2# Root key for Operator Helm Chart
5 # An array of environment variables to pass to the Operator deployment.
6 # Pass an empty array to start Operator with defaults.
10 # .. code-block:: yaml
13 # - name: CLUSTER_DOMAIN
14 # value: "cluster.domain"
15 # - name: WATCHED_NAMESPACE
17 # - name: MINIO_OPERATOR_RUNTIME
20 # See `Operator environment variables <https://github.com/minio/operator/blob/master/docs/env-variables.md>`__ for a list of all supported values.
22 - name: OPERATOR_STS_ENABLED
24 # An array of additional annotations to be applied to the operator service account
25 serviceAccountAnnotations: []
26 # additional labels to be applied to operator resources
29 # Specify the Operator container image to use for the deployment.
31 # For example, the following sets the image to the ``quay.io/minio/operator`` repo and the v7.1.1 tag.
32 # The container pulls the image if not already present:
34 # .. code-block:: yaml
37 # repository: quay.io/minio/operator
39 # pullPolicy: IfNotPresent
41 # The chart also supports specifying an image based on digest value:
43 # .. code-block:: yaml
46 # repository: quay.io/minio/operator@sha256
47 # digest: 28c80b379c75242c6fe793dfbf212f43c602140a0de5ebe3d9c2a3a7b9f9f983
48 # pullPolicy: IfNotPresent
51 repository: chainreg.biz/chainguard-private/minio-operator-fips
52 tag: 7.1.1-r26@sha256:04c64d8f979f00e34ac4d6dcab1e90f50bb1b839c3c10edad5c879c6825443ce
53 pullPolicy: IfNotPresent
55 # Specify the sidecar container image to deploy on tenant pods for init container and sidecar.
56 # Only need to change this if want to use a different version that the default, or want to set a custom registry.
57 # ``sidecarImage.tag``
58 # For example, the following sets the image to the ``quay.io/minio/operator-sidecar`` repo and the v7.1.1 tag.
59 # The container pulls the image if not already present:
61 # .. code-block:: yaml
64 # repository: quay.io/minio/operator-sidecar
66 # pullPolicy: IfNotPresent
68 # The chart also supports specifying an image based on digest value:
70 # .. code-block:: yaml
73 # repository: quay.io/minio/operator-sidecar@sha256
74 # digest: a11947a230b80fb1b0bffa97173147a505d4f1207958f722e348d11ab9e972c1
75 # pullPolicy: IfNotPresent
78 repository: chainreg.biz/chainguard-private/minio-operator-sidecar-fips
79 tag: 7.1.1-r26@sha256:348920c21f0740d2fbec0b3b9148c15ac60a12c146fc44e60b269d69b48a6544
82 # An array of Kubernetes secrets to use for pulling images from a private ``image.repository``.
83 # Only one array element is supported at this time.
87 # The name of a custom `Container Runtime <https://kubernetes.io/docs/concepts/containers/runtime-class/>`__ to use for the Operator pods.
90 # An array of `initContainers <https://kubernetes.io/docs/concepts/workloads/pods/init-containers/>`__ to start up before the Operator pods.
91 # Exercise care as ``initContainer`` failures prevent Operator pods from starting.
92 # Pass an empty array to start the Operator normally.
95 # The number of Operator pods to deploy.
96 # Higher values increase availability in the event of worker node failures.
98 # The cluster must have sufficient number of available worker nodes to fulfill the request.
99 # Operator pods deploy with pod anti-affinity by default, preventing Kubernetes from scheduling multiple pods onto a single Worker node.
102 # The Kubernetes `SecurityContext <https://kubernetes.io/docs/tasks/configure-pod-container/security-context/>`__ to use for deploying Operator resources.
104 # You may need to modify these values to meet your cluster's security and access settings.
111 # The Kubernetes `SecurityContext <https://kubernetes.io/docs/tasks/configure-pod-container/security-context/>`__ to use for deploying Operator containers.
112 # You may need to modify these values to meet your cluster's security and access settings.
113 containerSecurityContext:
117 allowPrivilegeEscalation: false
124 # An array of `Volumes <https://kubernetes.io/docs/concepts/storage/volumes/>`__ which the Operator can mount to pods.
126 # The volumes must exist *and* be accessible to the Operator pods.
129 # An array of volume mount points associated to each Operator container.
131 # Specify each item in the array as follows:
133 # .. code-block:: yaml
137 # mountPath: /path/to/mount
139 # The ``name`` field must correspond to an entry in the ``volumes`` array.
142 # Any `Node Selectors <https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/>`__ to apply to Operator pods.
144 # The Kubernetes scheduler uses these selectors to determine which worker nodes onto which it can deploy Operator pods.
146 # If no worker nodes match the specified selectors, the Operator deployment will fail.
150 # The `Pod Priority <https://kubernetes.io/docs/concepts/scheduling-eviction/pod-priority-preemption/>`__ to assign to Operator pods.
151 priorityClassName: ""
154 # The `affinity <https://kubernetes.io/docs/tasks/configure-pod-container/assign-pods-nodes-using-node-affinity/>`__ or anti-affinity settings to apply to Operator pods.
156 # These settings determine the distribution of pods across worker nodes and can help prevent or allow colocating pods onto the same worker nodes.
159 requiredDuringSchedulingIgnoredDuringExecution:
166 topologyKey: kubernetes.io/hostname
169 # An array of `Toleration labels <https://kubernetes.io/docs/concepts/scheduling-eviction/taint-and-toleration/>`__ to associate to Operator pods.
171 # These settings determine the distribution of pods across worker nodes.
175 # An array of `Topology Spread Constraints <https://kubernetes.io/docs/concepts/scheduling-eviction/topology-spread-constraints/>`__ to associate to Operator pods.
177 # These settings determine the distribution of pods across worker nodes.
178 topologySpreadConstraints: []
181 # The `Requests or Limits <https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/>`__ for resources to associate to Operator pods.
183 # These settings can control the minimum and maximum resources requested for each pod.
184 # If no worker nodes can meet the specified requests, the Operator may fail to deploy.
189 ephemeral-storage: 500Mi