Cilium is a networking, security, and observability solution for Kubernetes, built on eBPF. It provides high-performance networking with support for Layer 3-7 policies, load balancing, and transparent encryption. With Cilium, you can enforce fine-grained security policies, observe network flows in real time, and integrate seamlessly with service meshes. It also offers eBPF-powered network policies and cluster mesh capabilities, enabling secure communication across multiple Kubernetes clusters.
cilium from astrateam-net/oci-charts/cilium is more popular with 122 repositories.
Install with:
helm repo add cilium https://helm.cilium.io/
helm install cilium cilium/cilium -f values.yamlSee examples from other people.
| Name | Repo | Stars | Version | Timestamp |
|---|---|---|---|---|
| cilium | gabe565/home-ops | 31 | 1.19.1 | 25 days ago |
| cilium | mchestr/home-cluster | 157 | 1.19.1 | a month ago |
| cilium | larivierec/home-cluster | 145 | 1.19.1 | a month ago |
| cilium | gavinmcfall/home-ops | 35 | 1.19.1 | a month ago |
| cilium | JJGadgets/Biohazard | 83 | 1.19.0 | a month ago |
See the most popular values for this chart:
| Key | Types |
|---|---|
| boolean | |
| boolean | |
| boolean, string | |
| boolean | |
| boolean | |
| number | |
| string | |
| string | |
| string | |
| string | |
| string | |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
hubble.ui.ingress.hosts[] (47) - hubble.${SECRET_DOMAIN} | string |
hubble.ui.ingress.className (43) internal | string |
hubble.ui.ingress.tls[].hosts[] (29) - hubble.${SECRET_DOMAIN} | string |
hubble.ui.ingress.tls[].secretName (10) hubble-tls | string |
hubble.ui.ingress.annotations."cert-manager.io/cluster-issuer" (8) letsencrypt-production | string |
| string | |
| string | |
| string | |
| string | |
hubble.ui.ingress.annotations."hajimari.io/icon" (7) simple-icons:cilium | string |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| number | |
| string | |
| string | |
| string | |
| string | |
hubble.metrics.enabled[] (60) - dns:query | string |
| boolean, string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| boolean, string | |
| string | |
| string | |
| string | |
| string | |
hubble.metrics.dashboards.namespace (3) monitoring | string |
| boolean | |
hubble.dashboards.namespace (4) monitoring | string |
hubble.dashboards.label (3) grafana_dashboard | string |
| string | |
| string | |
| boolean | |
| string | |
| number | |
| boolean | |
| string | |
| string | |
| string | |
| string | |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| string | |
| boolean | |
| boolean | |
| boolean, string | |
| boolean, string | |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
| boolean, string | |
| boolean, string | |
| boolean | |
| string | |
| string | |
| string | |
| string | |
| string | |
| number | |
| boolean | |
| string | |
| string | |
| boolean | |
| string | |
| string | |
| string | |
| string | |
| boolean, string | |
k8sServiceHost (38) 127.0.0.1 | string |
| number, string | |
ipam.mode (37) kubernetes | string |
| number | |
| string | |
| string | |
| number | |
| string | |
| boolean | |
| number | |
cluster.name (29) home-cluster | string |
ipv4NativeRoutingCIDR (29) ${CLUSTER_CIDR} | string |
kubeProxyReplacementHealthzBindAddr (29) 0.0.0.0:10256 | string |
| boolean | |
| string | |
| string | |
| string | |
| boolean | |
| string | |
| string | |
| string | |
| boolean | |
| boolean | |
| string | |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
bpf.datapathMode (7) netkit | string |
bpf.tproxy (4) true | boolean |
| boolean | |
| boolean | |
| string | |
| number | |
| boolean | |
| boolean | |
| number | |
| number | |
securityContext.capabilities.ciliumAgent[] (25) - CHOWN | string |
securityContext.capabilities.cleanCiliumState[] (25) - NET_ADMIN | string |
| string | |
| string | |
| boolean | |
routingMode (24) native | string |
cgroup.hostRoot (18) /sys/fs/cgroup | string |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
| string | |
| boolean | |
envoy.enabled (17) false | boolean |
| boolean, string | |
| boolean | |
| boolean | |
| boolean | |
cni.exclusive (12) false | boolean |
cni.binPath (4) /var/lib/rancher/k3s/data/cni | string |
cni.confPath (4) /var/lib/rancher/k3s/agent/etc/cni/net.d | string |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
| number | |
| boolean | |
| boolean | |
| string | |
| boolean | |
containerRuntime.socketPath (10) /var/run/k3s/containerd/containerd.sock | string |
containerRuntime.integration (9) containerd | string |
bgp.enabled (8) false | boolean |
| boolean | |
| boolean | |
| boolean | |
ipv6.enabled (7) true | boolean |
tunnel (6) disabled | string |
| string | |
| boolean | |
| string | |
| number | |
| number | |
l7Proxy (4) true | boolean |
| string | |
| boolean | |
| boolean | |
| boolean | |
| string | |
| string | |
| boolean | |
| boolean | |
| string | |
| string | |
| string | |
| boolean | |
| boolean | |
| boolean | |
| boolean | |
| number | |
| boolean | |
| string | |
| boolean | |
| boolean | |
| string | |
| string | |
| string | |
| boolean | |
| boolean | |
| boolean | |
| string | |
| boolean | |
| boolean | |
| string | |
| string | |
| boolean | |
| string | |
| string | |
| boolean | |
| number | |
| string | |
| string | |
| string | |
| string | |
| number | |
| string | |
| string | |
| boolean |