gf-k8s/apps/system/cilium/values.yaml

28 lines
847 B
YAML

cilium:
kubeProxyReplacement: strict
k8sServiceHost: 192.168.1.8
k8sServicePort: 6443
operator:
replicas: 1
bpf:
masquerade: true
hubble:
relay:
enabled: true
ui:
enabled: true
ingress:
enabled: true
annotations:
kubernetes.io/ingress.class: nginx
kubernetes.io/tls-acme: "true"
cert-manager.io/cluster-issuer: letsencrypt
nginx.ingress.kubernetes.io/auth-url: "http://oauth2-proxy.oauth2-proxy.svc.cluster.local/auth"
nginx.ingress.kubernetes.io/auth-signin: "https://oauth2.ioot.xyz/start?rd=$escaped_request_uri"
nginx.ingress.kubernetes.io/auth-response-headers: "authorization"
hosts:
- hubble.ioot.xyz
tls:
- hosts:
- hubble.ioot.xyz
secretName: hubble-tls