Kubeintel Logo

Kubeintel

  • Search
  • Pods
  • Deployments
  • Statefulsets
  • jobJobs
  • Daemonsets
  • Namespaces
  • Nodes
  • Services
  • Configmaps
  1. Home
  2. /
  3. namespaces
  4. /
  5. kube-system
  6. /
  7. configmaps
  8. /
  9. cilium-config
Summary
Metadata
Data
ConfigMap Details

Name: cilium-config

Namespace: kube-system

Kubectl Commands
  • View
  • Describe
  • Delete
Data
KeyValue
agent-not-ready-taint-key
node.cilium.io/agent-not-ready
annotate-k8s-node
true
arping-refresh-period
30s
auto-direct-node-routes
true
bpf-lb-external-clusterip
false
bpf-lb-map-max
65536
bpf-lb-proto-diff
true
bpf-lb-sock
false
bpf-map-dynamic-size-ratio
0.0025
bpf-policy-map-max
16384
bpf-root
/sys/fs/bpf
cgroup-root
/run/cilium/cgroupv2
cilium-endpoint-gc-interval
5m0s
cluster-id
0
cluster-name
default
cluster-pool-ipv4-mask-size
25
cni-chaining-mode
portmap
cni-exclusive
false
cni-log-file
/var/run/cilium/cilium-cni.log
custom-cni-conf
false
debug
false
debug-verbose
disable-cnp-status-updates
true
dnsproxy-socket-linger-timeout
10
egress-gateway-reconciliation-trigger-interval
1s
enable-auto-protect-node-port-range
true
enable-bgp-control-plane
false
enable-bpf-clock-probe
false
enable-endpoint-health-checking
true
enable-external-ips
false
enable-health-check-nodeport
false
enable-health-checking
true
enable-host-legacy-routing
true
enable-host-port
false
enable-hubble
true
enable-ipv4
true
enable-ipv4-big-tcp
false
enable-ipv4-masquerade
true
enable-ipv6
false
enable-ipv6-big-tcp
false
enable-ipv6-masquerade
true
enable-k8s-networkpolicy
true
enable-k8s-terminating-endpoint
true
enable-l2-neigh-discovery
true
enable-l7-proxy
true
enable-local-redirect-policy
false
enable-node-port
false
enable-policy
default
enable-remote-node-identity
true
enable-sctp
false
enable-session-affinity
true
enable-svc-source-range-check
true
enable-vtep
false
enable-well-known-identities
true
enable-xt-socket-fallback
true
external-envoy-proxy
false
hubble-disable-tls
false
hubble-listen-address
:4244
hubble-socket-path
/var/run/cilium/hubble.sock
hubble-tls-cert-file
/var/lib/cilium/tls/hubble/server.crt
hubble-tls-client-ca-files
/var/lib/cilium/tls/hubble/client-ca.crt
hubble-tls-key-file
/var/lib/cilium/tls/hubble/server.key
identity-allocation-mode
crd
identity-gc-interval
5m
identity-heartbeat-timeout
15m
install-no-conntrack-iptables-rules
false
ipam
cluster-pool
ipam-cilium-node-update-rate
15s
k8s-client-burst
10
k8s-client-qps
5
kube-proxy-replacement
partial
kube-proxy-replacement-healthz-bind-address
mesh-auth-enabled
true
mesh-auth-gc-interval
5m0s
mesh-auth-queue-size
1024
mesh-auth-rotated-identities-queue-size
1024
metrics
+cilium_bpf_map_pressure
monitor-aggregation
medium
monitor-aggregation-flags
all
monitor-aggregation-interval
5s
node-port-bind-protection
true
nodes-gc-interval
0
operator-api-serve-addr
127.0.0.1:9234
preallocate-bpf-maps
false
procfs
/host/proc
prometheus-serve-addr
:9090
proxy-connect-timeout
2
proxy-idle-timeout-seconds
60
proxy-max-connection-duration-seconds
0
proxy-max-requests-per-connection
0
proxy-xff-num-trusted-hops-egress
0
proxy-xff-num-trusted-hops-ingress
0
remove-cilium-node-taints
true
routing-mode
native
set-cilium-is-up-condition
true
set-cilium-node-taints
true
sidecar-istio-proxy-image
cilium/istio_proxy
skip-cnp-status-startup-clean
false
synchronize-k8s-nodes
true
tofqdns-dns-reject-response-code
refused
tofqdns-enable-dns-compression
true
tofqdns-endpoint-max-ip-per-hostname
50
tofqdns-idle-connection-grace-period
0s
tofqdns-max-deferred-connection-deletes
10000
tofqdns-proxy-response-max-delay
100ms
unmanaged-pod-watcher-interval
15
vtep-cidr
vtep-endpoint
vtep-mac
vtep-mask
write-cni-conf-when-ready
/host/etc/cni/net.d/05-cilium.conflist
Metadata

Creation Time: 2024-07-01T18:52:38Z

Labels:

  • c3.doks.digitalocean.com/component: cilium...
  • c3.doks.digitalocean.com/plane: data...
  • c3.doks.digitalocean.com/variant: legacy...
  • doks.digitalocean.com/managed: true...
Kubeintel ©2024