|
|
|
@@ -25,11 +25,6 @@ You will, however, be able to use all values referenced in the common chart here
|
|
|
|
|
| metrics.prometheus.entryPoint | string | `"metrics"` | |
|
|
|
|
|
| middlewares | object | `{"basicAuth":[],"chain":[],"forwardAuth":[],"ipWhiteList":[],"rateLimit":[],"redirectRegex":[],"redirectScheme":[]}` | SCALE Middleware Handlers |
|
|
|
|
|
| pilot | object | `{"enabled":false,"token":""}` | Activate Pilot integration |
|
|
|
|
|
| podSecurityContext.fsGroup | int | `568` | |
|
|
|
|
|
| podSecurityContext.fsGroupChangePolicy | string | `"OnRootMismatch"` | |
|
|
|
|
|
| podSecurityContext.runAsGroup | int | `568` | |
|
|
|
|
|
| podSecurityContext.runAsUser | int | `568` | |
|
|
|
|
|
| podSecurityContext.supplementalGroups | list | `[]` | |
|
|
|
|
|
| portalhook.enabled | bool | `true` | |
|
|
|
|
|
| probes.liveness | object | See below | Liveness probe configuration |
|
|
|
|
|
| probes.liveness.path | string | "/" | If a HTTP probe is used (default for HTTP/HTTPS services) this path is used |
|
|
|
|
@@ -46,7 +41,6 @@ You will, however, be able to use all values referenced in the common chart here
|
|
|
|
|
| providers.kubernetesIngress.namespaces | list | `[]` | |
|
|
|
|
|
| providers.kubernetesIngress.publishedService.enabled | bool | `true` | |
|
|
|
|
|
| rbac | object | `{"enabled":true,"rules":[{"apiGroups":[""],"resources":["services","endpoints","secrets"],"verbs":["get","list","watch"]},{"apiGroups":["extensions","networking.k8s.io"],"resources":["ingresses","ingressclasses"],"verbs":["get","list","watch"]},{"apiGroups":["extensions","networking.k8s.io"],"resources":["ingresses/status"],"verbs":["update"]},{"apiGroups":["traefik.containo.us"],"resources":["ingressroutes","ingressroutetcps","ingressrouteudps","middlewares","middlewaretcps","tlsoptions","tlsstores","traefikservices","serverstransports"],"verbs":["get","list","watch"]}]}` | Whether Role Based Access Control objects like roles and rolebindings should be created |
|
|
|
|
|
| securityContext | object | `{"allowPrivilegeEscalation":false,"capabilities":{"drop":["ALL"]},"privileged":false,"readOnlyRootFilesystem":true,"runAsNonRoot":false}` | Set the container security context To run the container with ports below 1024 this will need to be adjust to run as root |
|
|
|
|
|
| service | object | `{"main":{"enabled":true,"ports":{"main":{"enabled":true,"port":9000,"protocol":"HTTP"}},"type":"LoadBalancer"},"metrics":{"enabled":true,"ports":{"metrics":{"enabled":true,"port":9100,"protocol":"HTTP"}},"type":"LoadBalancer"},"tcp":{"enabled":true,"ports":{"web":{"enabled":true,"port":9080,"protocol":"HTTP","redirectTo":"websecure"},"websecure":{"enabled":true,"port":9443,"protocol":"HTTPS"}},"type":"LoadBalancer"},"udp":{"enabled":false}}` | Options for the main traefik service, where the entrypoints traffic comes from from. |
|
|
|
|
|
| serviceAccount | object | `{"enabled":true,"name":""}` | The service account the pods will use to interact with the Kubernetes API |
|
|
|
|
|
| tlsOptions | object | `{"default":{"cipherSuites":["TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256","TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384","TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305","TLS_AES_128_GCM_SHA256","TLS_AES_256_GCM_SHA384","TLS_CHACHA20_POLY1305_SHA256"],"curvePreferences":["CurveP521","CurveP384"],"minVersion":"VersionTLS12","sniStrict":false}}` | TLS Options to be created as TLSOption CRDs https://doc.traefik.io/traefik/https/tls/#tls-options Example: |
|
|
|
|
|