├── .devcontainer ├── Dockerfile └── devcontainer.json ├── .editorconfig ├── .github ├── dependabot.yaml ├── kind │ └── conf │ │ └── kind-config.yaml ├── scripts │ ├── edit-yaml.py │ ├── parse-versions.sh │ ├── requirements.txt │ ├── update-tags.sh │ └── update-versions.sh ├── tests │ ├── charts.json │ ├── common.sh │ ├── create-cert.sh │ ├── dependencies │ │ ├── mysql.yaml │ │ ├── postgresql.yaml │ │ └── testcert.yaml │ ├── example-org.key │ ├── example-org.pem │ ├── images.json │ ├── oci-charts.json │ ├── post-install.sh │ └── pre-install.sh └── workflows │ ├── check-versions.yaml │ ├── helm-chart-ci-ignore.yaml │ ├── helm-chart-ci.yaml │ ├── helm-release.yaml │ ├── shellcheck.yaml │ └── update-devcontainer-image.yaml ├── .gitignore ├── .nojekyll ├── CODE-OF-CONDUCT.md ├── CODEOWNERS ├── CONTRIBUTING.md ├── FAQ.md ├── LICENSE ├── Makefile ├── README.md ├── charts ├── spiffe-step-ssh │ ├── Chart.yaml │ ├── README.md │ ├── ci │ │ └── default-values.yaml │ ├── files │ │ └── ssh_x5c.tpl │ ├── templates │ │ ├── NOTES.txt │ │ ├── _helpers.tpl │ │ ├── config-configmap.yaml │ │ ├── config-deployment.yaml │ │ ├── config-role.yaml │ │ ├── config-serviceaccount.yaml │ │ ├── fetchca-configmap.yaml │ │ ├── fetchca-deployment.yaml │ │ ├── fetchca-hpa.yaml │ │ ├── fetchca-ingress.yaml │ │ ├── fetchca-service.yaml │ │ ├── fetchca-serviceaccount.yaml │ │ ├── ssh-certificate-issuer-password-secret.yaml │ │ ├── step-ca-password-secret.yaml │ │ ├── step-certs-configmap.yaml │ │ ├── step-config.yaml │ │ ├── step-ingress.yaml │ │ ├── step-secret.yaml │ │ ├── step-ssh-host-ca-password-secret.yaml │ │ └── step-ssh-user-ca-password-secret.yaml │ └── values.yaml ├── spire-crds │ ├── .helmignore │ ├── Chart.yaml │ ├── README.md │ ├── templates │ │ ├── spire.spiffe.io_clusterfederatedtrustdomains.yaml │ │ ├── spire.spiffe.io_clusterspiffeids.yaml │ │ └── spire.spiffe.io_clusterstaticentries.yaml │ └── values.yaml ├── spire-nested │ ├── .helmignore │ ├── Chart.yaml │ ├── LICENSE │ ├── README.md │ ├── templates │ │ └── namespaces.yaml │ └── values.yaml └── spire │ ├── .helmignore │ ├── Chart.yaml │ ├── LICENSE │ ├── README.md │ ├── charts │ ├── spiffe-csi-driver │ │ ├── .helmignore │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ │ ├── NOTES.txt │ │ │ ├── _helpers.tpl │ │ │ ├── daemonset.yaml │ │ │ ├── policy.yaml │ │ │ ├── scc-restricted-csi.yaml │ │ │ ├── scc-spiffe-csi-driver.yaml │ │ │ ├── serviceaccount.yaml │ │ │ └── spiffe-csi-driver.yaml │ │ └── values.yaml │ ├── spiffe-oidc-discovery-provider │ │ ├── .helmignore │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── files │ │ │ └── test │ │ │ │ └── jwt-decode.sh │ │ ├── templates │ │ │ ├── NOTES.txt │ │ │ ├── _helpers.tpl │ │ │ ├── certificate.yaml │ │ │ ├── configmap.yaml │ │ │ ├── deployment.yaml │ │ │ ├── hpa.yaml │ │ │ ├── ingress.yaml │ │ │ ├── issuer.yaml │ │ │ ├── podmonitor.yaml │ │ │ ├── pre-delete-hook.yaml │ │ │ ├── scc-spire-oidc-discovery-provider.yaml │ │ │ ├── service.yaml │ │ │ ├── serviceaccount.yaml │ │ │ └── tests │ │ │ │ ├── test-connection.yaml │ │ │ │ └── test-keys.yaml │ │ └── values.yaml │ ├── spike-keeper │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ │ ├── NOTES.txt │ │ │ ├── _helpers.tpl │ │ │ ├── ingress.yaml │ │ │ ├── service.yaml │ │ │ ├── serviceaccount.yaml │ │ │ └── statefulset.yaml │ │ └── values.yaml │ ├── spike-nexus │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ │ ├── NOTES.txt │ │ │ ├── _helpers.tpl │ │ │ ├── ingress.yaml │ │ │ ├── service.yaml │ │ │ ├── serviceaccount.yaml │ │ │ └── statefulset.yaml │ │ └── values.yaml │ ├── spike-pilot │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ │ ├── NOTES.txt │ │ │ ├── _helpers.tpl │ │ │ ├── deployment.yaml │ │ │ └── serviceaccount.yaml │ │ └── values.yaml │ ├── spire-agent │ │ ├── .helmignore │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ │ ├── NOTES.txt │ │ │ ├── _helpers.tpl │ │ │ ├── configmap.yaml │ │ │ ├── daemonset.yaml │ │ │ ├── podmonitor.yaml │ │ │ ├── roles.yaml │ │ │ ├── scc-spire-agent.yaml │ │ │ └── serviceaccount.yaml │ │ ├── values.schema.json │ │ └── values.yaml │ ├── spire-lib │ │ ├── .helmignore │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ │ ├── _helpers.tpl │ │ │ ├── _namespaces.yaml │ │ │ ├── _spire-server-namespace.yaml │ │ │ └── _spire-system-namespace.yaml │ │ └── values.yaml │ ├── spire-server │ │ ├── .helmignore │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ │ ├── NOTES.txt │ │ │ ├── _controller-manager-container.tpl │ │ │ ├── _helpers.tpl │ │ │ ├── aws-kms-configmap.yaml │ │ │ ├── bundle-configmap.yaml │ │ │ ├── cloud-secret.yaml │ │ │ ├── configmap.yaml │ │ │ ├── controller-manager-cluster-ids.yaml │ │ │ ├── controller-manager-configmap.yaml │ │ │ ├── controller-manager-ftd.yaml │ │ │ ├── controller-manager-roles.yaml │ │ │ ├── controller-manager-service.yaml │ │ │ ├── controller-manager-static-configmap.yaml │ │ │ ├── controller-manager-static-entries.yaml │ │ │ ├── controller-manager-webhook.yaml │ │ │ ├── federation-certificate.yaml │ │ │ ├── federation-ingress.yaml │ │ │ ├── federation-issuer.yaml │ │ │ ├── hpa.yaml │ │ │ ├── ingress.yaml │ │ │ ├── issuer.yaml │ │ │ ├── kubeconfig-secret.yaml │ │ │ ├── podmonitor.yaml │ │ │ ├── post-install-hook.yaml │ │ │ ├── post-upgrade-hook.yaml │ │ │ ├── pre-delete-hook.yaml │ │ │ ├── pre-upgrade-hook.yaml │ │ │ ├── roles.yaml │ │ │ ├── secret.yaml │ │ │ ├── server-resource.yaml │ │ │ ├── service.yaml │ │ │ ├── serviceaccount.yaml │ │ │ ├── tests │ │ │ │ ├── test-connection.yaml │ │ │ │ └── test-tornjak-connection.yaml │ │ │ ├── tornjak-config.yaml │ │ │ ├── tornjak-ingress.yaml │ │ │ ├── tornjak-service.yaml │ │ │ ├── tpm-configmap.yaml │ │ │ └── upstream-ca-secret.yaml │ │ └── values.yaml │ └── tornjak-frontend │ │ ├── Chart.yaml │ │ ├── README.md │ │ ├── templates │ │ ├── NOTES.txt │ │ ├── _helpers.tpl │ │ ├── deployment.yaml │ │ ├── ingress.yaml │ │ ├── service.yaml │ │ ├── serviceaccount.yaml │ │ └── tests │ │ │ └── test-tornjak-connection.yaml │ │ └── values.yaml │ ├── ci │ ├── external-mysql-values.yaml │ ├── external-postgres-values.yaml │ ├── extras-values.yaml │ ├── federation-bundle-endpoint-values.yaml │ ├── namespace-override-values-skip.yaml │ ├── no-spire-controller-manager-values.yaml │ ├── oidc-values.yaml │ ├── prometheus-values.yaml │ ├── tornjak-values.yaml │ ├── upstream-authority-cert-manager-values.yaml │ └── upstream-authority-disk-values.yaml │ ├── templates │ ├── NOTES.txt │ └── namespaces.yaml │ └── values.yaml ├── ct.yaml ├── examples ├── aws-iid │ └── README.md ├── bin │ └── readpw.sh ├── cloud-sql-proxy-gcp │ ├── README.md │ ├── main.tf │ └── values.yaml ├── credentialcomposer-cel │ └── values.yaml ├── external-mysql │ ├── README.md │ ├── run-tests.sh │ └── values.yaml ├── external-postgresql │ ├── README.md │ ├── run-tests.sh │ └── values.yaml ├── federation │ ├── a-values.yaml │ ├── b-values.yaml │ ├── client-pod.yaml │ ├── run-tests.sh │ ├── server-pod.yaml │ └── server-svc.yaml ├── keycloak-config-cli-using-spire │ ├── README.md │ ├── keycloak-config-cli.yaml │ ├── keycloak-values.yaml │ └── spire-values.yaml ├── misc │ └── values-node-pod-antiaffinity.yaml ├── mysql-using-spire │ ├── README.md │ ├── mysql-values.yaml │ ├── mysqlclient-configmap.yaml │ ├── mysqlclient-statefulset.yaml │ └── spire-values.yaml ├── nested-full │ ├── .test-files │ │ ├── child-kind-config.yaml │ │ └── other-kind-config.yaml │ ├── child-values.yaml │ ├── root-values.yaml │ └── run-tests.sh ├── nested-security │ ├── .test-files │ │ ├── child-kind-config.yaml │ │ └── other-kind-config.yaml │ ├── child-values.yaml │ ├── root-values.yaml │ └── run-tests.sh ├── openshift │ └── values-ibm-cloud.yaml ├── spike │ └── values.yaml ├── spire-plugins │ └── node-agent-tpm │ │ ├── Dockerfile.agent │ │ ├── Dockerfile.server │ │ └── values.yaml ├── stateless-server │ ├── README.md │ ├── run-tests.sh │ └── values.yaml ├── static-manifest-server │ └── values.yaml ├── tornjak │ ├── README.md │ ├── keycloak │ │ ├── README.md │ │ └── values.yaml │ ├── run-tests.sh │ ├── values-auth.yaml │ ├── values-ingress.yaml │ └── values.yaml └── tpm-direct │ ├── different-nodes.yaml │ ├── same-nodes.yaml │ └── values.yaml ├── helm-docs.sh ├── project ├── conventions.md ├── glossary.md ├── issues_due_to_nesting.md ├── maintainers.md ├── openshift.md └── overview.md ├── release-chart.sh └── tests ├── go.mod ├── go.sum ├── integration ├── production │ ├── run-tests.sh │ ├── values-expose-federation-https-spiffe-ingress-nginx.yaml │ ├── values-expose-federation-https-web-ingress-nginx.yaml │ ├── values-expose-spiffe-oidc-discovery-provider-ingress-nginx.yaml │ └── values-expose-spire-server-ingress-nginx.yaml └── spiffe-step-ssh │ ├── ingress-values.yaml │ ├── root-values.yaml │ ├── run-tests.sh │ └── spire-agent.conf └── unit ├── main.go ├── spire_test.go └── unit_suite_test.go /.devcontainer/Dockerfile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.devcontainer/Dockerfile -------------------------------------------------------------------------------- /.devcontainer/devcontainer.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.devcontainer/devcontainer.json -------------------------------------------------------------------------------- /.editorconfig: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.editorconfig -------------------------------------------------------------------------------- /.github/dependabot.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/dependabot.yaml -------------------------------------------------------------------------------- /.github/kind/conf/kind-config.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/kind/conf/kind-config.yaml -------------------------------------------------------------------------------- /.github/scripts/edit-yaml.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/scripts/edit-yaml.py -------------------------------------------------------------------------------- /.github/scripts/parse-versions.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/scripts/parse-versions.sh -------------------------------------------------------------------------------- /.github/scripts/requirements.txt: -------------------------------------------------------------------------------- 1 | ruamel.yaml 2 | dict_deep 3 | -------------------------------------------------------------------------------- /.github/scripts/update-tags.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/scripts/update-tags.sh -------------------------------------------------------------------------------- /.github/scripts/update-versions.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/scripts/update-versions.sh -------------------------------------------------------------------------------- /.github/tests/charts.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/charts.json -------------------------------------------------------------------------------- /.github/tests/common.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/common.sh -------------------------------------------------------------------------------- /.github/tests/create-cert.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/create-cert.sh -------------------------------------------------------------------------------- /.github/tests/dependencies/mysql.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/dependencies/mysql.yaml -------------------------------------------------------------------------------- /.github/tests/dependencies/postgresql.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/dependencies/postgresql.yaml -------------------------------------------------------------------------------- /.github/tests/dependencies/testcert.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/dependencies/testcert.yaml -------------------------------------------------------------------------------- /.github/tests/example-org.key: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/example-org.key -------------------------------------------------------------------------------- /.github/tests/example-org.pem: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/example-org.pem -------------------------------------------------------------------------------- /.github/tests/images.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/images.json -------------------------------------------------------------------------------- /.github/tests/oci-charts.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/oci-charts.json -------------------------------------------------------------------------------- /.github/tests/post-install.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/post-install.sh -------------------------------------------------------------------------------- /.github/tests/pre-install.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/tests/pre-install.sh -------------------------------------------------------------------------------- /.github/workflows/check-versions.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/workflows/check-versions.yaml -------------------------------------------------------------------------------- /.github/workflows/helm-chart-ci-ignore.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/workflows/helm-chart-ci-ignore.yaml -------------------------------------------------------------------------------- /.github/workflows/helm-chart-ci.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/workflows/helm-chart-ci.yaml -------------------------------------------------------------------------------- /.github/workflows/helm-release.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/workflows/helm-release.yaml -------------------------------------------------------------------------------- /.github/workflows/shellcheck.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/workflows/shellcheck.yaml -------------------------------------------------------------------------------- /.github/workflows/update-devcontainer-image.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/.github/workflows/update-devcontainer-image.yaml -------------------------------------------------------------------------------- /.gitignore: -------------------------------------------------------------------------------- 1 | bin/ 2 | .idea/ 3 | .vscode/ 4 | *.swp 5 | charts/**/*.tgz 6 | .DS_Store 7 | -------------------------------------------------------------------------------- /.nojekyll: -------------------------------------------------------------------------------- 1 | -------------------------------------------------------------------------------- /CODE-OF-CONDUCT.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/CODE-OF-CONDUCT.md -------------------------------------------------------------------------------- /CODEOWNERS: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/CODEOWNERS -------------------------------------------------------------------------------- /CONTRIBUTING.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/CONTRIBUTING.md -------------------------------------------------------------------------------- /FAQ.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/FAQ.md -------------------------------------------------------------------------------- /LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/LICENSE -------------------------------------------------------------------------------- /Makefile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/Makefile -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/README.md -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/Chart.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/README.md -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/ci/default-values.yaml: -------------------------------------------------------------------------------- 1 | trustDomain: example.org 2 | -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/files/ssh_x5c.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/files/ssh_x5c.tpl -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/NOTES.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/NOTES.txt -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/config-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/config-configmap.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/config-deployment.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/config-deployment.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/config-role.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/config-role.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/config-serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/config-serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/fetchca-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/fetchca-configmap.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/fetchca-deployment.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/fetchca-deployment.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/fetchca-hpa.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/fetchca-hpa.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/fetchca-ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/fetchca-ingress.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/fetchca-service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/fetchca-service.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/fetchca-serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/fetchca-serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/ssh-certificate-issuer-password-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/ssh-certificate-issuer-password-secret.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/step-ca-password-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/step-ca-password-secret.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/step-certs-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/step-certs-configmap.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/step-config.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/step-config.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/step-ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/step-ingress.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/step-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/step-secret.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/step-ssh-host-ca-password-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/step-ssh-host-ca-password-secret.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/templates/step-ssh-user-ca-password-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/templates/step-ssh-user-ca-password-secret.yaml -------------------------------------------------------------------------------- /charts/spiffe-step-ssh/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spiffe-step-ssh/values.yaml -------------------------------------------------------------------------------- /charts/spire-crds/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-crds/.helmignore -------------------------------------------------------------------------------- /charts/spire-crds/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-crds/Chart.yaml -------------------------------------------------------------------------------- /charts/spire-crds/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-crds/README.md -------------------------------------------------------------------------------- /charts/spire-crds/templates/spire.spiffe.io_clusterfederatedtrustdomains.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-crds/templates/spire.spiffe.io_clusterfederatedtrustdomains.yaml -------------------------------------------------------------------------------- /charts/spire-crds/templates/spire.spiffe.io_clusterspiffeids.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-crds/templates/spire.spiffe.io_clusterspiffeids.yaml -------------------------------------------------------------------------------- /charts/spire-crds/templates/spire.spiffe.io_clusterstaticentries.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-crds/templates/spire.spiffe.io_clusterstaticentries.yaml -------------------------------------------------------------------------------- /charts/spire-crds/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-crds/values.yaml -------------------------------------------------------------------------------- /charts/spire-nested/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-nested/.helmignore -------------------------------------------------------------------------------- /charts/spire-nested/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-nested/Chart.yaml -------------------------------------------------------------------------------- /charts/spire-nested/LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-nested/LICENSE -------------------------------------------------------------------------------- /charts/spire-nested/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-nested/README.md -------------------------------------------------------------------------------- /charts/spire-nested/templates/namespaces.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-nested/templates/namespaces.yaml -------------------------------------------------------------------------------- /charts/spire-nested/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire-nested/values.yaml -------------------------------------------------------------------------------- /charts/spire/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/.helmignore -------------------------------------------------------------------------------- /charts/spire/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/LICENSE -------------------------------------------------------------------------------- /charts/spire/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/.helmignore -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/NOTES.txt: -------------------------------------------------------------------------------- 1 | SPIFFE CSI Driver installed… 2 | -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/daemonset.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/templates/daemonset.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/policy.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/templates/policy.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/scc-restricted-csi.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/templates/scc-restricted-csi.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/scc-spiffe-csi-driver.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/templates/scc-spiffe-csi-driver.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/templates/spiffe-csi-driver.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/templates/spiffe-csi-driver.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-csi-driver/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-csi-driver/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/.helmignore -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/files/test/jwt-decode.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/files/test/jwt-decode.sh -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/NOTES.txt: -------------------------------------------------------------------------------- 1 | SPIFFE OIDC discovery provider installed… 2 | -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/certificate.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/certificate.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/deployment.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/deployment.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/hpa.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/hpa.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/ingress.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/issuer.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/issuer.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/podmonitor.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/podmonitor.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/pre-delete-hook.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/pre-delete-hook.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/scc-spire-oidc-discovery-provider.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/scc-spire-oidc-discovery-provider.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/service.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/tests/test-connection.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/tests/test-connection.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/templates/tests/test-keys.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/templates/tests/test-keys.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spiffe-oidc-discovery-provider/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spiffe-oidc-discovery-provider/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/templates/NOTES.txt: -------------------------------------------------------------------------------- 1 | Installed {{ .Chart.Name }}… 2 | -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/templates/ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/templates/ingress.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/templates/service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/templates/service.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/templates/statefulset.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/templates/statefulset.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-keeper/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-keeper/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/templates/NOTES.txt: -------------------------------------------------------------------------------- 1 | Installed {{ .Chart.Name }}… 2 | -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/templates/ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/templates/ingress.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/templates/service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/templates/service.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/templates/statefulset.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/templates/statefulset.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-nexus/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-nexus/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-pilot/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-pilot/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-pilot/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-pilot/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spike-pilot/templates/NOTES.txt: -------------------------------------------------------------------------------- 1 | Installed {{ .Chart.Name }}… 2 | -------------------------------------------------------------------------------- /charts/spire/charts/spike-pilot/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-pilot/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spike-pilot/templates/deployment.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-pilot/templates/deployment.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-pilot/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-pilot/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spike-pilot/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spike-pilot/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/.helmignore -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/NOTES.txt: -------------------------------------------------------------------------------- 1 | Installed {{ .Chart.Name }}… 2 | -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/templates/configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/daemonset.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/templates/daemonset.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/podmonitor.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/templates/podmonitor.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/roles.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/templates/roles.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/scc-spire-agent.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/templates/scc-spire-agent.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/values.schema.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/values.schema.json -------------------------------------------------------------------------------- /charts/spire/charts/spire-agent/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-agent/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/.helmignore -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/templates/_namespaces.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/templates/_namespaces.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/templates/_spire-server-namespace.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/templates/_spire-server-namespace.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/templates/_spire-system-namespace.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/templates/_spire-system-namespace.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-lib/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-lib/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/.helmignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/.helmignore -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/README.md -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/NOTES.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/NOTES.txt -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/_controller-manager-container.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/_controller-manager-container.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/aws-kms-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/aws-kms-configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/bundle-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/bundle-configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/cloud-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/cloud-secret.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-cluster-ids.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-cluster-ids.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-ftd.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-ftd.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-roles.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-roles.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-service.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-static-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-static-configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-static-entries.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-static-entries.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/controller-manager-webhook.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/controller-manager-webhook.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/federation-certificate.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/federation-certificate.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/federation-ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/federation-ingress.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/federation-issuer.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/federation-issuer.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/hpa.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/hpa.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/ingress.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/issuer.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/issuer.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/kubeconfig-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/kubeconfig-secret.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/podmonitor.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/podmonitor.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/post-install-hook.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/post-install-hook.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/post-upgrade-hook.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/post-upgrade-hook.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/pre-delete-hook.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/pre-delete-hook.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/pre-upgrade-hook.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/pre-upgrade-hook.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/roles.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/roles.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/secret.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/server-resource.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/server-resource.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/service.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/tests/test-connection.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/tests/test-connection.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/tests/test-tornjak-connection.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/tests/test-tornjak-connection.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/tornjak-config.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/tornjak-config.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/tornjak-ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/tornjak-ingress.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/tornjak-service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/tornjak-service.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/tpm-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/tpm-configmap.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/templates/upstream-ca-secret.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/templates/upstream-ca-secret.yaml -------------------------------------------------------------------------------- /charts/spire/charts/spire-server/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/spire-server/values.yaml -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/Chart.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/Chart.yaml -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/README.md -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/templates/NOTES.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/templates/NOTES.txt -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/templates/_helpers.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/templates/_helpers.tpl -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/templates/deployment.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/templates/deployment.yaml -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/templates/ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/templates/ingress.yaml -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/templates/service.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/templates/service.yaml -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/templates/serviceaccount.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/templates/serviceaccount.yaml -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/templates/tests/test-tornjak-connection.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/templates/tests/test-tornjak-connection.yaml -------------------------------------------------------------------------------- /charts/spire/charts/tornjak-frontend/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/charts/tornjak-frontend/values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/external-mysql-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/external-mysql-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/external-postgres-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/external-postgres-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/extras-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/extras-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/federation-bundle-endpoint-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/federation-bundle-endpoint-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/namespace-override-values-skip.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/namespace-override-values-skip.yaml -------------------------------------------------------------------------------- /charts/spire/ci/no-spire-controller-manager-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/no-spire-controller-manager-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/oidc-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/oidc-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/prometheus-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/prometheus-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/tornjak-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/tornjak-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/upstream-authority-cert-manager-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/upstream-authority-cert-manager-values.yaml -------------------------------------------------------------------------------- /charts/spire/ci/upstream-authority-disk-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/ci/upstream-authority-disk-values.yaml -------------------------------------------------------------------------------- /charts/spire/templates/NOTES.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/templates/NOTES.txt -------------------------------------------------------------------------------- /charts/spire/templates/namespaces.yaml: -------------------------------------------------------------------------------- 1 | {{- include "spire-lib.namespaces" . }} 2 | -------------------------------------------------------------------------------- /charts/spire/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/charts/spire/values.yaml -------------------------------------------------------------------------------- /ct.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/ct.yaml -------------------------------------------------------------------------------- /examples/aws-iid/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/aws-iid/README.md -------------------------------------------------------------------------------- /examples/bin/readpw.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/bin/readpw.sh -------------------------------------------------------------------------------- /examples/cloud-sql-proxy-gcp/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/cloud-sql-proxy-gcp/README.md -------------------------------------------------------------------------------- /examples/cloud-sql-proxy-gcp/main.tf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/cloud-sql-proxy-gcp/main.tf -------------------------------------------------------------------------------- /examples/cloud-sql-proxy-gcp/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/cloud-sql-proxy-gcp/values.yaml -------------------------------------------------------------------------------- /examples/credentialcomposer-cel/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/credentialcomposer-cel/values.yaml -------------------------------------------------------------------------------- /examples/external-mysql/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/external-mysql/README.md -------------------------------------------------------------------------------- /examples/external-mysql/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/external-mysql/run-tests.sh -------------------------------------------------------------------------------- /examples/external-mysql/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/external-mysql/values.yaml -------------------------------------------------------------------------------- /examples/external-postgresql/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/external-postgresql/README.md -------------------------------------------------------------------------------- /examples/external-postgresql/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/external-postgresql/run-tests.sh -------------------------------------------------------------------------------- /examples/external-postgresql/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/external-postgresql/values.yaml -------------------------------------------------------------------------------- /examples/federation/a-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/federation/a-values.yaml -------------------------------------------------------------------------------- /examples/federation/b-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/federation/b-values.yaml -------------------------------------------------------------------------------- /examples/federation/client-pod.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/federation/client-pod.yaml -------------------------------------------------------------------------------- /examples/federation/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/federation/run-tests.sh -------------------------------------------------------------------------------- /examples/federation/server-pod.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/federation/server-pod.yaml -------------------------------------------------------------------------------- /examples/federation/server-svc.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/federation/server-svc.yaml -------------------------------------------------------------------------------- /examples/keycloak-config-cli-using-spire/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/keycloak-config-cli-using-spire/README.md -------------------------------------------------------------------------------- /examples/keycloak-config-cli-using-spire/keycloak-config-cli.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/keycloak-config-cli-using-spire/keycloak-config-cli.yaml -------------------------------------------------------------------------------- /examples/keycloak-config-cli-using-spire/keycloak-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/keycloak-config-cli-using-spire/keycloak-values.yaml -------------------------------------------------------------------------------- /examples/keycloak-config-cli-using-spire/spire-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/keycloak-config-cli-using-spire/spire-values.yaml -------------------------------------------------------------------------------- /examples/misc/values-node-pod-antiaffinity.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/misc/values-node-pod-antiaffinity.yaml -------------------------------------------------------------------------------- /examples/mysql-using-spire/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/mysql-using-spire/README.md -------------------------------------------------------------------------------- /examples/mysql-using-spire/mysql-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/mysql-using-spire/mysql-values.yaml -------------------------------------------------------------------------------- /examples/mysql-using-spire/mysqlclient-configmap.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/mysql-using-spire/mysqlclient-configmap.yaml -------------------------------------------------------------------------------- /examples/mysql-using-spire/mysqlclient-statefulset.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/mysql-using-spire/mysqlclient-statefulset.yaml -------------------------------------------------------------------------------- /examples/mysql-using-spire/spire-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/mysql-using-spire/spire-values.yaml -------------------------------------------------------------------------------- /examples/nested-full/.test-files/child-kind-config.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-full/.test-files/child-kind-config.yaml -------------------------------------------------------------------------------- /examples/nested-full/.test-files/other-kind-config.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-full/.test-files/other-kind-config.yaml -------------------------------------------------------------------------------- /examples/nested-full/child-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-full/child-values.yaml -------------------------------------------------------------------------------- /examples/nested-full/root-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-full/root-values.yaml -------------------------------------------------------------------------------- /examples/nested-full/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-full/run-tests.sh -------------------------------------------------------------------------------- /examples/nested-security/.test-files/child-kind-config.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-security/.test-files/child-kind-config.yaml -------------------------------------------------------------------------------- /examples/nested-security/.test-files/other-kind-config.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-security/.test-files/other-kind-config.yaml -------------------------------------------------------------------------------- /examples/nested-security/child-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-security/child-values.yaml -------------------------------------------------------------------------------- /examples/nested-security/root-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-security/root-values.yaml -------------------------------------------------------------------------------- /examples/nested-security/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/nested-security/run-tests.sh -------------------------------------------------------------------------------- /examples/openshift/values-ibm-cloud.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/openshift/values-ibm-cloud.yaml -------------------------------------------------------------------------------- /examples/spike/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/spike/values.yaml -------------------------------------------------------------------------------- /examples/spire-plugins/node-agent-tpm/Dockerfile.agent: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/spire-plugins/node-agent-tpm/Dockerfile.agent -------------------------------------------------------------------------------- /examples/spire-plugins/node-agent-tpm/Dockerfile.server: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/spire-plugins/node-agent-tpm/Dockerfile.server -------------------------------------------------------------------------------- /examples/spire-plugins/node-agent-tpm/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/spire-plugins/node-agent-tpm/values.yaml -------------------------------------------------------------------------------- /examples/stateless-server/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/stateless-server/README.md -------------------------------------------------------------------------------- /examples/stateless-server/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/stateless-server/run-tests.sh -------------------------------------------------------------------------------- /examples/stateless-server/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/stateless-server/values.yaml -------------------------------------------------------------------------------- /examples/static-manifest-server/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/static-manifest-server/values.yaml -------------------------------------------------------------------------------- /examples/tornjak/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tornjak/README.md -------------------------------------------------------------------------------- /examples/tornjak/keycloak/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tornjak/keycloak/README.md -------------------------------------------------------------------------------- /examples/tornjak/keycloak/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tornjak/keycloak/values.yaml -------------------------------------------------------------------------------- /examples/tornjak/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tornjak/run-tests.sh -------------------------------------------------------------------------------- /examples/tornjak/values-auth.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tornjak/values-auth.yaml -------------------------------------------------------------------------------- /examples/tornjak/values-ingress.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tornjak/values-ingress.yaml -------------------------------------------------------------------------------- /examples/tornjak/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tornjak/values.yaml -------------------------------------------------------------------------------- /examples/tpm-direct/different-nodes.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tpm-direct/different-nodes.yaml -------------------------------------------------------------------------------- /examples/tpm-direct/same-nodes.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tpm-direct/same-nodes.yaml -------------------------------------------------------------------------------- /examples/tpm-direct/values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/examples/tpm-direct/values.yaml -------------------------------------------------------------------------------- /helm-docs.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/helm-docs.sh -------------------------------------------------------------------------------- /project/conventions.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/project/conventions.md -------------------------------------------------------------------------------- /project/glossary.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/project/glossary.md -------------------------------------------------------------------------------- /project/issues_due_to_nesting.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/project/issues_due_to_nesting.md -------------------------------------------------------------------------------- /project/maintainers.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/project/maintainers.md -------------------------------------------------------------------------------- /project/openshift.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/project/openshift.md -------------------------------------------------------------------------------- /project/overview.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/project/overview.md -------------------------------------------------------------------------------- /release-chart.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/release-chart.sh -------------------------------------------------------------------------------- /tests/go.mod: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/go.mod -------------------------------------------------------------------------------- /tests/go.sum: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/go.sum -------------------------------------------------------------------------------- /tests/integration/production/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/production/run-tests.sh -------------------------------------------------------------------------------- /tests/integration/production/values-expose-federation-https-spiffe-ingress-nginx.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/production/values-expose-federation-https-spiffe-ingress-nginx.yaml -------------------------------------------------------------------------------- /tests/integration/production/values-expose-federation-https-web-ingress-nginx.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/production/values-expose-federation-https-web-ingress-nginx.yaml -------------------------------------------------------------------------------- /tests/integration/production/values-expose-spiffe-oidc-discovery-provider-ingress-nginx.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/production/values-expose-spiffe-oidc-discovery-provider-ingress-nginx.yaml -------------------------------------------------------------------------------- /tests/integration/production/values-expose-spire-server-ingress-nginx.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/production/values-expose-spire-server-ingress-nginx.yaml -------------------------------------------------------------------------------- /tests/integration/spiffe-step-ssh/ingress-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/spiffe-step-ssh/ingress-values.yaml -------------------------------------------------------------------------------- /tests/integration/spiffe-step-ssh/root-values.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/spiffe-step-ssh/root-values.yaml -------------------------------------------------------------------------------- /tests/integration/spiffe-step-ssh/run-tests.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/spiffe-step-ssh/run-tests.sh -------------------------------------------------------------------------------- /tests/integration/spiffe-step-ssh/spire-agent.conf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/integration/spiffe-step-ssh/spire-agent.conf -------------------------------------------------------------------------------- /tests/unit/main.go: -------------------------------------------------------------------------------- 1 | package unit 2 | -------------------------------------------------------------------------------- /tests/unit/spire_test.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/unit/spire_test.go -------------------------------------------------------------------------------- /tests/unit/unit_suite_test.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/spiffe/helm-charts-hardened/HEAD/tests/unit/unit_suite_test.go --------------------------------------------------------------------------------