Birdhk
使用的是opensearch,但配置中没有opensearch信息, 只有收集的信息
kind: ConfigMap
apiVersion: v1
metadata:
name: kubesphere-config
namespace: kubesphere-system
annotations:
kubectl.kubernetes.io/last-applied-configuration: >
{"apiVersion":"v1","data":{"kubesphere.yaml":"authentication:\n
authenticateRateLimiterMaxTries: 10\n authenticateRateLimiterDuration:
10m0s\n loginHistoryRetentionPeriod: 168h\n maximumClockSkew: 10s\n
multipleLogin: True\n kubectlImage:
images.jxkj.com/kubesphere/kubectl:v1.22.0\n jwtSecret:
\"XC38fVIGAXVUkbFzjyz5sdmB10U0gQ5P\"\n oauthOptions:\n clients:\n -
name: kubesphere\n secret: kubesphere\n redirectURIs:\n -
'*'\nldap:\n host: openldap.kubesphere-system.svc:389\n managerDN:
cn=admin,dc=kubesphere,dc=io\n managerPassword: admin\n userSearchBase:
ou=Users,dc=kubesphere,dc=io\n groupSearchBase:
ou=Groups,dc=kubesphere,dc=io\ns3:\n endpoint:
http://minio.kubesphere-system.svc:9000\n region: us-east-1\n
disableSSL: True\n forcePathStyle: True\n accessKeyID:
openpitrixminioaccesskey\n secretAccessKey: openpitrixminiosecretkey\n
bucket: s2i-binaries\nnetwork:\n enableNetworkPolicy: true\n ippoolType:
none\ndevops:\n host:
http://devops-jenkins.kubesphere-devops-system.svc/\n username: admin\n
password:
eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJlbWFpbCI6ImFkbWluQGt1YmVzcGhlcmUuaW8iLCJ1c2VybmFtZSI6ImFkbWluIiwidG9rZW5fdHlwZSI6InN0YXRpY190b2tlbiJ9.UopBPdCbsbHYpsiiAbsM5yi6FLAgw0uEZMheo4Y9Abg\n
maxConnections: 100\n endpoint:
http://devops-apiserver.kubesphere-devops-system:9090\nservicemesh:\n
istioPilotHost: http://istiod.istio-system.svc:8080/version\n
jaegerQueryHost: http://jaeger-query.istio-system.svc:16686\n
servicemeshPrometheusHost:
http://prometheus-k8s.kubesphere-monitoring-system.svc:9090\n
kialiQueryHost: http://kiali.istio-system:20001\nopenpitrix:\n s3:\n
endpoint: http://minio.kubesphere-system.svc:9000\n region:
us-east-1\n disableSSL: True\n forcePathStyle: True\n
accessKeyID: openpitrixminioaccesskey\n secretAccessKey:
openpitrixminiosecretkey\n bucket: app-store\nmulticluster:\n
clusterRole: none\nmonitoring:\n endpoint:
http://prometheus-operated.kubesphere-monitoring-system.svc:9090\n
enableGPUMonitoring: false\ngpu:\n kinds:\n - resourceName:
nvidia.com/gpu\n resourceType: GPU\n default: True\nnotification:\n
endpoint:
http://notification-manager-svc.kubesphere-monitoring-system.svc:19093\nlogging:\n
host:
https://opensearch-cluster-data.kubesphere-logging-system.svc:9200\n
basicAuth: True\n username: \"es\"\n password: \"Es@1234!\"\n
indexPrefix: ks-whizard-logging\nevents:\n host:
https://opensearch-cluster-data.kubesphere-logging-system.svc:9200\n
basicAuth: True\n username: \"es\"\n password: \"Es@1234!\"\n
indexPrefix: ks-whizard-events\nauditing:\n enable: true\n webhookURL:
https://kube-auditing-webhook-svc.kubesphere-logging-system.svc:6443/audit/webhook/event\n
host:
https://opensearch-cluster-data.kubesphere-logging-system.svc:9200\n
basicAuth: True\n username: \"es\"\n password: \"Es@1234!\"\n
indexPrefix: ks-whizard-auditing\nalerting:\n prometheusEndpoint:
http://prometheus-operated.kubesphere-monitoring-system.svc:9090\n
thanosRulerEndpoint:
http://thanos-ruler-operated.kubesphere-monitoring-system.svc:10902\n
thanosRuleResourceLabels:
thanos-ruler=kubesphere,role=alert-rules\n\nedgeruntime:\n endpoint:
http://edgeservice.kubeedge.svc/api/\n\nterminal:\n image:
images.jxkj.com/library/alpine:3.14\n timeout: 600\ngateway:\n
watchesPath: /var/helm-charts/watches.yaml\n repository:
images.jxkj.com/kubesphere/nginx-ingress-controller\n tag: v1.3.1\n
namespace:
kubesphere-controls-system\n"},"kind":"ConfigMap","metadata":{"annotations":{},"name":"kubesphere-config","namespace":"kubesphere-system"}}
data:
kubesphere.yaml: |
authentication:
authenticateRateLimiterMaxTries: 10
authenticateRateLimiterDuration: 10m0s
loginHistoryRetentionPeriod: 168h
maximumClockSkew: 10s
multipleLogin: True
kubectlImage: images.jxkj.com/kubesphere/kubectl:v1.22.0
jwtSecret: "XC38fVIGAXVUkbFzjyz5sdmB10U0gQ5P"
oauthOptions:
clients:
- name: kubesphere
secret: kubesphere
redirectURIs:
- '*'
ldap:
host: openldap.kubesphere-system.svc:389
managerDN: cn=admin,dc=kubesphere,dc=io
managerPassword: admin
userSearchBase: ou=Users,dc=kubesphere,dc=io
groupSearchBase: ou=Groups,dc=kubesphere,dc=io
s3:
endpoint: http://minio.kubesphere-system.svc:9000
region: us-east-1
disableSSL: True
forcePathStyle: True
accessKeyID: openpitrixminioaccesskey
secretAccessKey: openpitrixminiosecretkey
bucket: s2i-binaries
network:
enableNetworkPolicy: true
ippoolType: none
devops:
host: http://devops-jenkins.kubesphere-devops-system.svc/
username: admin
password: eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJlbWFpbCI6ImFkbWluQGt1YmVzcGhlcmUuaW8iLCJ1c2VybmFtZSI6ImFkbWluIiwidG9rZW5fdHlwZSI6InN0YXRpY190b2tlbiJ9.UopBPdCbsbHYpsiiAbsM5yi6FLAgw0uEZMheo4Y9Abg
maxConnections: 100
endpoint: http://devops-apiserver.kubesphere-devops-system:9090
servicemesh:
istioPilotHost: http://istiod.istio-system.svc:8080/version
jaegerQueryHost: http://jaeger-query.istio-system.svc:16686
servicemeshPrometheusHost: http://prometheus-k8s.kubesphere-monitoring-system.svc:9090
kialiQueryHost: http://kiali.istio-system:20001
openpitrix:
s3:
endpoint: http://minio.kubesphere-system.svc:9000
region: us-east-1
disableSSL: True
forcePathStyle: True
accessKeyID: openpitrixminioaccesskey
secretAccessKey: openpitrixminiosecretkey
bucket: app-store
multicluster:
clusterRole: none
monitoring:
endpoint: http://prometheus-operated.kubesphere-monitoring-system.svc:9090
enableGPUMonitoring: false
gpu:
kinds:
- resourceName: nvidia.com/gpu
resourceType: GPU
default: True
notification:
endpoint: http://notification-manager-svc.kubesphere-monitoring-system.svc:19093
logging:
host: https://opensearch-cluster-data.kubesphere-logging-system.svc:9200
basicAuth: True
username: "es"
password: "Es@1234!"
indexPrefix: ks-whizard-logging
events:
host: https://opensearch-cluster-data.kubesphere-logging-system.svc:9200
basicAuth: True
username: "es"
password: "Es@1234!"
indexPrefix: ks-whizard-events
auditing:
enable: true
webhookURL: https://kube-auditing-webhook-svc.kubesphere-logging-system.svc:6443/audit/webhook/event
host: https://opensearch-cluster-data.kubesphere-logging-system.svc:9200
basicAuth: True
username: "es"
password: "Es@1234!"
indexPrefix: ks-whizard-auditing
alerting:
prometheusEndpoint: http://prometheus-operated.kubesphere-monitoring-system.svc:9090
thanosRulerEndpoint: http://thanos-ruler-operated.kubesphere-monitoring-system.svc:10902
thanosRuleResourceLabels: thanos-ruler=kubesphere,role=alert-rules
edgeruntime:
endpoint: http://edgeservice.kubeedge.svc/api/
terminal:
image: images.jxkj.com/library/alpine:3.14
timeout: 600
gateway:
watchesPath: /var/helm-charts/watches.yaml
repository: images.jxkj.com/kubesphere/nginx-ingress-controller
tag: v1.3.1
namespace: kubesphere-controls-system