2022-03-27 10:44:54 +00:00
|
|
|
# Include{groups}
|
|
|
|
portals:
|
|
|
|
open:
|
2022-08-08 21:25:02 +00:00
|
|
|
# Include{portalLink}
|
2022-03-27 10:44:54 +00:00
|
|
|
path: "/"
|
|
|
|
admin:
|
2022-08-08 21:25:02 +00:00
|
|
|
# Include{portalLink}
|
2022-03-27 10:44:54 +00:00
|
|
|
path: "/admin/"
|
|
|
|
questions:
|
|
|
|
# Include{global}
|
2023-03-01 07:55:51 +00:00
|
|
|
# Include{workload}
|
|
|
|
# Include{workloadDeployment}
|
|
|
|
|
|
|
|
# Include{replicas1}
|
|
|
|
# Include{podSpec}
|
|
|
|
# Include{containerMain}
|
|
|
|
# Include{containerBasic}
|
|
|
|
# Include{containerAdvanced}
|
|
|
|
|
2022-06-07 17:41:19 +00:00
|
|
|
- variable: secretEnv
|
2022-11-10 16:56:28 +00:00
|
|
|
group: "App Configuration"
|
2022-03-27 10:44:54 +00:00
|
|
|
label: "Image Secrets"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: DNS_SERVER_ADMIN_PASSWORD
|
|
|
|
label: "DNS_SERVER_ADMIN_PASSWORD"
|
|
|
|
description: "DNS web console admin user password."
|
|
|
|
schema:
|
|
|
|
type: string
|
|
|
|
default: ""
|
|
|
|
private: true
|
|
|
|
required: true
|
|
|
|
- variable: env
|
2022-11-10 16:56:28 +00:00
|
|
|
group: "App Configuration"
|
2022-03-27 10:44:54 +00:00
|
|
|
label: "Image Environment"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: DNS_SERVER_DOMAIN
|
|
|
|
label: "DNS_SERVER_DOMAIN"
|
|
|
|
description: "The primary domain name used by this DNS Server to identify itself."
|
|
|
|
schema:
|
|
|
|
type: string
|
|
|
|
default: "dns-server"
|
|
|
|
required: true
|
|
|
|
- variable: DNS_SERVER_PREFER_IPV6
|
|
|
|
label: "DNS_SERVER_PREFER_IPV6"
|
|
|
|
description: "DNS Server will use IPv6 for querying whenever possible with this option enabled."
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
- variable: DNS_SERVER_OPTIONAL_PROTOCOL_DNS_OVER_HTTP
|
|
|
|
label: "DNS_SERVER_OPTIONAL_PROTOCOL_DNS_OVER_HTTP"
|
|
|
|
description: "Enables DNS server optional protocol DNS-over-HTTP on TCP port 8053 to be used with a TLS terminating reverse proxy like nginx."
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
- variable: DNS_SERVER_RECURSION
|
|
|
|
label: "DNS_SERVER_RECURSION"
|
|
|
|
schema:
|
|
|
|
type: string
|
|
|
|
default: "AllowOnlyForPrivateNetworks"
|
|
|
|
enum:
|
|
|
|
- value: "AllowOnlyForPrivateNetworks"
|
|
|
|
description: "AllowOnlyForPrivateNetworks"
|
|
|
|
- value: "UseSpecifiedNetworks"
|
|
|
|
description: "UseSpecifiedNetworks"
|
|
|
|
- value: "Allow"
|
|
|
|
description: "Allow"
|
|
|
|
- value: "Deny"
|
|
|
|
description: "Deny"
|
|
|
|
- variable: DNS_SERVER_RECURSION_DENIED_NETWORKS
|
|
|
|
label: "DNS_SERVER_RECURSION_DENIED_NETWORKS"
|
|
|
|
description: "Comma separated list of IP addresses or network addresses to deny recursion. Valid only for UseSpecifiedNetworks recursion option."
|
|
|
|
schema:
|
|
|
|
show_if: [["DNS_SERVER_RECURSION", "=", "UseSpecifiedNetworks"]]
|
|
|
|
type: string
|
|
|
|
default: "1.1.1.0/24"
|
|
|
|
- variable: DNS_SERVER_RECURSION_ALLOWED_NETWORKS
|
|
|
|
label: "DNS_SERVER_RECURSION_ALLOWED_NETWORKS"
|
|
|
|
description: "Comma separated list of IP addresses or network addresses to allow recursion. Valid only for `UseSpecifiedNetworks` recursion option."
|
|
|
|
schema:
|
|
|
|
show_if: [["DNS_SERVER_RECURSION", "=", "UseSpecifiedNetworks"]]
|
|
|
|
type: string
|
|
|
|
default: "127.0.0.1, 192.168.1.0/24"
|
|
|
|
- variable: DNS_SERVER_ENABLE_BLOCKING
|
|
|
|
label: "DNS_SERVER_ENABLE_BLOCKING"
|
|
|
|
description: "Sets the DNS server to block domain names using Blocked Zone and Block List Zone."
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
- variable: DNS_SERVER_ALLOW_TXT_BLOCKING_REPORT
|
|
|
|
label: "DNS_SERVER_ALLOW_TXT_BLOCKING_REPORT"
|
|
|
|
description: "Specifies if the DNS Server should respond with TXT records containing a blocked domain report for TXT type requests."
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
- variable: DNS_SERVER_FORWARDERS
|
|
|
|
label: "DNS_SERVER_FORWARDERS"
|
|
|
|
description: "Comma separated list of forwarder addresses."
|
|
|
|
schema:
|
|
|
|
type: string
|
|
|
|
default: "1.1.1.1, 8.8.8.8"
|
|
|
|
- variable: DNS_SERVER_FORWARDER_PROTOCOL
|
|
|
|
label: "DNS_SERVER_FORWARDER_PROTOCOL"
|
|
|
|
description: "Forwarder protocol options: Udp, Tcp, Tls, Https, HttpsJson."
|
|
|
|
schema:
|
|
|
|
type: string
|
|
|
|
default: "Tcp"
|
|
|
|
enum:
|
|
|
|
- value: "AllowOnlyForPrivateNetworks"
|
|
|
|
description: "AllowOnlyForPrivateNetworks"
|
|
|
|
- value: "Udp"
|
|
|
|
description: "Udp"
|
|
|
|
- value: "Tcp"
|
|
|
|
description: "Tcp"
|
|
|
|
- value: "Tls"
|
|
|
|
description: "Tls"
|
|
|
|
- value: "Https"
|
|
|
|
description: "Https"
|
|
|
|
- value: "HttpsJson"
|
|
|
|
description: "HttpsJson"
|
|
|
|
# Include{containerConfig}
|
2022-08-08 21:25:02 +00:00
|
|
|
# Include{serviceRoot}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: main
|
|
|
|
label: "Main Service"
|
|
|
|
description: "The Primary service on which the healthcheck runs, often the webUI"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
2022-09-17 11:24:06 +00:00
|
|
|
# Include{serviceSelectorLoadBalancer}
|
2022-09-14 21:27:12 +00:00
|
|
|
# Include{serviceSelectorExtras}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: main
|
|
|
|
label: "Main Service Port Configuration"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: port
|
|
|
|
label: "Port"
|
|
|
|
description: "This port exposes the container port on the service"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 5380
|
|
|
|
required: true
|
2022-07-10 09:21:55 +00:00
|
|
|
- variable: dns-udp
|
|
|
|
label: "DNS-UDP Service"
|
|
|
|
description: "DNS-UDP Service"
|
2022-03-27 10:44:54 +00:00
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
2022-09-17 11:24:06 +00:00
|
|
|
# Include{serviceSelectorLoadBalancer}
|
2022-09-14 21:27:12 +00:00
|
|
|
# Include{serviceSelectorExtras}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: dns-udp
|
|
|
|
label: "DNS-UDP Service Port Configuration"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: port
|
|
|
|
label: "Port"
|
|
|
|
description: "This port exposes the container port on the service"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 53
|
|
|
|
required: true
|
2022-07-10 09:21:55 +00:00
|
|
|
- variable: dns-tcp
|
|
|
|
label: "DNS-TCP Service"
|
|
|
|
description: "DNS-TCP Service"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
2022-09-17 11:24:06 +00:00
|
|
|
# Include{serviceSelectorLoadBalancer}
|
2022-09-14 21:27:12 +00:00
|
|
|
# Include{serviceSelectorExtras}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: dns-tcp
|
|
|
|
label: "DNS-TCP Service Port Configuration"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: port
|
|
|
|
label: "Port"
|
|
|
|
description: "This port exposes the container port on the service"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 53
|
|
|
|
required: true
|
|
|
|
- variable: dns-tls
|
|
|
|
label: "DNS-TLS Service"
|
|
|
|
description: "DNS-TLS Service"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
2022-09-17 11:24:06 +00:00
|
|
|
# Include{serviceSelectorLoadBalancer}
|
2022-09-14 21:27:12 +00:00
|
|
|
# Include{serviceSelectorExtras}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: dns-tls
|
|
|
|
label: "DNS-TLS Service Port Configuration"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: port
|
|
|
|
label: "Port"
|
|
|
|
description: "This port exposes the container port on the service"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 853
|
|
|
|
required: true
|
|
|
|
- variable: dns-cert
|
|
|
|
label: "DNS-over-HTTPS Certbot Service"
|
|
|
|
description: "DNS-over-HTTPS Certbot Service"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
2022-09-17 11:24:06 +00:00
|
|
|
# Include{serviceSelectorLoadBalancer}
|
2022-09-14 21:27:12 +00:00
|
|
|
# Include{serviceSelectorExtras}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: dns-cert
|
|
|
|
label: "DNS-over-HTTPS Certbot Service Port Configuration"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: port
|
|
|
|
label: "Port"
|
|
|
|
description: "This port exposes the container port on the service"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 10202
|
|
|
|
required: true
|
|
|
|
- variable: dns-https
|
|
|
|
label: "DNS-over-HTTPS Service"
|
|
|
|
description: "DNS-over-HTTPS Service"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
2022-09-17 11:24:06 +00:00
|
|
|
# Include{serviceSelectorLoadBalancer}
|
2022-09-14 21:27:12 +00:00
|
|
|
# Include{serviceSelectorExtras}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: dns-https
|
|
|
|
label: "DNS-over-HTTPS Service Port Configuration"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: port
|
|
|
|
label: "Port"
|
|
|
|
description: "This port exposes the container port on the service"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 10203
|
|
|
|
required: true
|
|
|
|
- variable: dns-https-proxy
|
|
|
|
label: "DNS-over-HTTPS Reverse Proxy Service"
|
|
|
|
description: "DNS-over-HTTPS Reverse Proxy Service"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
2022-09-17 11:24:06 +00:00
|
|
|
# Include{serviceSelectorLoadBalancer}
|
2022-09-14 21:27:12 +00:00
|
|
|
# Include{serviceSelectorExtras}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: dns-https-proxy
|
|
|
|
label: "DNS-over-HTTPS Reverse Proxy Service Port Configuration"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: port
|
|
|
|
label: "Port"
|
|
|
|
description: "This port exposes the container port on the service"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 10204
|
|
|
|
required: true
|
2022-08-08 21:25:02 +00:00
|
|
|
# Include{serviceExpertRoot}
|
2022-03-27 10:44:54 +00:00
|
|
|
default: false
|
|
|
|
# Include{serviceExpert}
|
|
|
|
# Include{serviceList}
|
2022-08-08 21:25:02 +00:00
|
|
|
# Include{persistenceRoot}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: config
|
|
|
|
label: "App Config Storage"
|
|
|
|
description: "Stores the Application Configuration."
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
# Include{persistenceBasic}
|
|
|
|
# Include{persistenceList}
|
2022-08-08 21:25:02 +00:00
|
|
|
# Include{ingressRoot}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: main
|
|
|
|
label: "Main Ingress"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
# Include{ingressDefault}
|
|
|
|
# Include{ingressTLS}
|
|
|
|
# Include{ingressTraefik}
|
2022-11-11 18:09:57 +00:00
|
|
|
# Include{ingressList}
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: dns-https-proxy
|
|
|
|
label: "DNS-over-HTTPS Reverse Proxy"
|
|
|
|
schema:
|
|
|
|
additional_attrs: true
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
# Include{ingressDefault}
|
|
|
|
# Include{ingressTLS}
|
|
|
|
# Include{ingressTraefik}
|
2022-11-11 18:09:57 +00:00
|
|
|
# Include{ingressList}
|
2023-03-01 08:30:36 +00:00
|
|
|
# Include{securityContextRoot}
|
|
|
|
|
|
|
|
- variable: runAsUser
|
|
|
|
label: "runAsUser"
|
|
|
|
description: "The UserID of the user running the application"
|
2022-03-27 10:44:54 +00:00
|
|
|
schema:
|
2023-03-01 08:30:36 +00:00
|
|
|
type: int
|
|
|
|
default: 0
|
2022-03-27 10:44:54 +00:00
|
|
|
- variable: runAsGroup
|
|
|
|
label: "runAsGroup"
|
2022-04-20 07:35:54 +00:00
|
|
|
description: "The groupID this App of the user running the application"
|
2022-03-27 10:44:54 +00:00
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 0
|
2023-03-01 08:30:36 +00:00
|
|
|
# Include{securityContextContainer}
|
|
|
|
# Include{securityContextAdvanced}
|
|
|
|
# Include{securityContextPod}
|
|
|
|
- variable: fsGroup
|
|
|
|
label: "fsGroup"
|
|
|
|
description: "The group that should own ALL storage."
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 568
|
|
|
|
|
2022-03-27 10:44:54 +00:00
|
|
|
# Include{resources}
|
|
|
|
# Include{advanced}
|
|
|
|
# Include{addons}
|
2022-10-01 21:39:52 +00:00
|
|
|
# Include{codeserver}
|
2023-03-01 08:30:36 +00:00
|
|
|
# Include{netshoot}
|
2022-10-01 21:39:52 +00:00
|
|
|
# Include{vpn}
|
2022-08-12 11:15:27 +00:00
|
|
|
# Include{documentation}
|