Remove extra example values that are already set by default (#128)

Signed-off-by: Kevin Fox <[email protected]>
Signed-off-by: kfox1111 <[email protected]>
Co-authored-by: Faisal Memon <[email protected]>
This commit is contained in:
kfox1111
2023-12-12 16:23:23 +00:00
committed by GitHub
co-authored by Faisal Memon
parent 1524537318
commit a097606d77
2 changed files with 0 additions and 23 deletions
-9
View File
@@ -1,8 +1,5 @@
global:
openshift: true
telemetry:
prometheus:
enabled: true
spire:
namespaces:
system:
@@ -19,12 +16,6 @@ global:
pod-security.kubernetes.io/audit: privileged
spire-server:
nodeAttestor:
k8sPsat:
serviceAccountAllowList: ["spire-system:spire-agent"]
notifier:
k8sbundle:
namespace: spire-system
podSecurityContext:
# These are unset so that openshift can automatically assign its own restricted uids to the pods
runAsUser: null
-14
View File
@@ -28,8 +28,6 @@ spire-server:
seccompProfile:
type: RuntimeDefault
logLevel: info
controllerManager:
securityContext:
allowPrivilegeEscalation: false
@@ -40,21 +38,13 @@ spire-server:
seccompProfile:
type: RuntimeDefault
ignoreNamespaces:
- kube-system
- kube-public
- local-path-storage
spiffe-csi-driver:
enabled: true
namespaceOverride: spire-system
upstream-spiffe-csi-driver:
namespaceOverride: spire-system
spire-agent:
enabled: true
namespaceOverride: spire-system
serviceAccount:
name: spire-agent
@@ -73,8 +63,6 @@ spire-agent:
seccompProfile:
type: RuntimeDefault
logLevel: info
upstream-spire-agent:
namespaceOverride: spire-system
podSecurityContext:
@@ -90,8 +78,6 @@ upstream-spire-agent:
seccompProfile:
type: RuntimeDefault
logLevel: info
spiffe-oidc-discovery-provider:
enabled: true
insecureScheme: