*fae12afMerge pull request #60 from spiffe/oidc-ingress *6322a9aFix tests *a9b99feAdd some commented lines for best practice annotations on ingress *e970d52Align ingress hostname with jwtIssues in spire-server chart *cc7121eAdd ingress support for OIDC discovery provider *eaed7c9Bump actions/checkout from 3.3.0 to 3.4.0 (#129) *2e3f045Make webhook fail policy configurable (#124) *9ccbd3cMake kubelet path configurable (#123) *80e3b58Remove dead file from failed rebase. (#121) *7155d71Add documentation how to use Spire in own workloads *25c77fcFix the driver not coming up on overloaded nodes *5fdd35bImprove Chart API (#119) *03db6bbNamespace override *661000aMake the agent socket configurable (#114) *f3a81adMake csi driver configurable to be able to run multiple instances (#115) *b198bc7Fix the tests so they can run locked down. (#111) *09b21acFix the gate *b6716aeTest that it is possible to lock down security of pods (#84) *bfeb217Fix cluster role name uniqueness *490fe8fEnhance the test workflow scripts *9e22d2cMake the namespace the bundle is dropped into configurable *7d1f821Fix test. *493ad8fRemove some duplication on chart-testing CI *b6dd136Add tmp mount so that server can run locked down (#105) *aaaf2f7Remove dead role code *d2eba22Fix docs *6d43625Add kfox as a maintainer *dfa4e6cEnsure CI also runs when test scripts are changed Signed-off-by: Marco Franssen <[email protected]>
Note
: All the helm charts in this repo are beta. We encourage you to try them out and contribute. The API may change as we move towards a production ready release.
SPIFFE Helm Charts
A suite of Helm Charts for standardized installations of SPIRE components in Kubernetes environments.
Add Helm repository
helm repo add spiffe https://spiffe.github.io/helm-charts/
helm repo update
Dependencies and Version Compatibility
Unless otherwise noted in an application chart README, the following dependencies will follow these prescribed version compatibility rules.
| Dependency | Supported Versions |
|---|---|
| SPIRE | 1.5.x, 1.6.x |
| Helm | 3.x |
For Kubernetes we will officially try to support the last 3 versions as described in k8s versioning.
Contributing
Before contributing ensure to check our CONTRIBUTING guidelines.
LICENSE
This project is licensed under Apache License, Version 2.0.
Reporting a Vulnerability
Vulnerabilities can be reported by sending an email to [email protected]. A confirmation email will be sent to acknowledge the report within 72 hours. A second acknowledgement will be sent within 7 days when the vulnerability has been positively or negatively confirmed.