4fb9d18f50
Bump test chart dependencies ( #155 )
...
* Bump test chart dependencies
Signed-off-by: GitHub <[email protected] >
* Revert broken image for now
Signed-off-by: kfox1111 <[email protected] >
---------
Signed-off-by: GitHub <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
Co-authored-by: marcofranssen <[email protected] >
Co-authored-by: kfox1111 <[email protected] >
2023-12-18 09:12:59 -08:00
kfox1111 and Faisal Memon
e35838c309
Add recommendation for priorityClass ( #124 )
...
* Add a flag to enable recommendations
Signed-off-by: Kevin Fox <[email protected] >
* Add recommendation for priorityClass
Signed-off-by: Kevin Fox <[email protected] >
* Fix vars
Signed-off-by: Kevin Fox <[email protected] >
* Apply suggestions from code review
Co-authored-by: Faisal Memon <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
* Update docs. Fix typo.
Signed-off-by: Kevin Fox <[email protected] >
* Incorperate feedback
Signed-off-by: Kevin Fox <[email protected] >
* Apply suggestions from code review
Co-authored-by: Faisal Memon <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
* Fix docs
Signed-off-by: Kevin Fox <[email protected] >
---------
Signed-off-by: Kevin Fox <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
2023-12-11 11:42:40 -08:00
marcofranssen
a3d3702049
Bump test chart dependencies
...
Signed-off-by: GitHub <[email protected] >
2023-12-11 10:44:48 +01:00
80c7653a21
Bump test chart dependencies ( #134 )
...
* Bump test chart dependencies
Signed-off-by: GitHub <[email protected] >
* Update charts/spire/charts/spiffe-oidc-discovery-provider/values.yaml
Signed-off-by: kfox1111 <[email protected] >
* Fix Docs
Signed-off-by: Kevin Fox <[email protected] >
---------
Signed-off-by: GitHub <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
Signed-off-by: Kevin Fox <[email protected] >
Co-authored-by: marcofranssen <[email protected] >
Co-authored-by: kfox1111 <[email protected] >
2023-12-07 22:47:38 +00:00
kfox1111 and Marco Franssen
d936293d50
Enable agent to kubelet connection to use hostname ( #112 )
...
Co-authored-by: Marco Franssen <[email protected] >
2023-11-28 08:43:09 +01:00
marcofranssen
95e1eb7c57
Bump test chart dependencies
...
Signed-off-by: GitHub <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-11-20 10:34:08 +01:00
marcofranssen
889d0af84d
Bump test chart dependencies
...
Signed-off-by: GitHub <[email protected] >
2023-11-13 13:49:52 +01:00
Marco Franssen
0320c3f755
Cleanup documentation
...
Signed-off-by: Marco Franssen <[email protected] >
2023-11-08 13:11:58 +01:00
marcofranssen
0ed6d9244d
Bump test chart dependencies
...
Signed-off-by: GitHub <[email protected] >
2023-11-06 13:15:02 +01:00
3b016841da
Support Openshift deployment ( #13 )
...
* Add support for SPIRE deployment on OpenShift 4.13
Signed-off-by: Mariusz Sabath <[email protected] >
Co-authored-by: Trilok Geer <[email protected] >
Co-authored-by: Andrew Block <[email protected] >
* Render README
Signed-off-by: Mariusz Sabath <[email protected] >
* Fix tornjak HTTP/HTTPS port values
Signed-off-by: Mariusz Sabath <[email protected] >
* Update Frontend README
Signed-off-by: Mariusz Sabath <[email protected] >
* Add env. variable to Agent to inject node name
Signed-off-by: Mariusz Sabath <[email protected] >
* Implement Marco's suggestion on CSI CSS version
Signed-off-by: Mariusz Sabath <[email protected] >
* Add MY_NODE_NAME env. variable to agent for openshift example
Signed-off-by: Mariusz Sabath <[email protected] >
* Move Openshift examples to dedicated directory
Signed-off-by: Mariusz Sabath <[email protected] >
* Simplified the install instructions
Signed-off-by: Mariusz Sabath <[email protected] >
* Suggested changes
Signed-off-by: Kevin Fox <[email protected] >
* Apply suggestions from code review
Co-authored-by: Andrew Block <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
* Update docs, fix default for backwards compat
Signed-off-by: Kevin Fox <[email protected] >
* Don't recommend experimental features by default, dont debug helm install by default and explain how to add additional features
Signed-off-by: Kevin Fox <[email protected] >
* Add notes about openshift to the project for other reviewers.
Signed-off-by: Kevin Fox <[email protected] >
* Fix incorrectly reverted change
Signed-off-by: Kevin Fox <[email protected] >
* Correct notes
Signed-off-by: Kevin Fox <[email protected] >
* Update default
Signed-off-by: Kevin Fox <[email protected] >
* Fix issue created from bad merge conflict resolution
Signed-off-by: kfox1111 <[email protected] >
* Update examples/openshift/openshift-values.yaml
Co-authored-by: kfox1111 <[email protected] >
Signed-off-by: Mariusz Sabath <[email protected] >
* Update examples/openshift/openshift-values.yaml
Co-authored-by: kfox1111 <[email protected] >
Signed-off-by: Mariusz Sabath <[email protected] >
* Update examples/openshift/openshift-values.yaml
Co-authored-by: kfox1111 <[email protected] >
Signed-off-by: Mariusz Sabath <[email protected] >
* Update examples/openshift/openshift-values.yaml
Co-authored-by: kfox1111 <[email protected] >
Signed-off-by: Mariusz Sabath <[email protected] >
---------
Signed-off-by: Mariusz Sabath <[email protected] >
Signed-off-by: Kevin Fox <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
Co-authored-by: Trilok Geer <[email protected] >
Co-authored-by: Andrew Block <[email protected] >
Co-authored-by: Kevin Fox <[email protected] >
2023-10-31 16:27:23 +00:00
github-actions[bot] and marcofranssen
09ebfc9ee3
Bump test chart dependencies ( #68 )
...
Signed-off-by: GitHub <[email protected] >
Co-authored-by: marcofranssen <[email protected] >
2023-10-30 09:30:10 -07:00
Andrew Block
9bd7f43056
Added environment variable to spire-agent to inject node name
...
Signed-off-by: Andrew Block <[email protected] >
2023-10-26 12:14:23 -05:00
0b174345ab
Bump test chart dependencies ( #54 )
...
Signed-off-by: GitHub <[email protected] >
Co-authored-by: marcofranssen <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
2023-10-23 20:40:30 +00:00
github-actions[bot] and marcofranssen
2644e4b198
Bump test chart dependencies ( #38 )
...
Signed-off-by: GitHub <[email protected] >
Co-authored-by: marcofranssen <[email protected] >
2023-10-16 18:00:04 +00:00
kfox1111
0fa43a507d
Add plugin support to the spire agent ( #22 )
...
* Exit code from diff indicating changes should not block commit.
Signed-off-by: Kevin Fox <[email protected] >
* Push the changes that update-tags creates
Signed-off-by: Kevin Fox <[email protected] >
* Add plugin support to the spire agent
This adapts the existing spire server plugin support to be usable by
the agent as well.
Signed-off-by: Kevin Fox <[email protected] >
* Fix notes
Signed-off-by: Kevin Fox <[email protected] >
* Add plugin support to the spire agent
This adapts the existing spire server plugin support to be usable by
the agent as well.
Signed-off-by: Kevin Fox <[email protected] >
* Fix notes
Signed-off-by: Kevin Fox <[email protected] >
* Update documentation
Signed-off-by: Kevin Fox <[email protected] >
* Update example
Signed-off-by: Kevin Fox <[email protected] >
---------
Signed-off-by: Kevin Fox <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
2023-10-10 08:09:11 +00:00
kfox1111 and Faisal Memon
afba33f179
Add spire agent experimental flags ( #26 )
...
* Add spire agent experimental flags
Signed-off-by: Kevin Fox <[email protected] >
* Fix nested test
Signed-off-by: Kevin Fox <[email protected] >
* Update charts/spire/charts/spire-agent/templates/configmap.yaml
Co-authored-by: Faisal Memon <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
* Apply suggestions from code review
Co-authored-by: Faisal Memon <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
* Regen docs
Signed-off-by: Kevin Fox <[email protected] >
---------
Signed-off-by: Kevin Fox <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
2023-10-09 16:09:28 -07:00
github-actions[bot] and faisal-memon
06d6690d71
Bump test chart dependencies ( #20 )
...
Signed-off-by: GitHub <[email protected] >
Co-authored-by: faisal-memon <[email protected] >
2023-10-05 11:21:51 -07:00
grameshtwilio and Marco Franssen
9ad2ed59b1
option to configure agent sds ( #479 )
...
Co-authored-by: Marco Franssen <[email protected] >
2023-09-11 11:42:27 +00:00
65d56957de
Migrate to readme-generator for helm maintained by bitnami ( #431 )
...
Co-authored-by: Krishnakumar Venkataraman <[email protected] >
Co-authored-by: Marco Franssen <[email protected] >
2023-09-08 09:39:30 +02:00
kfox1111 and Marco Franssen
e81a59a7e5
ingress-nginx production tests and spiffe-oidc-discovery-provider example ( #136 )
...
Co-authored-by: Marco Franssen <[email protected] >
2023-08-29 15:22:00 +00:00
kfox1111
ae8941c49d
Support Nested Spire with External Agent ( #117 )
2023-08-16 16:35:41 +02:00
kfox1111
48a2898016
Fix chainguard image references as per issue 442 ( #443 )
2023-08-16 16:22:09 +02:00
Faisal Memon
9a6768bca1
Add support for disabling container selectors ( #399 )
2023-07-27 13:27:57 -04:00
kfox1111
3ed1859cd1
Add missing tolerations config to daemonsets ( #381 )
...
spiffe-csi-driver and spire-agent are missing the ability to specify
tolerations. This PR adds the missing functionality.
fixes: https://github.com/spiffe/helm-charts/issues/380
Signed-off-by: Kevin Fox <[email protected] >
2023-07-06 12:48:59 -05:00
Marco Franssen
af36f7c09b
Align the bash image version with other instances for spire-agent ( #356 )
...
Signed-off-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-06-19 11:28:35 -07:00
a6dcf267d1
Allow for SPIRE Agent to run as non root user ( #209 )
...
Co-authored-by: Marco Franssen <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
2023-06-17 10:32:41 +02:00
kfox1111
250fd5db00
Add missing global values to charts ( #311 )
2023-06-14 09:16:02 +02:00
Mariusz Sabath
1247b68f4d
Parametrize probes ( #310 )
...
This PR addresses #307 by parametrizing Probes and moving them to
values.yaml
---------
Signed-off-by: Mariusz Sabath <[email protected] >
2023-05-25 08:53:44 -04:00
Marco Franssen
d850486478
Instead of removing version, first deprecate version
...
Deprecating version allows users of the chart to have a migration path
Signed-off-by: Marco Franssen <[email protected] >
2023-05-17 20:21:07 +02:00
Marco Franssen
59e422b9e3
Add documentation for all image.tag values
...
Signed-off-by: Marco Franssen <[email protected] >
2023-05-17 20:21:07 +02:00
Kevin Fox
d1f3cdb909
Switch image.version to image.tag
...
The convention in most charts is to use image.tag. This patch updates the values
to use it instead of the less standard image.version.
Signed-off-by: Kevin Fox <[email protected] >
2023-05-17 20:21:07 +02:00
Marco Franssen and Faisal Memon
65312f8525
Include dependency values in documentation ( #275 )
...
I have added a flag to the helm-docs script to include the documentation
for dependencies.
This will add more complete documentation to
https://artifacthub.io/packages/helm/spiffe/spire#values so it is easier
for our users to get started and having a complete overview.
---------
Signed-off-by: Marco Franssen <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
2023-05-12 18:12:23 +00:00
Faisal Memon and kfox1111
b315324244
Allow for ConfigMaps to be annotated ( #272 )
...
Without an annotation, spinnaker will rename the configmap.
---------
Signed-off-by: Faisal Memon <[email protected] >
Co-authored-by: kfox1111 <[email protected] >
2023-05-11 10:49:06 -07:00
kfox1111 and Faisal Memon
8e7e6ebc76
Allow trust bundle url to be set along with format ( #256 )
...
This patch enables the spire-agent to retrieve the trust bundle via url.
fixes: https://github.com/spiffe/helm-charts/issues/254
---------
Signed-off-by: Kevin Fox <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
2023-05-04 13:15:17 -07:00
Faisal Memon
3d81928ff8
Add skipKubeletVerification configurable ( #243 )
2023-04-26 21:38:14 +02:00
kfox1111 and Marco Franssen
563e1f7920
Add podmonitors ( #165 )
...
Co-authored-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-04-04 09:55:35 +02:00
Marco Franssen
5fdd35b426
Improve Chart API ( #119 )
...
Because we are already in the context of spire-agent the API looks more
logical to not have another 'agent' part in the name.
Furthermore to make it more clear the oidc provider only requires the
name of the socket as opposed to the entire path like in the other
charts I made that more explicit in the name of the value.
---------
Signed-off-by: Marco Franssen <[email protected] >
2023-03-14 09:55:24 -07:00
kfox1111
03db6bb5fe
Namespace override
...
This patch makes it possible to install the subcharts in different
namespaces as needed.
Signed-off-by: Kevin Fox <[email protected] >
2023-03-13 15:03:16 -07:00
kfox1111
661000a29a
Make the agent socket configurable ( #114 )
2023-03-13 20:35:27 +01:00
Kevin Fox
f0b7f5bd8d
Make spire agent server address configurable
...
If your server is not in the same namespace or cluster as the
agent, you need a config option to specify where it is.
Signed-off-by: Kevin Fox <[email protected] >
2023-03-06 06:40:58 -08:00
Kevin Fox
b7f8c86478
Add extra initContainers, containers, volumes to agent and server
...
With plugin support, agents and servers need more customization.
This patch enables initContainers, extraContainers, extraVolumes
and extraVolumeMounts to be added to those services.
Signed-off-by: Kevin Fox <[email protected] >
2023-03-02 08:02:19 -08:00
Marco Franssen
a632f76021
Bump spire-agent image to 1.6.0 (arm64 support)
...
Signed-off-by: Marco Franssen <[email protected] >
2023-03-01 15:41:47 +01:00
Marco Franssen
f8cdec3f99
Allow to configure a priorityClassName for Daemonsets
...
Signed-off-by: Marco Franssen <[email protected] >
2023-02-27 08:09:00 -08:00
kfox1111 and Marco Franssen
35eb3bb42e
Basic Prometheus support ( #28 )
...
Co-authored-by: Marco Franssen <[email protected] >
2023-02-24 22:39:15 +01:00
Marco Franssen
495d9d67e8
Align healthz ports and checks across containers
...
Signed-off-by: Marco Franssen <[email protected] >
2023-02-24 21:06:09 +01:00
kfox1111 and Faisal Memon
8a3ae10da5
Add the option to disable unix workloadattestor ( #26 )
...
Co-authored-by: Faisal Memon <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-02-23 10:32:35 +01:00
Marco Franssen
99d32050ba
Remove option to choose different agent socket path
...
Resolves #19
Signed-off-by: Marco Franssen <[email protected] >
2023-02-18 13:23:36 +01:00
Marco Franssen
016e8336d0
Fix agent connectivity if deployed with different name
...
e.g. if deploying with spire-65de556ac
Signed-off-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-02-18 13:04:12 +01:00
Marco Franssen
8277bf0bd4
Patch wait-for-it to latest Januari release
...
Signed-off-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-02-18 13:04:11 +01:00
Marco Franssen
ce9b58e725
Move spire-server to dedicated subchart
...
Signed-off-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-02-18 13:04:10 +01:00