eck-operator values.yaml
📜
nameOverride📜
Type: string
"elastic-operator"
fullnameOverride📜
Type: string
"elastic-operator"
managedNamespaces📜
Type: list
[]
installCRDs📜
Type: bool
true
replicaCount📜
Type: int
1
image.repository📜
Type: string
"registry1.dso.mil/ironbank/elastic/eck-operator/eck-operator"
image.tag📜
Type: string
"2.16.0"
image.pullPolicy📜
Type: string
"IfNotPresent"
image.fips📜
Type: bool
false
priorityClassName📜
Type: string
""
imagePullSecrets📜
Type: list
[]
resources.limits.cpu📜
Type: string
"200m"
resources.limits.memory📜
Type: string
"256Mi"
resources.requests.cpu📜
Type: string
"200m"
resources.requests.memory📜
Type: string
"256Mi"
statefulsetAnnotations📜
Type: object
{}
statefulsetLabels📜
Type: object
{}
podAnnotations📜
Type: object
{}
podLabels📜
Type: object
{}
podSecurityContext.runAsNonRoot📜
Type: bool
true
podSecurityContext.fsGroup📜
Type: int
1001
podSecurityContext.supplementalGroups[0]📜
Type: int
1001
securityContext.allowPrivilegeEscalation📜
Type: bool
false
securityContext.capabilities.drop[0]📜
Type: string
"ALL"
securityContext.readOnlyRootFilesystem📜
Type: bool
true
securityContext.runAsNonRoot📜
Type: bool
true
securityContext.runAsUser📜
Type: int
1001
securityContext.runAsGroup📜
Type: int
1001
nodeSelector📜
Type: object
{}
tolerations📜
Type: list
[]
affinity📜
Type: object
{}
podDisruptionBudget.enabled📜
Type: bool
false
podDisruptionBudget.minAvailable📜
Type: int
1
env📜
Type: list
[]
volumeMounts📜
Type: list
[]
volumes📜
Type: list
[]
createClusterScopedResources📜
Type: bool
true
automountServiceAccountToken📜
Type: bool
true
serviceAccount.create📜
Type: bool
true
serviceAccount.automountServiceAccountToken📜
Type: bool
true
serviceAccount.annotations📜
Type: object
{}
serviceAccount.name📜
Type: string
""
tracing.enabled📜
Type: bool
false
tracing.config.ELASTIC_APM_SERVER_URL📜
Type: string
"http://localhost:8200"
tracing.config.ELASTIC_APM_SERVER_TIMEOUT📜
Type: string
"30s"
refs.enforceRBAC📜
Type: bool
false
webhook.enabled📜
Type: bool
true
webhook.caBundle📜
Type: string
"Cg=="
webhook.certManagerCert📜
Type: string
nil
webhook.certsDir📜
Type: string
"/tmp/k8s-webhook-server/serving-certs"
webhook.failurePolicy📜
Type: string
"Ignore"
webhook.manageCerts📜
Type: bool
true
webhook.namespaceSelector📜
Type: object
{}
webhook.objectSelector📜
Type: object
{}
webhook.port📜
Type: int
9443
webhook.certsSecret📜
Type: string
""
hostNetwork📜
Type: bool
false
softMultiTenancy.enabled📜
Type: bool
false
kubeAPIServerIP📜
Type: string
nil
telemetry.disabled📜
Type: bool
false
telemetry.distributionChannel📜
Type: string
"helm"
config.logVerbosity📜
Type: string
"0"
config.metricsPort📜
Type: int
0
config.metrics.port📜
Type: string
"4321"
config.metrics.secureMode.enabled📜
Type: bool
false
config.metrics.secureMode.tls.certificateSecret📜
Type: string
""
config.containerRegistry📜
Type: string
"docker.elastic.co"
config.maxConcurrentReconciles📜
Type: string
"3"
config.caValidity📜
Type: string
"8760h"
config.caRotateBefore📜
Type: string
"24h"
config.caDir📜
Type: string
""
config.certificatesValidity📜
Type: string
"8760h"
config.certificatesRotateBefore📜
Type: string
"24h"
config.disableConfigWatch📜
Type: bool
false
config.exposedNodeLabels[0]📜
Type: string
"topology.kubernetes.io/.*"
config.exposedNodeLabels[1]📜
Type: string
"failure-domain.beta.kubernetes.io/.*"
config.ipFamily📜
Type: string
""
config.setDefaultSecurityContext📜
Type: string
"auto-detect"
config.kubeClientTimeout📜
Type: string
"60s"
config.elasticsearchClientTimeout📜
Type: string
"180s"
config.validateStorageClass📜
Type: bool
true
config.enableLeaderElection📜
Type: bool
true
config.elasticsearchObservationInterval📜
Type: string
"10s"
config.ubiOnly📜
Type: bool
false
podMonitor.enabled📜
Type: bool
false
podMonitor.labels📜
Type: object
{}
podMonitor.annotations📜
Type: object
{}
podMonitor.interval📜
Type: string
"5m"
podMonitor.scrapeTimeout📜
Type: string
"30s"
podMonitor.podTargetLabels📜
Type: list
[]
podMonitor.podMetricsEndpointConfig📜
Type: object
{}
serviceMonitor.enabled📜
Type: bool
true
serviceMonitor.caSecret📜
Type: string
""
serviceMonitor.caMountDirectory📜
Type: string
"/etc/prometheus/secrets/"
serviceMonitor.insecureSkipVerify📜
Type: bool
true
global.manifestGen📜
Type: bool
false
global.createOperatorNamespace📜
Type: bool
true
global.kubeVersion📜
Type: string
"1.21.0"
license.trial📜
Type: bool
false
license.keyJSON📜
Type: string
""
networkPolicies.enabled📜
Type: bool
false
networkPolicies.controlPlaneCidr📜
Type: string
"0.0.0.0/0"
networkPolicies.additionalPolicies📜
Type: list
[]
monitoring.enabled📜
Type: bool
false
openshift📜
Type: bool
false
istio.enabled📜
Type: bool
false
istio.hardened.enabled📜
Type: bool
false
istio.hardened.customAuthorizationPolicies📜
Type: list
[]
istio.hardened.outboundTrafficPolicyMode📜
Type: string
"REGISTRY_ONLY"
istio.hardened.customServiceEntries📜
Type: list
[]
istio.hardened.tempo.enabled📜
Type: bool
false
istio.hardened.tempo.namespaces[0]📜
Type: string
"tempo"
istio.hardened.tempo.principals[0]📜
Type: string
"cluster.local/ns/tempo/sa/tempo-tempo"
istio.mtls.mode📜
Type: string
"STRICT"
upgradeCrds.enabled📜
Type: bool
false
upgradeCrds.image.repository📜
Type: string
"registry1.dso.mil/ironbank/big-bang/base"
upgradeCrds.image.tag📜
Type: string
"2.1.0"