Skip to content
This repository has been archived by the owner on Mar 7, 2023. It is now read-only.

Feature request: Ready to go helm chart or image #123

Open
SixFive7 opened this issue Mar 25, 2022 · 2 comments
Open

Feature request: Ready to go helm chart or image #123

SixFive7 opened this issue Mar 25, 2022 · 2 comments

Comments

@SixFive7
Copy link

It would be nice to have ready to go deployment .yaml, helm chart or image that we can start to have theila up and running on a Talos cluster providing an interface to its host cluster.
Maybe with a simple guide to explain how to install and where to put secrets for Talos newcomers to get up and running and visually explore their new cluster.

@Unix4ever
Copy link
Member

That's a great idea, though I'm not sure I want to recommend running Theila in the cluster, mainly due to lack of proper authorization methods.
It works for me perfectly on my home cluster, but it's a bit scary as it basically gives all keys to the cluster without any restrictions.

Need to figure out something to restrict access.

@SixFive7
Copy link
Author

I'd indeed recommend combining it with something like Cilium's network access policies to restrict access even internally in the cluster and only allow access proxied through the (properly admin authorized) Kubetnetes API.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants