questions: - variable: credential.enabled default: true description: Whether to create a GMSA Credential when installing GMSA Webhook label: Whether to create a GMSA Credential type: boolean group: "Credential Spec" show_subquestion_if: true subquestions: - variable: credential.domainJoinConfig.machineAccountName label: GMSA Account Name description: Username of the GMSA account type: string required: true - variable: credential.domainJoinConfig.guid label: GUID description: GUID of the Service Account type: string required: true - variable: credential.domainJoinConfig.sid label: SID description: SID of the GMSA Account type: string required: true - variable: credential.domainJoinConfig.dnsName label: DNS Domain Name description: Name of the domain in DNS type: string required: true - variable: credential.domainJoinConfig.dnsTreeName label: DNS Tree Domain description: Root name of the domain in DNS type: string required: true - variable: credential.domainJoinConfig.netBiosName label: NETBIOS Name description: NETBIOS Name for the domain. type: string required: true - variable: certificates.certManager.enabled default: true description: Use cert-manager to generate certificates for the webhook label: Generate certificate through cert-manager type: boolean group: "Certificates" show_subquestion_if: false subquestions: - variable: certificates.secretName default: webhook-server-cert description: Mount a CA Bundle from an existing Secret in the same namespace as the GMSA webhook. Secret must contain keys for the CA certificate (ca.crt), the TLS certificate (tls.crt), and the TLS private key (tls.key) to be used by the webhook. label: CA Bundle From Existing Secret type: string required: true