This repository has been archived on 2024-02-11. You can view files and clone it, but cannot push or open issues or pull requests.
valinor/kubernetes/apps/kube-system/cilium/app/helmrelease.yaml

114 lines
2.4 KiB
YAML
Raw Normal View History

2023-08-13 12:13:53 -05:00
---
apiVersion: helm.toolkit.fluxcd.io/v2beta1
kind: HelmRelease
metadata:
name: cilium
namespace: kube-system
spec:
2023-08-13 23:54:15 -05:00
interval: 30m
2023-08-13 12:13:53 -05:00
chart:
spec:
chart: cilium
2023-08-13 23:54:15 -05:00
version: 1.14.0
2023-08-13 12:13:53 -05:00
sourceRef:
kind: HelmRepository
name: cilium
namespace: flux-system
maxHistory: 2
install:
remediation:
retries: 3
upgrade:
cleanupOnFail: true
remediation:
retries: 3
uninstall:
keepHistory: false
values:
2023-08-13 23:54:15 -05:00
autoDirectNodeRoutes: true
bpf:
masquerade: true
bgp:
enabled: false
cluster:
name: kubernetes
id: 1
containerRuntime:
integration: containerd
socketPath: /var/run/k3s/containerd/containerd.sock
endpointRoutes:
enabled: true
2023-08-13 12:13:53 -05:00
hubble:
2023-08-13 23:54:15 -05:00
enabled: true
2023-08-13 12:13:53 -05:00
metrics:
2023-08-13 23:54:15 -05:00
enabled:
- dns:query
- drop
- tcp
- flow
- port-distribution
- icmp
- http
2023-08-13 12:13:53 -05:00
serviceMonitor:
enabled: true
2023-08-13 23:54:15 -05:00
dashboards:
enabled: true
annotations:
grafana_folder: Cilium
2023-08-13 12:13:53 -05:00
relay:
2023-08-13 23:54:15 -05:00
enabled: true
rollOutPods: true
2023-08-13 12:13:53 -05:00
prometheus:
serviceMonitor:
enabled: true
2023-08-13 23:54:15 -05:00
ui:
2023-08-13 12:13:53 -05:00
enabled: true
2023-08-13 23:54:15 -05:00
rollOutPods: true
ingress:
enabled: true
className: internal
hosts:
- &host hubble.valinor.social
tls:
- hosts:
- *host
ipam:
mode: kubernetes
ipv4NativeRoutingCIDR: 10.32.0.0/16
k8sServiceHost: 10.2.0.3
k8sServicePort: 6443
kubeProxyReplacement: strict
kubeProxyReplacementHealthzBindAddr: 0.0.0.0:10256
l2announcements:
enabled: true
leaseDuration: 120s
leaseRenewDeadline: 60s
leaseRetryPeriod: 1s
loadBalancer:
algorithm: maglev
mode: dsr
localRedirectPolicy: true
2023-08-13 12:13:53 -05:00
operator:
2023-08-13 23:54:15 -05:00
rollOutPods: true
2023-08-13 12:13:53 -05:00
prometheus:
2023-08-13 23:54:15 -05:00
enabled: true
2023-08-13 12:13:53 -05:00
serviceMonitor:
enabled: true
2023-08-13 23:54:15 -05:00
dashboards:
enabled: true
annotations:
grafana_folder: Cilium
prometheus:
enabled: true
serviceMonitor:
enabled: true
trustCRDsExist: true
dashboards:
enabled: true
annotations:
grafana_folder: Cilium
rollOutCiliumPods: true
securityContext:
privileged: true
tunnel: disabled