catalog/stable/tailscale/2.0.5/ix_values.yaml

93 lines
1.6 KiB
YAML

image:
repository: tailscale/tailscale
pullPolicy: IfNotPresent
tag: unstable-v1.33.177@sha256:48fa7e2301c42a9bc97e588c48b1e14f7d5b21b607d396402fe180ad4fb67034
command:
- /usr/local/bin/containerboot
securityContext:
readOnlyRootFilesystem: false
runAsNonRoot: false
capabilities:
add:
- NET_ADMIN
podSecurityContext:
runAsUser: 0
runAsGroup: 0
serviceAccount:
main:
enabled: true
rbac:
main:
enabled: true
rules:
- apiGroups:
- ""
resources:
- secrets
verbs:
- create
- apiGroups:
- ""
resources:
- secrets
resourceNames:
- '{{ printf "%s-tailscale-secret" (include "tc.common.names.fullname" .) }}'
verbs:
- get
- update
- patch
envFrom:
- configMapRef:
name: '{{ include "tc.common.names.fullname" . }}-tailscale-config'
tailscale:
authkey: supersecret
auth_once: true
userspace: true
accept_dns: false
routes: ""
dest_ip: ""
sock5_server: ""
outbound_http_proxy_listen: ""
extra_args: ""
daemon_extra_args: ""
hostname: ""
advertise_as_exit_node: false
probes:
liveness:
enabled: false
readiness:
enabled: false
startup:
enabled: false
hostNetwork: true
service:
main:
enabled: false
ports:
main:
enabled: false
persistence:
varrun:
enabled: true
tun:
enabled: true
type: hostPath
hostPath: /dev/net/tun
mountPath: /dev/net/tun
hostPathType: ""
readOnly: false
portal:
enabled: false