .Values.config.configMapName }}
labels:
{{- include "wetty.labels" . | nindent 4 }}
data:
key-copy.sh: |
#/bin/sh
## Script to copy shared keys into correct location
cd /src
cp id_ecdsa .ssh/
cp id_ecdsa.pub .ssh/
chmod 400 .ssh/*
chmod 700 .ssh
chown -R 1001:1001 .ssh

View File

@ -1,104 +0,0 @@
apiVersion: apps/v1
kind: Deployment
metadata:
name: {{ include "wetty.fullname" . }}
labels:
{{- include "wetty.labels" . | nindent 4 }}
spec:
replicas: {{ .Values.replicaCount }}
selector:
matchLabels:
{{- include "wetty.selectorLabels" . | nindent 6 }}
template:
metadata:
labels:
{{- include "wetty.selectorLabels" . | nindent 8 }}
spec:
{{- with .Values.imagePullSecrets }}
imagePullSecrets:
{{- toYaml . | nindent 8 }}
{{- end }}
serviceAccountName: {{ include "wetty.serviceAccountName" . }}
securityContext:
{{- toYaml .Values.podSecurityContext | nindent 8 }}
containers:
- name: {{ .Chart.Name }}
securityContext:
{{- toYaml .Values.securityContext | nindent 12 }}
image: "{{ .Values.image.repository }}:{{ .Chart.AppVersion }}"
imagePullPolicy: {{ .Values.image.pullPolicy }}
ports:
- name: http
containerPort: 3000
protocol: TCP
livenessProbe:
httpGet:
path: /
port: http
initialDelaySeconds: 5
periodSeconds: 5
readinessProbe:
httpGet:
path: /
port: http
initialDelaySeconds: 5
periodSeconds: 5
resources:
{{- toYaml .Values.resources | nindent 12 }}
volumeMounts:
- mountPath: /src/.ssh
name: ssh
- mountPath: /usr/src/app/config.json
name: config
subPath: config.json
initContainers:
- command:
- /bin/sh
- /tmp/key-copy.sh
image: alpine
imagePullPolicy: Always
name: init
resources:
limits:
cpu: 100m
memory: 64Mi
requests:
cpu: 10m
memory: 16Mi
terminationMessagePath: /dev/termination-log
terminationMessagePolicy: File
volumeMounts:
- mountPath: /src/.ssh
name: ssh
- mountPath: /src
name: sshkeys
- mountPath: /tmp/key-copy.sh
name: wetty-key-copy
subPath: key-copy.sh
{{- with .Values.nodeSelector }}
nodeSelector:
{{- toYaml . | nindent 8 }}
{{- end }}
volumes:
- emptyDir: {}
name: ssh
- name: sshkeys
secret:
defaultMode: 400
secretName: wetty-ssh-keys
- configMap:
defaultMode: 420
name: wetty-config
name: config
- configMap:
defaultMode: 0755
name: wetty-key-copy
name: wetty-key-copy
{{- with .Values.affinity }}
affinity:
{{- toYaml . | nindent 8 }}
{{- end }}
{{- with .Values.tolerations }}
tolerations:
{{- toYaml . | nindent 8 }}
{{- end }}

View File

@ -1,41 +0,0 @@
{{- if .Values.ingress.enabled -}}
{{- $fullName := include "wetty.fullname" . -}}
{{- $svcPort := .Values.service.port -}}
{{- if semverCompare ">=1.14-0" .Capabilities.KubeVersion.GitVersion -}}
apiVersion: networking.k8s.io/v1beta1
{{- else -}}
apiVersion: extensions/v1beta1
{{- end }}
kind: Ingress
metadata:
name: {{ $fullName }}
labels:
{{- include "wetty.labels" . | nindent 4 }}
{{- with .Values.ingress.annotations }}
annotations:
{{- toYaml . | nindent 4 }}
{{- end }}
spec:
{{- if .Values.ingress.tls }}
tls:
{{- range .Values.ingress.tls }}
- hosts:
{{- range .hosts }}
- {{ . | quote }}
{{- end }}
secretName: {{ .secretName }}
{{- end }}
{{- end }}
rules:
{{- range .Values.ingress.hosts }}
- host: {{ .host | quote }}
http:
paths:
{{- range .paths }}
- path: {{ . }}
backend:
serviceName: {{ $fullName }}
servicePort: {{ $svcPort }}
{{- end }}
{{- end }}
{{- end }}

View File

@ -1,10 +0,0 @@
apiVersion: v1
kind: Secret
metadata:
name: wetty-ssh-keys
labels:
{{- include "wetty.labels" . | nindent 4 }}
data:
# apiAddress: {{ printf "http://%s:%.0f" .Values.service.name .Values.service.externalPort | b64enc | quote }}
id_ecdsa: {{ .Values.config.privkey | b64enc | quote }}
id_ecdsa.pub: {{ .Values.config.pubkey | b64enc | quote }}

View File

@ -1,15 +0,0 @@
apiVersion: v1
kind: Service
metadata:
name: {{ include "wetty.fullname" . }}
labels:
{{- include "wetty.labels" . | nindent 4 }}
spec:
type: {{ .Values.service.type }}
ports:
- port: {{ .Values.service.port }}
targetPort: http
protocol: TCP
name: http
selector:
{{- include "wetty.selectorLabels" . | nindent 4 }}

View File

@ -1,8 +0,0 @@
{{- if .Values.serviceAccount.create -}}
apiVersion: v1
kind: ServiceAccount
metadata:
name: {{ include "wetty.serviceAccountName" . }}
labels:
{{ include "wetty.labels" . | nindent 4 }}
{{- end -}}

View File

@ -1,15 +0,0 @@
apiVersion: v1
kind: Pod
metadata:
name: "{{ include "wetty.fullname" . }}-test-connection"
labels:
{{ include "wetty.labels" . | nindent 4 }}
annotations:
"helm.sh/hook": test-success
spec:
containers:
- name: wget
image: busybox
command: ['wget']
args: ['{{ include "wetty.fullname" . }}:{{ .Values.service.port }}']
restartPolicy: Never

View File

@ -1,77 +0,0 @@
# Default values for wetty.
# This is a YAML-formatted file.
# Declare variables to be passed into your templates.
replicaCount: 1
image:
repository: harbor.ervine.dev/public/x86_64/alpine/wetty
pullPolicy: IfNotPresent
tag: 2.7.0
imagePullSecrets: []
nameOverride: ""
fullnameOverride: ""
serviceAccount:
# Specifies whether a service account should be created
create: true
# The name of the service account to use.
# If not set and create is true, a name is generated using the fullname template
name:
podSecurityContext: {}
# fsGroup: 2000
securityContext:
# capabilities:
# drop:
# - ALL
#readOnlyRootFilesystem: true
#runAsNonRoot: true
#runAsUser: 1001
service:
type: ClusterIP
port: 3000
ingress:
enabled: false
annotations: {}
# kubernetes.io/ingress.class: nginx
# kubernetes.io/tls-acme: "true"
hosts:
- host: chart-example.local
paths: []
tls: []
# - secretName: chart-example-tls
# hosts:
# - chart-example.local
resources:
# We usually recommend not to specify default resources and to leave this as a conscious
# choice for the user. This also increases chances charts run on environments with little
# resources, such as Minikube. If you do want to specify resources, uncomment the following
# lines, adjust them as necessary, and remove the curly braces after 'resources:'.
limits:
memory: 128Mi
requests:
cpu: 10m
memory: 30Mi
nodeSelector: {}
tolerations: []
affinity: {}
configMapName: wetty-config
config:
wetty_base: "/"
remote_ssh_auth: "publickey,password"
remote_ssh_server: "rockypi.ipa.champion"
remote_ssh_port: "22"
remote_ssh_user: "jonny"
pubkey: ""
privkey: ""