51 lines
869 B
YAML
51 lines
869 B
YAML
image:
|
|
repository: tccr.io/truecharts/wg-easy
|
|
pullPolicy: IfNotPresent
|
|
tag: latest@sha256:a2cae04bf1ee6a523b084b9c087104b4b77b354c778d141028edad8286c0f56c
|
|
|
|
securityContext:
|
|
readOnlyRootFilesystem: false
|
|
runAsNonRoot: false
|
|
capabilities:
|
|
add:
|
|
- NET_ADMIN
|
|
- SYS_MODULE
|
|
|
|
security:
|
|
PUID: 0
|
|
|
|
podSecurityContext:
|
|
runAsUser: 0
|
|
runAsGroup: 0
|
|
|
|
secretEnv:
|
|
PASSWORD: "secretpass"
|
|
|
|
env:
|
|
WG_HOST: "localhost"
|
|
WG_MTU: 1420
|
|
WG_PERSISTENT_KEEPALIVE: 0
|
|
WG_DEFAULT_ADDRESS: "10.8.0.x"
|
|
WG_DEFAULT_DNS: "1.1.1.1"
|
|
WG_ALLOWED_IPS: "0.0.0.0/0, ::/0"
|
|
|
|
service:
|
|
main:
|
|
ports:
|
|
main:
|
|
targetPort: 51821
|
|
port: 51821
|
|
vpn:
|
|
enabled: true
|
|
ports:
|
|
vpn:
|
|
enabled: true
|
|
protocol: UDP
|
|
port: 51820
|
|
targetPort: 51820
|
|
|
|
persistence:
|
|
config:
|
|
enabled: true
|
|
mountPath: "/etc/wireguard"
|