--- charts-original/values.yaml +++ charts/values.yaml @@ -1,23 +1,53 @@ operator: tolerations: - - key: "node-role.kubernetes.io/master" - operator: "Exists" - effect: "NoSchedule" + - effect: NoSchedule + key: node-role.kubernetes.io/control-plane + operator: Exists + - effect: NoExecute + key: node-role.kubernetes.io/etcd + operator: Exists nodeSelector: - node-role.kubernetes.io/master: "" + node-role.kubernetes.io/control-plane: "true" nameOverride: "" fullnameOverride: "" - resourcePrefix: "openshift.io" + resourcePrefix: "rancher.io" enableAdmissionController: false cniBinPath: "/opt/cni/bin" clusterType: "kubernetes" # Image URIs for sriov-network-operator components images: - operator: ghcr.io/k8snetworkplumbingwg/sriov-network-operator - sriovConfigDaemon: ghcr.io/k8snetworkplumbingwg/sriov-network-operator-config-daemon - sriovCni: ghcr.io/k8snetworkplumbingwg/sriov-cni - ibSriovCni: ghcr.io/k8snetworkplumbingwg/ib-sriov-cni - sriovDevicePlugin: ghcr.io/k8snetworkplumbingwg/sriov-network-device-plugin - resourcesInjector: ghcr.io/k8snetworkplumbingwg/network-resources-injector - webhook: ghcr.io/k8snetworkplumbingwg/sriov-network-operator-webhook + operator: + image: rancher/hardened-sriov-network-operator + tag: v1.1.0-build20220419 + sriovConfigDaemon: + image: rancher/hardened-sriov-network-config-daemon + tag: v1.1.0-build20220419 + sriovCni: + image: rancher/hardened-sriov-cni + tag: v2.6.2-build20220419 + ibSriovCni: + image: rancher/hardened-ib-sriov-cni + tag: v1.0.2-build20220419 + sriovDevicePlugin: + image: rancher/hardened-sriov-network-device-plugin + tag: v3.4.0-build20220419 + resourcesInjector: + image: rancher/hardened-sriov-network-resources-injector + tag: v1.3-build20220419 + webhook: + image: rancher/hardened-sriov-network-webhook + tag: v1.1.0-build20220419 + +# cert_manager enables integration with cert-manager to generate +# certificates for the operator webhooks. Otherwise the chart will +# generate ad-hoc certificates with no automated renewal at expiration, +# not recommended for production clusters. +cert_manager: false + +global: + cattle: + systemDefaultRegistry: "" + rbac: + userRoles: + aggregateToDefaultRoles: false