gf-k8s/apps/system/cilium/values.yaml

28 lines
877 B
YAML

cilium:
kubeProxyReplacement: strict
k8sServiceHost: 192.168.1.8
k8sServicePort: 6443
operator:
replicas: 1
bpf:
masquerade: true
hubble:
relay:
enabled: true
ui:
enabled: true
ingress:
enabled: true
annotations:
kubernetes.io/ingress.class: nginx
kubernetes.io/tls-acme: "true"
cert-manager.io/cluster-issuer: letsencrypt
nginx.ingress.kubernetes.io/auth-url: "https://oauth2.ioot.xyz/auth"
nginx.ingress.kubernetes.io/auth-signin: "https://oauth2.ioot.xyz/start?rd=$escaped_request_uri"
nginx.ingress.kubernetes.io/auth-response-headers: "x-auth-request-user, x-auth-request-email, x-auth-request-access-token"
hosts:
- hubble.ioot.xyz
tls:
- hosts:
- hubble.ioot.xyz
secretName: hubble-tls