mirror of
https://github.com/auricom/home-cluster.git
synced 2025-09-29 05:16:08 +02:00
🚀 cilium helm-release
This commit is contained in:
@@ -12,7 +12,7 @@ hubble:
|
|||||||
enabled: false
|
enabled: false
|
||||||
ipam:
|
ipam:
|
||||||
mode: kubernetes
|
mode: kubernetes
|
||||||
ipv4NativeRoutingCIDR: 10.244.0.0/16
|
ipv4NativeRoutingCIDR: 10.69.0.0/16
|
||||||
k8sServiceHost: 192.168.9.100
|
k8sServiceHost: 192.168.9.100
|
||||||
k8sServicePort: 6443
|
k8sServicePort: 6443
|
||||||
kubeProxyReplacement: strict
|
kubeProxyReplacement: strict
|
||||||
|
79
kubernetes/cluster-0/core/cilium/helm-release.yaml
Normal file
79
kubernetes/cluster-0/core/cilium/helm-release.yaml
Normal file
@@ -0,0 +1,79 @@
|
|||||||
|
---
|
||||||
|
apiVersion: helm.toolkit.fluxcd.io/v2beta1
|
||||||
|
kind: HelmRelease
|
||||||
|
metadata:
|
||||||
|
name: &app cilium
|
||||||
|
namespace: kube-system
|
||||||
|
spec:
|
||||||
|
interval: 15m
|
||||||
|
chart:
|
||||||
|
spec:
|
||||||
|
chart: cilium
|
||||||
|
version: 1.12.4
|
||||||
|
sourceRef:
|
||||||
|
kind: HelmRepository
|
||||||
|
name: cilium
|
||||||
|
namespace: flux-system
|
||||||
|
install:
|
||||||
|
createNamespace: true
|
||||||
|
remediation:
|
||||||
|
retries: 5
|
||||||
|
upgrade:
|
||||||
|
remediation:
|
||||||
|
retries: 5
|
||||||
|
values:
|
||||||
|
autoDirectNodeRoutes: true
|
||||||
|
bgp:
|
||||||
|
announce:
|
||||||
|
loadbalancerIP: true
|
||||||
|
enabled: true
|
||||||
|
cluster:
|
||||||
|
id: 1
|
||||||
|
name: cluster-0
|
||||||
|
containerRuntime:
|
||||||
|
integration: containerd
|
||||||
|
endpointRoutes:
|
||||||
|
enabled: true
|
||||||
|
hubble:
|
||||||
|
enabled: true
|
||||||
|
metrics:
|
||||||
|
enabled:
|
||||||
|
- dns:query;ignoreAAAA
|
||||||
|
- drop
|
||||||
|
- tcp
|
||||||
|
- flow
|
||||||
|
- port-distribution
|
||||||
|
- icmp
|
||||||
|
- http
|
||||||
|
relay:
|
||||||
|
enabled: true
|
||||||
|
rollOutPods: true
|
||||||
|
serviceMonitor:
|
||||||
|
enabled: true
|
||||||
|
ui:
|
||||||
|
enabled: true
|
||||||
|
ingress:
|
||||||
|
enabled: true
|
||||||
|
hosts:
|
||||||
|
- &host "cilium.${SECRET_CLUSTER_DOMAIN}"
|
||||||
|
tls:
|
||||||
|
- hosts:
|
||||||
|
- *host
|
||||||
|
rollOutPods: true
|
||||||
|
ipam:
|
||||||
|
mode: kubernetes
|
||||||
|
ipv4NativeRoutingCIDR: ${CILIUM_POD_CIDR}
|
||||||
|
k8sServiceHost: cluster-0.${SECRET_DOMAIN}
|
||||||
|
k8sServicePort: 6443
|
||||||
|
kubeProxyReplacement: strict
|
||||||
|
kubeProxyReplacementHealthzBindAddr: 0.0.0.0:10256
|
||||||
|
loadBalancer:
|
||||||
|
algorithm: maglev
|
||||||
|
mode: dsr
|
||||||
|
localRedirectPolicy: true
|
||||||
|
operator:
|
||||||
|
rollOutPods: true
|
||||||
|
rollOutCiliumPods: true
|
||||||
|
securityContext:
|
||||||
|
privileged: true
|
||||||
|
tunnel: disabled
|
@@ -4,3 +4,4 @@ kind: Kustomization
|
|||||||
namespace: kube-system
|
namespace: kube-system
|
||||||
resources:
|
resources:
|
||||||
- ./configmap.yaml
|
- ./configmap.yaml
|
||||||
|
- ./helm-release.yaml
|
||||||
|
Reference in New Issue
Block a user