2 ## Global image registry to use if it needs to be overridden for some specific use cases (e.g local registries, custom images, ...)
7## Override the namespace
10# Override Kubernetes version if your distribution does not follow semver v2
11kubeVersionOverride: ""
12## set to true to add the release label so scraping of the servicemonitor with kube-prometheus-stack works out of the box
14podDisruptionBudget: {}
17## Allow automount the serviceaccount token for sidecar container (eg: oauthproxy)
18automountServiceAccountToken: false
19## Additional blackbox-exporter container environment variables
27# value: "http://superproxy.com:3128"
29## Additional blackbox-exporter container environment variables for secret or configMap
39# - name: secret-blackbox-oauth-htpasswd
42# secretName: blackbox-oauth-htpasswd
43# - name: storage-volume
44# persistentVolumeClaim:
47## Additional volumes that will be attached to the blackbox-exporter container
50# mountPath: /etc/ssl/certs/ca-certificates.crt
52## Additional InitContainers to initialize the pod
53## This supports either a structured array or a templatable string
54extraInitContainers: []
55## This supports either a structured array or a templatable string
61# - -https-address=:9116
62# - -upstream=http://localhost:9115
63# - -skip-auth-regex=^/metrics
64# - -openshift-delegate-urls={"/":{"group":"monitoring.coreos.com","resource":"prometheuses","verb":"get"}}
65# image: openshift/oauth-proxy:v1.1.0
67# - containerPort: 9116
76# - mountPath: /etc/prometheus/secrets/blackbox-tls
77# name: secret-blackbox-tls
79## Number of replicasets to retain ##
80## default value is 10, 0 will not retain any replicasets and make rollbacks impossible ##
81revisionHistoryLimit: 10
86# - -https-address=:9116
87# - -upstream=http://localhost:9115
88# - -skip-auth-regex=^/metrics
89# - -openshift-delegate-urls={"/":{"group":"monitoring.coreos.com","resource":"prometheuses","verb":"get"}}
90# image: {{ .Values.global.imageRegistry }}/openshift/oauth-proxy:v1.1.0
99 repository: chainguard-private/prometheus-blackbox-exporter
100 # Overrides the image tag whose default is {{ printf "v%s" .Chart.AppVersion }}
102 pullPolicy: IfNotPresent
103 digest: sha256:c73fbfea29b034b6cb19a05ee0b7391219e045304e40b82e895f1c6102440ef9
104 ## Optionally specify an array of imagePullSecrets.
105 ## Secrets must be manually created in the namespace.
106 ## ref: https://kubernetes.io/docs/tasks/configure-pod-container/pull-image-private-registry/
109 # - myRegistrKeySecretName
110podSecurityContext: {}
113## User and Group to run blackbox-exporter container as
117 readOnlyRootFilesystem: true
119 allowPrivilegeEscalation: false
122# Add NET_RAW to enable ICMP
137## Topology spread constraints rely on node labels to identify the topology domain(s) that each Node is in.
138## Ref: https://kubernetes.io/docs/concepts/workloads/pods/pod-topology-spread-constraints/
139topologySpreadConstraints: []
141# topologyKey: failure-domain.beta.kubernetes.io/zone
142# whenUnsatisfiable: DoNotSchedule
145# app.kubernetes.io/instance: jiralert
147# if the configuration is managed as secret outside the chart, using SealedSecret for example,
148# provide the name of the secret here. If secretConfig is set to true, configExistingSecretName will be ignored
149# in favor of the config value.
150configExistingSecretName: ""
151# Store the configuration as a `Secret` instead of a `ConfigMap`, useful in case it contains sensitive data
153# NOTE: Binary payloads (!!binary) in module config are corrupted by Helm's toYaml.
154# The contents of `config:` are passed through `toYaml` in the ConfigMap template,
155# which round-trips the values through Helm's YAML parser and silently corrupts any
156# byte >= 0x80. Use configExistingSecretName instead (see README.md).
163 valid_http_versions: ["HTTP/1.1", "HTTP/2.0"]
164 follow_redirects: true
165 preferred_ip_protocol: "ip4"
166# Set custom config path, other than default /config/blackbox.yaml. If let empty, path will be "/config/blackbox.yaml"
167# configPath: "/foo/bar"
168extraConfigmapMounts: []
169# - name: certs-configmap
170# mountPath: /etc/secrets/ssl/
171# subPath: certificates.crt # (optional)
172# configMap: certs-configmap
176## Additional secret mounts
177# Defines additional mounts with secrets. Secrets must be manually created in the namespace.
179# - name: secret-files
180# mountPath: /etc/secrets
181# secretName: blackbox-secret-files
199 ipFamilies: ["IPv6", "IPv4"]
200 ipFamilyPolicy: "PreferDualStack"
201# Only changes container port. Application port can be changed with extraArgs (--web.listen-address=:9115)
202# https://github.com/prometheus/blackbox_exporter/blob/998037b5b40c1de5fee348ffdea8820509d85171/main.go#L55
204# Number of port to expose on the host. If specified, this must be a valid port number, 0 < x < 65536. If zero, no port is exposed.
205# This is useful for communicating with Daemon Pods when kind is DaemonSet.
208 # Specifies whether a ServiceAccount should be created
210 # The name of the ServiceAccount to use.
211 # If not set and create is true, a name is generated using the fullname template
214## An Ingress resource can provide name-based virtual hosting and TLS
215## termination among other things for CouchDB deployments which are accessed
216## from outside the Kubernetes cluster.
217## ref: https://kubernetes.io/docs/concepts/services-networking/ingress/
223 # kubernetes.io/tls-acme: "true"
225 ## The host property on hosts and tls is passed through helm tpl function.
226 ## ref: https://helm.sh/docs/developing_charts/#using-the-tpl-function
227 - host: chart-example.local
230 pathType: ImplementationSpecific
232 # - secretName: chart-example-tls
234 # - chart-example.local
235## A HTTPRoute (Gateway API) resource is an alternative to Ingress for routing
236## external HTTP traffic to the blackbox exporter Service.
237## ref: https://gateway-api.sigs.k8s.io/api-types/httproute/
242 ## ApiVersion set by default to "gateway.networking.k8s.io/v1"
244 ## kind set by default to HTTPRoute
246 ## Optional name for the default rule in the rendered HTTPRoute.
248 ## Annotations to attach to the HTTPRoute resource
250 ## Labels to attach to the HTTPRoute resource
252 ## ParentRefs refers to resources this HTTPRoute is to be attached to (Gateways)
257 ## Hostnames (templated) defines a set of hostnames that should match against the HTTP Host
258 ## header to select a HTTPRoute used to process the request
262 ## additionalRules (templated) allows adding custom rules to the route
264 ## Filters define the filters that are applied to requests that match
267 ## Matches define conditions used for matching the rule against incoming
273 ## httpsRedirect adds a filter for redirecting to https (HTTP 301 Moved Permanently).
274 ## To redirect HTTP traffic to HTTPS, you need to have a Gateway with both HTTP and HTTPS listeners.
275 ## Matches and filters do not take effect if enabled.
276 ## Ref. https://gateway-api.sigs.k8s.io/guides/http-redirect-rewrite/
279# Annotations for the Deployment
280deploymentAnnotations: {}
281# Annotations for the Secret
283# Hostaliases allow to add additional DNS entries to be injected directly into pods.
284# This will take precedence over your implemented DNS solution
289# - another.example.net
294# - --history.limit=1000
298 ## ServiceMonitor CRD API version
300 apiVersion: monitoring.coreos.com/v1
301 ## If true, a ServiceMonitor CRD is created for a prometheus operator
302 ## https://github.com/coreos/prometheus-operator for blackbox-exporter itself
306 additionalMetricsRelabels: {}
307 additionalRelabeling: []
314 ## Port can be defined by assigning a value for the port key below
316 ## If true, a ServiceMonitor CRD is created for a prometheus operator
317 ## https://github.com/coreos/prometheus-operator for each target
320 # Default values that will be used for all ServiceMonitors created by `targets`
322 additionalMetricsRelabels: {}
323 additionalRelabeling: []
327 honorTimestamps: true
329 ## scheme: HTTP scheme to use for scraping. Can be used with `tlsConfig` for example if using istio mTLS.
331 ## path: HTTP path. Needs to be adjusted, if web.route-prefix is set
333 ## tlsConfig: TLS configuration to use when scraping the endpoint. For example if using istio mTLS.
334 ## Of type: https://github.com/coreos/prometheus-operator/blob/master/Documentation/api.md#tlsconfig
338# - name: example # Human readable URL that will appear in Prometheus / AlertManager
339# url: http://example.com/healthz # The URL that blackbox will scrape
340# hostname: example.com # HTTP probes can accept an additional `hostname` parameter that will set `Host` header and TLS SNI
341# labels: {} # Map of labels for ServiceMonitor. Overrides value set in `defaults`
342# interval: 60s # Scraping interval. Overrides value set in `defaults`
343# scrapeTimeout: 60s # Scrape timeout. Overrides value set in `defaults`
344# module: http_2xx # Module used for scraping. Overrides value set in `defaults`
345# additionalMetricsRelabels: {} # Map of metric labels and values to add
346# additionalRelabeling: [] # List of metric relabeling actions to run
348## Custom PrometheusRules to be defined
349## ref: https://github.com/coreos/prometheus-operator#customresourcedefinitions
356 ## If true, a PodMonitoring CR is created for google managed prometheus
357 ## https://cloud.google.com/stackdriver/docs/managed-prometheus/setup-managed#gmp-pod-monitoring for blackbox-exporter itself
361 additionalMetricsRelabels: {}
366 ## If true, a PodMonitoring CR is created for a google managed prometheus
367 ## https://cloud.google.com/stackdriver/docs/managed-prometheus/setup-managed#gmp-pod-monitoring for each target
370 ## Default values that will be used for all PodMonitoring created by `targets`
371 ## Following PodMonitoring API specs https://github.com/GoogleCloudPlatform/prometheus-engine/blob/main/doc/api.md#scrapeendpoint
373 additionalMetricsRelabels: {}
378 ## scheme: Protocol scheme to use to scrape.
380 ## path: HTTP path. Needs to be adjusted, if web.route-prefix is set
382 ## tlsConfig: TLS configuration to use when scraping the endpoint. For example if using istio mTLS.
383 ## Of type: https://github.com/coreos/prometheus-operator/blob/master/Documentation/api.md#tlsconfig
386# - name: example # Human readable URL that will appear in Google Managed Prometheus / AlertManager
387# url: http://example.com/healthz # The URL that blackbox will scrape
388# hostname: example.com # HTTP probes can accept an additional `hostname` parameter that will set `Host` header and TLS SNI
389# labels: {} # Map of labels for PodMonitoring. Overrides value set in `defaults`
390# interval: 60s # Scraping interval. Overrides value set in `defaults`
391# scrapeTimeout: 60s # Scrape timeout. Overrides value set in `defaults`
392# module: http_2xx # Module used for scraping. Overrides value set in `defaults`
393# additionalMetricsRelabels: {} # Map of metric labels and values to add
395## Network policy for chart
397 # Enable network policy and allow access from anywhere
399 # Limit access only from monitoring namespace
400 # Before setting this value to true, the monitoring namespace must exist. Kubernetes automatically sets the kubernetes.io/metadata.name label on all namespaces. The namespace name can be configured via monitoringNamespaceName
401 # Network Policy uses label filtering
402 allowMonitoringNamespace: false
403 # Rewrite monitoring namespace in network policy (default value monitoring)
404 monitoringNamespaceName: "monitoring"
405## dnsPolicy and dnsConfig for Deployments and Daemonsets if you want non-default settings.
406## These will be passed directly to the PodSpec of same.
409# Extra manifests to deploy as an array
415# name: prometheus-extra
419# global common labels, applied to all resources
421# Enable vertical pod autoscaler support for prometheus-blackbox-exporter
422verticalPodAutoscaler:
424 # Recommender responsible for generating recommendation for the object.
425 # List should be empty (then the default recommender will generate the recommendation)
426 # or contain exactly one recommender.
428 # - name: custom-recommender-performance
430 # List of resources that the vertical pod autoscaler can control. Defaults to cpu and memory
431 controlledResources: []
432 # Specifies which resource values should be controlled: RequestsOnly or RequestsAndLimits.
433 # controlledValues: RequestsAndLimits
435 # Define the max allowed resources for the pod
439 # Define the min allowed resources for the pod
445 # Specifies minimal number of replicas which need to be alive for VPA Updater to attempt pod eviction
447 # Specifies whether recommended updates are applied when a Pod is started and whether recommended updates
448 # are applied during the life of a Pod. Possible values are "Off", "Initial", "Recreate", and "Auto".
459 repository: chainguard-private/prometheus-config-reloader
461 pullPolicy: IfNotPresent
462 digest: sha256:26457760e47e87f9b91c0c38471acc09c59cd7b3e0317af72902d6bd4305ea47
466 readOnlyRootFilesystem: true
468 allowPrivilegeEscalation: false
491 additionalMetricsRelabels: {}
492 additionalRelabeling: []