Skip to content

argocd values.yamlπŸ“œ

sso.enabledπŸ“œ

Type: bool

Default value
false

sso.rbac.”policy.csv”πŸ“œ

Type: string

Default value
"g, Impact Level 2 Authorized, role:admin\n"

sso.keycloakClientSecretπŸ“œ

Type: string

Default value
"this-can-be-anything-for-dev"

sso.config.”oidc.config”πŸ“œ

Type: string

Default value
"name: Keycloak\nissuer: https://login.dso.mil/auth/realms/baby-yoda\nclientID: platform1_a8604cc9-f5e9-4656-802d-d05624370245_bb8-argocd\nclientSecret: $oidc.keycloak.clientSecret\nrequestedScopes: [\"openid\",\"ArgoCD\"]\n"

awsCredentials.awsAccessKeyIdπŸ“œ

Type: string

Default value
""

awsCredentials.awsSecretAccessKeyπŸ“œ

Type: string

Default value
""

awsCredentials.awsDefaultRegionπŸ“œ

Type: string

Default value
"us-gov-west-1"

domainπŸ“œ

Type: string

Default value
"bigbang.dev"

istio.enabledπŸ“œ

Type: bool

Default value
false

Description: Toggle BigBang istio integration

istio.hardened.enabledπŸ“œ

Type: bool

Default value
false

istio.hardened.outboundTrafficPolicyModeπŸ“œ

Type: string

Default value
"REGISTRY_ONLY"

istio.hardened.customServiceEntriesπŸ“œ

Type: list

Default value
[]

istio.hardened.customAuthorizationPoliciesπŸ“œ

Type: list

Default value
[]

istio.hardened.monitoring.enabledπŸ“œ

Type: bool

Default value
true

istio.hardened.monitoring.namespaces[0]πŸ“œ

Type: string

Default value
"monitoring"

istio.hardened.monitoring.principals[0]πŸ“œ

Type: string

Default value
"cluster.local/ns/monitoring/sa/monitoring-grafana"

istio.hardened.monitoring.principals[1]πŸ“œ

Type: string

Default value
"cluster.local/ns/monitoring/sa/monitoring-monitoring-kube-alertmanager"

istio.hardened.monitoring.principals[2]πŸ“œ

Type: string

Default value
"cluster.local/ns/monitoring/sa/monitoring-monitoring-kube-operator"

istio.hardened.monitoring.principals[3]πŸ“œ

Type: string

Default value
"cluster.local/ns/monitoring/sa/monitoring-monitoring-kube-prometheus"

istio.hardened.monitoring.principals[4]πŸ“œ

Type: string

Default value
"cluster.local/ns/monitoring/sa/monitoring-monitoring-kube-state-metrics"

istio.hardened.monitoring.principals[5]πŸ“œ

Type: string

Default value
"cluster.local/ns/monitoring/sa/monitoring-monitoring-prometheus-node-exporter"

istio.hardened.argocd.enabledπŸ“œ

Type: bool

Default value
true

istio.hardened.argocd.namespaces[0]πŸ“œ

Type: string

Default value
"argocd"

istio.hardened.argocd.principals[0]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-application-controller"

istio.hardened.argocd.principals[1]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-applicationset-controller"

istio.hardened.argocd.principals[2]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-argocd-redis-bb"

istio.hardened.argocd.principals[3]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-argocd-repo-server"

istio.hardened.argocd.principals[4]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-dex-server"

istio.hardened.argocd.principals[5]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-notifications-controller"

istio.hardened.argocd.principals[6]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-server"

istio.hardened.argocd.principals[7]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/upgrade-job-svc-account"

istio.hardened.argocd.principals[8]πŸ“œ

Type: string

Default value
"cluster.local/ns/argocd/sa/argocd-argocd-redis-bb-metrics"

istio.injectionπŸ“œ

Type: string

Default value
"disabled"

Description: Toggle BigBang istio injection

istio.mtlsπŸ“œ

Type: object

Default value
mode: STRICT

Description: Default argocd peer authentication

istio.mtls.modeπŸ“œ

Type: string

Default value
"STRICT"

Description: STRICT = Allow only mutual TLS traffic, PERMISSIVE = Allow both plain text and mutual TLS traffic

istio.argocd.enabledπŸ“œ

Type: bool

Default value
true

Description: Toggle Istio VirtualService creation

istio.argocd.annotationsπŸ“œ

Type: object

Default value
{}

Description: Set Annotations for VirtualService

istio.argocd.labelsπŸ“œ

Type: object

Default value
{}

Description: Set Labels for VirtualService

istio.argocd.gatewaysπŸ“œ

Type: list

Default value
- istio-system/main

Description: Set Gateway for VirtualService

istio.argocd.hostsπŸ“œ

Type: list

Default value
- argocd.{{ .Values.domain }}

Description: Set Hosts for VirtualService

monitoring.enabledπŸ“œ

Type: bool

Default value
false

Description: Toggle BigBang monitoring integration

networkPolicies.enabledπŸ“œ

Type: bool

Default value
false

Description: Toggle BigBang networkPolicies integration

networkPolicies.ingressLabels.appπŸ“œ

Type: string

Default value
"istio-ingressgateway"

networkPolicies.ingressLabels.istioπŸ“œ

Type: string

Default value
"ingressgateway"

networkPolicies.controlPlaneCidrπŸ“œ

Type: string

Default value
"0.0.0.0/0"

Description: Control Plane CIDR, defaults to 0.0.0.0/0, use kubectl get endpoints -n default kubernetes to get the CIDR range needed for your cluster Must be an IP CIDR range (x.x.x.x/x - ideally with /32 for the specific IP of a single endpoint, broader range for multiple masters/endpoints) Used by package NetworkPolicies to allow Kube API access

networkPolicies.additionalPoliciesπŸ“œ

Type: list

Default value
[]

upgradeJob.enabledπŸ“œ

Type: bool

Default value
true

upgradeJob.image.repositoryπŸ“œ

Type: string

Default value
"registry1.dso.mil/ironbank/big-bang/base"

upgradeJob.image.tagπŸ“œ

Type: string

Default value
"2.1.0"

upgradeJob.image.imagePullPolicyπŸ“œ

Type: string

Default value
"IfNotPresent"

bbtests.enabledπŸ“œ

Type: bool

Default value
false

bbtests.cypress.artifactsπŸ“œ

Type: bool

Default value
true

bbtests.cypress.envs.cypress_urlπŸ“œ

Type: string

Default value
"http://argocd-server"

bbtests.cypress.envs.cypress_userπŸ“œ

Type: string

Default value
"admin"

bbtests.cypress.envs.cypress_passwordπŸ“œ

Type: string

Default value
"Password123"

bbtests.cypress.envs.cypress_timeoutπŸ“œ

Type: string

Default value
"120000"

bbtests.cypress.resources.requests.cpuπŸ“œ

Type: int

Default value
4

bbtests.cypress.resources.requests.memoryπŸ“œ

Type: string

Default value
"4Gi"

bbtests.cypress.resources.limits.cpuπŸ“œ

Type: int

Default value
4

bbtests.cypress.resources.limits.memoryπŸ“œ

Type: string

Default value
"8Gi"

bbtests.scripts.imageπŸ“œ

Type: string

Default value
"registry1.dso.mil/bigbang-ci/devops-tester:1.1.1"

bbtests.scripts.envs.ARGOCD_SERVERπŸ“œ

Type: string

Default value
"http://argocd-server"

bbtests.scripts.envs.ARGOCD_USERπŸ“œ

Type: string

Default value
"admin"

bbtests.scripts.envs.ARGOCD_PASSWORDπŸ“œ

Type: string

Default value
"Password123"

nameOverrideπŸ“œ

Type: string

Default value
"argocd"

Description: Provide a name in place of argocd

fullnameOverrideπŸ“œ

Type: string

Default value
""

Description: String to fully override "argo-cd.fullname"

kubeVersionOverrideπŸ“œ

Type: string

Default value
""

Description: Override the Kubernetes version, which is used to evaluate certain manifests

apiVersionOverridesπŸ“œ

Type: object

Default value
{}

createAggregateRolesπŸ“œ

Type: bool

Default value
false

Description: Create aggregated roles that extend existing cluster roles to interact with argo-cd resources # Ref: https://kubernetes.io/docs/reference/access-authn-authz/rbac/#aggregated-clusterroles

createClusterRolesπŸ“œ

Type: bool

Default value
true

Description: Create cluster roles for cluster-wide installation. # Used when you manage applications in the same cluster where Argo CD runs

openshift.enabledπŸ“œ

Type: bool

Default value
false

Description: enables using arbitrary uid for argo repo server

crds.installπŸ“œ

Type: bool

Default value
true

Description: Install and upgrade CRDs

crds.keepπŸ“œ

Type: bool

Default value
true

Description: Keep CRDs on chart uninstall

crds.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to all CRDs

crds.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Addtional labels to be added to all CRDs

global.domainπŸ“œ

Type: string

Default value
"argocd.example.com"

Description: Default domain used by all components # Used for ingresses, certificates, SSO, notifications, etc.

global.runtimeClassNameπŸ“œ

Type: string

Default value
""

Description: Runtime class name for all components

global.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Common labels for the all resources

global.revisionHistoryLimitπŸ“œ

Type: int

Default value
3

Description: Number of old deployment ReplicaSets to retain. The rest will be garbage collected.

global.image.repositoryπŸ“œ

Type: string

Default value
"registry1.dso.mil/ironbank/big-bang/argocd"

Description: If defined, a repository applied to all Argo CD deployments

global.image.tagπŸ“œ

Type: string

Default value
"v2.13.2"

Description: Overrides the global Argo CD image tag whose default is the chart appVersion

global.image.imagePullPolicyπŸ“œ

Type: string

Default value
"IfNotPresent"

Description: If defined, a imagePullPolicy applied to all Argo CD deployments

global.imagePullSecretsπŸ“œ

Type: list

Default value
- name: private-registry

Description: Secrets with credentials to pull images from a private registry

global.logging.formatπŸ“œ

Type: string

Default value
"text"

Description: Set the global logging format. Either: text or json

global.logging.levelπŸ“œ

Type: string

Default value
"info"

Description: Set the global logging level. One of: debug, info, warn or error

global.statefulsetAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations for the all deployed Statefulsets

global.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations for the all deployed Deployments

global.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations for the all deployed pods

global.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels for the all deployed pods

global.addPrometheusAnnotationsπŸ“œ

Type: bool

Default value
false

Description: Add Prometheus scrape annotations to all metrics services. This can be used as an alternative to the ServiceMonitors.

global.hostAliasesπŸ“œ

Type: list

Default value
[]

Description: Mapping between IP and hostnames that will be injected as entries in the pod’s hosts files

global.dualStack.ipFamilyPolicyπŸ“œ

Type: string

Default value
""

Description: IP family policy to configure dual-stack see Configure dual-stack

global.dualStack.ipFamiliesπŸ“œ

Type: list

Default value
[]

Description: IP families that should be supported and the order in which they should be applied to ClusterIP as well. Can be IPv4 and/or IPv6.

global.networkPolicy.createπŸ“œ

Type: bool

Default value
false

Description: Create NetworkPolicy objects for all components

global.networkPolicy.defaultDenyIngressπŸ“œ

Type: bool

Default value
false

Description: Default deny all ingress traffic

global.priorityClassNameπŸ“œ

Type: string

Default value
""

Description: Default priority class for all components

global.nodeSelectorπŸ“œ

Type: object

Default value
{}

Description: Default node selector for all components

global.tolerationsπŸ“œ

Type: list

Default value
[]

Description: Default tolerations for all components

global.affinity.podAntiAffinityπŸ“œ

Type: string

Default value
"soft"

Description: Default pod anti-affinity rules. Either: none, soft or hard

global.affinity.nodeAffinity.typeπŸ“œ

Type: string

Default value
"hard"

Description: Default node affinity rules. Either: none, soft or hard

global.affinity.nodeAffinity.matchExpressionsπŸ“œ

Type: list

Default value
[]

Description: Default match expressions for node affinity

global.topologySpreadConstraintsπŸ“œ

Type: list

Default value
[]

Description: Default [TopologySpreadConstraints] rules for all components # Ref: https://kubernetes.io/docs/concepts/workloads/pods/pod-topology-spread-constraints/ # If labelSelector is left out, it will default to the labelSelector of the component

global.deploymentStrategyπŸ“œ

Type: object

Default value
{}

Description: Deployment strategy for the all deployed Deployments

global.envπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to all deployed Deployments

global.certificateAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations for the all deployed Certificates

configs.cm.createπŸ“œ

Type: bool

Default value
true

Description: Create the argocd-cm configmap for [declarative setup]

configs.cm.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-cm configmap

configs.cm.”application.instanceLabelKey”πŸ“œ

Type: string

Default value
"argocd.argoproj.io/instance"

Description: The name of tracking label used by Argo CD for resource pruning

configs.cm.”server.rbac.log.enforce.enable”πŸ“œ

Type: bool

Default value
false

Description: Enable logs RBAC enforcement # Ref: https://argo-cd.readthedocs.io/en/latest/operator-manual/upgrading/2.3-2.4/#enable-logs-rbac-enforcement

configs.cm.”exec.enabled”πŸ“œ

Type: bool

Default value
false

Description: Enable exec feature in Argo UI # Ref: https://argo-cd.readthedocs.io/en/latest/operator-manual/rbac/#exec-resource

configs.cm.”admin.enabled”πŸ“œ

Type: bool

Default value
true

Description: Enable local admin user # Ref: https://argo-cd.readthedocs.io/en/latest/faq/#how-to-disable-admin-user

configs.cm.”timeout.reconciliation”πŸ“œ

Type: string

Default value
"180s"

Description: Timeout to discover if a new manifests version got published to the repository

configs.cm.”timeout.hard.reconciliation”πŸ“œ

Type: string

Default value
"0s"

Description: Timeout to refresh application data as well as target manifests cache

configs.cm.”statusbadge.enabled”πŸ“œ

Type: bool

Default value
false

Description: Enable Status Badge # Ref: https://argo-cd.readthedocs.io/en/stable/user-guide/status-badge/

configs.params.createπŸ“œ

Type: bool

Default value
true

Description: Create the argocd-cmd-params-cm configmap If false, it is expected the configmap will be created by something else.

configs.params.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to the argocd-cmd-params-cm ConfigMap

configs.params.”otlp.address”πŸ“œ

Type: string

Default value
""

Description: Open-Telemetry collector address: (e.g. “otel-collector:4317”)

configs.params.”controller.status.processors”πŸ“œ

Type: int

Default value
20

Description: Number of application status processors

configs.params.”controller.operation.processors”πŸ“œ

Type: int

Default value
10

Description: Number of application operation processors

configs.params.”controller.self.heal.timeout.seconds”πŸ“œ

Type: int

Default value
5

Description: Specifies timeout between application self heal attempts

configs.params.”controller.repo.server.timeout.seconds”πŸ“œ

Type: int

Default value
60

Description: Repo server RPC call timeout seconds.

configs.params.”server.insecure”πŸ“œ

Type: bool

Default value
true

Description: Run server without TLS # NOTE: This value should be set when you generate params by other means as it changes ports used by ingress template.

configs.params.”server.basehref”πŸ“œ

Type: string

Default value
"/"

Description: Value for base href in index.html. Used if Argo CD is running behind reverse proxy under subpath different from /

configs.params.”server.rootpath”πŸ“œ

Type: string

Default value
""

Description: Used if Argo CD is running behind reverse proxy under subpath different from /

configs.params.”server.staticassets”πŸ“œ

Type: string

Default value
"/shared/app"

Description: Directory path that contains additional static assets

configs.params.”server.disable.auth”πŸ“œ

Type: bool

Default value
false

Description: Disable Argo CD RBAC for user authentication

configs.params.”server.enable.gzip”πŸ“œ

Type: bool

Default value
true

Description: Enable GZIP compression

configs.params.”server.enable.proxy.extension”πŸ“œ

Type: bool

Default value
false

Description: Enable proxy extension feature. (proxy extension is in Alpha phase)

configs.params.”server.x.frame.options”πŸ“œ

Type: string

Default value
"sameorigin"

Description: Set X-Frame-Options header in HTTP responses to value. To disable, set to “”.

configs.params.”reposerver.parallelism.limit”πŸ“œ

Type: int

Default value
0

Description: Limit on number of concurrent manifests generate requests. Any value less the 1 means no limit.

configs.params.”applicationsetcontroller.policy”πŸ“œ

Type: string

Default value
"sync"

Description: Modify how application is synced between the generator and the cluster. One of: sync, create-only, create-update, create-delete

configs.params.”applicationsetcontroller.enable.progressive.syncs”πŸ“œ

Type: bool

Default value
false

Description: Enables use of the Progressive Syncs capability

configs.params.”application.namespaces”πŸ“œ

Type: string

Default value
""

Description: Enables [Applications in any namespace] # List of additional namespaces where applications may be created in and reconciled from. # The namespace where Argo CD is installed to will always be allowed. # Set comma-separated list. (e.g. app-team-one, app-team-two)

configs.params.”controller.ignore.normalizer.jq.timeout”πŸ“œ

Type: string

Default value
"1s"

Description: JQ Path expression timeout # By default, the evaluation of a JQPathExpression is limited to one second. # If you encounter a “JQ patch execution timed out” error message due to a complex JQPathExpression # that requires more time to evaluate, you can extend the timeout period.

configs.rbac.createπŸ“œ

Type: bool

Default value
true

Description: Create the argocd-rbac-cm configmap with ([Argo CD RBAC policy]) definitions. If false, it is expected the configmap will be created by something else. Argo CD will not work if there is no configmap created with the name above.

configs.rbac.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-rbac-cm configmap

configs.rbac.”policy.default”πŸ“œ

Type: string

Default value
""

Description: The name of the default role which Argo CD will falls back to, when authorizing API requests (optional). If omitted or empty, users may be still be able to login, but will see no apps, projects, etc…

configs.rbac.scopesπŸ“œ

Type: string

Default value
"[groups]"

Description: OIDC scopes to examine during rbac enforcement (in addition to sub scope). The scope value can be a string, or a list of strings.

configs.rbac.”policy.matchMode”πŸ“œ

Type: string

Default value
"glob"

Description: Matcher function for Casbin, glob for glob matcher and regex for regex matcher.

configs.gpg.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-gpg-keys-cm configmap

configs.ssh.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-ssh-known-hosts-cm configmap

configs.ssh.extraHostsπŸ“œ

Type: string

Default value
""

Description: Additional known hosts for private repositories

configs.tls.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-tls-certs-cm configmap

configs.cmp.createπŸ“œ

Type: bool

Default value
false

Description: Create the argocd-cmp-cm configmap

configs.cmp.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-cmp-cm configmap

configs.cmp.pluginsπŸ“œ

Type: object

Default value
{}

Description: Plugin yaml files to be added to argocd-cmp-cm

configs.credentialTemplatesπŸ“œ

Type: object

Default value
{}

Description: Repository credentials to be used as Templates for other repos # Creates a secret for each key/value specified below to create repository credentials

configs.credentialTemplatesAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to configs.credentialTemplates Secret

configs.repositoriesπŸ“œ

Type: object

Default value
{}

Description: Repositories list to be used by applications # Creates a secret for each key/value specified below to create repositories # Note: the last example in the list would use a repository credential template, configured under “configs.credentialTemplates”.

configs.repositoriesAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to configs.repositories Secret

configs.secret.createSecretπŸ“œ

Type: bool

Default value
true

Description: Create the argocd-secret

configs.secret.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to argocd-secret

configs.secret.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-secret

configs.secret.githubSecretπŸ“œ

Type: string

Default value
""

Description: Shared secret for authenticating GitHub webhook events

configs.secret.gitlabSecretπŸ“œ

Type: string

Default value
""

Description: Shared secret for authenticating GitLab webhook events

configs.secret.bitbucketServerSecretπŸ“œ

Type: string

Default value
""

Description: Shared secret for authenticating BitbucketServer webhook events

configs.secret.bitbucketUUIDπŸ“œ

Type: string

Default value
""

Description: UUID for authenticating Bitbucket webhook events

configs.secret.gogsSecretπŸ“œ

Type: string

Default value
""

Description: Shared secret for authenticating Gogs webhook events

configs.secret.azureDevops.usernameπŸ“œ

Type: string

Default value
""

Description: Shared secret username for authenticating Azure DevOps webhook events

configs.secret.azureDevops.passwordπŸ“œ

Type: string

Default value
""

Description: Shared secret password for authenticating Azure DevOps webhook events

configs.secret.extraπŸ“œ

Type: object

Default value
{}

Description: add additional secrets to be added to argocd-secret # Custom secrets. Useful for injecting SSO secrets into environment variables. # Ref: https://argo-cd.readthedocs.io/en/stable/operator-manual/user-management/#sensitive-data-and-sso-client-secrets # Note that all values must be non-empty.

extraObjectsπŸ“œ

Type: list

Default value
[]

Description: Array of extra K8s manifests to deploy # Note: Supports use of custom Helm templates

controller.nameπŸ“œ

Type: string

Default value
"application-controller"

Description: Application controller name string

controller.replicasπŸ“œ

Type: int

Default value
1

Description: The number of application controller pods to run. Additional replicas will cause sharding of managed clusters across number of replicas. # With dynamic cluster distribution turned on, sharding of the clusters will gracefully # rebalance if the number of replica’s changes or one becomes unhealthy. (alpha)

controller.dynamicClusterDistributionπŸ“œ

Type: bool

Default value
false

Description: Enable dynamic cluster distribution (alpha) Ref: https://argo-cd.readthedocs.io/en/stable/operator-manual/dynamic-cluster-distribution # This is done using a deployment instead of a statefulSet # When replicas are added or removed, the sharding algorithm is re-run to ensure that the # clusters are distributed according to the algorithm. If the algorithm is well-balanced, # like round-robin, then the shards will be well-balanced.

controller.heartbeatTimeπŸ“œ

Type: int

Default value
10

Description: Application controller heartbeat time Ref: https://argo-cd.readthedocs.io/en/stable/operator-manual/dynamic-cluster-distribution/#working-of-dynamic-distribution

controller.revisionHistoryLimitπŸ“œ

Type: int

Default value
5

Description: Maximum number of controller revisions that will be maintained in StatefulSet history

controller.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the application controller

controller.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to application controller pdb

controller.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to application controller pdb

controller.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailable after eviction as number or percentage (eg.: 50%). # Has higher precedence over controller.pdb.minAvailable

controller.extraArgsπŸ“œ

Type: list

Default value
[]

Description: Additional command line arguments to pass to application controller

controller.envπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to application controller

controller.extraContainersπŸ“œ

Type: list

Default value
[]

Description: Additional containers to be added to the application controller pod # Note: Supports use of custom Helm templates

controller.initContainersπŸ“œ

Type: list

Default value
[]

Description: Init containers to add to the application controller pod # If your target Kubernetes cluster(s) require a custom credential (exec) plugin # you could use this (and the same in the server pod) to provide such executable # Ref: https://kubernetes.io/docs/reference/access-authn-authz/authentication/#client-go-credential-plugins # Note: Supports use of custom Helm templates

controller.volumeMountsπŸ“œ

Type: list

Default value
[]

Description: Additional volumeMounts to the application controller main container

controller.volumesπŸ“œ

Type: list

Default value
[]

Description: Additional volumes to the application controller pod

controller.statefulsetAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations for the application controller StatefulSet

controller.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations for the application controller Deployment

controller.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to application controller pods

controller.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to application controller pods

controller.resourcesπŸ“œ

Type: object

Default value
limits:
  cpu: 500m
  memory: 3Gi
requests:
  cpu: 500m
  memory: 3Gi

Description: Resource limits and requests for the application controller pods

controller.containerPorts.metricsπŸ“œ

Type: int

Default value
8082

Description: Metrics container port

controller.hostNetworkπŸ“œ

Type: bool

Default value
false

Description: Host Network for application controller pods

controller.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

controller.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for application controller pods

controller.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
3

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

controller.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

controller.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

controller.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

controller.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

controller.terminationGracePeriodSecondsπŸ“œ

Type: int

Default value
30

Description: terminationGracePeriodSeconds for container lifecycle hook

controller.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account into the pod.

controller.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Create a service account for the application controller

controller.serviceAccount.nameπŸ“œ

Type: string

Default value
"argocd-application-controller"

Description: Service account name

controller.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

controller.serviceAccount.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels applied to created service account

controller.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account

controller.metrics.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy metrics service

controller.metrics.scrapeTimeoutπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scrapeTimeout. If empty, Prometheus uses the global scrape timeout unless it is less than the target’s scrape interval value in which the latter is used.

controller.metrics.applicationLabels.enabledπŸ“œ

Type: bool

Default value
false

Description: Enables additional labels in argocd_app_labels metric

controller.metrics.applicationLabels.labelsπŸ“œ

Type: list

Default value
[]

Description: Additional labels

controller.metrics.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: Metrics service type

controller.metrics.service.clusterIPπŸ“œ

Type: string

Default value
""

Description: Metrics service clusterIP. None makes a “headless service” (no virtual IP)

controller.metrics.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Metrics service annotations

controller.metrics.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Metrics service labels

controller.metrics.service.servicePortπŸ“œ

Type: int

Default value
8082

Description: Metrics service port

controller.metrics.service.portNameπŸ“œ

Type: string

Default value
"http-metrics"

Description: Metrics service port name

controller.metrics.serviceMonitor.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable a prometheus ServiceMonitor

controller.metrics.serviceMonitor.intervalπŸ“œ

Type: string

Default value
"30s"

Description: Prometheus ServiceMonitor interval

controller.metrics.serviceMonitor.honorLabelsπŸ“œ

Type: bool

Default value
false

Description: When true, honorLabels preserves the metric’s labels when they collide with the target’s labels.

controller.metrics.serviceMonitor.relabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [RelabelConfigs] to apply to samples before scraping

controller.metrics.serviceMonitor.metricRelabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [MetricRelabelConfigs] to apply to samples before ingestion

controller.metrics.serviceMonitor.selectorπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor selector

controller.metrics.serviceMonitor.schemeπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scheme

controller.metrics.serviceMonitor.tlsConfigπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor tlsConfig

controller.metrics.serviceMonitor.namespaceπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor namespace

controller.metrics.serviceMonitor.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor labels

controller.metrics.serviceMonitor.annotationsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor annotations

controller.metrics.rules.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a PrometheusRule for the application controller

controller.metrics.rules.namespaceπŸ“œ

Type: string

Default value
""

Description: PrometheusRule namespace

controller.metrics.rules.selectorπŸ“œ

Type: object

Default value
{}

Description: PrometheusRule selector

controller.metrics.rules.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: PrometheusRule labels

controller.metrics.rules.annotationsπŸ“œ

Type: object

Default value
{}

Description: PrometheusRule annotations

controller.metrics.rules.specπŸ“œ

Type: list

Default value
[]

Description: PrometheusRule.Spec for the application controller

controller.clusterRoleRules.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable custom rules for the application controller’s ClusterRole resource

controller.clusterRoleRules.rulesπŸ“œ

Type: list

Default value
[]

Description: List of custom rules for the application controller’s ClusterRole resource

dex.enabledπŸ“œ

Type: bool

Default value
true

Description: Enable dex

dex.nameπŸ“œ

Type: string

Default value
"dex-server"

Description: Dex name

dex.extraArgsπŸ“œ

Type: list

Default value
[]

Description: Additional command line arguments to pass to the Dex server

dex.metrics.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy metrics service

dex.metrics.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Metrics service annotations

dex.metrics.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Metrics service labels

dex.metrics.service.portNameπŸ“œ

Type: string

Default value
"http-metrics"

Description: Metrics service port name

dex.metrics.serviceMonitor.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable a prometheus ServiceMonitor

dex.metrics.serviceMonitor.intervalπŸ“œ

Type: string

Default value
"30s"

Description: Prometheus ServiceMonitor interval

dex.metrics.serviceMonitor.honorLabelsπŸ“œ

Type: bool

Default value
false

Description: When true, honorLabels preserves the metric’s labels when they collide with the target’s labels.

dex.metrics.serviceMonitor.relabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [RelabelConfigs] to apply to samples before scraping

dex.metrics.serviceMonitor.metricRelabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [MetricRelabelConfigs] to apply to samples before ingestion

dex.metrics.serviceMonitor.selectorπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor selector

dex.metrics.serviceMonitor.schemeπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scheme

dex.metrics.serviceMonitor.tlsConfigπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor tlsConfig

dex.metrics.serviceMonitor.namespaceπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor namespace

dex.metrics.serviceMonitor.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor labels

dex.metrics.serviceMonitor.annotationsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor annotations

dex.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the Dex server

dex.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to Dex server pdb

dex.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to Dex server pdb

dex.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailble after eviction as number or percentage (eg.: 50%). # Has higher precedence over dex.pdb.minAvailable

dex.image.repositoryπŸ“œ

Type: string

Default value
"registry1.dso.mil/ironbank/opensource/dexidp/dex"

Description: Dex image repository

dex.image.tagπŸ“œ

Type: string

Default value
"v2.41.1"

Description: Dex image tag

dex.envπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to the Dex server

dex.extraContainersπŸ“œ

Type: list

Default value
[]

Description: Additional containers to be added to the dex pod # Note: Supports use of custom Helm templates

dex.initContainersπŸ“œ

Type: list

Default value
[]

Description: Init containers to add to the dex pod # Note: Supports use of custom Helm templates

dex.volumeMountsπŸ“œ

Type: list

Default value
[]

Description: Additional volumeMounts to the dex main container

dex.volumesπŸ“œ

Type: list

Default value
[]

Description: Additional volumes to the dex pod

dex.certificateSecret.enabledπŸ“œ

Type: bool

Default value
false

Description: Create argocd-dex-server-tls secret

dex.certificateSecret.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to argocd-dex-server-tls secret

dex.certificateSecret.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-dex-server-tls secret

dex.certificateSecret.caπŸ“œ

Type: string

Default value
""

Description: Certificate authority. Required for self-signed certificates.

dex.certificateSecret.keyπŸ“œ

Type: string

Default value
""

Description: Certificate private key

dex.certificateSecret.crtπŸ“œ

Type: string

Default value
""

Description: Certificate data. Must contain SANs of Dex service (ie: argocd-dex-server, argocd-dex-server.argo-cd.svc)

dex.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to the Dex server Deployment

dex.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to the Dex server pods

dex.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to the Dex server pods

dex.resourcesπŸ“œ

Type: object

Default value
limits:
  cpu: 20m
  memory: 256Mi
requests:
  cpu: 10m
  memory: 128Mi

Description: Resource limits and requests for dex

dex.containerPorts.httpπŸ“œ

Type: int

Default value
5556

Description: HTTP container port

dex.containerPorts.grpcπŸ“œ

Type: int

Default value
5557

Description: gRPC container port

dex.containerPorts.metricsπŸ“œ

Type: int

Default value
5558

Description: Metrics container port

dex.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

dex.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for Dex server pods

dex.livenessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for Dex >= 2.28.0

dex.livenessProbe.httpPathπŸ“œ

Type: string

Default value
"/healthz/live"

Description: Http path to use for the liveness probe

dex.livenessProbe.httpPortπŸ“œ

Type: string

Default value
"metrics"

Description: Http port to use for the liveness probe

dex.livenessProbe.httpSchemeπŸ“œ

Type: string

Default value
"HTTP"

Description: Scheme to use for for the liveness probe (can be HTTP or HTTPS)

dex.livenessProbe.failureThresholdπŸ“œ

Type: int

Default value
3

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

dex.livenessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

dex.livenessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

dex.livenessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

dex.livenessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

dex.readinessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes readiness probe for Dex >= 2.28.0

dex.readinessProbe.httpPathπŸ“œ

Type: string

Default value
"/healthz/ready"

Description: Http path to use for the readiness probe

dex.readinessProbe.httpPortπŸ“œ

Type: string

Default value
"metrics"

Description: Http port to use for the readiness probe

dex.readinessProbe.httpSchemeπŸ“œ

Type: string

Default value
"HTTP"

Description: Scheme to use for for the liveness probe (can be HTTP or HTTPS)

dex.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
3

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

dex.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

dex.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

dex.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

dex.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

dex.terminationGracePeriodSecondsπŸ“œ

Type: int

Default value
30

Description: terminationGracePeriodSeconds for container lifecycle hook

dex.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account into the pod.

dex.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Create dex service account

dex.serviceAccount.nameπŸ“œ

Type: string

Default value
"argocd-dex-server"

Description: Dex service account name

dex.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

dex.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account

dex.servicePortHttpπŸ“œ

Type: int

Default value
5556

Description: Service port for HTTP access

dex.servicePortHttpNameπŸ“œ

Type: string

Default value
"http"

Description: Service port name for HTTP access

dex.servicePortGrpcπŸ“œ

Type: int

Default value
5557

Description: Service port for gRPC access

dex.servicePortGrpcNameπŸ“œ

Type: string

Default value
"grpc"

Description: Service port name for gRPC access

dex.servicePortMetricsπŸ“œ

Type: int

Default value
5558

Description: Service port for metrics access

dex.deploymentStrategyπŸ“œ

Type: object

Default value
{}

Description: Deployment strategy to be added to the Dex server Deployment

redis.externalEndpointπŸ“œ

Type: string

Default value
""

Description: Endpoint URL for external Redis For use with BigBang passthrough

redis.enabledπŸ“œ

Type: bool

Default value
true

Description: Enable redis

redis.nameπŸ“œ

Type: string

Default value
"redis"

Description: Redis name

redis.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the Redis

redis.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to Redis pdb

redis.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to Redis pdb

redis.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailble after eviction as number or percentage (eg.: 50%). # Has higher precedence over redis.pdb.minAvailable

redis.image.repositoryπŸ“œ

Type: string

Default value
"ironbank/bitnami/redis"

Description: Redis repository

redis.image.tagπŸ“œ

Type: string

Default value
"7.4.0"

Description: Redis tag

redis.exporter.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Prometheus redis-exporter sidecar

redis.exporter.envπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to the Redis exporter

redis.exporter.image.repositoryπŸ“œ

Type: string

Default value
"ironbank/bitnami/analytics/redis-exporter"

Description: Repository to use for the redis-exporter

redis.exporter.image.tagπŸ“œ

Type: string

Default value
"v1.67.0"

Description: Tag to use for the redis-exporter

redis.exporter.readinessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for Redis exporter (optional)

redis.exporter.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after the container has started before [probe] is initiated

redis.exporter.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
15

Description: How often (in seconds) to perform the [probe]

redis.exporter.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

redis.exporter.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

redis.exporter.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

redis.exporter.livenessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for Redis exporter

redis.exporter.livenessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after the container has started before [probe] is initiated

redis.exporter.livenessProbe.periodSecondsπŸ“œ

Type: int

Default value
15

Description: How often (in seconds) to perform the [probe]

redis.exporter.livenessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

redis.exporter.livenessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

redis.exporter.livenessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

redis.exporter.resourcesπŸ“œ

Type: object

Default value
{}

Description: Resource limits and requests for redis-exporter sidecar

redis.extraArgsπŸ“œ

Type: list

Default value
[]

Description: Additional command line arguments to pass to redis-server

redis.envπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to the Redis server

redis.readinessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for Redis server

redis.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after the container has started before [probe] is initiated

redis.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
15

Description: How often (in seconds) to perform the [probe]

redis.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

redis.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

redis.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

redis.livenessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for Redis server

redis.livenessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after the container has started before [probe] is initiated

redis.livenessProbe.periodSecondsπŸ“œ

Type: int

Default value
15

Description: How often (in seconds) to perform the [probe]

redis.livenessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

redis.livenessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

redis.livenessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

redis.extraContainersπŸ“œ

Type: list

Default value
[]

Description: Additional containers to be added to the redis pod # Note: Supports use of custom Helm templates

redis.initContainersπŸ“œ

Type: list

Default value
[]

Description: Init containers to add to the redis pod # Note: Supports use of custom Helm templates

redis.volumeMountsπŸ“œ

Type: list

Default value
[]

Description: Additional volumeMounts to the redis container

redis.volumesπŸ“œ

Type: list

Default value
[]

Description: Additional volumes to the redis pod

redis.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to the Redis server Deployment

redis.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to the Redis server pods

redis.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to the Redis server pods

redis.resourcesπŸ“œ

Type: object

Default value
limits:
  cpu: 50m
  memory: 64Mi
requests:
  cpu: 50m
  memory: 64Mi

Description: Resource limits and requests for redis

redis.containerPorts.redisπŸ“œ

Type: int

Default value
6379

Description: Redis container port

redis.containerPorts.metricsπŸ“œ

Type: int

Default value
9121

Description: Metrics container port

redis.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

redis.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for Redis server pods

redis.servicePortπŸ“œ

Type: int

Default value
6379

Description: Redis service port

redis.terminationGracePeriodSecondsπŸ“œ

Type: int

Default value
30

Description: terminationGracePeriodSeconds for container lifecycle hook

redis.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account into the pod.

redis.serviceAccount.createπŸ“œ

Type: bool

Default value
false

Description: Create a service account for the redis pod

redis.serviceAccount.nameπŸ“œ

Type: string

Default value
""

Description: Service account name for redis pod

redis.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

redis.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
false

Description: Automount API credentials for the Service Account

redis.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Redis service annotations

redis.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Additional redis service labels

redis.master.containerSecurityContext.enabledπŸ“œ

Type: bool

Default value
true

redis.master.containerSecurityContext.runAsUserπŸ“œ

Type: int

Default value
999

redis.master.containerSecurityContext.runAsGroupπŸ“œ

Type: int

Default value
999

redis.replica.containerSecurityContext.enabledπŸ“œ

Type: bool

Default value
true

redis.replica.containerSecurityContext.runAsUserπŸ“œ

Type: int

Default value
999

redis.replica.containerSecurityContext.runAsGroupπŸ“œ

Type: int

Default value
999

redis.metrics.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy metrics service

redis.metrics.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: Metrics service type

redis.metrics.service.clusterIPπŸ“œ

Type: string

Default value
"None"

Description: Metrics service clusterIP. None makes a “headless service” (no virtual IP)

redis.metrics.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Metrics service annotations

redis.metrics.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Metrics service labels

redis.metrics.service.servicePortπŸ“œ

Type: int

Default value
9121

Description: Metrics service port

redis.metrics.service.portNameπŸ“œ

Type: string

Default value
"http-metrics"

Description: Metrics service port name

redis.metrics.serviceMonitor.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable a prometheus ServiceMonitor

redis.metrics.serviceMonitor.intervalπŸ“œ

Type: string

Default value
"30s"

Description: Interval at which metrics should be scraped

redis.metrics.serviceMonitor.honorLabelsπŸ“œ

Type: bool

Default value
false

Description: When true, honorLabels preserves the metric’s labels when they collide with the target’s labels.

redis.metrics.serviceMonitor.relabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [RelabelConfigs] to apply to samples before scraping

redis.metrics.serviceMonitor.metricRelabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [MetricRelabelConfigs] to apply to samples before ingestion

redis.metrics.serviceMonitor.selectorπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor selector

redis.metrics.serviceMonitor.schemeπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scheme

redis.metrics.serviceMonitor.tlsConfigπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor tlsConfig

redis.metrics.serviceMonitor.namespaceπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor namespace

redis.metrics.serviceMonitor.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor labels

redis.metrics.serviceMonitor.annotationsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor annotations

redis.metrics.containerSecurityContext.enabledπŸ“œ

Type: bool

Default value
true

redis.metrics.containerSecurityContext.runAsUserπŸ“œ

Type: int

Default value
999

redis.metrics.containerSecurityContext.runAsGroupπŸ“œ

Type: int

Default value
999

redis-bbπŸ“œ

Type: object

Default value
auth:
  enabled: false
commonConfiguration: 'maxmemory 200mb

  save ""'
enabled: true
image:
  pullSecrets:
  - private-registry
istio:
  redis:
    enabled: false
master:
  containerSecurityContext:
    capabilities:
      drop:
      - ALL
    enabled: true
    runAsGroup: 1001
    runAsNonRoot: true
    runAsUser: 1001
  resources:
    limits:
      cpu: 100m
      memory: 256Mi
    requests:
      cpu: 100m
      memory: 256Mi
metrics:
  containerSecurityContext:
    enabled: true
    runAsGroup: 1001
    runAsUser: 1001
  enabled: true
  labels:
    app.kubernetes.io/name: argocd-redis-ha-haproxy
  metrics: null
replica:
  containerSecurityContext:
    capabilities:
      drop:
      - ALL
    enabled: true
    runAsGroup: 1001
    runAsNonRoot: true
    runAsUser: 1001
  readinessProbe:
    failureThreshold: 3
    initialDelaySeconds: 5
    periodSeconds: 10
    successThreshold: 1
    tcpSocket:
      port: 6379
    timeoutSeconds: 30
  resources:
    limits:
      cpu: 100m
      memory: 256Mi
    requests:
      cpu: 100m
      memory: 256Mi

Description: BigBang HA Redis Passthrough

redis-bb.metrics.labelsπŸ“œ

Type: object

Default value
app.kubernetes.io/name: argocd-redis-ha-haproxy

Description: Custom labels for the haproxy pod. This is relevant for Argo CD CLI.

redis-bb.metrics.containerSecurityContextπŸ“œ

Type: object

Default value
enabled: true
runAsGroup: 1001
runAsUser: 1001

Description: HAProxy enable prometheus metric scraping

externalRedis.hostπŸ“œ

Type: string

Default value
""

Description: External Redis server host

externalRedis.usernameπŸ“œ

Type: string

Default value
""

Description: External Redis username

externalRedis.passwordπŸ“œ

Type: string

Default value
""

Description: External Redis password

externalRedis.portπŸ“œ

Type: int

Default value
6379

Description: External Redis server port

externalRedis.existingSecretπŸ“œ

Type: string

Default value
""

Description: The name of an existing secret with Redis (must contain key redis-password) and Sentinel credentials. When it’s set, the externalRedis.password parameter is ignored

externalRedis.secretAnnotationsπŸ“œ

Type: object

Default value
{}

Description: External Redis Secret annotations

redisSecretInit.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Redis secret initialization. If disabled, secret must be provisioned by alternative methods

redisSecretInit.nameπŸ“œ

Type: string

Default value
"redis-secret-init"

Description: Redis secret-init name

redisSecretInit.jobAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to the Redis secret-init Job

redisSecretInit.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to the Redis secret-init Job

redisSecretInit.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to the Redis secret-init Job

redisSecretInit.resourcesπŸ“œ

Type: object

Default value
{}

Description: Resource limits and requests for Redis secret-init Job

redisSecretInit.securityContextπŸ“œ

Type: object

Default value
{}

Description: Redis secret-init Job pod-level security context

redisSecretInit.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Create a service account for the redis pod

redisSecretInit.serviceAccount.nameπŸ“œ

Type: string

Default value
""

Description: Service account name for redis pod

redisSecretInit.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

redisSecretInit.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account

redisSecretInit.affinityπŸ“œ

Type: object

Default value
{}

Description: Assign custom [affinity] rules to the Redis secret-init Job

server.nameπŸ“œ

Type: string

Default value
"server"

Description: Argo CD server name

server.replicasπŸ“œ

Type: int

Default value
1

Description: The number of server pods to run

server.autoscaling.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Horizontal Pod Autoscaler ([HPA]) for the Argo CD server

server.autoscaling.minReplicasπŸ“œ

Type: int

Default value
1

Description: Minimum number of replicas for the Argo CD server [HPA]

server.autoscaling.maxReplicasπŸ“œ

Type: int

Default value
5

Description: Maximum number of replicas for the Argo CD server [HPA]

server.autoscaling.targetCPUUtilizationPercentageπŸ“œ

Type: int

Default value
50

Description: Average CPU utilization percentage for the Argo CD server [HPA]

server.autoscaling.targetMemoryUtilizationPercentageπŸ“œ

Type: int

Default value
50

Description: Average memory utilization percentage for the Argo CD server [HPA]

server.autoscaling.behaviorπŸ“œ

Type: object

Default value
{}

Description: Configures the scaling behavior of the target in both Up and Down directions.

server.autoscaling.metricsπŸ“œ

Type: list

Default value
[]

Description: Configures custom HPA metrics for the Argo CD server Ref: https://kubernetes.io/docs/tasks/run-application/horizontal-pod-autoscale/

server.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the Argo CD server

server.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to Argo CD server pdb

server.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to Argo CD server pdb

server.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailable after eviction as number or percentage (eg.: 50%). # Has higher precedence over server.pdb.minAvailable

server.extraArgsπŸ“œ

Type: list

Default value
[]

Description: Additional command line arguments to pass to Argo CD server

server.envπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to Argo CD server

server.lifecycleπŸ“œ

Type: object

Default value
{}

Description: Specify postStart and preStop lifecycle hooks for your argo-cd-server container

server.extensions.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable support for Argo CD extensions

server.extensions.image.repositoryπŸ“œ

Type: string

Default value
"quay.io/argoprojlabs/argocd-extension-installer"

Description: Repository to use for extension installer image

server.extensions.image.tagπŸ“œ

Type: string

Default value
"v0.0.8"

Description: Tag to use for extension installer image

server.extensions.resourcesπŸ“œ

Type: object

Default value
{}

Description: Resource limits and requests for the argocd-extensions container

server.extraContainersπŸ“œ

Type: list

Default value
[]

Description: Additional containers to be added to the server pod # Note: Supports use of custom Helm templates

server.initContainersπŸ“œ

Type: list

Default value
[]

Description: Init containers to add to the server pod # If your target Kubernetes cluster(s) require a custom credential (exec) plugin # you could use this (and the same in the application controller pod) to provide such executable # Ref: https://kubernetes.io/docs/reference/access-authn-authz/authentication/#client-go-credential-plugins

server.volumeMountsπŸ“œ

Type: list

Default value
[]

Description: Additional volumeMounts to the server main container

server.volumesπŸ“œ

Type: list

Default value
[]

Description: Additional volumes to the server pod

server.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to server Deployment

server.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to server pods

server.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to server pods

server.resourcesπŸ“œ

Type: object

Default value
limits:
  cpu: 20m
  memory: 128Mi
requests:
  cpu: 20m
  memory: 128Mi

Description: Resource limits and requests for the Argo CD server

server.containerPorts.serverπŸ“œ

Type: int

Default value
8080

Description: Server container port

server.containerPorts.metricsπŸ“œ

Type: int

Default value
8083

Description: Metrics container port

server.hostNetworkπŸ“œ

Type: bool

Default value
false

Description: Host Network for Server pods

server.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

server.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for Server pods

server.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

server.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

server.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

server.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

server.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

server.livenessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

server.livenessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

server.livenessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

server.livenessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

server.livenessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

server.terminationGracePeriodSecondsπŸ“œ

Type: int

Default value
30

Description: terminationGracePeriodSeconds for container lifecycle hook

server.deploymentStrategyπŸ“œ

Type: object

Default value
{}

Description: Deployment strategy to be added to the server Deployment

server.certificate.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a Certificate resource (requires cert-manager)

server.certificate.additionalHostsπŸ“œ

Type: list

Default value
[]

Description: Certificate Subject Alternate Names (SANs)

server.certificate.issuer.groupπŸ“œ

Type: string

Default value
""

Description: Certificate issuer group. Set if using an external issuer. Eg. cert-manager.io

server.certificate.issuer.kindπŸ“œ

Type: string

Default value
""

Description: Certificate issuer kind. Either Issuer or ClusterIssuer

server.certificate.issuer.nameπŸ“œ

Type: string

Default value
""

Description: Certificate issuer name. Eg. letsencrypt

server.certificate.privateKey.rotationPolicyπŸ“œ

Type: string

Default value
"Never"

Description: Rotation policy of private key when certificate is re-issued. Either: Never or Always

server.certificate.privateKey.encodingπŸ“œ

Type: string

Default value
"PKCS1"

Description: The private key cryptography standards (PKCS) encoding for private key. Either: PCKS1 or PKCS8

server.certificate.privateKey.algorithmπŸ“œ

Type: string

Default value
"RSA"

Description: Algorithm used to generate certificate private key. One of: RSA, Ed25519 or ECDSA

server.certificate.privateKey.sizeπŸ“œ

Type: int

Default value
2048

Description: Key bit size of the private key. If algorithm is set to Ed25519, size is ignored.

server.certificate.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be applied to the Server Certificate

server.certificate.usagesπŸ“œ

Type: list

Default value
[]

Description: Usages for the certificate ## Ref: https://cert-manager.io/docs/reference/api-docs/#cert-manager.io/v1.KeyUsage

server.certificate.secretTemplateAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations that allow the certificate to be composed from data residing in existing Kubernetes Resources

server.certificateSecret.enabledπŸ“œ

Type: bool

Default value
false

Description: Create argocd-server-tls secret

server.certificateSecret.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-server-tls secret

server.certificateSecret.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to argocd-server-tls secret

server.certificateSecret.keyπŸ“œ

Type: string

Default value
""

Description: Private Key of the certificate

server.certificateSecret.crtπŸ“œ

Type: string

Default value
""

Description: Certificate data

server.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Server service annotations

server.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Server service labels

server.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: Server service type

server.service.nodePortHttpπŸ“œ

Type: int

Default value
30080

Description: Server service http port for NodePort service type (only if server.service.type is set to “NodePort”)

server.service.nodePortHttpsπŸ“œ

Type: int

Default value
30443

Description: Server service https port for NodePort service type (only if server.service.type is set to “NodePort”)

server.service.servicePortHttpπŸ“œ

Type: int

Default value
80

Description: Server service http port

server.service.servicePortHttpsπŸ“œ

Type: int

Default value
443

Description: Server service https port

server.service.servicePortHttpNameπŸ“œ

Type: string

Default value
"http"

Description: Server service http port name, can be used to route traffic via istio

server.service.servicePortHttpsNameπŸ“œ

Type: string

Default value
"https"

Description: Server service https port name, can be used to route traffic via istio

server.service.servicePortHttpsAppProtocolπŸ“œ

Type: string

Default value
""

Description: Server service https port appProtocol # Ref: https://kubernetes.io/docs/concepts/services-networking/service/#application-protocol

server.service.loadBalancerClassπŸ“œ

Type: string

Default value
""

Description: The class of the load balancer implementation

server.service.loadBalancerIPπŸ“œ

Type: string

Default value
""

Description: LoadBalancer will get created with the IP specified in this field

server.service.loadBalancerSourceRangesπŸ“œ

Type: list

Default value
[]

Description: Source IP ranges to allow access to service from # Ref: https://kubernetes.io/docs/tasks/access-application-cluster/configure-cloud-provider-firewall/#restrict-access-for-loadbalancer-service

server.service.externalIPsπŸ“œ

Type: list

Default value
[]

Description: Server service external IPs

server.service.externalTrafficPolicyπŸ“œ

Type: string

Default value
""

Description: Denotes if this Service desires to route external traffic to node-local or cluster-wide endpoints

server.service.sessionAffinityπŸ“œ

Type: string

Default value
""

Description: Used to maintain session affinity. Supports ClientIP and None

server.metrics.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy metrics service

server.metrics.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: Metrics service type

server.metrics.service.clusterIPπŸ“œ

Type: string

Default value
""

Description: Metrics service clusterIP. None makes a “headless service” (no virtual IP)

server.metrics.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Metrics service annotations

server.metrics.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Metrics service labels

server.metrics.service.servicePortπŸ“œ

Type: int

Default value
8083

Description: Metrics service port

server.metrics.service.portNameπŸ“œ

Type: string

Default value
"http-metrics"

Description: Metrics service port name

server.metrics.serviceMonitor.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable a prometheus ServiceMonitor

server.metrics.serviceMonitor.intervalπŸ“œ

Type: string

Default value
"30s"

Description: Prometheus ServiceMonitor interval

server.metrics.serviceMonitor.scrapeTimeoutπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scrapeTimeout. If empty, Prometheus uses the global scrape timeout unless it is less than the target’s scrape interval value in which the latter is used.

server.metrics.serviceMonitor.honorLabelsπŸ“œ

Type: bool

Default value
false

Description: When true, honorLabels preserves the metric’s labels when they collide with the target’s labels.

server.metrics.serviceMonitor.relabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [RelabelConfigs] to apply to samples before scraping

server.metrics.serviceMonitor.metricRelabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [MetricRelabelConfigs] to apply to samples before ingestion

server.metrics.serviceMonitor.selectorπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor selector

server.metrics.serviceMonitor.schemeπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scheme

server.metrics.serviceMonitor.tlsConfigπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor tlsConfig

server.metrics.serviceMonitor.namespaceπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor namespace

server.metrics.serviceMonitor.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor labels

server.metrics.serviceMonitor.annotationsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor annotations

server.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account into the pod.

server.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Create server service account

server.serviceAccount.nameπŸ“œ

Type: string

Default value
"argocd-server"

Description: Server service account name

server.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

server.serviceAccount.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels applied to created service account

server.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account

server.ingress.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable an ingress resource for the Argo CD server

server.ingress.controllerπŸ“œ

Type: string

Default value
"generic"

Description: Specific implementation for ingress controller. One of generic, aws or gke # Additional configuration might be required in related configuration sections

server.ingress.labelsπŸ“œ

Type: object

Default value
{}

Description: Additional ingress labels

server.ingress.annotationsπŸ“œ

Type: object

Default value
{}

Description: Additional ingress annotations # Ref: https://argo-cd.readthedocs.io/en/stable/operator-manual/ingress/#option-1-ssl-passthrough

server.ingress.ingressClassNameπŸ“œ

Type: string

Default value
""

Description: Defines which ingress controller will implement the resource

server.ingress.pathπŸ“œ

Type: string

Default value
"/"

Description: The path to Argo CD server

server.ingress.pathTypeπŸ“œ

Type: string

Default value
"Prefix"

Description: Ingress path type. One of Exact, Prefix or ImplementationSpecific

server.ingress.tlsπŸ“œ

Type: bool

Default value
false

Description: Enable TLS configuration for the hostname defined at server.ingress.hostname # TLS certificate will be retrieved from a TLS secret argocd-server-tls # You can create this secret via certificate or certificateSecret option

server.ingress.aws.backendProtocolVersionπŸ“œ

Type: string

Default value
"GRPC"

Description: Backend protocol version for the AWS ALB gRPC service # This tells AWS to send traffic from the ALB using gRPC. # For more information: https://docs.aws.amazon.com/elasticloadbalancing/latest/application/target-group-health-checks.html#health-check-settings

server.ingress.aws.serviceTypeπŸ“œ

Type: string

Default value
"NodePort"

Description: Service type for the AWS ALB gRPC service # Can be of type NodePort or ClusterIP depending on which mode you are running. # Instance mode needs type NodePort, IP mode needs type ClusterIP # Ref: https://kubernetes-sigs.github.io/aws-load-balancer-controller/v2.2/how-it-works/#ingress-traffic

server.ingress.gke.managedCertificate.createπŸ“œ

Type: bool

Default value
true

Description: Create ManagedCertificate resource and annotations for Google Load balancer # Ref: https://cloud.google.com/kubernetes-engine/docs/how-to/managed-certs

server.ingress.gke.managedCertificate.extraDomainsπŸ“œ

Type: list

Default value
[]

Description: Additional domains for ManagedCertificate resource

server.ingressGrpc.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable an ingress resource for the Argo CD server for dedicated [gRPC-ingress]

server.ingressGrpc.annotationsπŸ“œ

Type: object

Default value
{}

Description: Additional ingress annotations for dedicated [gRPC-ingress]

server.ingressGrpc.labelsπŸ“œ

Type: object

Default value
{}

Description: Additional ingress labels for dedicated [gRPC-ingress]

server.ingressGrpc.ingressClassNameπŸ“œ

Type: string

Default value
""

Description: Defines which ingress controller will implement the resource [gRPC-ingress]

server.ingressGrpc.pathπŸ“œ

Type: string

Default value
"/"

Description: Argo CD server ingress path for dedicated [gRPC-ingress]

server.ingressGrpc.pathTypeπŸ“œ

Type: string

Default value
"Prefix"

Description: Ingress path type for dedicated [gRPC-ingress]. One of Exact, Prefix or ImplementationSpecific

server.ingressGrpc.tlsπŸ“œ

Type: bool

Default value
false

Description: Enable TLS configuration for the hostname defined at server.ingressGrpc.hostname # TLS certificate will be retrieved from a TLS secret with name: argocd-server-grpc-tls

server.route.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable an OpenShift Route for the Argo CD server

server.route.annotationsπŸ“œ

Type: object

Default value
{}

Description: Openshift Route annotations

server.route.hostnameπŸ“œ

Type: string

Default value
""

Description: Hostname of OpenShift Route

server.route.termination_typeπŸ“œ

Type: string

Default value
"passthrough"

Description: Termination type of Openshift Route

server.route.termination_policyπŸ“œ

Type: string

Default value
"None"

Description: Termination policy of Openshift Route

server.clusterRoleRules.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable custom rules for the server’s ClusterRole resource

server.clusterRoleRules.rulesπŸ“œ

Type: list

Default value
[]

Description: List of custom rules for the server’s ClusterRole resource

repoServer.nameπŸ“œ

Type: string

Default value
"repo-server"

Description: Repo server name

repoServer.replicasπŸ“œ

Type: int

Default value
1

Description: The number of repo server pods to run

repoServer.autoscaling.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Horizontal Pod Autoscaler ([HPA]) for the repo server

repoServer.autoscaling.minReplicasπŸ“œ

Type: int

Default value
1

Description: Minimum number of replicas for the repo server [HPA]

repoServer.autoscaling.maxReplicasπŸ“œ

Type: int

Default value
5

Description: Maximum number of replicas for the repo server [HPA]

repoServer.autoscaling.targetCPUUtilizationPercentageπŸ“œ

Type: int

Default value
50

Description: Average CPU utilization percentage for the repo server [HPA]

repoServer.autoscaling.targetMemoryUtilizationPercentageπŸ“œ

Type: int

Default value
50

Description: Average memory utilization percentage for the repo server [HPA]

repoServer.autoscaling.behaviorπŸ“œ

Type: object

Default value
{}

Description: Configures the scaling behavior of the target in both Up and Down directions.

repoServer.autoscaling.metricsπŸ“œ

Type: list

Default value
[]

Description: Configures custom HPA metrics for the Argo CD repo server Ref: https://kubernetes.io/docs/tasks/run-application/horizontal-pod-autoscale/

repoServer.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the repo server

repoServer.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to repo server pdb

repoServer.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to repo server pdb

repoServer.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailable after eviction as number or percentage (eg.: 50%). # Has higher precedence over repoServer.pdb.minAvailable

repoServer.extraArgsπŸ“œ

Type: list

Default value
[]

Description: Additional command line arguments to pass to repo server

repoServer.envπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to repo server

repoServer.lifecycleπŸ“œ

Type: object

Default value
{}

Description: Specify postStart and preStop lifecycle hooks for your argo-repo-server container

repoServer.extraContainersπŸ“œ

Type: list

Default value
[]

Description: Additional containers to be added to the repo server pod # Ref: https://argo-cd.readthedocs.io/en/stable/user-guide/config-management-plugins/ # Note: Supports use of custom Helm templates

repoServer.initContainersπŸ“œ

Type: list

Default value
[]

Description: Init containers to add to the repo server pods

repoServer.volumeMountsπŸ“œ

Type: list

Default value
[]

Description: Additional volumeMounts to the repo server main container

repoServer.volumesπŸ“œ

Type: list

Default value
[]

Description: Additional volumes to the repo server pod

repoServer.existingVolumesπŸ“œ

Type: object

Default value
{}

Description: Volumes to be used in replacement of emptydir on default volumes

repoServer.useEphemeralHelmWorkingDirπŸ“œ

Type: bool

Default value
true

Description: Toggle the usage of a ephemeral Helm working directory

repoServer.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to repo server Deployment

repoServer.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to repo server pods

repoServer.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to repo server pods

repoServer.resourcesπŸ“œ

Type: object

Default value
limits:
  cpu: 100m
  memory: 1Gi
requests:
  cpu: 100m
  memory: 1Gi

Description: Resource limits and requests for the repo server pods

repoServer.containerPorts.serverπŸ“œ

Type: int

Default value
8081

Description: Repo server container port

repoServer.containerPorts.metricsπŸ“œ

Type: int

Default value
8084

Description: Metrics container port

repoServer.hostNetworkπŸ“œ

Type: bool

Default value
false

Description: Host Network for Repo server pods

repoServer.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

repoServer.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for Repo server pods

repoServer.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

repoServer.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

repoServer.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

repoServer.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

repoServer.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

repoServer.livenessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

repoServer.livenessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

repoServer.livenessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

repoServer.livenessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

repoServer.livenessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

repoServer.terminationGracePeriodSecondsπŸ“œ

Type: int

Default value
30

Description: terminationGracePeriodSeconds for container lifecycle hook

repoServer.deploymentStrategyπŸ“œ

Type: object

Default value
{}

Description: Deployment strategy to be added to the repo server Deployment

repoServer.certificateSecret.enabledπŸ“œ

Type: bool

Default value
false

Description: Create argocd-repo-server-tls secret

repoServer.certificateSecret.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to argocd-repo-server-tls secret

repoServer.certificateSecret.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to argocd-repo-server-tls secret

repoServer.certificateSecret.caπŸ“œ

Type: string

Default value
""

Description: Certificate authority. Required for self-signed certificates.

repoServer.certificateSecret.keyπŸ“œ

Type: string

Default value
""

Description: Certificate private key

repoServer.certificateSecret.crtπŸ“œ

Type: string

Default value
""

Description: Certificate data. Must contain SANs of Repo service (ie: argocd-repo-server, argocd-repo-server.argo-cd.svc)

repoServer.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Repo server service annotations

repoServer.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Repo server service labels

repoServer.service.portπŸ“œ

Type: int

Default value
8081

Description: Repo server service port

repoServer.service.portNameπŸ“œ

Type: string

Default value
"tcp-repo-server"

Description: Repo server service port name

repoServer.metrics.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy metrics service

repoServer.metrics.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: Metrics service type

repoServer.metrics.service.clusterIPπŸ“œ

Type: string

Default value
""

Description: Metrics service clusterIP. None makes a “headless service” (no virtual IP)

repoServer.metrics.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Metrics service annotations

repoServer.metrics.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Metrics service labels

repoServer.metrics.service.servicePortπŸ“œ

Type: int

Default value
8084

Description: Metrics service port

repoServer.metrics.service.portNameπŸ“œ

Type: string

Default value
"http-metrics"

Description: Metrics service port name

repoServer.metrics.serviceMonitor.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable a prometheus ServiceMonitor

repoServer.metrics.serviceMonitor.intervalπŸ“œ

Type: string

Default value
"30s"

Description: Prometheus ServiceMonitor interval

repoServer.metrics.serviceMonitor.scrapeTimeoutπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scrapeTimeout. If empty, Prometheus uses the global scrape timeout unless it is less than the target’s scrape interval value in which the latter is used.

repoServer.metrics.serviceMonitor.honorLabelsπŸ“œ

Type: bool

Default value
false

Description: When true, honorLabels preserves the metric’s labels when they collide with the target’s labels.

repoServer.metrics.serviceMonitor.relabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [RelabelConfigs] to apply to samples before scraping

repoServer.metrics.serviceMonitor.metricRelabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [MetricRelabelConfigs] to apply to samples before ingestion

repoServer.metrics.serviceMonitor.selectorπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor selector

repoServer.metrics.serviceMonitor.schemeπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scheme

repoServer.metrics.serviceMonitor.tlsConfigπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor tlsConfig

repoServer.metrics.serviceMonitor.namespaceπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor namespace

repoServer.metrics.serviceMonitor.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor labels

repoServer.metrics.serviceMonitor.annotationsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor annotations

repoServer.clusterRoleRules.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable custom rules for the Repo server’s Cluster Role resource

repoServer.clusterRoleRules.rulesπŸ“œ

Type: list

Default value
[]

Description: List of custom rules for the Repo server’s Cluster Role resource

repoServer.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account into the pod.

repoServer.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Create repo server service account

repoServer.serviceAccount.nameπŸ“œ

Type: string

Default value
""

Description: Repo server service account name

repoServer.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

repoServer.serviceAccount.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels applied to created service account

repoServer.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account

repoServer.rbacπŸ“œ

Type: list

Default value
[]

Description: Repo server rbac rules

applicationSet.enabledπŸ“œ

Type: bool

Default value
true

Description: Enable ApplicationSet controller

applicationSet.nameπŸ“œ

Type: string

Default value
"applicationset-controller"

Description: ApplicationSet controller name string

applicationSet.replicasπŸ“œ

Type: int

Default value
1

Description: The number of ApplicationSet controller pods to run

applicationSet.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the ApplicationSet controller

applicationSet.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to ApplicationSet controller pdb

applicationSet.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to ApplicationSet controller pdb

applicationSet.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailable after eviction as number or percentage (eg.: 50%). # Has higher precedence over applicationSet.pdb.minAvailable

applicationSet.extraArgsπŸ“œ

Type: list

Default value
[]

Description: ApplicationSet controller command line flags

applicationSet.extraEnvπŸ“œ

Type: list

Default value
[]

Description: Environment variables to pass to the ApplicationSet controller

applicationSet.extraContainersπŸ“œ

Type: list

Default value
[]

Description: Additional containers to be added to the ApplicationSet controller pod # Note: Supports use of custom Helm templates

applicationSet.initContainersπŸ“œ

Type: list

Default value
[]

Description: Init containers to add to the ApplicationSet controller pod # Note: Supports use of custom Helm templates

applicationSet.extraVolumeMountsπŸ“œ

Type: list

Default value
[]

Description: List of extra mounts to add (normally used with extraVolumes)

applicationSet.extraVolumesπŸ“œ

Type: list

Default value
[]

Description: List of extra volumes to add

applicationSet.metrics.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy metrics service

applicationSet.metrics.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: Metrics service type

applicationSet.metrics.service.clusterIPπŸ“œ

Type: string

Default value
""

Description: Metrics service clusterIP. None makes a “headless service” (no virtual IP)

applicationSet.metrics.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Metrics service annotations

applicationSet.metrics.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Metrics service labels

applicationSet.metrics.service.servicePortπŸ“œ

Type: int

Default value
8080

Description: Metrics service port

applicationSet.metrics.service.portNameπŸ“œ

Type: string

Default value
"http-metrics"

Description: Metrics service port name

applicationSet.metrics.serviceMonitor.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable a prometheus ServiceMonitor

applicationSet.metrics.serviceMonitor.intervalπŸ“œ

Type: string

Default value
"30s"

Description: Prometheus ServiceMonitor interval

applicationSet.metrics.serviceMonitor.scrapeTimeoutπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scrapeTimeout. If empty, Prometheus uses the global scrape timeout unless it is less than the target’s scrape interval value in which the latter is used.

applicationSet.metrics.serviceMonitor.honorLabelsπŸ“œ

Type: bool

Default value
false

Description: When true, honorLabels preserves the metric’s labels when they collide with the target’s labels.

applicationSet.metrics.serviceMonitor.relabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [RelabelConfigs] to apply to samples before scraping

applicationSet.metrics.serviceMonitor.metricRelabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [MetricRelabelConfigs] to apply to samples before ingestion

applicationSet.metrics.serviceMonitor.selectorπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor selector

applicationSet.metrics.serviceMonitor.schemeπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scheme

applicationSet.metrics.serviceMonitor.tlsConfigπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor tlsConfig

applicationSet.metrics.serviceMonitor.namespaceπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor namespace

applicationSet.metrics.serviceMonitor.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor labels

applicationSet.metrics.serviceMonitor.annotationsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor annotations

applicationSet.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: ApplicationSet service annotations

applicationSet.service.labelsπŸ“œ

Type: object

Default value
{}

Description: ApplicationSet service labels

applicationSet.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: ApplicationSet service type

applicationSet.service.portπŸ“œ

Type: int

Default value
7000

Description: ApplicationSet service port

applicationSet.service.portNameπŸ“œ

Type: string

Default value
"http-webhook"

Description: ApplicationSet service port name

applicationSet.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account into the pod.

applicationSet.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Create ApplicationSet controller service account

applicationSet.serviceAccount.nameπŸ“œ

Type: string

Default value
"argocd-applicationset-controller"

Description: ApplicationSet controller service account name

applicationSet.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

applicationSet.serviceAccount.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels applied to created service account

applicationSet.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account

applicationSet.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to ApplicationSet controller Deployment

applicationSet.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations for the ApplicationSet controller pods

applicationSet.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels for the ApplicationSet controller pods

applicationSet.resourcesπŸ“œ

Type: object

Default value
{}

Description: Resource limits and requests for the ApplicationSet controller pods.

applicationSet.containerPorts.metricsπŸ“œ

Type: int

Default value
8080

Description: Metrics container port

applicationSet.containerPorts.probeπŸ“œ

Type: int

Default value
8081

Description: Probe container port

applicationSet.containerPorts.webhookπŸ“œ

Type: int

Default value
7000

Description: Webhook container port

applicationSet.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

applicationSet.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for ApplicationSet controller pods

applicationSet.readinessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for ApplicationSet controller

applicationSet.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

applicationSet.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

applicationSet.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

applicationSet.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

applicationSet.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

applicationSet.livenessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for ApplicationSet controller

applicationSet.livenessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

applicationSet.livenessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

applicationSet.livenessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

applicationSet.livenessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

applicationSet.livenessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

applicationSet.terminationGracePeriodSecondsπŸ“œ

Type: int

Default value
30

Description: terminationGracePeriodSeconds for container lifecycle hook

applicationSet.deploymentStrategyπŸ“œ

Type: object

Default value
{}

Description: Deployment strategy to be added to the ApplicationSet controller Deployment

applicationSet.certificate.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a Certificate resource (requires cert-manager)

applicationSet.certificate.additionalHostsπŸ“œ

Type: list

Default value
[]

Description: Certificate Subject Alternate Names (SANs)

applicationSet.certificate.issuer.groupπŸ“œ

Type: string

Default value
""

Description: Certificate issuer group. Set if using an external issuer. Eg. cert-manager.io

applicationSet.certificate.issuer.kindπŸ“œ

Type: string

Default value
""

Description: Certificate issuer kind. Either Issuer or ClusterIssuer

applicationSet.certificate.issuer.nameπŸ“œ

Type: string

Default value
""

Description: Certificate issuer name. Eg. letsencrypt

applicationSet.certificate.privateKey.rotationPolicyπŸ“œ

Type: string

Default value
"Never"

Description: Rotation policy of private key when certificate is re-issued. Either: Never or Always

applicationSet.certificate.privateKey.encodingπŸ“œ

Type: string

Default value
"PKCS1"

Description: The private key cryptography standards (PKCS) encoding for private key. Either: PCKS1 or PKCS8

applicationSet.certificate.privateKey.algorithmπŸ“œ

Type: string

Default value
"RSA"

Description: Algorithm used to generate certificate private key. One of: RSA, Ed25519 or ECDSA

applicationSet.certificate.privateKey.sizeπŸ“œ

Type: int

Default value
2048

Description: Key bit size of the private key. If algorithm is set to Ed25519, size is ignored.

applicationSet.certificate.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be applied to the ApplicationSet Certificate

applicationSet.ingress.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable an ingress resource for ApplicationSet webhook

applicationSet.ingress.labelsπŸ“œ

Type: object

Default value
{}

Description: Additional ingress labels

applicationSet.ingress.annotationsπŸ“œ

Type: object

Default value
{}

Description: Additional ingress annotations

applicationSet.ingress.ingressClassNameπŸ“œ

Type: string

Default value
""

Description: Defines which ingress ApplicationSet controller will implement the resource

applicationSet.ingress.pathπŸ“œ

Type: string

Default value
"/api/webhook"

Description: List of ingress paths

applicationSet.ingress.pathTypeπŸ“œ

Type: string

Default value
"Prefix"

Description: Ingress path type. One of Exact, Prefix or ImplementationSpecific

applicationSet.ingress.tlsπŸ“œ

Type: bool

Default value
false

Description: Enable TLS configuration for the hostname defined at applicationSet.webhook.ingress.hostname # TLS certificate will be retrieved from a TLS secret with name:argocd-applicationset-controller-tls

applicationSet.allowAnyNamespaceπŸ“œ

Type: bool

Default value
false

Description: Enable ApplicationSet in any namespace feature

notifications.enabledπŸ“œ

Type: bool

Default value
true

Description: Enable notifications controller

notifications.nameπŸ“œ

Type: string

Default value
"notifications-controller"

Description: Notifications controller name string

notifications.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the notifications controller

notifications.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to notifications controller pdb

notifications.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to notifications controller pdb

notifications.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailable after eviction as number or percentage (eg.: 50%). # Has higher precedence over notifications.pdb.minAvailable

notifications.extraArgsπŸ“œ

Type: list

Default value
[]

Description: Extra arguments to provide to the notifications controller

notifications.extraEnvπŸ“œ

Type: list

Default value
[]

Description: Additional container environment variables

notifications.extraContainersπŸ“œ

Type: list

Default value
[]

Description: Additional containers to be added to the notifications controller pod # Note: Supports use of custom Helm templates

notifications.initContainersπŸ“œ

Type: list

Default value
[]

Description: Init containers to add to the notifications controller pod # Note: Supports use of custom Helm templates

notifications.extraVolumeMountsπŸ“œ

Type: list

Default value
[]

Description: List of extra mounts to add (normally used with extraVolumes)

notifications.extraVolumesπŸ“œ

Type: list

Default value
[]

Description: List of extra volumes to add

notifications.contextπŸ“œ

Type: object

Default value
{}

Description: Define user-defined context # For more information: https://argo-cd.readthedocs.io/en/stable/operator-manual/notifications/templates/#defining-user-defined-context

notifications.secret.createπŸ“œ

Type: bool

Default value
true

Description: Whether helm chart creates notifications controller secret # If true, will create a secret with the name below. Otherwise, will assume existence of a secret with that name.

notifications.secret.nameπŸ“œ

Type: string

Default value
"argocd-notifications-secret"

Description: notifications controller Secret name

notifications.secret.annotationsπŸ“œ

Type: object

Default value
{}

Description: key:value pairs of annotations to be added to the secret

notifications.secret.labelsπŸ“œ

Type: object

Default value
{}

Description: key:value pairs of labels to be added to the secret

notifications.secret.itemsπŸ“œ

Type: object

Default value
{}

Description: Generic key:value pairs to be inserted into the secret # Can be used for templates, notification services etc. Some examples given below. # For more information: https://argo-cd.readthedocs.io/en/stable/operator-manual/notifications/services/overview/

notifications.metrics.enabledπŸ“œ

Type: bool

Default value
false

Description: Enables prometheus metrics server

notifications.metrics.portπŸ“œ

Type: int

Default value
9001

Description: Metrics port

notifications.metrics.service.typeπŸ“œ

Type: string

Default value
"ClusterIP"

Description: Metrics service type

notifications.metrics.service.clusterIPπŸ“œ

Type: string

Default value
""

Description: Metrics service clusterIP. None makes a “headless service” (no virtual IP)

notifications.metrics.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Metrics service annotations

notifications.metrics.service.labelsπŸ“œ

Type: object

Default value
{}

Description: Metrics service labels

notifications.metrics.service.portNameπŸ“œ

Type: string

Default value
"http-metrics"

Description: Metrics service port name

notifications.metrics.serviceMonitor.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable a prometheus ServiceMonitor

notifications.metrics.serviceMonitor.selectorπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor selector

notifications.metrics.serviceMonitor.additionalLabelsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor labels

notifications.metrics.serviceMonitor.annotationsπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor annotations

notifications.metrics.serviceMonitor.schemeπŸ“œ

Type: string

Default value
""

Description: Prometheus ServiceMonitor scheme

notifications.metrics.serviceMonitor.tlsConfigπŸ“œ

Type: object

Default value
{}

Description: Prometheus ServiceMonitor tlsConfig

notifications.metrics.serviceMonitor.honorLabelsπŸ“œ

Type: bool

Default value
false

Description: When true, honorLabels preserves the metric’s labels when they collide with the target’s labels.

notifications.metrics.serviceMonitor.relabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [RelabelConfigs] to apply to samples before scraping

notifications.metrics.serviceMonitor.metricRelabelingsπŸ“œ

Type: list

Default value
[]

Description: Prometheus [MetricRelabelConfigs] to apply to samples before ingestion

notifications.deploymentAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be applied to the notifications controller Deployment

notifications.podAnnotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be applied to the notifications controller Pods

notifications.podLabelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be applied to the notifications controller Pods

notifications.resourcesπŸ“œ

Type: object

Default value
{}

Description: Resource limits and requests for the notifications controller

notifications.containerPorts.metricsπŸ“œ

Type: int

Default value
9001

Description: Metrics container port

notifications.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

notifications.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for notifications controller Pods

notifications.readinessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for notifications controller Pods

notifications.readinessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

notifications.readinessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

notifications.readinessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

notifications.readinessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

notifications.readinessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

notifications.livenessProbe.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable Kubernetes liveness probe for notifications controller Pods

notifications.livenessProbe.initialDelaySecondsπŸ“œ

Type: int

Default value
10

Description: Number of seconds after the container has started before [probe] is initiated

notifications.livenessProbe.periodSecondsπŸ“œ

Type: int

Default value
10

Description: How often (in seconds) to perform the [probe]

notifications.livenessProbe.timeoutSecondsπŸ“œ

Type: int

Default value
30

Description: Number of seconds after which the [probe] times out

notifications.livenessProbe.successThresholdπŸ“œ

Type: int

Default value
1

Description: Minimum consecutive successes for the [probe] to be considered successful after having failed

notifications.livenessProbe.failureThresholdπŸ“œ

Type: int

Default value
5

Description: Minimum consecutive failures for the [probe] to be considered failed after having succeeded

notifications.terminationGracePeriodSecondsπŸ“œ

Type: int

Default value
30

Description: terminationGracePeriodSeconds for container lifecycle hook

notifications.deploymentStrategyπŸ“œ

Type: object

Default value
type: Recreate

Description: Deployment strategy to be added to the notifications controller Deployment

notifications.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account into the pod.

notifications.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Create notifications controller service account

notifications.serviceAccount.nameπŸ“œ

Type: string

Default value
"argocd-notifications-controller"

Description: Notification controller service account name

notifications.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

notifications.serviceAccount.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels applied to created service account

notifications.serviceAccount.automountServiceAccountTokenπŸ“œ

Type: bool

Default value
true

Description: Automount API credentials for the Service Account

notifications.cm.createπŸ“œ

Type: bool

Default value
true

Description: Whether helm chart creates notifications controller config map

notifications.clusterRoleRules.rulesπŸ“œ

Type: list

Default value
[]

Description: List of custom rules for the notifications controller’s ClusterRole resource

notifications.subscriptionsπŸ“œ

Type: list

Default value
[]

Description: Contains centrally managed global application subscriptions # For more information: https://argo-cd.readthedocs.io/en/stable/operator-manual/notifications/subscriptions/

notifications.templatesπŸ“œ

Type: object

Default value
{}

Description: The notification template is used to generate the notification content # For more information: https://argo-cd.readthedocs.io/en/stable/operator-manual/notifications/templates/

notifications.triggersπŸ“œ

Type: object

Default value
{}

Description: The trigger defines the condition when the notification should be sent # For more information: https://argo-cd.readthedocs.io/en/stable/operator-manual/notifications/triggers/

notifications.bots.slack.enabledπŸ“œ

Type: bool

Default value
false

Description: Enable slack bot # You have to set secret.notifiers.slack.signingSecret

notifications.bots.slack.pdb.enabledπŸ“œ

Type: bool

Default value
false

Description: Deploy a [PodDisruptionBudget] for the Slack bot

notifications.bots.slack.pdb.labelsπŸ“œ

Type: object

Default value
{}

Description: Labels to be added to Slack bot pdb

notifications.bots.slack.pdb.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations to be added to Slack bot pdb

notifications.bots.slack.pdb.maxUnavailableπŸ“œ

Type: string

Default value
""

Description: Number of pods that are unavailble after eviction as number or percentage (eg.: 50%). # Has higher precedence over notifications.bots.slack.pdb.minAvailable

notifications.bots.slack.extraArgsπŸ“œ

Type: list

Default value
[]

Description: List of extra cli args to add for Slack bot

notifications.bots.slack.service.annotationsπŸ“œ

Type: object

Default value
{}

Description: Service annotations for Slack bot

notifications.bots.slack.service.portπŸ“œ

Type: int

Default value
80

Description: Service port for Slack bot

notifications.bots.slack.service.typeπŸ“œ

Type: string

Default value
"LoadBalancer"

Description: Service type for Slack bot

notifications.bots.slack.serviceAccount.createπŸ“œ

Type: bool

Default value
true

Description: Specifies whether a service account should be created

notifications.bots.slack.serviceAccount.nameπŸ“œ

Type: string

Default value
"argocd-notifications-bot"

Description: The name of the service account to use. # If not set and create is true, a name is generated using the fullname template

notifications.bots.slack.serviceAccount.annotationsπŸ“œ

Type: object

Default value
{}

Description: Annotations applied to created service account

notifications.bots.slack.dnsConfigπŸ“œ

Type: object

Default value
{}

Description: [DNS configuration]

notifications.bots.slack.dnsPolicyπŸ“œ

Type: string

Default value
"ClusterFirst"

Description: Alternative DNS policy for Slack bot pods

notifications.bots.slack.resourcesπŸ“œ

Type: object

Default value
{}

Description: Resource limits and requests for the Slack bot

notifications.bots.slack.tolerationsπŸ“œ

Type: list

Default value
[]

Description: [Tolerations] for use with node taints

notifications.bots.slack.nodeSelectorπŸ“œ

Type: object

Default value
{}

Description: [Node selector]