- Authelia: remove invalid server.address, use chart auto-generated secrets - Trivy: use clusterComplianceEnabled=false instead of empty cron
43 lines
881 B
YAML
43 lines
881 B
YAML
---
|
|
apiVersion: source.toolkit.fluxcd.io/v1
|
|
kind: HelmRepository
|
|
metadata:
|
|
name: aquasecurity
|
|
namespace: flux-system
|
|
spec:
|
|
interval: 1h
|
|
url: https://aquasecurity.github.io/helm-charts/
|
|
---
|
|
apiVersion: helm.toolkit.fluxcd.io/v2
|
|
kind: HelmRelease
|
|
metadata:
|
|
name: trivy-operator
|
|
namespace: flux-system
|
|
spec:
|
|
interval: 1h
|
|
targetNamespace: trivy-system
|
|
install:
|
|
createNamespace: true
|
|
chart:
|
|
spec:
|
|
chart: trivy-operator
|
|
sourceRef:
|
|
kind: HelmRepository
|
|
name: aquasecurity
|
|
interval: 1h
|
|
values:
|
|
trivy:
|
|
resources:
|
|
requests:
|
|
cpu: 10m
|
|
memory: 64Mi
|
|
limits:
|
|
cpu: 500m
|
|
memory: 512Mi
|
|
operator:
|
|
scanJobsConcurrentLimit: 1
|
|
vulnerabilityScannerScanOnlyCurrentRevisions: true
|
|
clusterComplianceEnabled: false
|
|
serviceMonitor:
|
|
enabled: false
|