# Default values for k8s-workload-registrar. # This is a YAML-formatted file. # Declare variables to be passed into your templates. replicaCount: 1 image: registry: gcr.io repository: spiffe-io/k8s-workload-registrar pullPolicy: IfNotPresent # Overrides the image tag whose default is the chart appVersion. version: "" imagePullSecrets: [] nameOverride: "" fullnameOverride: "" serviceAccount: # Specifies whether a service account should be created create: true # Annotations to add to the service account annotations: {} # The name of the service account to use. # If not set and create is true, a name is generated using the fullname template name: "" podAnnotations: {} podSecurityContext: {} # fsGroup: 2000 securityContext: {} # capabilities: # drop: # - ALL # readOnlyRootFilesystem: true # runAsNonRoot: true # runAsUser: 1000 resources: {} # We usually recommend not to specify default resources and to leave this as a conscious # choice for the user. This also increases chances charts run on environments with little # resources, such as Minikube. If you do want to specify resources, uncomment the following # lines, adjust them as necessary, and remove the curly braces after 'resources:'. # limits: # cpu: 100m # memory: 128Mi # requests: # cpu: 100m # memory: 128Mi autoscaling: enabled: false minReplicas: 1 maxReplicas: 5 targetCPUUtilizationPercentage: 80 targetMemoryUtilizationPercentage: 80 nodeSelector: kubernetes.io/arch: amd64 tolerations: [] affinity: {} server: socketPath: /run/spire/server-sockets/spire-server.sock host: spire-server port: 8081 clusterName: "example-cluster" trustDomain: "example.org" logLevel: info waitForIt: image: registry: cgr.dev repository: chainguard/wait-for-it pullPolicy: IfNotPresent version: latest-20221215 resources: {}