DirectorySecurity AdvisoriesPricing
Sign in
Directory
minio-operator logoHELM

minio-operator

Helm chart
Last changed
Request a free trial

Contact our team to test out this Helm chart and related images for free. Please also indicate any other images you would like to evaluate.

Overview
Chart tags
Default values
Chart metadata
Images

Tag:
Compare:

1
###
2
# Root key for Operator Helm Chart
3
operator:
4
###
5
# An array of environment variables to pass to the Operator deployment.
6
# Pass an empty array to start Operator with defaults.
7
#
8
# For example:
9
#
10
# .. code-block:: yaml
11
#
12
# env:
13
# - name: CLUSTER_DOMAIN
14
# value: "cluster.domain"
15
# - name: WATCHED_NAMESPACE
16
# value: ""
17
# - name: MINIO_OPERATOR_RUNTIME
18
# value: "OpenShift"
19
#
20
# See `Operator environment variables <https://github.com/minio/operator/blob/master/docs/env-variables.md>`__ for a list of all supported values.
21
env:
22
- name: OPERATOR_STS_ENABLED
23
value: "on"
24
# An array of additional annotations to be applied to the operator service account
25
serviceAccountAnnotations: []
26
# additional labels to be applied to operator resources
27
additionalLabels: {}
28
###
29
# Specify the Operator container image to use for the deployment.
30
# ``image.tag``
31
# For example, the following sets the image to the ``quay.io/minio/operator`` repo and the v7.1.1 tag.
32
# The container pulls the image if not already present:
33
#
34
# .. code-block:: yaml
35
#
36
# image:
37
# repository: quay.io/minio/operator
38
# tag: v7.1.1
39
# pullPolicy: IfNotPresent
40
#
41
# The chart also supports specifying an image based on digest value:
42
#
43
# .. code-block:: yaml
44
#
45
# image:
46
# repository: quay.io/minio/operator@sha256
47
# digest: 28c80b379c75242c6fe793dfbf212f43c602140a0de5ebe3d9c2a3a7b9f9f983
48
# pullPolicy: IfNotPresent
49
#
50
image:
51
repository: chainreg.biz/chainguard-private/minio-operator-fips
52
tag: 7.1.1-r26@sha256:04c64d8f979f00e34ac4d6dcab1e90f50bb1b839c3c10edad5c879c6825443ce
53
pullPolicy: IfNotPresent
54
###
55
# Specify the sidecar container image to deploy on tenant pods for init container and sidecar.
56
# Only need to change this if want to use a different version that the default, or want to set a custom registry.
57
# ``sidecarImage.tag``
58
# For example, the following sets the image to the ``quay.io/minio/operator-sidecar`` repo and the v7.1.1 tag.
59
# The container pulls the image if not already present:
60
#
61
# .. code-block:: yaml
62
#
63
# sidecarImage:
64
# repository: quay.io/minio/operator-sidecar
65
# tag: v7.1.1
66
# pullPolicy: IfNotPresent
67
#
68
# The chart also supports specifying an image based on digest value:
69
#
70
# .. code-block:: yaml
71
#
72
# sidecarImage:
73
# repository: quay.io/minio/operator-sidecar@sha256
74
# digest: a11947a230b80fb1b0bffa97173147a505d4f1207958f722e348d11ab9e972c1
75
# pullPolicy: IfNotPresent
76
#
77
sidecarImage:
78
repository: chainreg.biz/chainguard-private/minio-operator-sidecar-fips
79
tag: 7.1.1-r26@sha256:348920c21f0740d2fbec0b3b9148c15ac60a12c146fc44e60b269d69b48a6544
80
###
81
#
82
# An array of Kubernetes secrets to use for pulling images from a private ``image.repository``.
83
# Only one array element is supported at this time.
84
imagePullSecrets: []
85
###
86
#
87
# The name of a custom `Container Runtime <https://kubernetes.io/docs/concepts/containers/runtime-class/>`__ to use for the Operator pods.
88
runtimeClassName: ~
89
###
90
# An array of `initContainers <https://kubernetes.io/docs/concepts/workloads/pods/init-containers/>`__ to start up before the Operator pods.
91
# Exercise care as ``initContainer`` failures prevent Operator pods from starting.
92
# Pass an empty array to start the Operator normally.
93
initContainers: []
94
###
95
# The number of Operator pods to deploy.
96
# Higher values increase availability in the event of worker node failures.
97
#
98
# The cluster must have sufficient number of available worker nodes to fulfill the request.
99
# Operator pods deploy with pod anti-affinity by default, preventing Kubernetes from scheduling multiple pods onto a single Worker node.
100
replicaCount: 2
101
###
102
# The Kubernetes `SecurityContext <https://kubernetes.io/docs/tasks/configure-pod-container/security-context/>`__ to use for deploying Operator resources.
103
#
104
# You may need to modify these values to meet your cluster's security and access settings.
105
securityContext:
106
runAsUser: 1000
107
runAsGroup: 1000
108
runAsNonRoot: true
109
fsGroup: 1000
110
###
111
# The Kubernetes `SecurityContext <https://kubernetes.io/docs/tasks/configure-pod-container/security-context/>`__ to use for deploying Operator containers.
112
# You may need to modify these values to meet your cluster's security and access settings.
113
containerSecurityContext:
114
runAsUser: 1000
115
runAsGroup: 1000
116
runAsNonRoot: true
117
allowPrivilegeEscalation: false
118
capabilities:
119
drop:
120
- ALL
121
seccompProfile:
122
type: RuntimeDefault
123
###
124
# An array of `Volumes <https://kubernetes.io/docs/concepts/storage/volumes/>`__ which the Operator can mount to pods.
125
#
126
# The volumes must exist *and* be accessible to the Operator pods.
127
volumes: []
128
###
129
# An array of volume mount points associated to each Operator container.
130
#
131
# Specify each item in the array as follows:
132
#
133
# .. code-block:: yaml
134
#
135
# volumeMounts:
136
# - name: volumename
137
# mountPath: /path/to/mount
138
#
139
# The ``name`` field must correspond to an entry in the ``volumes`` array.
140
volumeMounts: []
141
###
142
# Any `Node Selectors <https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/>`__ to apply to Operator pods.
143
#
144
# The Kubernetes scheduler uses these selectors to determine which worker nodes onto which it can deploy Operator pods.
145
#
146
# If no worker nodes match the specified selectors, the Operator deployment will fail.
147
nodeSelector: {}
148
###
149
#
150
# The `Pod Priority <https://kubernetes.io/docs/concepts/scheduling-eviction/pod-priority-preemption/>`__ to assign to Operator pods.
151
priorityClassName: ""
152
###
153
#
154
# The `affinity <https://kubernetes.io/docs/tasks/configure-pod-container/assign-pods-nodes-using-node-affinity/>`__ or anti-affinity settings to apply to Operator pods.
155
#
156
# These settings determine the distribution of pods across worker nodes and can help prevent or allow colocating pods onto the same worker nodes.
157
affinity:
158
podAntiAffinity:
159
requiredDuringSchedulingIgnoredDuringExecution:
160
- labelSelector:
161
matchExpressions:
162
- key: name
163
operator: In
164
values:
165
- minio-operator
166
topologyKey: kubernetes.io/hostname
167
###
168
#
169
# An array of `Toleration labels <https://kubernetes.io/docs/concepts/scheduling-eviction/taint-and-toleration/>`__ to associate to Operator pods.
170
#
171
# These settings determine the distribution of pods across worker nodes.
172
tolerations: []
173
###
174
#
175
# An array of `Topology Spread Constraints <https://kubernetes.io/docs/concepts/scheduling-eviction/topology-spread-constraints/>`__ to associate to Operator pods.
176
#
177
# These settings determine the distribution of pods across worker nodes.
178
topologySpreadConstraints: []
179
###
180
#
181
# The `Requests or Limits <https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/>`__ for resources to associate to Operator pods.
182
#
183
# These settings can control the minimum and maximum resources requested for each pod.
184
# If no worker nodes can meet the specified requests, the Operator may fail to deploy.
185
resources:
186
requests:
187
cpu: 200m
188
memory: 256Mi
189
ephemeral-storage: 500Mi
190

The trusted source for open source

Talk to an expert
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsChainguard OS PackagesChainguard ActionsChainguard Agent SkillsIntegrationsPricing
© 2026 Chainguard, Inc. All Rights Reserved.
Chainguard® and the Chainguard logo are registered trademarks of Chainguard, Inc. in the United States and/or other countries.
The other respective trademarks mentioned on this page are owned by the respective companies and use of them does not imply any affiliation or endorsement.