Created
December 4, 2018 14:12
-
-
Save syst0m/bfb149f4e170d45e6756b0f3c59fceea to your computer and use it in GitHub Desktop.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
extraArgs: {} | |
agent: | |
## If false, agent will not be installed | |
## | |
enabled: true | |
## agent container name | |
## | |
name: agent | |
image: | |
repository: quay.io/uswitch/kiam | |
tag: v3.0-rc6 | |
pullPolicy: IfNotPresent | |
## Logging settings | |
## | |
log: | |
jsonOutput: true | |
level: info | |
## Host networking settings | |
## | |
host: | |
iptables: false | |
port: 8181 | |
interface: cali+ | |
## Prometheus metrics | |
## | |
prometheus: | |
scrape: true | |
port: 9620 | |
syncInterval: 5s | |
## Annotations to be added to pods | |
## | |
podAnnotations: {} | |
## Labels to be added to pods | |
## | |
podLabels: {} | |
## Strategy for DaemonSet updates (requires Kubernetes 1.6+) | |
## Ref: https://kubernetes.io/docs/tasks/manage-daemon/update-daemon-set/ | |
## | |
updateStrategy: OnDelete | |
## Pod DNS policy | |
## Ref: https://kubernetes.io/docs/concepts/services-networking/dns-pod-service/#pods-dns-policy | |
## | |
dnsPolicy: ClusterFirstWithHostNet | |
## Node labels for pod assignment | |
## Ref: https://kubernetes.io/docs/user-guide/node-selection/ | |
## | |
nodeSelector: {} | |
# kubernetes.io/role: node | |
## Pod tolerations | |
## Ref https://kubernetes.io/docs/concepts/configuration/taint-and-toleration/ | |
## | |
tolerations: [] | |
## Agent container resources | |
## Ref https://kubernetes.io/docs/concepts/configuration/manage-compute-resources-container/ | |
## | |
resources: {} | |
## Additional container arguments | |
## | |
extraArgs: {} | |
## Additional container environment variables | |
## | |
extraEnv: {} | |
## Additional container hostPath mounts | |
## | |
extraHostPathMounts: | |
- name: ssl-certs | |
mountPath: /etc/ssl/certs | |
## Running on Amazon Linux or RHEL distros: | |
hostPath: /etc/pki/ca-trust/extracted/pem | |
## else: | |
# hostPath: /usr/share/ca-certificates | |
readOnly: true | |
## Timeout when creating the kiam gateway | |
## | |
gatewayTimeoutCreation: 50ms | |
## Base64-encoded PEM values for agent's CA certificate(s), certificate and private key | |
## | |
tlsFiles: | |
ca: | |
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 | |
cert: | |
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 | |
key: | |
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 | |
server: | |
## If false, server will not be installed | |
## | |
enabled: true | |
## server container name | |
## | |
name: server | |
image: | |
repository: quay.io/uswitch/kiam | |
tag: v3.0-rc6 | |
pullPolicy: IfNotPresent | |
## Logging settings | |
## | |
log: | |
jsonOutput: true | |
level: info | |
## Prometheus metrics | |
## | |
prometheus: | |
scrape: true | |
port: 9620 | |
syncInterval: 5s | |
## Annotations to be added to pods | |
## | |
podAnnotations: {} | |
## Strategy for DaemonSet updates (requires Kubernetes 1.6+) | |
## Ref: https://kubernetes.io/docs/tasks/manage-daemon/update-daemon-set/ | |
## | |
updateStrategy: OnDelete | |
## Node labels for pod assignment | |
## Ref: https://kubernetes.io/docs/user-guide/node-selection/ | |
## | |
nodeSelector: {} | |
# kubernetes.io/role: master | |
## Pod tolerations | |
## Ref https://kubernetes.io/docs/concepts/configuration/taint-and-toleration/ | |
## | |
tolerations: [] | |
## Server container resources | |
## Ref https://kubernetes.io/docs/concepts/configuration/manage-compute-resources-container/ | |
## | |
resources: {} | |
## Additional container arguments | |
## | |
extraArgs: {} | |
## Additional container environment variables | |
## | |
extraEnv: {} | |
## Additional container hostPath mounts | |
## | |
extraHostPathMounts: | |
- name: ssl-certs | |
mountPath: /etc/ssl/certs | |
## Running on Amazon Linux or RHEL distros: | |
hostPath: /etc/pki/ca-trust/extracted/pem | |
## else: | |
# hostPath: /usr/share/ca-certificates | |
readOnly: true | |
service: | |
port: 443 | |
targetPort: 443 | |
## Timeout when creating the kiam gateway | |
## | |
gatewayTimeoutCreation: 50ms | |
## Server probe configuration | |
probes: | |
serverAddress: localhost | |
## Base64-encoded PEM values for server's CA certificate(s), certificate and private key | |
## | |
tlsFiles: | |
ca: | |
LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURrakNDQW5xZ0F3SUJBZ0lVVG1ZN2VDTWdDL1FKM0xvT3NTVmRzQVhqWVFjd0RRWUpLb1pJaHZjTkFRRUwKQlFBd1lURUxNQWtHQTFVRUJoTUNWVXN4RHpBTkJnTlZCQWdUQmt4dmJtUnZiakVQTUEwR0ExVUVCeE1HVEc5dQpaRzl1TVJBd0RnWURWUVFLRXdkMVUzZHBkR05vTVF3d0NnWURWUVFMRXdOWFYxY3hFREFPQmdOVkJBTVRCMHRwCllXMGdRMEV3SGhjTk1UZ3hNakF6TVRZek9UQXdXaGNOTWpNeE1qQXlNVFl6T1RBd1dqQmhNUXN3Q1FZRFZRUUcKRXdKVlN6RVBNQTBHQTFVRUNCTUdURzl1Wkc5dU1ROHdEUVlEVlFRSEV3Wk1iMjVrYjI0eEVEQU9CZ05WQkFvVApCM1ZUZDJsMFkyZ3hEREFLQmdOVkJBc1RBMWRYVnpFUU1BNEdBMVVFQXhNSFMybGhiU0JEUVRDQ0FTSXdEUVlKCktvWklodmNOQVFFQkJRQURnZ0VQQURDQ0FRb0NnZ0VCQUs2QnB5Z1dSVTZZM1JWME1wd1hCa2g3b3NpRDlVQmUKSDFoVzhoZ29aL29QSmM2Y1JUY1c4dXdPUTBNS25zMVdjeFJPcVFXTm5pVHVjdE9iNjhGc0hHRzdVTkdDTlJiVgpKRHJMb0NuWG5LNnEySmZUMnFqQ01rbTlwMGZxRWJEck4xcXNHcW00T2M5RTJ1am5BRUdnbkdoR0ZKUWJLeCtUCmZHQ0ZaUjNEdFZ5NGFSS0FMSXFTWWYvQ2pjZTNPU2NhL0RrNDVycldjbVNvYmxnS3RaNUJybHRudFI5ZDRTOWgKbmt2SnlRS1duY2tyb2hYRnNwbk9jWWJJbnRvWlRVMlMzZmdkek5hUkluUTVXQ2hJQ2hzUGZSWTl0Mm4xMG85ZApqdVY5RXBYZWJzSFU3ZitRaTZDWDJOZmZKZEdRYWs4Ymx0MGhjdUNrblFwM1Z4Ti9ZSG5GeFpjQ0F3RUFBYU5DCk1FQXdEZ1lEVlIwUEFRSC9CQVFEQWdFR01BOEdBMVVkRXdFQi93UUZNQU1CQWY4d0hRWURWUjBPQkJZRUZGYmgKamRaSzRzQzVCa3A4eW45cFgxeUp6dE9HTUEwR0NTcUdTSWIzRFFFQkN3VUFBNElCQVFDYytWUnJRbXlPbDlLYwoyTVEwZFFYMDU1VWZwdStRSzhldU5OR1l1ZG5oNnR6cjl0MzBBYWxRMEd3Y3BVT09wdjhWeENSWklpYzhEZ1NaClVwd1hUY1R4SHZXcDRJdzY2ZHhTOHV5cHk5eWI2ZEVVblJkY0xVKzJ4TmN4bVF0R1oxZ0hWSnF6WVMyS1BOOW4KcXpTS3IxSzZTNDl3RmtkcFJnY1RJQUxqdis2cmlYK3lTUGRQZkVLZUY2SWZJM3RHQkhYRnRsNExVbkU3YlB3MgpPVUlBSlpwUVF1NHRhZ2w5eGMrOGdnUTBKS2pvcVMzMVR1VU81dGlvb21wdkhYa09TUVhRWEZ3Z2d3OThQbGFWCnN6ZVY0MFJzYUZNS3RlQldzbU02Syt3bjhIMmhJYnRzYmtWVWxDQWJMMThjRVU2L2dtUys5Y0xxdWpVV2ZJZjIKS0JOUElrOXUKLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= | |
cert: | |
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 | |
key: | |
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 | |
## Base ARN for IAM roles | |
## If not specified use EC2 metadata service to detect ARN prefix | |
## | |
roleBaseArn: null | |
## Pod cache settings | |
## | |
cache: | |
syncInterval: 1m | |
## IAM role for the server to assume | |
## | |
assumeRoleArn: null | |
## Session duration for STS tokens | |
## | |
sessionDuration: 15m | |
## Use hostNetwork for server | |
## Set this to true when running the servers on the same nodes as the agents | |
useHostNetwork: false | |
rbac: | |
# Specifies whether RBAC resources should be created | |
create: true | |
serviceAccounts: | |
agent: | |
create: true | |
name: | |
server: | |
create: true | |
name: |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment