# This file was generated with the script ./update-dashboard-yaml.sh. # --- apiVersion: v1 kind: Namespace metadata: creationTimestamp: null name: kubernetes-dashboard spec: {} status: {} --- --- # Source: kubernetes-dashboard/templates/serviceaccount.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: v1 kind: ServiceAccount metadata: labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm name: kubernetes-dashboard --- # Source: kubernetes-dashboard/templates/secret.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. # kubernetes-dashboard-certs apiVersion: v1 kind: Secret metadata: labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm name: kubernetes-dashboard-certs type: Opaque --- # Source: kubernetes-dashboard/templates/secret.yaml # kubernetes-dashboard-csrf apiVersion: v1 kind: Secret metadata: labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm name: kubernetes-dashboard-csrf type: Opaque --- # Source: kubernetes-dashboard/templates/secret.yaml # kubernetes-dashboard-key-holder apiVersion: v1 kind: Secret metadata: labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm name: kubernetes-dashboard-key-holder type: Opaque --- # Source: kubernetes-dashboard/templates/configmap.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: v1 kind: ConfigMap metadata: labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm name: kubernetes-dashboard-settings data: --- # Source: kubernetes-dashboard/templates/clusterrole-metrics.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. kind: ClusterRole apiVersion: rbac.authorization.k8s.io/v1 metadata: name: "kubernetes-dashboard-metrics" labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm rules: # Allow Metrics Scraper to get metrics from the Metrics server - apiGroups: ["metrics.k8s.io"] resources: ["pods", "nodes"] verbs: ["get", "list", "watch"] --- # Source: kubernetes-dashboard/templates/clusterrolebinding-metrics.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: "kubernetes-dashboard-metrics" labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: kubernetes-dashboard-metrics subjects: - kind: ServiceAccount name: kubernetes-dashboard namespace: kubernetes-dashboard --- # Source: kubernetes-dashboard/templates/role.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: name: kubernetes-dashboard labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm rules: # Allow Dashboard to get, update and delete Dashboard exclusive secrets. - apiGroups: [""] resources: ["secrets"] resourceNames: ["kubernetes-dashboard-key-holder", "kubernetes-dashboard-certs", "kubernetes-dashboard-csrf"] verbs: ["get", "update", "delete"] # Allow Dashboard to get and update 'kubernetes-dashboard-settings' config map. - apiGroups: [""] resources: ["configmaps"] resourceNames: ["kubernetes-dashboard-settings"] verbs: ["get", "update"] # Allow Dashboard to get metrics. - apiGroups: [""] resources: ["services"] resourceNames: ["heapster", "dashboard-metrics-scraper"] verbs: ["proxy"] - apiGroups: [""] resources: ["services/proxy"] resourceNames: ["heapster", "http:heapster:", "https:heapster:", "dashboard-metrics-scraper", "http:dashboard-metrics-scraper"] verbs: ["get"] --- # Source: kubernetes-dashboard/templates/rolebinding.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: rbac.authorization.k8s.io/v1 kind: RoleBinding metadata: name: kubernetes-dashboard labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm roleRef: apiGroup: rbac.authorization.k8s.io kind: Role name: kubernetes-dashboard subjects: - kind: ServiceAccount name: kubernetes-dashboard namespace: kubernetes-dashboard --- # Source: kubernetes-dashboard/templates/service.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: v1 kind: Service metadata: name: kubernetes-dashboard labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm app.kubernetes.io/component: kubernetes-dashboard kubernetes.io/cluster-service: "true" spec: type: NodePort ports: - port: 443 targetPort: https name: https selector: app.kubernetes.io/name: kubernetes-dashboard app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/component: kubernetes-dashboard --- # Source: kubernetes-dashboard/templates/deployment.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: apps/v1 kind: Deployment metadata: name: kubernetes-dashboard labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm app.kubernetes.io/component: kubernetes-dashboard spec: replicas: 1 strategy: rollingUpdate: maxSurge: 0 maxUnavailable: 1 type: RollingUpdate selector: matchLabels: app.kubernetes.io/name: kubernetes-dashboard app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/component: kubernetes-dashboard template: metadata: labels: app.kubernetes.io/name: kubernetes-dashboard helm.sh/chart: kubernetes-dashboard-5.0.2 app.kubernetes.io/instance: kubernetes-dashboard app.kubernetes.io/version: "2.3.1" app.kubernetes.io/managed-by: Helm app.kubernetes.io/component: kubernetes-dashboard spec: securityContext: seccompProfile: type: RuntimeDefault serviceAccountName: kubernetes-dashboard containers: - name: kubernetes-dashboard image: "kubernetesui/dashboard:v2.3.1" imagePullPolicy: IfNotPresent args: - --namespace=kubernetes-dashboard - --auto-generate-certificates - --metrics-provider=none ports: - name: https containerPort: 8443 protocol: TCP volumeMounts: - name: kubernetes-dashboard-certs mountPath: /certs # Create on-disk volume to store exec logs - mountPath: /tmp name: tmp-volume livenessProbe: httpGet: scheme: HTTPS path: / port: 8443 initialDelaySeconds: 30 timeoutSeconds: 30 resources: limits: cpu: 2 memory: 200Mi requests: cpu: 100m memory: 200Mi securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true runAsGroup: 2001 runAsUser: 1001 volumes: - name: kubernetes-dashboard-certs secret: secretName: kubernetes-dashboard-certs - name: tmp-volume emptyDir: {} --- # Source: kubernetes-dashboard/templates/clusterrole-readonly.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. --- # Source: kubernetes-dashboard/templates/clusterrolebinding-readonly.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. --- # Source: kubernetes-dashboard/templates/ingress.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. --- # Source: kubernetes-dashboard/templates/networkpolicy.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. --- # Source: kubernetes-dashboard/templates/pdb.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. --- # Source: kubernetes-dashboard/templates/psp.yaml # Copyright 2017 The Kubernetes Authors. # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: creationTimestamp: null name: kubernetes-dashboard:cluster-admin roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: cluster-admin subjects: - kind: ServiceAccount name: cluster-admin namespace: kubernetes-dashboard --- apiVersion: v1 kind: ServiceAccount metadata: creationTimestamp: null name: cluster-admin namespace: kubernetes-dashboard