Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- admissionConfig:
- pluginConfig:
- BuildDefaults:
- configuration:
- apiVersion: v1
- env: []
- kind: BuildDefaultsConfig
- resources:
- limits: {}
- requests: {}
- BuildOverrides:
- configuration:
- apiVersion: v1
- kind: BuildOverridesConfig
- PodPreset:
- configuration:
- apiVersion: v1
- disable: false
- kind: DefaultAdmissionConfig
- PodNodeConstraints:
- configuration:
- apiversion: v1
- kind: PodNodeConstraintsConfig
- nodeSelectorLabelBlacklist:
- - processor=gpu
- openshift.io/ImagePolicy:
- configuration:
- apiVersion: v1
- executionRules:
- - matchImageAnnotations:
- - key: images.openshift.io/deny-execution
- value: 'true'
- name: execution-denied
- onResources:
- - resource: pods
- - resource: builds
- reject: true
- skipOnResolutionFailure: true
- kind: ImagePolicyConfig
- aggregatorConfig:
- proxyClientInfo:
- certFile: aggregator-front-proxy.crt
- keyFile: aggregator-front-proxy.key
- apiLevels:
- - v1
- apiVersion: v1
- authConfig:
- requestHeader:
- clientCA: front-proxy-ca.crt
- clientCommonNames:
- - aggregator-front-proxy
- extraHeaderPrefixes:
- - X-Remote-Extra-
- groupHeaders:
- - X-Remote-Group
- usernameHeaders:
- - X-Remote-User
- controllerConfig:
- election:
- lockName: openshift-master-controllers
- serviceServingCert:
- signer:
- certFile: service-signer.crt
- keyFile: service-signer.key
- controllers: '*'
- corsAllowedOrigins:
- - (?i)//127\.0\.0\.1(:|\z)
- - (?i)//localhost(:|\z)
- - (?i)//192\.168\.1\.10(:|\z)
- - (?i)//195\.201\.246\.239(:|\z)
- - (?i)//openshift\.default\.svc(:|\z)
- - (?i)//172\.30\.0\.1(:|\z)
- - (?i)//kubernetes\.default\.svc\.cluster\.local(:|\z)
- - (?i)//kubernetes(:|\z)
- - (?i)//os\-master(:|\z)
- - (?i)//os\-master\.xxxxxxx\.com(:|\z)
- - (?i)//openshift\.default(:|\z)
- - (?i)//kubernetes\.default(:|\z)
- - (?i)//openshift\.default\.svc\.cluster\.local(:|\z)
- - (?i)//kubernetes\.default\.svc(:|\z)
- - (?i)//openshift(:|\z)
- dnsConfig:
- bindAddress: 0.0.0.0:8053
- bindNetwork: tcp4
- etcdClientInfo:
- ca: master.etcd-ca.crt
- certFile: master.etcd-client.crt
- keyFile: master.etcd-client.key
- urls:
- - https://os-master:2379
- etcdStorageConfig:
- kubernetesStoragePrefix: kubernetes.io
- kubernetesStorageVersion: v1
- openShiftStoragePrefix: openshift.io
- openShiftStorageVersion: v1
- imageConfig:
- format: openshift/origin-${component}:${version}
- latest: false
- imagePolicyConfig:
- MaxScheduledImageImportsPerMinute: 10
- ScheduledImageImportMinimumIntervalSeconds: 1800
- disableScheduledImport: false
- maxImagesBulkImportedPerRepository: 3
- kind: MasterConfig
- kubeletClientInfo:
- ca: ca-bundle.crt
- certFile: master.kubelet-client.crt
- keyFile: master.kubelet-client.key
- port: 10250
- kubernetesMasterConfig:
- apiServerArguments:
- feature-gates:
- - ExpandPersistentVolumes=true
- runtime-config:
- - apis/settings.k8s.io/v1alpha1=true
- storage-backend:
- - etcd3
- storage-media-type:
- - application/vnd.kubernetes.protobuf
- controllerArguments:
- feature-gates:
- - ExpandPersistentVolumes=true
- masterCount: 1
- masterIP: 192.168.1.10
- podEvictionTimeout:
- proxyClientInfo:
- certFile: master.proxy-client.crt
- keyFile: master.proxy-client.key
- schedulerArguments:
- schedulerConfigFile: /etc/origin/master/scheduler.json
- servicesNodePortRange: ""
- servicesSubnet: 172.30.0.0/16
- staticNodeNames: []
- masterClients:
- externalKubernetesClientConnectionOverrides:
- acceptContentTypes: application/vnd.kubernetes.protobuf,application/json
- burst: 400
- contentType: application/vnd.kubernetes.protobuf
- qps: 200
- externalKubernetesKubeConfig: ""
- openshiftLoopbackClientConnectionOverrides:
- acceptContentTypes: application/vnd.kubernetes.protobuf,application/json
- burst: 600
- contentType: application/vnd.kubernetes.protobuf
- qps: 300
- openshiftLoopbackKubeConfig: openshift-master.kubeconfig
- masterPublicURL: https://xxxxxxx
- networkConfig:
- clusterNetworkCIDR: 10.128.0.0/14
- clusterNetworks:
- - cidr: 10.128.0.0/14
- hostSubnetLength: 9
- externalIPNetworkCIDRs:
- - 0.0.0.0/0
- hostSubnetLength: 9
- networkPluginName: redhat/openshift-ovs-subnet
- serviceNetworkCIDR: 172.30.0.0/16
- oauthConfig:
- assetPublicURL: xxxxxxxxxxxx
- grantConfig:
- method: auto
- identityProviders:
- - challenge: true
- login: true
- mappingMethod: claim
- name: Active_Directory
- provider:
- apiVersion: v1
- attributes:
- email:
- - mail
- id:
- - dn
- name:
- - cn
- preferredUsername:
- - userPrincipalName
- bindDN: xxxxxxxx
- bindPassword: xxxxxxxxxxxx
- ca: /etc/ssl/certs/xxxxxxx
- insecure: false
- kind: LDAPPasswordIdentityProvider
- url: xxxxxxxxxxxxxx
- masterCA: ca-bundle.crt
- masterPublicURL: https://xxxxxxxxxx
- masterURL: https://os-master:8443
- sessionConfig:
- sessionMaxAgeSeconds: 3600
- sessionName: ssn
- sessionSecretsFile: /etc/origin/master/session-secrets.yaml
- tokenConfig:
- accessTokenMaxAgeSeconds: 86400
- authorizeTokenMaxAgeSeconds: 500
- pauseControllers: false
- policyConfig:
- bootstrapPolicyFile: /etc/origin/master/policy.json
- openshiftInfrastructureNamespace: openshift-infra
- openshiftSharedResourcesNamespace: openshift
- projectConfig:
- defaultNodeSelector: "region=primary"
- projectRequestMessage: ""
- projectRequestTemplate: ""
- securityAllocator:
- mcsAllocatorRange: s0:/2
- mcsLabelsPerProject: 5
- uidAllocatorRange: 1000000000-1999999999/10000
- routingConfig:
- subdomain: xxxx
- serviceAccountConfig:
- limitSecretReferences: false
- managedNames:
- - default
- - builder
- - deployer
- masterCA: ca-bundle.crt
- privateKeyFile: serviceaccounts.private.key
- publicKeyFiles:
- - serviceaccounts.public.key
- servingInfo:
- bindAddress: 0.0.0.0:8443
- bindNetwork: tcp4
- certFile: master.server.crt
- clientCA: ca.crt
- keyFile: master.server.key
- maxRequestsInFlight: 500
- namedCertificates:
- - certFile: /etc/ssl/wild-certs/fullchain.pem
- keyFile: /etc/ssl/wild-certs/privkey.pem
- names:
- - xxxxxx
- requestTimeoutSeconds: 3600
- volumeConfig:
- dynamicProvisioningEnabled: true
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement