You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Janssen Access and Identity Management All-in-One Chart. This chart deploys the selected janssen microservice all in one deployment.
6
6
@@ -30,7 +30,7 @@ Kubernetes: `>=v1.23.0-0`
30
30
| adminPassword | string |`"Test1234#"`| Admin password to log in to the UI. |
31
31
| alb.ingress | bool |`false`| switches the service to Nodeport for ALB ingress |
32
32
| auth-server | object | `{"appLoggers":{"auditStatsLogLevel":"INFO","auditStatsLogTarget":"FILE","authLogLevel":"INFO","authLogTarget":"STDOUT","enableStdoutLogPrefix":"true","httpLogLevel":"INFO","httpLogTarget":"FILE","persistenceDurationLogLevel":"INFO","persistenceDurationLogTarget":"FILE","persistenceLogLevel":"INFO","persistenceLogTarget":"FILE","scriptLogLevel":"INFO","scriptLogTarget":"FILE"},"authEncKeys":"RSA1_5 RSA-OAEP","authSigKeys":"RS256 RS384 RS512 ES256 ES384 ES512 PS256 PS384 PS512","cnCustomJavaOptions":"","enabled":true,"ingress":{"authServerAdditionalAnnotations":{},"authServerEnabled":true,"authServerLabels":{},"authzenAdditionalAnnotations":{},"authzenConfigEnabled":true,"authzenConfigLabels":{},"deviceCodeAdditionalAnnotations":{},"deviceCodeEnabled":true,"deviceCodeLabels":{},"firebaseMessagingAdditionalAnnotations":{},"firebaseMessagingEnabled":true,"firebaseMessagingLabels":{},"lockAdditionalAnnotations":{},"lockConfigAdditionalAnnotations":{},"lockConfigEnabled":false,"lockConfigLabels":{},"lockEnabled":false,"lockLabels":{},"openidAdditionalAnnotations":{},"openidConfigEnabled":true,"openidConfigLabels":{},"u2fAdditionalAnnotations":{},"u2fConfigEnabled":true,"u2fConfigLabels":{},"uma2AdditionalAnnotations":{},"uma2ConfigEnabled":true,"uma2ConfigLabels":{},"webdiscoveryAdditionalAnnotations":{},"webdiscoveryEnabled":true,"webdiscoveryLabels":{},"webfingerAdditionalAnnotations":{},"webfingerEnabled":true,"webfingerLabels":{}},"lockEnabled":false}` | Parameters used globally across all services helm charts. |
33
-
| auth-server-key-rotation | object |`{"additionalAnnotations":{},"additionalLabels":{},"cronJobSchedule":"","customCommand":[],"customScripts":[],"dnsConfig":{},"dnsPolicy":"","enabled":true,"image":{"pullPolicy":"IfNotPresent","pullSecrets":[],"repository":"ghcr.io/janssenproject/jans/cloudtools","tag":"0.0.0-nightly"},"initKeysLife":48,"keysLife":48,"keysPushDelay":0,"keysPushStrategy":"NEWER","keysStrategy":"NEWER","lifecycle":{},"nodeSelector":{},"resources":{"limits":{"cpu":"300m","memory":"300Mi"},"requests":{"cpu":"300m","memory":"300Mi"}},"usrEnvs":{"normal":{},"secret":{}},"volumeMounts":[],"volumes":[]}`| Responsible for regenerating auth-keys per x hours |
33
+
| auth-server-key-rotation | object |`{"additionalAnnotations":{},"additionalLabels":{},"cronJobSchedule":"","customCommand":[],"customScripts":[],"dnsConfig":{},"dnsPolicy":"","enabled":true,"image":{"pullPolicy":"IfNotPresent","pullSecrets":[],"repository":"ghcr.io/janssenproject/jans/cloudtools","tag":"1.15.0-1"},"initKeysLife":48,"keysLife":48,"keysPushDelay":0,"keysPushStrategy":"NEWER","keysStrategy":"NEWER","lifecycle":{},"nodeSelector":{},"resources":{"limits":{"cpu":"300m","memory":"300Mi"},"requests":{"cpu":"300m","memory":"300Mi"}},"usrEnvs":{"normal":{},"secret":{}},"volumeMounts":[],"volumes":[]}`| Responsible for regenerating auth-keys per x hours |
34
34
| auth-server-key-rotation.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
35
35
| auth-server-key-rotation.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
36
36
| auth-server-key-rotation.cronJobSchedule | string |`""`| Auth server key rotation job schedule. It accepts any Cron syntax supported by Kubernetes. If empty, the schedule will run based on keysLife value. |
@@ -42,7 +42,7 @@ Kubernetes: `>=v1.23.0-0`
42
42
| auth-server-key-rotation.image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
43
43
| auth-server-key-rotation.image.pullSecrets | list |`[]`| Image Pull Secrets |
44
44
| auth-server-key-rotation.image.repository | string |`"ghcr.io/janssenproject/jans/cloudtools"`| Image to use for deploying. |
45
-
| auth-server-key-rotation.image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
45
+
| auth-server-key-rotation.image.tag | string |`"1.15.0-1"`| Image tag to use for deploying. |
46
46
| auth-server-key-rotation.initKeysLife | int |`48`| The initial auth server key rotation keys life in hours |
47
47
| auth-server-key-rotation.keysLife | int |`48`| Auth server key rotation keys life in hours |
48
48
| auth-server-key-rotation.keysPushDelay | int |`0`| Delay (in seconds) before pushing private keys to Auth server |
| cleanup.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
137
137
| cleanup.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
138
138
| cleanup.customCommand | list |`[]`| Add custom job's command. If passed, it will override the default conditional command. |
@@ -143,7 +143,7 @@ Kubernetes: `>=v1.23.0-0`
143
143
| cleanup.image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
144
144
| cleanup.image.pullSecrets | list |`[]`| Image Pull Secrets |
145
145
| cleanup.image.repository | string |`"ghcr.io/janssenproject/jans/cloudtools"`| Image to use for deploying. |
146
-
| cleanup.image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
146
+
| cleanup.image.tag | string |`"1.15.0-1"`| Image tag to use for deploying. |
147
147
| cleanup.interval | int |`60`| Interval of running the cleanup process (in minutes) |
148
148
| cleanup.limit | int |`1000`| Max. numbers of entries to cleanup |
149
149
| cleanup.nodeSelector | object |`{}`| Add nodeSelector (see https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#nodeselector)|
@@ -300,7 +300,7 @@ Kubernetes: `>=v1.23.0-0`
300
300
| image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
301
301
| image.pullSecrets | list |`[]`| Image Pull Secrets |
302
302
| image.repository | string |`"ghcr.io/janssenproject/jans/all-in-one"`| Image to use for deploying. |
303
-
| image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
303
+
| image.tag | string |`"1.15.0-1"`| Image tag to use for deploying. |
304
304
| isFqdnRegistered | bool |`false`| Boolean flag to enable mapping lbIp to fqdn inside pods on clouds that provide static ip for load balancers. On cloud that provide only addresses to the LB this flag will enable a script to actively scan config.configmap.lbAddr and update the hosts file inside the pods automatically. |
305
305
| istio.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
306
306
| istio.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
@@ -309,7 +309,7 @@ Kubernetes: `>=v1.23.0-0`
309
309
| istio.ingress | bool |`false`| Boolean flag that enables using istio gateway for Janssen. This assumes istio ingress is installed and hence the LB is available. |
310
310
| istio.namespace | string |`"istio-system"`| The namespace istio is deployed in. The is normally istio-system. |
| kc-scheduler.additionalAnnotations | object |`{}`| Additional annotations that will be added across the gateway in the format of {cert-manager.io/issuer: "letsencrypt-prod"} |
314
314
| kc-scheduler.additionalLabels | object |`{}`| Additional labels that will be added across the gateway in the format of {mylabel: "myapp"} |
315
315
| kc-scheduler.customCommand | list |`[]`| Add custom job's command. If passed, it will override the default conditional command. |
@@ -320,7 +320,7 @@ Kubernetes: `>=v1.23.0-0`
320
320
| kc-scheduler.image.pullPolicy | string |`"IfNotPresent"`| Image pullPolicy to use for deploying. |
321
321
| kc-scheduler.image.pullSecrets | list |`[]`| Image Pull Secrets |
322
322
| kc-scheduler.image.repository | string |`"ghcr.io/janssenproject/jans/cloudtools"`| Image to use for deploying. |
323
-
| kc-scheduler.image.tag | string |`"0.0.0-nightly"`| Image tag to use for deploying. |
323
+
| kc-scheduler.image.tag | string |`"1.15.0-1"`| Image tag to use for deploying. |
324
324
| kc-scheduler.interval | int |`10`| Interval of running the scheduler (in minutes) |
325
325
| kc-scheduler.nodeSelector | object |`{}`| Add nodeSelector (see https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#nodeselector)|
0 commit comments