|
1 | | -# vp-template |
| 1 | +# zero-trust-workload-identity-manager |
2 | 2 |
|
3 | | - |
| 3 | +<!-- markdownlint-disable MD013 --> |
4 | 4 |
|
5 | | -A Helm chart to serve as the Validated Patterns Template |
| 5 | +  |
| 6 | + |
| 7 | +<!-- markdownlint-enable MD013 --> |
| 8 | + |
| 9 | +<!-- markdownlint-disable MD013 --> |
| 10 | + |
| 11 | +Zero Trust Workload Identity Manager Helm Chart |
| 12 | + |
| 13 | +<!-- markdownlint-enable MD013 --> |
6 | 14 |
|
7 | 15 | This chart is used to serve as the template for Validated Patterns Charts |
8 | 16 |
|
9 | 17 | ## Notable changes |
10 | 18 |
|
| 19 | +**Homepage:** <https://github.com/validatedpatterns/ztwim-chart> |
| 20 | + |
| 21 | +## Maintainers |
| 22 | + |
| 23 | +| Name | Email | Url | |
| 24 | +| ----------------------- | ------------------------------------ | --- | |
| 25 | +| Validated Patterns Team | <validatedpatterns@googlegroups.com> | | |
| 26 | + |
| 27 | +<!-- markdownlint-disable MD013 MD034 MD060 --> |
| 28 | + |
| 29 | +## Values |
| 30 | + |
| 31 | +| Key | Type | Default | Description | |
| 32 | +| -------------------------------------------------------------------------------- | ------ | -------------------------------------------------------------------------------- | ----------- | |
| 33 | +| global.hubClusterDomain | string | `"hub.example.com"` | | |
| 34 | +| global.localClusterDomain | string | `"local.example.com"` | | |
| 35 | +| spiffe.csi.agentSocketPath | string | `"/run/spire/agent-sockets"` | | |
| 36 | +| spire.agent.nodeAttestor.k8sPSATEnabled | string | `"true"` | | |
| 37 | +| spire.agent.workloadAttestors.k8sEnabled | string | `"true"` | | |
| 38 | +| spire.agent.workloadAttestors.workloadAttestorsVerification.hostCertBasePath | string | `"/var/lib/kubelet/pki"` | | |
| 39 | +| spire.agent.workloadAttestors.workloadAttestorsVerification.hostCertFileName | string | `""` | | |
| 40 | +| spire.agent.workloadAttestors.workloadAttestorsVerification.type | string | `"auto"` | | |
| 41 | +| spire.bundleConfigMap | string | `"spire-bundle"` | | |
| 42 | +| spire.clusterName | string | `"cluster"` | | |
| 43 | +| spire.oidcDiscoveryProvider.ingress.annotations."route.openshift.io/termination" | string | `"reencrypt"` | | |
| 44 | +| spire.oidcDiscoveryProvider.ingress.host | string | `"spire-spiffe-oidc-discovery-provider.{{ .Values.global.localClusterDomain }}"` | | |
| 45 | +| spire.oidcDiscoveryProvider.ingress.operatorManaged | string | `"true"` | | |
| 46 | +| spire.oidcDiscoveryProvider.service.name | string | `"spire-spiffe-oidc-discovery-provider"` | | |
| 47 | +| spire.oidcDiscoveryProvider.service.port | int | `443` | | |
| 48 | +| spire.server.ca.commonName | string | `"redhat.com"` | | |
| 49 | +| spire.server.ca.country | string | `"US"` | | |
| 50 | +| spire.server.ca.organization | string | `"Red Hat"` | | |
| 51 | +| spire.server.datastore.connMaxLifetime | int | `0` | | |
| 52 | +| spire.server.datastore.connectionString | string | `"/run/spire/data/datastore.sqlite3"` | | |
| 53 | +| spire.server.datastore.databaseType | string | `"sqlite3"` | | |
| 54 | +| spire.server.datastore.maxIdleConns | int | `10` | | |
| 55 | +| spire.server.datastore.maxOpenConns | int | `100` | | |
| 56 | +| spire.server.federation.bundleEndpoint.profile | string | `"https_spiffe"` | | |
| 57 | +| spire.server.federation.enabled | string | `"false"` | | |
| 58 | +| spire.server.federation.federatesWith | list | `[]` | | |
| 59 | +| spire.server.federation.ingress.annotations."route.openshift.io/termination" | string | `"passthrough"` | | |
| 60 | +| spire.server.federation.ingress.host | string | `"spire-server.{{ .Values.global.localClusterDomain }}"` | | |
| 61 | +| spire.server.federation.ingress.operatorManaged | string | `"true"` | | |
| 62 | +| spire.server.persistence.accessMode | string | `"ReadWriteOnce"` | | |
| 63 | +| spire.server.persistence.size | string | `"5Gi"` | | |
| 64 | +| spire.server.persistence.storageClass | string | `""` | | |
| 65 | +| spire.server.service.name | string | `"spire-server"` | | |
| 66 | +| spire.server.service.port | int | `443` | | |
| 67 | +| spire.trustDomain | string | `"{{ .Values.global.localClusterDomain }}"` | | |
| 68 | + |
| 69 | +<!-- markdownlint-enable MD013 MD034 MD060 --> |
| 70 | + |
11 | 71 | --- |
12 | 72 |
|
13 | 73 | Autogenerated from chart metadata using [helm-docs v1.14.2](https://github.com/norwoodj/helm-docs/releases/v1.14.2) |
0 commit comments