You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Janssen Access and Identity Management All-in-One Chart. This chart deploys the selected janssen microservice all in one deployment.
6
6
@@ -30,7 +30,7 @@ Kubernetes: `>=v1.23.0-0`
30
30
| adminPassword | string |`"Test1234#"`| Admin password to log in to the UI. |
31
31
| alb.ingress | bool |`false`| switches the service to Nodeport for ALB ingress |
32
32
| auth-server | object | `{"appLoggers":{"auditStatsLogLevel":"INFO","auditStatsLogTarget":"FILE","authLogLevel":"INFO","authLogTarget":"STDOUT","enableStdoutLogPrefix":"true","httpLogLevel":"INFO","httpLogTarget":"FILE","persistenceDurationLogLevel":"INFO","persistenceDurationLogTarget":"FILE","persistenceLogLevel":"INFO","persistenceLogTarget":"FILE","scriptLogLevel":"INFO","scriptLogTarget":"FILE"},"authEncKeys":"RSA1_5 RSA-OAEP","authSigKeys":"RS256 RS384 RS512 ES256 ES384 ES512 PS256 PS384 PS512","cnCustomJavaOptions":"","enabled":true,"ingress":{"authServerAdditionalAnnotations":{},"authServerEnabled":true,"authServerLabels":{},"authzenAdditionalAnnotations":{},"authzenConfigEnabled":true,"authzenConfigLabels":{},"deviceCodeAdditionalAnnotations":{},"deviceCodeEnabled":true,"deviceCodeLabels":{},"firebaseMessagingAdditionalAnnotations":{},"firebaseMessagingEnabled":true,"firebaseMessagingLabels":{},"lockAdditionalAnnotations":{},"lockConfigAdditionalAnnotations":{},"lockConfigEnabled":false,"lockConfigLabels":{},"lockEnabled":false,"lockLabels":{},"openidAdditionalAnnotations":{},"openidConfigEnabled":true,"openidConfigLabels":{},"u2fAdditionalAnnotations":{},"u2fConfigEnabled":true,"u2fConfigLabels":{},"uma2AdditionalAnnotations":{},"uma2ConfigEnabled":true,"uma2ConfigLabels":{},"webdiscoveryAdditionalAnnotations":{},"webdiscoveryEnabled":true,"webdiscoveryLabels":{},"webfingerAdditionalAnnotations":{},"webfingerEnabled":true,"webfingerLabels":{}},"lockEnabled":false}` | Parameters used globally across all services helm charts. |
33
-
| auth-server-key-rotation | object |`{"additionalAnnotations":{},"additionalLabels":{},"cronJobSchedule":"","customCommand":[],"customScripts":[],"dnsConfig":{},"dnsPolicy":"","enabled":true,"image":{"pullPolicy":"IfNotPresent","pullSecrets":[],"repository":"ghcr.io/janssenproject/jans/cloudtools","tag":"0.0.0-nightly"},"initKeysLife":48,"keysLife":48,"keysPushDelay":0,"keysPushStrategy":"NEWER","keysStrategy":"NEWER","lifecycle":{},"nodeSelector":{},"resources":{"limits":{"cpu":"300m","memory":"300Mi"},"requests":{"cpu":"300m","memory":"300Mi"}},"usrEnvs":{"normal":{},"secret":{}},"volumeMounts":[],"volumes":[]}`| Responsible for regenerating auth-keys per x hours |
33
+
| auth-server-key-rotation | object |`{"additionalAnnotations":{},"additionalLabels":{},"cronJobSchedule":"","customCommand":[],"customScripts":[],"dnsConfig":{},"dnsPolicy":"","enabled":true,"image":{"pullPolicy":"IfNotPresent","pullSecrets":[],"repository":"ghcr.io/janssenproject/jans/cloudtools","tag":"1.13.0-1"},"initKeysLife":48,"keysLife":48,"keysPushDelay":0,"keysPushStrategy":"NEWER","keysStrategy":"NEWER","lifecycle":{},"nodeSelector":{},"resources":{"limits":{"cpu":"300m","memory":"300Mi"},"requests":{"cpu":"300m","memory":"300Mi"}},"usrEnvs":{"normal":{},"secret":{}},"volumeMounts":[],"volumes":[]}`| Responsible for regenerating auth-keys per x hours |
34
34
| auth-server-key-rotation.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
35
35
| auth-server-key-rotation.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
36
36
| auth-server-key-rotation.cronJobSchedule | string |`""`| Auth server key rotation job schedule. It accepts any Cron syntax supported by Kubernetes. If empty, the schedule will run based on keysLife value. |
@@ -42,7 +42,7 @@ Kubernetes: `>=v1.23.0-0`
42
42
| auth-server-key-rotation.image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
43
43
| auth-server-key-rotation.image.pullSecrets | list |`[]`| Image Pull Secrets |
44
44
| auth-server-key-rotation.image.repository | string |`"ghcr.io/janssenproject/jans/cloudtools"`| Image to use for deploying. |
45
-
| auth-server-key-rotation.image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
45
+
| auth-server-key-rotation.image.tag | string |`"1.13.0-1"`| Image tag to use for deploying. |
46
46
| auth-server-key-rotation.initKeysLife | int |`48`| The initial auth server key rotation keys life in hours |
47
47
| auth-server-key-rotation.keysLife | int |`48`| Auth server key rotation keys life in hours |
48
48
| auth-server-key-rotation.keysPushDelay | int |`0`| Delay (in seconds) before pushing private keys to Auth server |
| cleanup.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
136
136
| cleanup.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
137
137
| cleanup.customCommand | list |`[]`| Add custom job's command. If passed, it will override the default conditional command. |
@@ -142,7 +142,7 @@ Kubernetes: `>=v1.23.0-0`
142
142
| cleanup.image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
143
143
| cleanup.image.pullSecrets | list |`[]`| Image Pull Secrets |
144
144
| cleanup.image.repository | string |`"ghcr.io/janssenproject/jans/cloudtools"`| Image to use for deploying. |
145
-
| cleanup.image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
145
+
| cleanup.image.tag | string |`"1.13.0-1"`| Image tag to use for deploying. |
146
146
| cleanup.interval | int |`60`| Interval of running the cleanup process (in minutes) |
147
147
| cleanup.limit | int |`1000`| Max. numbers of entries to cleanup |
148
148
| cleanup.nodeSelector | object |`{}`| Add nodeSelector (see https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#nodeselector)|
@@ -299,7 +299,7 @@ Kubernetes: `>=v1.23.0-0`
299
299
| image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
300
300
| image.pullSecrets | list |`[]`| Image Pull Secrets |
301
301
| image.repository | string |`"ghcr.io/janssenproject/jans/all-in-one"`| Image to use for deploying. |
302
-
| image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
302
+
| image.tag | string |`"1.13.0-1"`| Image tag to use for deploying. |
303
303
| isFqdnRegistered | bool |`false`| Boolean flag to enable mapping lbIp to fqdn inside pods on clouds that provide static ip for load balancers. On cloud that provide only addresses to the LB this flag will enable a script to actively scan config.configmap.lbAddr and update the hosts file inside the pods automatically. |
304
304
| istio.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
305
305
| istio.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
@@ -308,7 +308,7 @@ Kubernetes: `>=v1.23.0-0`
308
308
| istio.ingress | bool |`false`| Boolean flag that enables using istio gateway for Janssen. This assumes istio ingress is installed and hence the LB is available. |
309
309
| istio.namespace | string |`"istio-system"`| The namespace istio is deployed in. The is normally istio-system. |
| kc-scheduler.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
313
313
| kc-scheduler.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
314
314
| kc-scheduler.customCommand | list |`[]`| Add custom job's command. If passed, it will override the default conditional command. |
@@ -319,7 +319,7 @@ Kubernetes: `>=v1.23.0-0`
319
319
| kc-scheduler.image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
320
320
| kc-scheduler.image.pullSecrets | list |`[]`| Image Pull Secrets |
321
321
| kc-scheduler.image.repository | string |`"ghcr.io/janssenproject/jans/cloudtools"`| Image to use for deploying. |
322
-
| kc-scheduler.image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
322
+
| kc-scheduler.image.tag | string |`"1.13.0-1"`| Image tag to use for deploying. |
323
323
| kc-scheduler.interval | int |`10`| Interval of running the scheduler (in minutes) |
324
324
| kc-scheduler.nodeSelector | object |`{}`| Add nodeSelector (see https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#nodeselector)|
# -- Auth server key rotation job schedule. It accepts any Cron syntax supported by Kubernetes. If empty, the schedule will run based on keysLife value.
0 commit comments