kube/traefik/values.yml

77 lines
1.5 KiB
YAML
Raw Permalink Normal View History

2022-08-16 09:40:54 +00:00
image:
2022-10-21 05:30:04 +00:00
tag: "2.9"
2022-08-16 09:40:54 +00:00
websecure:
tls:
enabled: true
providers:
kubernetesCRD:
enabled: true
namespaces:
- traefik
- authelia
2022-08-16 09:40:54 +00:00
kubernetesIngress:
allowEmptyServices: true
2022-08-16 09:40:54 +00:00
allowExternalNameServices: true
namespaces:
- argocd
- authelia
- camtiler
- drone
- elastic-system
- etherpad
- freescout
- grafana
- harbor
- kubernetes-dashboard
- logging
- longhorn-system
- phpmyadmin
- prometheus-operator
- wildduck
2022-08-16 09:40:54 +00:00
deployment:
replicas: 2
annotations:
keel.sh/policy: minor
keel.sh/trigger: patch
keel.sh/pollSchedule: "@midnight"
2022-09-11 13:24:35 +00:00
accessLog:
format: json
2022-08-16 09:40:54 +00:00
# Globally redirect to https://
globalArguments:
- --entryPoints.web.http.redirections.entryPoint.to=:443
- --entryPoints.web.http.redirections.entryPoint.scheme=https
service:
spec:
# Keep sync with ingress.yml
loadBalancerIP: 193.40.103.36
externalTrafficPolicy: Local
ingressRoute:
dashboard:
enabled: true
domain: traefik.k-space.ee
tlsOptions:
default:
minVersion: VersionTLS12
cipherSuites:
# TLS 1.1 and 1.2 ciphers
- TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
- TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
- TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256
- TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
- TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305
- TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305
# TLS 1.3 ciphers
- TLS_AES_128_GCM_SHA256
- TLS_AES_256_GCM_SHA384
- TLS_CHACHA20_POLY1305_SHA256