eck-operator values.yaml
📜
istio.enabled📜
Type: bool
false
istio.hardened.enabled📜
Type: bool
false
istio.hardened.customAuthorizationPolicies📜
Type: list
[]
istio.hardened.outboundTrafficPolicyMode📜
Type: string
"REGISTRY_ONLY"
istio.hardened.customServiceEntries📜
Type: list
[]
istio.hardened.tempo.enabled📜
Type: bool
false
istio.hardened.tempo.namespaces[0]📜
Type: string
"tempo"
istio.hardened.tempo.principals[0]📜
Type: string
"cluster.local/ns/tempo/sa/tempo-tempo"
istio.mtls.mode📜
Type: string
"STRICT"
networkPolicies.enabled📜
Type: bool
false
networkPolicies.controlPlaneCidr📜
Type: string
"0.0.0.0/0"
networkPolicies.additionalPolicies📜
Type: list
[]
monitoring.enabled📜
Type: bool
false
serviceMonitor.enabled📜
Type: bool
false
serviceMonitor.additionalLabels📜
Type: object
{}
Description: Additional labels for the service monitor
serviceMonitor.interval📜
Type: string
"30s"
Description: Scrape interval. If not set, the Prometheus default scrape interval is used.
serviceMonitor.metricRelabelings📜
Type: list
[]
Description: MetricRelabelConfigs to apply to samples after scraping, but before ingestion. ref: https://github.com/prometheus-operator/prometheus-operator/blob/main/Documentation/api.md#relabelconfig
serviceMonitor.scheme📜
Type: string
"https"
Description: Customize tls parameters for the service monitor
serviceMonitor.tlsConfig📜
Type: object
{}
serviceMonitor.relabelings📜
Type: list
[]
Description: RelabelConfigs to apply to samples before scraping ref: https://github.com/prometheus-operator/prometheus-operator/blob/main/Documentation/api.md#relabelconfig
serviceMonitor.enableHttp2📜
Type: bool
false
Description: Enable HTTP/2 for the service monitor scraping endpoint. Default is false for compatibility.
openshift📜
Type: bool
false
license.trial📜
Type: bool
false
license.keyJSON📜
Type: string
""
upgradeCrds.enabled📜
Type: bool
false
upgradeCrds.image.repository📜
Type: string
"registry1.dso.mil/ironbank/big-bang/base"
upgradeCrds.image.tag📜
Type: string
"2.1.0"
upstream.imagePullSecrets[0].name📜
Type: string
"private-registry"
upstream.image.repository📜
Type: string
"registry1.dso.mil/ironbank/elastic/eck-operator/eck-operator"
upstream.image.tag📜
Type: string
"3.0.0"
upstream.image.pullPolicy📜
Type: string
"IfNotPresent"
upstream.image.fips📜
Type: bool
false
upstream.resources.limits.cpu📜
Type: string
"200m"
upstream.resources.limits.memory📜
Type: string
"256Mi"
upstream.resources.requests.cpu📜
Type: string
"200m"
upstream.resources.requests.memory📜
Type: string
"256Mi"
upstream.podSecurityContext.runAsNonRoot📜
Type: bool
true
upstream.podSecurityContext.fsGroup📜
Type: int
1001
upstream.podSecurityContext.supplementalGroups[0]📜
Type: int
1001
upstream.securityContext.allowPrivilegeEscalation📜
Type: bool
false
upstream.securityContext.capabilities.drop[0]📜
Type: string
"ALL"
upstream.securityContext.readOnlyRootFilesystem📜
Type: bool
true
upstream.securityContext.runAsNonRoot📜
Type: bool
true
upstream.securityContext.runAsUser📜
Type: int
1001
upstream.securityContext.runAsGroup📜
Type: int
1001
upstream.config.metrics.port📜
Type: string
"8080"