mirror of https://github.com/linkerd/linkerd2.git
Revert "Add CPU, memory and storage config options for identity controller and proxy-injector (#8954)" (#9004)
This reverts commit 4ba36988b1.
This commit is contained in:
parent
94ab790055
commit
f580203a17
|
|
@ -162,18 +162,6 @@ Kubernetes: `>=1.21.0-0`
|
|||
| identity.issuer.tls.crtPEM | string | `""` | Issuer certificate (ECDSA). It must be provided during install. |
|
||||
| identity.issuer.tls.keyPEM | string | `""` | Key for the issuer certificate (ECDSA). It must be provided during install |
|
||||
| identity.serviceAccountTokenProjection | bool | `true` | Use [Service Account token Volume projection](https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/#service-account-token-volume-projection) for pod validation instead of the default token |
|
||||
| identityProxyResources.cpu.limit | string | `""` | Maximum amount of CPU units that the proxies injected into identity pod can use |
|
||||
| identityProxyResources.cpu.request | string | `""` | Amount of CPU units that the proxies injected into identity pod request |
|
||||
| identityProxyResources.ephemeral-storage.limit | string | `""` | Maximum amount of ephemeral storage that the proxies injected into identity pod can use |
|
||||
| identityProxyResources.ephemeral-storage.request | string | `""` | Amount of ephemeral storage that the proxies injected into identity pod request |
|
||||
| identityProxyResources.memory.limit | string | `""` | Maximum amount of memory that the proxies injected into identity pod can use |
|
||||
| identityProxyResources.memory.request | string | `""` | Amount of memory that the proxies injected into identity pod request |
|
||||
| identityResources.cpu.limit | string | `""` | Maximum amount of CPU units that the identity controller can use |
|
||||
| identityResources.cpu.request | string | `""` | Amount of CPU units that the identity controller requests |
|
||||
| identityResources.ephemeral-storage.limit | string | `""` | Maximum amount of ephemeral storage that the identity controller can use |
|
||||
| identityResources.ephemeral-storage.request | string | `""` | Amount of ephemeral storage that the identity controller requests |
|
||||
| identityResources.memory.limit | string | `""` | Maximum amount of memory that the identity controller can use |
|
||||
| identityResources.memory.request | string | `""` | Amount of memory that the identity controller requests |
|
||||
| identityTrustAnchorsPEM | string | `""` | Trust root certificate (ECDSA). It must be provided during install. |
|
||||
| identityTrustDomain | string | clusterDomain | Trust domain used for identity |
|
||||
| imagePullPolicy | string | `"IfNotPresent"` | Docker image pull policy |
|
||||
|
|
@ -260,18 +248,6 @@ Kubernetes: `>=1.21.0-0`
|
|||
| proxyInjector.keyPEM | string | `""` | Certificate key for the proxy injector. If not provided and not using an external secret then Helm will generate one. |
|
||||
| proxyInjector.namespaceSelector | object | `{"matchExpressions":[{"key":"config.linkerd.io/admission-webhooks","operator":"NotIn","values":["disabled"]},{"key":"kubernetes.io/metadata.name","operator":"NotIn","values":["kube-system","cert-manager"]}]}` | Namespace selector used by admission webhook. |
|
||||
| proxyInjector.objectSelector | object | `{"matchExpressions":[{"key":"linkerd.io/control-plane-component","operator":"DoesNotExist"},{"key":"linkerd.io/cni-resource","operator":"DoesNotExist"}]}` | Object selector used by admission webhook. |
|
||||
| proxyInjectorProxyResources.cpu.limit | string | `""` | Maximum amount of CPU units that the proxy injected into the proxy injector can use |
|
||||
| proxyInjectorProxyResources.cpu.request | string | `""` | Amount of CPU units that the proxy injected into the proxy injector requests |
|
||||
| proxyInjectorProxyResources.ephemeral-storage.limit | string | `""` | Maximum amount of ephemeral storage that the proxy injected into the proxy injector can use |
|
||||
| proxyInjectorProxyResources.ephemeral-storage.request | string | `""` | Amount of ephemeral storage that the proxy injected into the proxy injector requests |
|
||||
| proxyInjectorProxyResources.memory.limit | string | `""` | Maximum amount of memory that the proxy injected into the proxy injector can use |
|
||||
| proxyInjectorProxyResources.memory.request | string | `""` | Amount of memory that the proxy injected into the proxy injector requests |
|
||||
| proxyInjectorResources.cpu.limit | string | `""` | Maximum amount of CPU units that the proxy injector can use |
|
||||
| proxyInjectorResources.cpu.request | string | `""` | Amount of CPU units that the proxy injector requests |
|
||||
| proxyInjectorResources.ephemeral-storage.limit | string | `""` | Maximum amount of ephemeral storage that the proxy injector can use |
|
||||
| proxyInjectorResources.ephemeral-storage.request | string | `""` | Amount of ephemeral storage that the proxy injector requests |
|
||||
| proxyInjectorResources.memory.limit | string | `""` | Maximum amount of memory that the proxy injector can use |
|
||||
| proxyInjectorResources.memory.request | string | `""` | Amount of memory that the proxy injector requests |
|
||||
| runtimeClassName | string | `""` | Runtime Class Name for all the pods |
|
||||
| webhookFailurePolicy | string | `"Ignore"` | Failure policy for the proxy injector |
|
||||
|
||||
|
|
|
|||
|
|
@ -288,40 +288,10 @@ identity:
|
|||
keyPEM: |
|
||||
|
||||
|
||||
# -|- CPU, Memory and Ephemeral Storage resources required by the identity controller
|
||||
identityResources:
|
||||
cpu:
|
||||
# -- Maximum amount of CPU units that the identity controller can use
|
||||
limit: ""
|
||||
# -- Amount of CPU units that the identity controller requests
|
||||
request: ""
|
||||
memory:
|
||||
# -- Maximum amount of memory that the identity controller can use
|
||||
limit: ""
|
||||
# -- Amount of memory that the identity controller requests
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
# -- Maximum amount of ephemeral storage that the identity controller can use
|
||||
limit: ""
|
||||
# -- Amount of ephemeral storage that the identity controller requests
|
||||
request: ""
|
||||
# -|- CPU, Memory and Ephemeral Storage resources required by proxy injected into identity pod
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
# -- Maximum amount of CPU units that the proxies injected into identity pod can use
|
||||
limit: ""
|
||||
# -- Amount of CPU units that the proxies injected into identity pod request
|
||||
request: ""
|
||||
memory:
|
||||
# -- Maximum amount of memory that the proxies injected into identity pod can use
|
||||
limit: ""
|
||||
# -- Amount of memory that the proxies injected into identity pod request
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
# -- Maximum amount of ephemeral storage that the proxies injected into identity pod can use
|
||||
limit: ""
|
||||
# -- Amount of ephemeral storage that the proxies injected into identity pod request
|
||||
request: ""
|
||||
# -|- CPU, Memory and Ephemeral Storage resources required by the identity controller (see `proxy.resources` for sub-fields)
|
||||
#identityResources:
|
||||
# -|- CPU, Memory and Ephemeral Storage resources required by proxy injected into identity pod (see `proxy.resources` for sub-fields)
|
||||
#identityProxyResources:
|
||||
|
||||
# heartbeat configuration
|
||||
# disableHeartBeat -- Set to true to not start the heartbeat cronjob
|
||||
|
|
@ -389,40 +359,10 @@ proxyInjector:
|
|||
|
||||
# -|- CPU, Memory and Ephemeral Storage resources required by the proxy injector (see
|
||||
#`proxy.resources` for sub-fields)
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
# -- Maximum amount of CPU units that the proxy injector can use
|
||||
limit: ""
|
||||
# -- Amount of CPU units that the proxy injector requests
|
||||
request: ""
|
||||
memory:
|
||||
# -- Maximum amount of memory that the proxy injector can use
|
||||
limit: ""
|
||||
# -- Amount of memory that the proxy injector requests
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
# -- Maximum amount of ephemeral storage that the proxy injector can use
|
||||
limit: ""
|
||||
# -- Amount of ephemeral storage that the proxy injector requests
|
||||
request: ""
|
||||
#proxyInjectorResources:
|
||||
#-|- CPU, Memory and Ephemeral Storage resources required by proxy injected into the proxy injector
|
||||
#pod (see `proxy.resources` for sub-fields)
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
# -- Maximum amount of CPU units that the proxy injected into the proxy injector can use
|
||||
limit: ""
|
||||
# -- Amount of CPU units that the proxy injected into the proxy injector requests
|
||||
request: ""
|
||||
memory:
|
||||
# -- Maximum amount of memory that the proxy injected into the proxy injector can use
|
||||
limit: ""
|
||||
# -- Amount of memory that the proxy injected into the proxy injector requests
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
# -- Maximum amount of ephemeral storage that the proxy injected into the proxy injector can use
|
||||
limit: ""
|
||||
# -- Amount of ephemeral storage that the proxy injected into the proxy injector requests
|
||||
request: ""
|
||||
#proxyInjectorProxyResources:
|
||||
|
||||
# service profile validator configuration
|
||||
profileValidator:
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -795,7 +759,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1621,7 +1584,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1619,7 +1582,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1619,7 +1582,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1619,7 +1582,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1619,7 +1582,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: false
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1599,7 +1562,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -467,16 +467,7 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
identityProxyResources: null
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
@ -636,16 +627,7 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
@ -1872,7 +1854,7 @@ spec:
|
|||
---
|
||||
apiVersion: v1
|
||||
data:
|
||||
linkerd-config-overrides: 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
|
||||
linkerd-config-overrides: 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
|
||||
kind: Secret
|
||||
metadata:
|
||||
creationTimestamp: null
|
||||
|
|
|
|||
|
|
@ -467,16 +467,7 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 400m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 300Mi
|
||||
identityProxyResources: null
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
@ -636,16 +627,7 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 400m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 300Mi
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
@ -1872,7 +1854,7 @@ spec:
|
|||
---
|
||||
apiVersion: v1
|
||||
data:
|
||||
linkerd-config-overrides: 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
|
||||
linkerd-config-overrides: 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
|
||||
kind: Secret
|
||||
metadata:
|
||||
creationTimestamp: null
|
||||
|
|
|
|||
|
|
@ -380,26 +380,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -549,26 +531,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -725,7 +689,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1500,7 +1463,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -437,26 +437,8 @@ data:
|
|||
tls:
|
||||
crtPEM: test-crt-pem
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: test-trust-anchor
|
||||
identityTrustDomain: test.trust.domain
|
||||
imagePullPolicy: IfNotPresent
|
||||
|
|
@ -594,26 +576,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tap:
|
||||
caBundle: test-tap-ca-bundle
|
||||
externalSecret: true
|
||||
|
|
@ -764,7 +728,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1597,7 +1560,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -455,16 +455,7 @@ data:
|
|||
tls:
|
||||
crtPEM: test-crt-pem
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
identityProxyResources: null
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
@ -612,16 +603,7 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
|
|||
|
|
@ -455,16 +455,7 @@ data:
|
|||
tls:
|
||||
crtPEM: test-crt-pem
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
identityProxyResources: null
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
@ -616,16 +607,7 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
|
|||
|
|
@ -450,16 +450,7 @@ data:
|
|||
tls:
|
||||
crtPEM: test-crt-pem
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
identityProxyResources: null
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
@ -602,16 +593,7 @@ data:
|
|||
operator: In
|
||||
values:
|
||||
- enabled
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: 100m
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: 250Mi
|
||||
request: 20Mi
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1545,7 +1508,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -1671,7 +1671,7 @@ spec:
|
|||
---
|
||||
apiVersion: v1
|
||||
data:
|
||||
linkerd-config-overrides: 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
|
||||
linkerd-config-overrides: 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
|
||||
kind: Secret
|
||||
metadata:
|
||||
creationTimestamp: null
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1619,7 +1582,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
|
|
@ -449,26 +449,8 @@ data:
|
|||
51tdrmkHEZRr0qlLSJdHYgEfMzk=
|
||||
-----END CERTIFICATE-----
|
||||
serviceAccountTokenProjection: true
|
||||
identityProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
identityProxyResources: null
|
||||
identityResources: null
|
||||
identityTrustAnchorsPEM: |
|
||||
-----BEGIN CERTIFICATE-----
|
||||
MIIBwTCCAWagAwIBAgIQeDZp5lDaIygQ5UfMKZrFATAKBggqhkjOPQQDAjApMScw
|
||||
|
|
@ -618,26 +600,8 @@ data:
|
|||
values:
|
||||
- kube-system
|
||||
- cert-manager
|
||||
proxyInjectorProxyResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorResources:
|
||||
cpu:
|
||||
limit: ""
|
||||
request: ""
|
||||
ephemeral-storage:
|
||||
limit: ""
|
||||
request: ""
|
||||
memory:
|
||||
limit: ""
|
||||
request: ""
|
||||
proxyInjectorProxyResources: null
|
||||
proxyInjectorResources: null
|
||||
tolerations: null
|
||||
webhookFailurePolicy: Ignore
|
||||
---
|
||||
|
|
@ -794,7 +758,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9990
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
@ -1619,7 +1582,6 @@ spec:
|
|||
httpGet:
|
||||
path: /ready
|
||||
port: 9995
|
||||
resources:
|
||||
securityContext:
|
||||
runAsUser: 2103
|
||||
allowPrivilegeEscalation: false
|
||||
|
|
|
|||
Loading…
Reference in New Issue