2df2e1661fe41a02c03e91b6a45e3b19524c1c39
*4c307c1Add missing bundlePublisher section and extraEnv so settings can be set (#201) *d724d1eUpdate the documentation (#172) *e59a29bBump test chart dependencies (#200) *4668151Add missing extraVolumeMounts to the controllerManager (#196) *b9ac3c4Update to spire-controller-manager 0.4.1 (#193) *6fec1e5Update SPIRE to 1.8.7 (#194) *af155c2Add support for running spiffe secured discovery provider (default) (#163) *3ccdb5eAdd tls section to federation bundle endpoint and fix up annotations (#173) *c7ab131Add join_token server nodeattestor support (#187) *81e9523Bump test chart dependencies (#186) *6d19a76Fix agent daemonset format (#184) *b61d4f5Add spire-agent to spire-agent pod path (#180) *befa074Fix notes bug (#178) *912c61eRemove deprecated version values (#179) *ae4ef6eUpdate HorizontalPodAutoscaler API to autoscaling/v2 (#153) *e7a61a9Bump test chart dependencies *183e9aaSPIFFE OIDC Discovery Provider Rework (#152) *8f1aba8Bump test chart dependencies (#171) *2454b8cFix links still pointing at older git repo (#167) *e5c5527Bump test chart dependencies (#165) *e630008Update jwt test to work with newer slim images (#139) *c39dd44Add recommendation for namespacePSS (#131) *49beb64Add recommendation for namespaceLayout (#127) *33cacd2Add recommendation for prometheus exporter (#144) *6997d6aAdd recommendation for securityContext and podSecurityContext (#125) *50c4ac3Add recommendation for strictMode (#143) *4fb9d18Bump test chart dependencies (#155) *811123aUpdate the Tornjak image version (#150) *1524537Update default for additionalDomains not to include localhost (#146) *e35838cAdd recommendation for priorityClass (#124) *9f72a8fUse good and automatic defaults for tornjak frontend workingDir (#129) *7726351Tornjak UBI support (#123) *89c07e2Revert openssl 3.2 change (#142) *a3d3702Bump test chart dependencies *80c7653Bump test chart dependencies (#134) *13f6028SELinux support (#122) *3e8335cAdd a flag to enable recommendations (#121) *692d463Remove unneeded lookup function from upgrade hook (#104) *8422b8dAdded ability to create namespaces (#103) Signed-off-by: Kevin Fox <[email protected]>
Note
Things to consider:
- We do not support running out of the git main branch. This is where development happens. Please use released versions via the published repo or git tags.
- All the helm charts in this repo are beta. We encourage you to try them out and contribute. The API may change as we move towards a production ready release.
SPIFFE Helm Charts
A suite of Helm Charts for standardized installations of SPIRE components in Kubernetes environments.
How to install or upgrade
You most likely want to do an integrated setup based on the spire chart. See the Instructions.
Contributing
Before contributing ensure to check our CONTRIBUTING guidelines.
LICENSE
This project is licensed under Apache License, Version 2.0.
Reporting a Vulnerability
Vulnerabilities can be reported by sending an email to [email protected]. A confirmation email will be sent to acknowledge the report within 72 hours. A second acknowledgement will be sent within 7 days when the vulnerability has been positively or negatively confirmed.
Languages
Go Template
49.2%
Shell
23.7%
Go
16.2%
Python
7.9%
Makefile
1.6%
Other
1.4%