2021-11-23 20:36:27 +00:00
|
|
|
# Include{groups}
|
|
|
|
portals: {}
|
|
|
|
|
|
|
|
questions:
|
|
|
|
# Include{global}
|
|
|
|
|
|
|
|
- variable: env
|
|
|
|
group: "Container Configuration"
|
|
|
|
label: "Image Environment"
|
|
|
|
schema:
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
# Include{fixedEnv}
|
|
|
|
|
2021-11-24 23:10:04 +00:00
|
|
|
- variable: UPTIMEROBOT_API_KEY
|
|
|
|
label: "UptimeRobot API Key"
|
|
|
|
description: "UptimeRobot.com API Key"
|
|
|
|
schema:
|
|
|
|
type: string
|
|
|
|
default: ""
|
|
|
|
required: true
|
|
|
|
|
2021-11-23 20:36:27 +00:00
|
|
|
# Include{containerConfig}
|
|
|
|
|
|
|
|
- variable: serviceexpert
|
|
|
|
group: "Networking and Services"
|
|
|
|
label: "Show Expert Config"
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
show_subquestions_if: true
|
|
|
|
subquestions:
|
|
|
|
- variable: hostNetwork
|
|
|
|
group: "Networking and Services"
|
|
|
|
label: "Host-Networking (Complicated)"
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
|
|
|
|
# Include{serviceExpert}
|
|
|
|
|
|
|
|
# Include{serviceList}
|
|
|
|
|
|
|
|
# Include{persistenceList}
|
|
|
|
|
|
|
|
# Include{ingressList}
|
|
|
|
|
|
|
|
- variable: advancedSecurity
|
|
|
|
label: "Show Advanced Security Settings"
|
|
|
|
group: "Security and Permissions"
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
show_subquestions_if: true
|
|
|
|
subquestions:
|
|
|
|
- variable: securityContext
|
|
|
|
label: "Security Context"
|
|
|
|
schema:
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: privileged
|
|
|
|
label: "Privileged mode"
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
- variable: readOnlyRootFilesystem
|
|
|
|
label: "ReadOnly Root Filesystem"
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
- variable: allowPrivilegeEscalation
|
|
|
|
label: "Allow Privilege Escalation"
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: false
|
|
|
|
- variable: runAsNonRoot
|
|
|
|
label: "runAsNonRoot"
|
|
|
|
schema:
|
|
|
|
type: boolean
|
|
|
|
default: true
|
|
|
|
|
|
|
|
- variable: podSecurityContext
|
|
|
|
group: "Security and Permissions"
|
|
|
|
label: "Pod Security Context"
|
|
|
|
schema:
|
|
|
|
type: dict
|
|
|
|
attrs:
|
|
|
|
- variable: runAsUser
|
|
|
|
label: "runAsUser"
|
|
|
|
description: "The UserID of the user running the application"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 568
|
|
|
|
- variable: runAsGroup
|
|
|
|
label: "runAsGroup"
|
|
|
|
description: The groupID this App of the user running the application"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 568
|
|
|
|
- variable: fsGroup
|
|
|
|
label: "fsGroup"
|
|
|
|
description: "The group that should own ALL storage."
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
default: 568
|
|
|
|
- variable: supplementalGroups
|
|
|
|
label: "supplemental Groups"
|
|
|
|
schema:
|
|
|
|
type: list
|
|
|
|
default: []
|
|
|
|
items:
|
|
|
|
- variable: supplementalGroupsEntry
|
|
|
|
label: "supplemental Group"
|
|
|
|
schema:
|
|
|
|
type: int
|
|
|
|
- variable: fsGroupChangePolicy
|
|
|
|
label: "When should we take ownership?"
|
|
|
|
schema:
|
|
|
|
type: string
|
|
|
|
default: "OnRootMismatch"
|
|
|
|
enum:
|
|
|
|
- value: "OnRootMismatch"
|
|
|
|
description: "OnRootMismatch"
|
|
|
|
- value: "Always"
|
|
|
|
description: "Always"
|
|
|
|
|
|
|
|
# Include{resources}
|
|
|
|
|
|
|
|
# Include{metrics}
|
|
|
|
|
|
|
|
# Include{prometheusRule}
|
|
|
|
|
|
|
|
# Include{advanced}
|
|
|
|
|
|
|
|
# Include{addons}
|