-
Notifications
You must be signed in to change notification settings - Fork 184
/
values.yaml
168 lines (160 loc) · 3.25 KB
/
values.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
# Specifies the secret data for imagePullSecrets needed to fetch the private docker images
imageCredentials:
create: true
name: aqua-registry-secret # example
repositoryUriPrefix: "registry.aquasec.com" # for dockerhub - "docker.io"
registry: "registry.aquasec.com" #REQUIRED only if create is true, for dockerhub - "index.docker.io/v1/"
username: ""
password: ""
rbac:
enabled: true
privileged: true
roleRef:
# enable only one of the modes
clustermode: false
activeactive: false
admin:
token:
password:
secretname: null
tokenkey: null
passwordkey: null
docker:
socket:
path: /var/run/docker.sock # pks - /var/vcap/data/sys/run/docker/docker.sock
docker: "-" # true/false values
db:
external:
enabled: false
name:
host:
port:
user:
password:
auditName:
auditHost:
auditPort:
auditUser:
auditPassword:
pubsubName:
pubsubHost:
pubsubPort:
pubsubUser:
pubsubPassword:
passwordSecret: null
dbPasswordName: null
dbPasswordKey: null
dbAuditPasswordName: null
dbAuditPasswordKey: null
dbPubsubPasswordName: null
dbPubsubPasswordKey: null
ssl: false
auditssl: false
image:
repository: database
tag: "5.0"
pullPolicy: IfNotPresent
service:
type: ClusterIP
persistence:
enabled: true
storageClass:
size: 30Gi
accessMode: ReadWriteOnce
livenessProbe:
exec:
command:
- sh
- -c
- exec pg_isready --host $POD_IP
initialDelaySeconds: 60
timeoutSeconds: 5
failureThreshold: 6
readinessProbe:
exec:
command:
- sh
- -c
- exec pg_isready --host $POD_IP
initialDelaySeconds: 5
timeoutSeconds: 3
periodSeconds: 5
resources: {}
# Note: For recommendations please check the official sizing guide.
# requests:
# cpu: 0.1
# memory: 0.2Gi
# limits:
# cpu: 1
# memory: 2Gi
nodeSelector: {}
tolerations: []
affinity: {}
gate:
image:
repository: gateway
tag: "5.0"
pullPolicy: IfNotPresent
service:
type: ClusterIP
externalPort: 3622
nodePort:
grpcservice:
externalPort: 8443
nodePort:
publicIP: aqua-gateway
replicaCount: 1
livenessProbe: {}
readinessProbe: {}
resources: {}
# Note: For recommendations please check the official sizing guide.
# requests:
# cpu: 0.1
# memory: 0.2Gi
# limits:
# cpu: 1
# memory: 2Gi
nodeSelector: {}
tolerations: []
affinity: {}
web:
image:
repository: console
tag: "5.0"
pullPolicy: IfNotPresent
service:
type: LoadBalancer
externalPort: 8080
nodePort:
grpcService:
externalPort: 443
nodePort:
encryptionKey:
ingress:
enabled: false
annotations: {}
# kubernetes.io/ingress.class: nginx
hosts: #REQUIRED
#- aquasec-test.example.com
tls: []
# - secretName: aquasec-tls
# hosts:
# - aquasec.domain.com
replicaCount: 1
livenessProbe: {}
readinessProbe: {}
resources: {}
# Note: For recommendations please check the official sizing guide.
# requests:
# cpu: 0.1
# memory: 0.2Gi
# limits:
# cpu: 1
# memory: 2Gi
nodeSelector: {}
tolerations: []
affinity: {}
proxy:
httpProxy:
httpsProxy:
noProxy: