blob: 1318c1ae6ae6ce5a2c8d74851e89f4fdad198935 [file] [log] [blame]
giolekvadd750802021-11-07 13:24:21 +04001apiVersion: v1
2kind: ConfigMap
3metadata:
4 name: {{ .Values.ui.nebula.lighthouse.name }}
5 namespace: {{ .Release.Namespace }}
6data:
giolekva7e73ba72021-12-03 13:14:20 +04007 lighthouse.yaml: |
giolekva7e73ba72021-12-03 13:14:20 +04008 pki:
giolekva7e73ba72021-12-03 13:14:20 +04009 ca: /etc/nebula/lighthouse/ca.crt
10 cert: /etc/nebula/lighthouse/host.crt
11 key: /etc/nebula/lighthouse/host.key
giolekva7e73ba72021-12-03 13:14:20 +040012 static_host_map:
giolekva7fc15e72021-12-03 15:54:42 +040013 "{{ .Values.ui.nebula.lighthouse.internalIP }}": ["{{ .Values.ui.nebula.lighthouse.externalIP }}:{{ .Values.ui.nebula.lighthouse.port }}"]
giolekva7e73ba72021-12-03 13:14:20 +040014 lighthouse:
giolekva7e73ba72021-12-03 13:14:20 +040015 am_lighthouse: false
giolekva7e73ba72021-12-03 13:14:20 +040016 interval: 60
giolekva7e73ba72021-12-03 13:14:20 +040017 hosts:
18 - {{ .Values.ui.nebula.lighthouse.internalIP }}
giolekva7e73ba72021-12-03 13:14:20 +040019 listen:
giolekva7e73ba72021-12-03 13:14:20 +040020 host: "[::]"
giolekva7fc15e72021-12-03 15:54:42 +040021 port: 4242
giolekva7e73ba72021-12-03 13:14:20 +040022 punchy:
giolekva7e73ba72021-12-03 13:14:20 +040023 punch: true
giolekva7e73ba72021-12-03 13:14:20 +040024 cipher: chachapoly
giolekva7e73ba72021-12-03 13:14:20 +040025 tun:
giolekva7e73ba72021-12-03 13:14:20 +040026 disabled: false
giolekva7e73ba72021-12-03 13:14:20 +040027 dev: nebula1
giolekva7e73ba72021-12-03 13:14:20 +040028 drop_local_broadcast: false
giolekva7e73ba72021-12-03 13:14:20 +040029 drop_multicast: false
giolekva7e73ba72021-12-03 13:14:20 +040030 tx_queue: 500
giolekva7e73ba72021-12-03 13:14:20 +040031 mtu: 1300
giolekva7e73ba72021-12-03 13:14:20 +040032 logging:
giolekva7e73ba72021-12-03 13:14:20 +040033 level: info
giolekva7e73ba72021-12-03 13:14:20 +040034 format: text
giolekva7e73ba72021-12-03 13:14:20 +040035 firewall:
36 conntrack:
37 tcp_timeout: 12m
38 udp_timeout: 3m
39 default_timeout: 10m
40 max_connections: 100000
giolekva7e73ba72021-12-03 13:14:20 +040041 outbound:
giolekva7e73ba72021-12-03 13:14:20 +040042 - port: any
43 proto: any
44 host: any
giolekva7e73ba72021-12-03 13:14:20 +040045 inbound:
46 - port: any
47 proto: any
48 host: any