1# Default values for helm.
2# This is a YAML-formatted file.
3# Declare variables to be passed into your templates.
6 repository: chainreg.biz/chainguard-private/aws-fsx-csi-driver
7 tag: 1.10.0-r7@sha256:be7d0d1cf1383ee6b5619271c499b03fcd54eee26af099cf2c4ba827dae37edc
8 pullPolicy: IfNotPresent
10 fsGroupPolicy: ReadWriteOnceWithFSType
14 repository: chainreg.biz/chainguard-private/kubernetes-csi-livenessprobe
15 tag: 2.20.0-r0@sha256:4a70f3699895e148f54c8ea9e0576fc9f1c8c971f87e70c1903e05c7f8d58b77
16 pullPolicy: IfNotPresent
24 readOnlyRootFilesystem: true
25 allowPrivilegeEscalation: false
28 repository: chainreg.biz/chainguard-private/kubernetes-csi-node-driver-registrar
29 tag: 2.18.0-r0@sha256:5244185c4ae225a2fde54a8e90317b9f81537bf5099ece6233646b4e46345ba0
30 pullPolicy: IfNotPresent
39 readOnlyRootFilesystem: true
40 allowPrivilegeEscalation: false
43 repository: chainreg.biz/chainguard-private/kubernetes-csi-external-provisioner
44 tag: 6.3.0-r12@sha256:18ac10c299116cbf3aefb6a6a4e2587817dddef2cf96595aa667f8e76acd4a11
45 pullPolicy: IfNotPresent
54 readOnlyRootFilesystem: true
55 allowPrivilegeEscalation: false
58 repository: chainreg.biz/chainguard-private/kubernetes-csi-external-resizer
59 tag: 2.3.0-r0@sha256:391b20a2078a8ce1f1ab48d06b37a1ec94ca29636121636549f6e67fd620dad6
60 pullPolicy: IfNotPresent
69 readOnlyRootFilesystem: true
70 allowPrivilegeEscalation: false
76 # enableMetrics enables the Prometheus metrics endpoint on the controller.
77 # When true, the driver exposes metrics on port 3301.
79 # enablePrometheusAnnotations adds prometheus.io scrape annotations to the controller pod.
80 enablePrometheusAnnotations: true
81 # serviceMonitor controls creation of Prometheus Operator ServiceMonitor resources.
82 # Requires the Prometheus Operator CRDs to be installed.
85 #If you do want to specify resources, uncomment the following lines, adjust them as necessary
93 # Specifies whether a service account should be created
95 ## Enable if EKS IAM for SA is used
96 # eks.amazonaws.com/role-arn: arn:aws:iam::111122223333:role/fsx-csi-role
97 name: fsx-csi-controller-sa
101 # AWS region to use. If not specified then the region will be looked up via the AWS EC2 metadata
107 - key: CriticalAddonsOnly
111 tolerationSeconds: 300
112 # Specify the timeout of all calls to the CSI driver.
114 # securityContext on the controller pod
120 # securityContext on the controller container
121 # Setting privileged=false will cause the "delete-access-point-root-dir" controller option to fail
122 containerSecurityContext:
124 leaderElectionRenewDeadline: 10s
125 leaderElectionLeaseDuration: 15s
128 preferredDuringSchedulingIgnoredDuringExecution:
132 - key: eks.amazonaws.com/compute-type
137 # topologySpreadConstraints:
139 # topologyKey: topology.kubernetes.io/zone
140 # whenUnsatisfiable: ScheduleAnyway
142 # topologyKey: kubernetes.io/hostname
143 # whenUnsatisfiable: ScheduleAnyway
144 topologySpreadConstraints: []
146 # Warning: Disabling PodDisruptionBudget may lead to delays in stateful workloads starting due to controller
147 # pod restarts or evictions.
149 # Extra tags to attach to each dynamically provisioned file system.
159 kubeletPath: /var/lib/kubelet
160 # How long NodeUnpublishVolume waits for a normal unmount before escalating to
161 # `umount -f`. While waiting, the driver periodically checks whether the target
162 # has stopped being a mount point, so a umount(8) that blocks in the kernel
163 # after the filesystem is already detached no longer holds the volume's
164 # in-flight lock forever. Must be at least 30s. Set to 0 to skip the normal
165 # unmount and force immediately. Unset (the default) disables the feature and
166 # preserves the plain blocking unmount.
168 # forcefulUnmountTimeout: 2m
169 forcefulUnmountTimeout: ""
170 # Additional arguments passed to the fsx-plugin container.
173 # - --forceful-unmount-timeout=2m
177 #If you do want to specify resources, uncomment the following lines, adjust them as necessary,
184 dnsPolicy: ClusterFirst
186 # Example config which uses the AWS nameservers
192 # Specifies whether a service account should be created
194 ## Enable if EKS IAM for SA is used
195 # eks.amazonaws.com/role-arn: arn:aws:iam::111122223333:role/fsx-csi-role
196 name: fsx-csi-node-sa
199 # securityContext on the node pod
201 # The node pod must be run as root to bind to the registration/driver sockets
210 tolerateAllTaints: true
214 tolerationSeconds: 300
217 requiredDuringSchedulingIgnoredDuringExecution:
220 - key: eks.amazonaws.com/compute-type
228nodeComponentOnly: false
229# nodeComponentOnly: true
230# Only deploys the node DaemonSet, Skips controller deployment
231# nodeComponentOnly: false (default)
232# Deploys both controller and node components, normal full deployment