Merge pull request #245 from spiffe/tags
This commit is contained in:
+25
-13
@@ -129,7 +129,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spiffe-csi-driver.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spiffe-csi-driver.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spiffe-csi-driver.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| spiffe-csi-driver.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| spiffe-csi-driver.image.repository | string | `"spiffe/spiffe-csi-driver"` | The repository within the registry |
|
| spiffe-csi-driver.image.repository | string | `"spiffe/spiffe-csi-driver"` | The repository within the registry |
|
||||||
| spiffe-csi-driver.image.version | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
| spiffe-csi-driver.image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
||||||
|
| spiffe-csi-driver.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spiffe-csi-driver.imagePullSecrets | list | `[]` | |
|
| spiffe-csi-driver.imagePullSecrets | list | `[]` | |
|
||||||
| spiffe-csi-driver.kubeletPath | string | `"/var/lib/kubelet"` | |
|
| spiffe-csi-driver.kubeletPath | string | `"/var/lib/kubelet"` | |
|
||||||
| spiffe-csi-driver.nameOverride | string | `""` | |
|
| spiffe-csi-driver.nameOverride | string | `""` | |
|
||||||
@@ -137,7 +138,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spiffe-csi-driver.nodeDriverRegistrar.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spiffe-csi-driver.nodeDriverRegistrar.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spiffe-csi-driver.nodeDriverRegistrar.image.registry | string | `"registry.k8s.io"` | The OCI registry to pull the image from |
|
| spiffe-csi-driver.nodeDriverRegistrar.image.registry | string | `"registry.k8s.io"` | The OCI registry to pull the image from |
|
||||||
| spiffe-csi-driver.nodeDriverRegistrar.image.repository | string | `"sig-storage/csi-node-driver-registrar"` | The repository within the registry |
|
| spiffe-csi-driver.nodeDriverRegistrar.image.repository | string | `"sig-storage/csi-node-driver-registrar"` | The repository within the registry |
|
||||||
| spiffe-csi-driver.nodeDriverRegistrar.image.version | string | `"v2.6.2"` | |
|
| spiffe-csi-driver.nodeDriverRegistrar.image.tag | string | `"v2.6.2"` | Overrides the image tag |
|
||||||
|
| spiffe-csi-driver.nodeDriverRegistrar.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spiffe-csi-driver.nodeDriverRegistrar.resources | object | `{}` | |
|
| spiffe-csi-driver.nodeDriverRegistrar.resources | object | `{}` | |
|
||||||
| spiffe-csi-driver.nodeSelector | object | `{}` | |
|
| spiffe-csi-driver.nodeSelector | object | `{}` | |
|
||||||
| spiffe-csi-driver.pluginName | string | `"csi.spiffe.io"` | Set the csi driver name deployed to Kubernetes. |
|
| spiffe-csi-driver.pluginName | string | `"csi.spiffe.io"` | Set the csi driver name deployed to Kubernetes. |
|
||||||
@@ -170,7 +172,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spiffe-oidc-discovery-provider.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spiffe-oidc-discovery-provider.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spiffe-oidc-discovery-provider.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| spiffe-oidc-discovery-provider.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| spiffe-oidc-discovery-provider.image.repository | string | `"spiffe/oidc-discovery-provider"` | The repository within the registry |
|
| spiffe-oidc-discovery-provider.image.repository | string | `"spiffe/oidc-discovery-provider"` | The repository within the registry |
|
||||||
| spiffe-oidc-discovery-provider.image.version | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
| spiffe-oidc-discovery-provider.image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
||||||
|
| spiffe-oidc-discovery-provider.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spiffe-oidc-discovery-provider.imagePullSecrets | list | `[]` | |
|
| spiffe-oidc-discovery-provider.imagePullSecrets | list | `[]` | |
|
||||||
| spiffe-oidc-discovery-provider.ingress.annotations | object | `{}` | |
|
| spiffe-oidc-discovery-provider.ingress.annotations | object | `{}` | |
|
||||||
| spiffe-oidc-discovery-provider.ingress.className | string | `""` | |
|
| spiffe-oidc-discovery-provider.ingress.className | string | `""` | |
|
||||||
@@ -183,7 +186,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
||||||
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.repository | string | `"nginxinc/nginx-unprivileged"` | The repository within the registry |
|
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.repository | string | `"nginxinc/nginx-unprivileged"` | The repository within the registry |
|
||||||
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.version | string | `"1.23.2-alpine"` | |
|
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.tag | string | `"1.23.2-alpine"` | Overrides the image tag |
|
||||||
|
| spiffe-oidc-discovery-provider.insecureScheme.nginx.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spiffe-oidc-discovery-provider.insecureScheme.nginx.resources | object | `{}` | |
|
| spiffe-oidc-discovery-provider.insecureScheme.nginx.resources | object | `{}` | |
|
||||||
| spiffe-oidc-discovery-provider.nameOverride | string | `""` | |
|
| spiffe-oidc-discovery-provider.nameOverride | string | `""` | |
|
||||||
| spiffe-oidc-discovery-provider.namespaceOverride | string | `""` | |
|
| spiffe-oidc-discovery-provider.namespaceOverride | string | `""` | |
|
||||||
@@ -203,7 +207,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
||||||
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.repository | string | `"nginx/nginx-prometheus-exporter"` | The repository within the registry |
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.repository | string | `"nginx/nginx-prometheus-exporter"` | The repository within the registry |
|
||||||
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.version | string | `"0.11.0"` | |
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.tag | string | `"0.11.0"` | Overrides the image tag |
|
||||||
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.resources | object | `{}` | |
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.nginxExporter.resources | object | `{}` | |
|
||||||
| spiffe-oidc-discovery-provider.telemetry.prometheus.podMonitor.enabled | bool | `false` | |
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.podMonitor.enabled | bool | `false` | |
|
||||||
| spiffe-oidc-discovery-provider.telemetry.prometheus.podMonitor.labels | object | `{}` | |
|
| spiffe-oidc-discovery-provider.telemetry.prometheus.podMonitor.labels | object | `{}` | |
|
||||||
@@ -222,7 +227,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spire-agent.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spire-agent.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spire-agent.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| spire-agent.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| spire-agent.image.repository | string | `"spiffe/spire-agent"` | The repository within the registry |
|
| spire-agent.image.repository | string | `"spiffe/spire-agent"` | The repository within the registry |
|
||||||
| spire-agent.image.version | string | `""` | |
|
| spire-agent.image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
||||||
|
| spire-agent.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spire-agent.imagePullSecrets | list | `[]` | |
|
| spire-agent.imagePullSecrets | list | `[]` | |
|
||||||
| spire-agent.initContainers | list | `[]` | |
|
| spire-agent.initContainers | list | `[]` | |
|
||||||
| spire-agent.logLevel | string | `"info"` | The log level, valid values are "debug", "info", "warn", and "error" |
|
| spire-agent.logLevel | string | `"info"` | The log level, valid values are "debug", "info", "warn", and "error" |
|
||||||
@@ -252,7 +258,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spire-agent.waitForIt.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spire-agent.waitForIt.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spire-agent.waitForIt.image.registry | string | `"cgr.dev"` | The OCI registry to pull the image from |
|
| spire-agent.waitForIt.image.registry | string | `"cgr.dev"` | The OCI registry to pull the image from |
|
||||||
| spire-agent.waitForIt.image.repository | string | `"chainguard/wait-for-it"` | The repository within the registry |
|
| spire-agent.waitForIt.image.repository | string | `"chainguard/wait-for-it"` | The repository within the registry |
|
||||||
| spire-agent.waitForIt.image.version | string | `"latest-20230113"` | |
|
| spire-agent.waitForIt.image.tag | string | `"latest-20230517"` | Overrides the image tag |
|
||||||
|
| spire-agent.waitForIt.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spire-agent.waitForIt.resources | object | `{}` | |
|
| spire-agent.waitForIt.resources | object | `{}` | |
|
||||||
| spire-agent.workloadAttestors.k8s.skipKubeletVerification | bool | `true` | If true, kubelet certificate verification is skipped |
|
| spire-agent.workloadAttestors.k8s.skipKubeletVerification | bool | `true` | If true, kubelet certificate verification is skipped |
|
||||||
| spire-agent.workloadAttestors.unix.enabled | bool | `false` | enables the Unix workload attestor |
|
| spire-agent.workloadAttestors.unix.enabled | bool | `false` | enables the Unix workload attestor |
|
||||||
@@ -283,7 +290,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spire-server.controllerManager.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spire-server.controllerManager.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spire-server.controllerManager.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| spire-server.controllerManager.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| spire-server.controllerManager.image.repository | string | `"spiffe/spire-controller-manager"` | The repository within the registry |
|
| spire-server.controllerManager.image.repository | string | `"spiffe/spire-controller-manager"` | The repository within the registry |
|
||||||
| spire-server.controllerManager.image.version | string | `"0.2.2"` | |
|
| spire-server.controllerManager.image.tag | string | `"0.2.2"` | Overrides the image tag |
|
||||||
|
| spire-server.controllerManager.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spire-server.controllerManager.resources | object | `{}` | |
|
| spire-server.controllerManager.resources | object | `{}` | |
|
||||||
| spire-server.controllerManager.securityContext | object | `{}` | |
|
| spire-server.controllerManager.securityContext | object | `{}` | |
|
||||||
| spire-server.controllerManager.service.annotations | object | `{}` | |
|
| spire-server.controllerManager.service.annotations | object | `{}` | |
|
||||||
@@ -293,7 +301,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
||||||
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.repository | string | `"rancher/kubectl"` | The repository within the registry |
|
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.repository | string | `"rancher/kubectl"` | The repository within the registry |
|
||||||
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.version | string | `""` | |
|
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.tag | string | `""` | Overrides the image tag |
|
||||||
|
| spire-server.controllerManager.validatingWebhookConfiguration.upgradeHook.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spire-server.dataStore.sql.databaseName | string | `"spire"` | Only used by "postgres" or "mysql" |
|
| spire-server.dataStore.sql.databaseName | string | `"spire"` | Only used by "postgres" or "mysql" |
|
||||||
| spire-server.dataStore.sql.databaseType | string | `"sqlite3"` | Other supported databases are "postgres" and "mysql" |
|
| spire-server.dataStore.sql.databaseType | string | `"sqlite3"` | Other supported databases are "postgres" and "mysql" |
|
||||||
| spire-server.dataStore.sql.host | string | `""` | Only used by "postgres" or "mysql" |
|
| spire-server.dataStore.sql.host | string | `""` | Only used by "postgres" or "mysql" |
|
||||||
@@ -314,7 +323,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spire-server.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| spire-server.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| spire-server.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| spire-server.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| spire-server.image.repository | string | `"spiffe/spire-server"` | The repository within the registry |
|
| spire-server.image.repository | string | `"spiffe/spire-server"` | The repository within the registry |
|
||||||
| spire-server.image.version | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
| spire-server.image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
||||||
|
| spire-server.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spire-server.imagePullSecrets | list | `[]` | |
|
| spire-server.imagePullSecrets | list | `[]` | |
|
||||||
| spire-server.initContainers | list | `[]` | |
|
| spire-server.initContainers | list | `[]` | |
|
||||||
| spire-server.jwtIssuer | string | `"oidc-discovery.example.org"` | The JWT issuer domain |
|
| spire-server.jwtIssuer | string | `"oidc-discovery.example.org"` | The JWT issuer domain |
|
||||||
@@ -347,8 +357,9 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| spire-server.topologySpreadConstraints | list | `[]` | |
|
| spire-server.topologySpreadConstraints | list | `[]` | |
|
||||||
| spire-server.tornjak.config.dataStore | object | `{"driver":"sqlite3","file":"/run/spire/data/tornjak.sqlite3"}` | persistent DB for storing Tornjak specific information |
|
| spire-server.tornjak.config.dataStore | object | `{"driver":"sqlite3","file":"/run/spire/data/tornjak.sqlite3"}` | persistent DB for storing Tornjak specific information |
|
||||||
| spire-server.tornjak.enabled | bool | `false` | Deploys Tornjak API (backend) |
|
| spire-server.tornjak.enabled | bool | `false` | Deploys Tornjak API (backend) |
|
||||||
| spire-server.tornjak.image | object | `{"pullPolicy":"IfNotPresent","registry":"ghcr.io","repository":"spiffe/tornjak-backend","version":"v1.2.0"}` | Tornjak API image |
|
| spire-server.tornjak.image | object | `{"pullPolicy":"IfNotPresent","registry":"ghcr.io","repository":"spiffe/tornjak-backend","tag":"v1.2.0","version":""}` | Tornjak API image |
|
||||||
| spire-server.tornjak.image.version | string | `"v1.2.0"` | Overrides the image tag whose default is the chart appVersion. |
|
| spire-server.tornjak.image.tag | string | `"v1.2.0"` | Overrides the image tag |
|
||||||
|
| spire-server.tornjak.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| spire-server.tornjak.resources | object | `{}` | |
|
| spire-server.tornjak.resources | object | `{}` | |
|
||||||
| spire-server.tornjak.service.annotations | object | `{}` | |
|
| spire-server.tornjak.service.annotations | object | `{}` | |
|
||||||
| spire-server.tornjak.service.port | int | `10000` | |
|
| spire-server.tornjak.service.port | int | `10000` | |
|
||||||
@@ -371,7 +382,8 @@ Kubernetes: `>=1.21.0-0`
|
|||||||
| tornjak-frontend.image.pullPolicy | string | `"IfNotPresent"` | |
|
| tornjak-frontend.image.pullPolicy | string | `"IfNotPresent"` | |
|
||||||
| tornjak-frontend.image.registry | string | `"ghcr.io"` | |
|
| tornjak-frontend.image.registry | string | `"ghcr.io"` | |
|
||||||
| tornjak-frontend.image.repository | string | `"spiffe/tornjak-frontend"` | |
|
| tornjak-frontend.image.repository | string | `"spiffe/tornjak-frontend"` | |
|
||||||
| tornjak-frontend.image.version | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
| tornjak-frontend.image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
||||||
|
| tornjak-frontend.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| tornjak-frontend.imagePullSecrets | list | `[]` | |
|
| tornjak-frontend.imagePullSecrets | list | `[]` | |
|
||||||
| tornjak-frontend.labels | object | `{}` | |
|
| tornjak-frontend.labels | object | `{}` | |
|
||||||
| tornjak-frontend.nameOverride | string | `""` | |
|
| tornjak-frontend.nameOverride | string | `""` | |
|
||||||
|
|||||||
@@ -19,7 +19,8 @@ A Helm chart to install the SPIFFE CSI driver.
|
|||||||
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| image.repository | string | `"spiffe/spiffe-csi-driver"` | The repository within the registry |
|
| image.repository | string | `"spiffe/spiffe-csi-driver"` | The repository within the registry |
|
||||||
| image.version | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
| image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
||||||
|
| image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| imagePullSecrets | list | `[]` | |
|
| imagePullSecrets | list | `[]` | |
|
||||||
| kubeletPath | string | `"/var/lib/kubelet"` | |
|
| kubeletPath | string | `"/var/lib/kubelet"` | |
|
||||||
| nameOverride | string | `""` | |
|
| nameOverride | string | `""` | |
|
||||||
@@ -27,7 +28,8 @@ A Helm chart to install the SPIFFE CSI driver.
|
|||||||
| nodeDriverRegistrar.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| nodeDriverRegistrar.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| nodeDriverRegistrar.image.registry | string | `"registry.k8s.io"` | The OCI registry to pull the image from |
|
| nodeDriverRegistrar.image.registry | string | `"registry.k8s.io"` | The OCI registry to pull the image from |
|
||||||
| nodeDriverRegistrar.image.repository | string | `"sig-storage/csi-node-driver-registrar"` | The repository within the registry |
|
| nodeDriverRegistrar.image.repository | string | `"sig-storage/csi-node-driver-registrar"` | The repository within the registry |
|
||||||
| nodeDriverRegistrar.image.version | string | `"v2.6.2"` | |
|
| nodeDriverRegistrar.image.tag | string | `"v2.6.2"` | Overrides the image tag |
|
||||||
|
| nodeDriverRegistrar.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| nodeDriverRegistrar.resources | object | `{}` | |
|
| nodeDriverRegistrar.resources | object | `{}` | |
|
||||||
| nodeSelector | object | `{}` | |
|
| nodeSelector | object | `{}` | |
|
||||||
| pluginName | string | `"csi.spiffe.io"` | Set the csi driver name deployed to Kubernetes. |
|
| pluginName | string | `"csi.spiffe.io"` | Set the csi driver name deployed to Kubernetes. |
|
||||||
|
|||||||
@@ -8,8 +8,10 @@ image:
|
|||||||
repository: spiffe/spiffe-csi-driver
|
repository: spiffe/spiffe-csi-driver
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
# -- Overrides the image tag whose default is the chart appVersion
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: ""
|
version: ""
|
||||||
|
# -- Overrides the image tag whose default is the chart appVersion
|
||||||
|
tag: ""
|
||||||
resources: {}
|
resources: {}
|
||||||
# We usually recommend not to specify default resources and to leave this as a conscious
|
# We usually recommend not to specify default resources and to leave this as a conscious
|
||||||
# choice for the user. This also increases chances charts run on environments with little
|
# choice for the user. This also increases chances charts run on environments with little
|
||||||
@@ -63,7 +65,10 @@ nodeDriverRegistrar:
|
|||||||
repository: sig-storage/csi-node-driver-registrar
|
repository: sig-storage/csi-node-driver-registrar
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
version: v2.6.2
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
|
version: ""
|
||||||
|
# -- Overrides the image tag
|
||||||
|
tag: v2.6.2
|
||||||
resources: {}
|
resources: {}
|
||||||
# We usually recommend not to specify default resources and to leave this as a conscious
|
# We usually recommend not to specify default resources and to leave this as a conscious
|
||||||
# choice for the user. This also increases chances charts run on environments with little
|
# choice for the user. This also increases chances charts run on environments with little
|
||||||
|
|||||||
@@ -34,7 +34,8 @@ A Helm chart to install the SPIFFE OIDC discovery provider.
|
|||||||
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| image.repository | string | `"spiffe/oidc-discovery-provider"` | The repository within the registry |
|
| image.repository | string | `"spiffe/oidc-discovery-provider"` | The repository within the registry |
|
||||||
| image.version | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
| image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion |
|
||||||
|
| image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| imagePullSecrets | list | `[]` | |
|
| imagePullSecrets | list | `[]` | |
|
||||||
| ingress.annotations | object | `{}` | |
|
| ingress.annotations | object | `{}` | |
|
||||||
| ingress.className | string | `""` | |
|
| ingress.className | string | `""` | |
|
||||||
@@ -47,7 +48,8 @@ A Helm chart to install the SPIFFE OIDC discovery provider.
|
|||||||
| insecureScheme.nginx.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| insecureScheme.nginx.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| insecureScheme.nginx.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
| insecureScheme.nginx.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
||||||
| insecureScheme.nginx.image.repository | string | `"nginxinc/nginx-unprivileged"` | The repository within the registry |
|
| insecureScheme.nginx.image.repository | string | `"nginxinc/nginx-unprivileged"` | The repository within the registry |
|
||||||
| insecureScheme.nginx.image.version | string | `"1.23.2-alpine"` | |
|
| insecureScheme.nginx.image.tag | string | `"1.23.2-alpine"` | Overrides the image tag |
|
||||||
|
| insecureScheme.nginx.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| insecureScheme.nginx.resources | object | `{}` | |
|
| insecureScheme.nginx.resources | object | `{}` | |
|
||||||
| nameOverride | string | `""` | |
|
| nameOverride | string | `""` | |
|
||||||
| namespaceOverride | string | `""` | |
|
| namespaceOverride | string | `""` | |
|
||||||
@@ -67,7 +69,8 @@ A Helm chart to install the SPIFFE OIDC discovery provider.
|
|||||||
| telemetry.prometheus.nginxExporter.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| telemetry.prometheus.nginxExporter.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| telemetry.prometheus.nginxExporter.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
| telemetry.prometheus.nginxExporter.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
||||||
| telemetry.prometheus.nginxExporter.image.repository | string | `"nginx/nginx-prometheus-exporter"` | The repository within the registry |
|
| telemetry.prometheus.nginxExporter.image.repository | string | `"nginx/nginx-prometheus-exporter"` | The repository within the registry |
|
||||||
| telemetry.prometheus.nginxExporter.image.version | string | `"0.11.0"` | |
|
| telemetry.prometheus.nginxExporter.image.tag | string | `"0.11.0"` | Overrides the image tag |
|
||||||
|
| telemetry.prometheus.nginxExporter.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| telemetry.prometheus.nginxExporter.resources | object | `{}` | |
|
| telemetry.prometheus.nginxExporter.resources | object | `{}` | |
|
||||||
| telemetry.prometheus.podMonitor.enabled | bool | `false` | |
|
| telemetry.prometheus.podMonitor.enabled | bool | `false` | |
|
||||||
| telemetry.prometheus.podMonitor.labels | object | `{}` | |
|
| telemetry.prometheus.podMonitor.labels | object | `{}` | |
|
||||||
|
|||||||
@@ -16,8 +16,10 @@ image:
|
|||||||
repository: spiffe/oidc-discovery-provider
|
repository: spiffe/oidc-discovery-provider
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
# -- Overrides the image tag whose default is the chart appVersion
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: ""
|
version: ""
|
||||||
|
# -- Overrides the image tag whose default is the chart appVersion
|
||||||
|
tag: ""
|
||||||
|
|
||||||
resources: {}
|
resources: {}
|
||||||
# We usually recommend not to specify default resources and to leave this as a conscious
|
# We usually recommend not to specify default resources and to leave this as a conscious
|
||||||
@@ -65,13 +67,16 @@ insecureScheme:
|
|||||||
repository: nginxinc/nginx-unprivileged
|
repository: nginxinc/nginx-unprivileged
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
version: 1.23.2-alpine
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
|
version: ""
|
||||||
|
# -- Overrides the image tag
|
||||||
|
tag: 1.23.2-alpine
|
||||||
# chainguard image does not support the templates feature
|
# chainguard image does not support the templates feature
|
||||||
# https://github.com/chainguard-images/nginx/issues/43
|
# https://github.com/chainguard-images/nginx/issues/43
|
||||||
# registry: cgr.dev
|
# registry: cgr.dev
|
||||||
# repository: chainguard/nginx
|
# repository: chainguard/nginx
|
||||||
# pullPolicy: IfNotPresent
|
# pullPolicy: IfNotPresent
|
||||||
# version: "1.23.2"
|
# tag: "1.23.2"
|
||||||
resources: {}
|
resources: {}
|
||||||
# We usually recommend not to specify default resources and to leave this as a conscious
|
# We usually recommend not to specify default resources and to leave this as a conscious
|
||||||
# choice for the user. This also increases chances charts run on environments with little
|
# choice for the user. This also increases chances charts run on environments with little
|
||||||
@@ -146,7 +151,10 @@ telemetry:
|
|||||||
repository: nginx/nginx-prometheus-exporter
|
repository: nginx/nginx-prometheus-exporter
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
version: "0.11.0"
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
|
version: ""
|
||||||
|
# -- Overrides the image tag
|
||||||
|
tag: "0.11.0"
|
||||||
|
|
||||||
resources: {}
|
resources: {}
|
||||||
# We usually recommend not to specify default resources and to leave this as a conscious
|
# We usually recommend not to specify default resources and to leave this as a conscious
|
||||||
|
|||||||
@@ -25,7 +25,8 @@ A Helm chart to install the SPIRE agent.
|
|||||||
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| image.repository | string | `"spiffe/spire-agent"` | The repository within the registry |
|
| image.repository | string | `"spiffe/spire-agent"` | The repository within the registry |
|
||||||
| image.version | string | `""` | |
|
| image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
||||||
|
| image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| imagePullSecrets | list | `[]` | |
|
| imagePullSecrets | list | `[]` | |
|
||||||
| initContainers | list | `[]` | |
|
| initContainers | list | `[]` | |
|
||||||
| logLevel | string | `"info"` | The log level, valid values are "debug", "info", "warn", and "error" |
|
| logLevel | string | `"info"` | The log level, valid values are "debug", "info", "warn", and "error" |
|
||||||
@@ -55,7 +56,8 @@ A Helm chart to install the SPIRE agent.
|
|||||||
| waitForIt.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| waitForIt.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| waitForIt.image.registry | string | `"cgr.dev"` | The OCI registry to pull the image from |
|
| waitForIt.image.registry | string | `"cgr.dev"` | The OCI registry to pull the image from |
|
||||||
| waitForIt.image.repository | string | `"chainguard/wait-for-it"` | The repository within the registry |
|
| waitForIt.image.repository | string | `"chainguard/wait-for-it"` | The repository within the registry |
|
||||||
| waitForIt.image.version | string | `"latest-20230113"` | |
|
| waitForIt.image.tag | string | `"latest-20230517"` | Overrides the image tag |
|
||||||
|
| waitForIt.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| waitForIt.resources | object | `{}` | |
|
| waitForIt.resources | object | `{}` | |
|
||||||
| workloadAttestors.k8s.skipKubeletVerification | bool | `true` | If true, kubelet certificate verification is skipped |
|
| workloadAttestors.k8s.skipKubeletVerification | bool | `true` | If true, kubelet certificate verification is skipped |
|
||||||
| workloadAttestors.unix.enabled | bool | `false` | enables the Unix workload attestor |
|
| workloadAttestors.unix.enabled | bool | `false` | enables the Unix workload attestor |
|
||||||
|
|||||||
@@ -9,8 +9,10 @@ image:
|
|||||||
repository: spiffe/spire-agent
|
repository: spiffe/spire-agent
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
# Overrides the image tag whose default is the chart appVersion.
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: ""
|
version: ""
|
||||||
|
# -- Overrides the image tag whose default is the chart appVersion.
|
||||||
|
tag: ""
|
||||||
|
|
||||||
imagePullSecrets: []
|
imagePullSecrets: []
|
||||||
nameOverride: ""
|
nameOverride: ""
|
||||||
@@ -86,7 +88,10 @@ waitForIt:
|
|||||||
repository: chainguard/wait-for-it
|
repository: chainguard/wait-for-it
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
version: latest-20230113
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
|
version: ""
|
||||||
|
# -- Overrides the image tag
|
||||||
|
tag: latest-20230517
|
||||||
resources: {}
|
resources: {}
|
||||||
|
|
||||||
# workloadAttestors determine a workload's properties and then generate a set of selectors associated with it.
|
# workloadAttestors determine a workload's properties and then generate a set of selectors associated with it.
|
||||||
|
|||||||
@@ -44,7 +44,8 @@ A Helm chart to install the SPIRE server.
|
|||||||
| controllerManager.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| controllerManager.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| controllerManager.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| controllerManager.image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| controllerManager.image.repository | string | `"spiffe/spire-controller-manager"` | The repository within the registry |
|
| controllerManager.image.repository | string | `"spiffe/spire-controller-manager"` | The repository within the registry |
|
||||||
| controllerManager.image.version | string | `"0.2.2"` | |
|
| controllerManager.image.tag | string | `"0.2.2"` | Overrides the image tag |
|
||||||
|
| controllerManager.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| controllerManager.resources | object | `{}` | |
|
| controllerManager.resources | object | `{}` | |
|
||||||
| controllerManager.securityContext | object | `{}` | |
|
| controllerManager.securityContext | object | `{}` | |
|
||||||
| controllerManager.service.annotations | object | `{}` | |
|
| controllerManager.service.annotations | object | `{}` | |
|
||||||
@@ -54,7 +55,8 @@ A Helm chart to install the SPIRE server.
|
|||||||
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.registry | string | `"docker.io"` | The OCI registry to pull the image from |
|
||||||
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.repository | string | `"rancher/kubectl"` | The repository within the registry |
|
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.repository | string | `"rancher/kubectl"` | The repository within the registry |
|
||||||
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.version | string | `""` | |
|
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.tag | string | `""` | Overrides the image tag |
|
||||||
|
| controllerManager.validatingWebhookConfiguration.upgradeHook.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| dataStore.sql.databaseName | string | `"spire"` | Only used by "postgres" or "mysql" |
|
| dataStore.sql.databaseName | string | `"spire"` | Only used by "postgres" or "mysql" |
|
||||||
| dataStore.sql.databaseType | string | `"sqlite3"` | Other supported databases are "postgres" and "mysql" |
|
| dataStore.sql.databaseType | string | `"sqlite3"` | Other supported databases are "postgres" and "mysql" |
|
||||||
| dataStore.sql.host | string | `""` | Only used by "postgres" or "mysql" |
|
| dataStore.sql.host | string | `""` | Only used by "postgres" or "mysql" |
|
||||||
@@ -75,7 +77,8 @@ A Helm chart to install the SPIRE server.
|
|||||||
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
| image.pullPolicy | string | `"IfNotPresent"` | The image pull policy |
|
||||||
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
| image.registry | string | `"ghcr.io"` | The OCI registry to pull the image from |
|
||||||
| image.repository | string | `"spiffe/spire-server"` | The repository within the registry |
|
| image.repository | string | `"spiffe/spire-server"` | The repository within the registry |
|
||||||
| image.version | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
| image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
||||||
|
| image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| imagePullSecrets | list | `[]` | |
|
| imagePullSecrets | list | `[]` | |
|
||||||
| initContainers | list | `[]` | |
|
| initContainers | list | `[]` | |
|
||||||
| jwtIssuer | string | `"oidc-discovery.example.org"` | The JWT issuer domain |
|
| jwtIssuer | string | `"oidc-discovery.example.org"` | The JWT issuer domain |
|
||||||
@@ -108,8 +111,9 @@ A Helm chart to install the SPIRE server.
|
|||||||
| topologySpreadConstraints | list | `[]` | |
|
| topologySpreadConstraints | list | `[]` | |
|
||||||
| tornjak.config.dataStore | object | `{"driver":"sqlite3","file":"/run/spire/data/tornjak.sqlite3"}` | persistent DB for storing Tornjak specific information |
|
| tornjak.config.dataStore | object | `{"driver":"sqlite3","file":"/run/spire/data/tornjak.sqlite3"}` | persistent DB for storing Tornjak specific information |
|
||||||
| tornjak.enabled | bool | `false` | Deploys Tornjak API (backend) |
|
| tornjak.enabled | bool | `false` | Deploys Tornjak API (backend) |
|
||||||
| tornjak.image | object | `{"pullPolicy":"IfNotPresent","registry":"ghcr.io","repository":"spiffe/tornjak-backend","version":"v1.2.0"}` | Tornjak API image |
|
| tornjak.image | object | `{"pullPolicy":"IfNotPresent","registry":"ghcr.io","repository":"spiffe/tornjak-backend","tag":"v1.2.0","version":""}` | Tornjak API image |
|
||||||
| tornjak.image.version | string | `"v1.2.0"` | Overrides the image tag whose default is the chart appVersion. |
|
| tornjak.image.tag | string | `"v1.2.0"` | Overrides the image tag |
|
||||||
|
| tornjak.image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| tornjak.resources | object | `{}` | |
|
| tornjak.resources | object | `{}` | |
|
||||||
| tornjak.service.annotations | object | `{}` | |
|
| tornjak.service.annotations | object | `{}` | |
|
||||||
| tornjak.service.port | int | `10000` | |
|
| tornjak.service.port | int | `10000` | |
|
||||||
|
|||||||
@@ -107,8 +107,9 @@ Create the name of the service account to use
|
|||||||
|
|
||||||
{{- define "spire-server.kubectl-image" }}
|
{{- define "spire-server.kubectl-image" }}
|
||||||
{{- $root := deepCopy . }}
|
{{- $root := deepCopy . }}
|
||||||
{{- if eq (len $root.image.version) 0 }}
|
{{- $tag := (default $root.image.tag $root.image.version) | toString }}
|
||||||
{{- $_ := set $root.image "version" $root.KubeVersion }}
|
{{- if eq (len $tag) 0 }}
|
||||||
|
{{- $_ := set $root.image "tag" $root.KubeVersion }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
{{- include "spire-lib.image" $root }}
|
{{- include "spire-lib.image" $root }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
|
|||||||
@@ -12,8 +12,10 @@ image:
|
|||||||
repository: spiffe/spire-server
|
repository: spiffe/spire-server
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
# -- Overrides the image tag whose default is the chart appVersion.
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: ""
|
version: ""
|
||||||
|
# -- Overrides the image tag whose default is the chart appVersion.
|
||||||
|
tag: ""
|
||||||
|
|
||||||
imagePullSecrets: []
|
imagePullSecrets: []
|
||||||
nameOverride: ""
|
nameOverride: ""
|
||||||
@@ -169,8 +171,10 @@ controllerManager:
|
|||||||
repository: spiffe/spire-controller-manager
|
repository: spiffe/spire-controller-manager
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
# Overrides the image tag whose default is the chart appVersion.
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: "0.2.2"
|
version: ""
|
||||||
|
# -- Overrides the image tag
|
||||||
|
tag: "0.2.2"
|
||||||
|
|
||||||
resources: {}
|
resources: {}
|
||||||
# We usually recommend not to specify default resources and to leave this as a conscious
|
# We usually recommend not to specify default resources and to leave this as a conscious
|
||||||
@@ -229,7 +233,10 @@ controllerManager:
|
|||||||
repository: rancher/kubectl
|
repository: rancher/kubectl
|
||||||
# -- The image pull policy
|
# -- The image pull policy
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: ""
|
version: ""
|
||||||
|
# -- Overrides the image tag
|
||||||
|
tag: ""
|
||||||
|
|
||||||
telemetry:
|
telemetry:
|
||||||
prometheus:
|
prometheus:
|
||||||
@@ -266,8 +273,10 @@ tornjak:
|
|||||||
registry: ghcr.io
|
registry: ghcr.io
|
||||||
repository: spiffe/tornjak-backend
|
repository: spiffe/tornjak-backend
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
# -- Overrides the image tag whose default is the chart appVersion.
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: "v1.2.0"
|
version: ""
|
||||||
|
# -- Overrides the image tag
|
||||||
|
tag: "v1.2.0"
|
||||||
service:
|
service:
|
||||||
type: ClusterIP
|
type: ClusterIP
|
||||||
port: 10000
|
port: 10000
|
||||||
|
|||||||
@@ -55,7 +55,8 @@ port forwarding. See the chart NOTES output for more details.
|
|||||||
| image.pullPolicy | string | `"IfNotPresent"` | |
|
| image.pullPolicy | string | `"IfNotPresent"` | |
|
||||||
| image.registry | string | `"ghcr.io"` | |
|
| image.registry | string | `"ghcr.io"` | |
|
||||||
| image.repository | string | `"spiffe/tornjak-frontend"` | |
|
| image.repository | string | `"spiffe/tornjak-frontend"` | |
|
||||||
| image.version | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
| image.tag | string | `""` | Overrides the image tag whose default is the chart appVersion. |
|
||||||
|
| image.version | string | `""` | This value is deprecated in favor of tag. (Will be removed in a future release) |
|
||||||
| imagePullSecrets | list | `[]` | |
|
| imagePullSecrets | list | `[]` | |
|
||||||
| labels | object | `{}` | |
|
| labels | object | `{}` | |
|
||||||
| nameOverride | string | `""` | |
|
| nameOverride | string | `""` | |
|
||||||
|
|||||||
@@ -6,8 +6,10 @@ image:
|
|||||||
registry: ghcr.io
|
registry: ghcr.io
|
||||||
repository: spiffe/tornjak-frontend
|
repository: spiffe/tornjak-frontend
|
||||||
pullPolicy: IfNotPresent
|
pullPolicy: IfNotPresent
|
||||||
# -- Overrides the image tag whose default is the chart appVersion.
|
# -- This value is deprecated in favor of tag. (Will be removed in a future release)
|
||||||
version: ""
|
version: ""
|
||||||
|
# -- Overrides the image tag whose default is the chart appVersion.
|
||||||
|
tag: ""
|
||||||
|
|
||||||
imagePullSecrets: []
|
imagePullSecrets: []
|
||||||
nameOverride: ""
|
nameOverride: ""
|
||||||
|
|||||||
@@ -40,13 +40,15 @@
|
|||||||
|
|
||||||
{{- define "spire-lib.image" -}}
|
{{- define "spire-lib.image" -}}
|
||||||
{{- $registry := include "spire-lib.registry" . }}
|
{{- $registry := include "spire-lib.registry" . }}
|
||||||
{{- if eq (substr 0 7 .image.version) "sha256:" -}}
|
{{- $repo := .image.repository }}
|
||||||
{{- printf "%s/%s@%s" $registry .image.repository .image.version -}}
|
{{- $tag := (default .image.tag .image.version) | toString }}
|
||||||
{{- else if .appVersion -}}
|
{{- if eq (substr 0 7 $tag) "sha256:" }}
|
||||||
{{- printf "%s/%s:%s" $registry .image.repository (default .appVersion .image.version) -}}
|
{{- printf "%s/%s@%s" $registry $repo $tag }}
|
||||||
{{- else if .image.version -}}
|
{{- else if .appVersion }}
|
||||||
{{- printf "%s/%s:%s" $registry .image.repository .image.version -}}
|
{{- printf "%s/%s:%s" $registry $repo (default .appVersion $tag) }}
|
||||||
{{- else -}}
|
{{- else if $tag }}
|
||||||
{{- printf "%s/%s" $registry .image.repository -}}
|
{{- printf "%s/%s:%s" $registry $repo $tag }}
|
||||||
{{- end -}}
|
{{- else }}
|
||||||
|
{{- printf "%s/%s" $registry $repo }}
|
||||||
|
{{- end }}
|
||||||
{{- end }}
|
{{- end }}
|
||||||
|
|||||||
Reference in New Issue
Block a user