Skip to content

Instantly share code, notes, and snippets.

@syst0m
Created December 4, 2018 14:12
Show Gist options
  • Save syst0m/bfb149f4e170d45e6756b0f3c59fceea to your computer and use it in GitHub Desktop.
Save syst0m/bfb149f4e170d45e6756b0f3c59fceea to your computer and use it in GitHub Desktop.
extraArgs: {}
agent:
## If false, agent will not be installed
##
enabled: true
## agent container name
##
name: agent
image:
repository: quay.io/uswitch/kiam
tag: v3.0-rc6
pullPolicy: IfNotPresent
## Logging settings
##
log:
jsonOutput: true
level: info
## Host networking settings
##
host:
iptables: false
port: 8181
interface: cali+
## Prometheus metrics
##
prometheus:
scrape: true
port: 9620
syncInterval: 5s
## Annotations to be added to pods
##
podAnnotations: {}
## Labels to be added to pods
##
podLabels: {}
## Strategy for DaemonSet updates (requires Kubernetes 1.6+)
## Ref: https://kubernetes.io/docs/tasks/manage-daemon/update-daemon-set/
##
updateStrategy: OnDelete
## Pod DNS policy
## Ref: https://kubernetes.io/docs/concepts/services-networking/dns-pod-service/#pods-dns-policy
##
dnsPolicy: ClusterFirstWithHostNet
## Node labels for pod assignment
## Ref: https://kubernetes.io/docs/user-guide/node-selection/
##
nodeSelector: {}
# kubernetes.io/role: node
## Pod tolerations
## Ref https://kubernetes.io/docs/concepts/configuration/taint-and-toleration/
##
tolerations: []
## Agent container resources
## Ref https://kubernetes.io/docs/concepts/configuration/manage-compute-resources-container/
##
resources: {}
## Additional container arguments
##
extraArgs: {}
## Additional container environment variables
##
extraEnv: {}
## Additional container hostPath mounts
##
extraHostPathMounts:
- name: ssl-certs
mountPath: /etc/ssl/certs
## Running on Amazon Linux or RHEL distros:
hostPath: /etc/pki/ca-trust/extracted/pem
## else:
# hostPath: /usr/share/ca-certificates
readOnly: true
## Timeout when creating the kiam gateway
##
gatewayTimeoutCreation: 50ms
## Base64-encoded PEM values for agent's CA certificate(s), certificate and private key
##
tlsFiles:
ca:
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
cert:
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
key:
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
server:
## If false, server will not be installed
##
enabled: true
## server container name
##
name: server
image:
repository: quay.io/uswitch/kiam
tag: v3.0-rc6
pullPolicy: IfNotPresent
## Logging settings
##
log:
jsonOutput: true
level: info
## Prometheus metrics
##
prometheus:
scrape: true
port: 9620
syncInterval: 5s
## Annotations to be added to pods
##
podAnnotations: {}
## Strategy for DaemonSet updates (requires Kubernetes 1.6+)
## Ref: https://kubernetes.io/docs/tasks/manage-daemon/update-daemon-set/
##
updateStrategy: OnDelete
## Node labels for pod assignment
## Ref: https://kubernetes.io/docs/user-guide/node-selection/
##
nodeSelector: {}
# kubernetes.io/role: master
## Pod tolerations
## Ref https://kubernetes.io/docs/concepts/configuration/taint-and-toleration/
##
tolerations: []
## Server container resources
## Ref https://kubernetes.io/docs/concepts/configuration/manage-compute-resources-container/
##
resources: {}
## Additional container arguments
##
extraArgs: {}
## Additional container environment variables
##
extraEnv: {}
## Additional container hostPath mounts
##
extraHostPathMounts:
- name: ssl-certs
mountPath: /etc/ssl/certs
## Running on Amazon Linux or RHEL distros:
hostPath: /etc/pki/ca-trust/extracted/pem
## else:
# hostPath: /usr/share/ca-certificates
readOnly: true
service:
port: 443
targetPort: 443
## Timeout when creating the kiam gateway
##
gatewayTimeoutCreation: 50ms
## Server probe configuration
probes:
serverAddress: localhost
## Base64-encoded PEM values for server's CA certificate(s), certificate and private key
##
tlsFiles:
ca:
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
cert:
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
key:
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
## Base ARN for IAM roles
## If not specified use EC2 metadata service to detect ARN prefix
##
roleBaseArn: null
## Pod cache settings
##
cache:
syncInterval: 1m
## IAM role for the server to assume
##
assumeRoleArn: null
## Session duration for STS tokens
##
sessionDuration: 15m
## Use hostNetwork for server
## Set this to true when running the servers on the same nodes as the agents
useHostNetwork: false
rbac:
# Specifies whether RBAC resources should be created
create: true
serviceAccounts:
agent:
create: true
name:
server:
create: true
name:
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment