change gateway settings
This commit is contained in:
@@ -3,10 +3,8 @@ cert-manager:
|
|||||||
enabled: true
|
enabled: true
|
||||||
keep: true
|
keep: true
|
||||||
replicaCount: 2
|
replicaCount: 2
|
||||||
config:
|
extraArgs:
|
||||||
apiVersion: controller.config.cert-manager.io/v1alpha1
|
- --enable-gateway-api
|
||||||
kind: ControllerConfiguration
|
|
||||||
enableGatewayAPI: true
|
|
||||||
prometheus:
|
prometheus:
|
||||||
enabled: true
|
enabled: true
|
||||||
servicemonitor:
|
servicemonitor:
|
||||||
|
@@ -0,0 +1,16 @@
|
|||||||
|
apiVersion: cilium.io/v2alpha1
|
||||||
|
kind: CiliumL2AnnouncementPolicy
|
||||||
|
metadata:
|
||||||
|
name: default-l2-announcement-policy
|
||||||
|
namespace: cilium
|
||||||
|
labels:
|
||||||
|
app.kubernetes.io/name: default-l2-announcement-policy
|
||||||
|
app.kubernetes.io/instance: {{ .Release.Name }}
|
||||||
|
app.kubernetes.io/version: {{ .Chart.AppVersion }}
|
||||||
|
app.kubernetes.io/component: network
|
||||||
|
app.kubernetes.io/part-of: {{ .Release.Name }}
|
||||||
|
spec:
|
||||||
|
interfaces:
|
||||||
|
- enp6s0
|
||||||
|
externalIPs: true
|
||||||
|
loadBalancerIPs: true
|
@@ -1,6 +1,4 @@
|
|||||||
cilium:
|
cilium:
|
||||||
k8sServiceHost: "localhost"
|
|
||||||
k8sServicePort: "7445"
|
|
||||||
securityContext:
|
securityContext:
|
||||||
capabilities:
|
capabilities:
|
||||||
ciliumAgent:
|
ciliumAgent:
|
||||||
@@ -23,27 +21,15 @@ cilium:
|
|||||||
envoy:
|
envoy:
|
||||||
securityContext:
|
securityContext:
|
||||||
capabilities:
|
capabilities:
|
||||||
|
envoy:
|
||||||
|
- NET_ADMIN
|
||||||
|
- PERFMON
|
||||||
|
- BPF
|
||||||
keepCapNetBindService: true
|
keepCapNetBindService: true
|
||||||
enableK8sEndpointSlice: true
|
enableK8sEndpointSlice: true
|
||||||
enableCiliumEndpointSlice: false
|
enableCiliumEndpointSlice: false
|
||||||
ingressController:
|
ingressController:
|
||||||
enabled: false
|
enabled: false
|
||||||
default: true
|
|
||||||
loadbalancerMode: shared
|
|
||||||
enforceHttps: true
|
|
||||||
enableProxyProtocol: true
|
|
||||||
ingressLBAnnotationPrefixes: ['lbipam.cilium.io', 'nodeipam.cilium.io', 'service.beta.kubernetes.io', 'service.kubernetes.io']
|
|
||||||
defaultSecretNamespace: cilium
|
|
||||||
defaultSecretName: tls-secret
|
|
||||||
secretsNamespace:
|
|
||||||
create: false
|
|
||||||
name: cilium
|
|
||||||
sync: true
|
|
||||||
service:
|
|
||||||
name: cilium-ingress
|
|
||||||
type: LoadBalancer
|
|
||||||
insecureNodePort: 30000
|
|
||||||
secureNodePort: 30001
|
|
||||||
gatewayAPI:
|
gatewayAPI:
|
||||||
enabled: true
|
enabled: true
|
||||||
enableProxyProtocol: false
|
enableProxyProtocol: false
|
||||||
@@ -86,7 +72,16 @@ cilium:
|
|||||||
enabled: true
|
enabled: true
|
||||||
ipv6:
|
ipv6:
|
||||||
enabled: false
|
enabled: false
|
||||||
|
k8sServiceHost: "localhost"
|
||||||
|
k8sServicePort: "7445"
|
||||||
kubeProxyReplacement: "true"
|
kubeProxyReplacement: "true"
|
||||||
|
l2announcements:
|
||||||
|
enabled: true
|
||||||
|
externalIPs:
|
||||||
|
enabled: true
|
||||||
|
k8sClientRateLimit:
|
||||||
|
qps: 50
|
||||||
|
burst: 100
|
||||||
prometheus:
|
prometheus:
|
||||||
enabled: true
|
enabled: true
|
||||||
port: 9962
|
port: 9962
|
||||||
|
Reference in New Issue
Block a user