helm show values temporal/temporal
Jump to navigation
Jump to search
helm show values temporal/temporal (trimmed)
additionalEnvSecretName
Values[edit]
nameOverride: ""
fullnameOverride: ""
# Chart debug mode
# (eg. disable helm hook delete policy)
debug: false
imagePullSecrets: []
# Custom Service account management
serviceAccount:
# Whether to create service account or not
create: false
# Name of the service account.
# Uses `name` if set.
# If `create: true` defaults to temporal.fullname, otherwise uses the namespace's default serviceAccount.
name:
# extraAnnotations would let users add additional annotations
extraAnnotations:
additionalAnnotations: {}
additionalLabels: {}
server:
enabled: true
image:
repository: temporalio/server
tag: 1.29.1
pullPolicy: IfNotPresent
# Use entrypoint script that detects dockerize and processes config if available
# Set to false to use the image's default entrypoint
useEntrypointScript: false
# Whether to set TEMPORAL_SERVER_CONFIG_FILE_PATH environment variable
# Must be true if useEntrypointScript is false and server version is >= 1.30
# Set to false when using images that handle config path internally (e.g., with useEntrypointScript or custom entrypoints)
setConfigFilePath: false
# Control which config ConfigMaps to mount
# Options: "both", "dockerize", "sprig"
# - "both": mounts both ConfigMaps (requires useEntrypointScript: true), auto-detects which to use based on dockerize presence. setConfigFilePath must be false
# - "dockerize": mounts only dockerize config (DEPRECATED - for old images with dockerize, use temporalio/server:1.29.x or earlier)
# - "sprig": mounts only sprig config (RECOMMENDED - for new images temporalio/server:1.30.0+, uses built-in sprig templating) setConfigFilePath must be true
configMapsToMount: "dockerize"
# Global default settings (can be overridden per service)
replicaCount: 1
metrics:
# Annotate pods directly with Prometheus annotations.
# Use this if you installed Prometheus from a Helm chart.
annotations:
enabled: true
# Additional tags to be added to Prometheus metrics
tags: {}
# Tags to be excluded in Prometheus metrics
excludeTags: {}
prefix:
# Enable Prometheus ServiceMonitor
# Use this if you installed the Prometheus Operator (https://github.com/coreos/prometheus-operator).
serviceMonitor:
enabled: false
interval: 30s
# Set additional lables to all the ServiceMonitor resources
additionalLabels: {}
# label1: value1
# label2: value2
# Set Prometheus metric_relabel_configs via ServiceMonitor
# Use metricRelabelings to adjust metric and label names as needed
metricRelabelings: []
# - action: replace
# sourceLabels:
# - exported_namespace
# targetLabel: temporal_namespace
# - action: replace
# regex: service_errors_(.+)
# replacement: ${1}
# sourceLabels:
# - __name__
# targetLabel: temporal_error_kind
# - action: replace
# regex: service_errors_.+
# replacement: temporal_service_errors
# sourceLabels:
# - __name__
# targetLabel: __name__
prometheus:
timerType: histogram
deploymentLabels: {}
deploymentAnnotations: {}
podAnnotations: {}
podLabels: {}
secretLabels: {}
secretAnnotations: {}
resources: {}
# We usually recommend not to specify default resources and to leave this as a conscious
# choice for the user. This also increases chances charts run on environments with little
# resources, such as Minikube. If you do want to specify resources, uncomment the following
# lines, adjust them as necessary, and remove the curly braces after 'resources:'.
# limits:
# cpu: 100m
# memory: 128Mi
# requests:
# cpu: 100m
# memory: 128Mi
nodeSelector: {}
tolerations: []
affinity: {}
additionalVolumes: []
additionalVolumeMounts: []
additionalEnv: []
# for sidecar containers, add containers here with restartPolicy: Always
additionalInitContainers: []
securityContext:
fsGroup: 1000
runAsUser: 1000
config:
logLevel: "debug,info"
# IMPORTANT: This value cannot be changed, once it's set.
numHistoryShards: 512
# Define your TLS configuration here. See https://docs.temporal.io/references/configuration#tls
# for configuration options. You must also use `server.additionalVolumeMounts` and `server.additionalVolumes`
# to mount certificates (from Secret or ConfigMap etc) to the path you use below.
# tls:
# internode:
# server:
# certFile: /path/to/internode/cert/file
# keyFile: /path/to/internode/key/file
# requireClientAuth: true
# clientCaFiles:
# - /path/to/internode/serverCa
# client:
# serverName: dnsSanInInternodeCertificate
# rootCaFiles:
# - /path/to/internode/serverCa
# frontend:
# server:
# certFile: /path/to/frontend/cert/file
# keyFile: /path/to/frontend/key/file
# requireClientAuth: true
# clientCaFiles:
# - /path/to/internode/serverCa
# - /path/to/sdkClientPool1/ca
# - /path/to/sdkClientPool2/ca
# client:
# serverName: dnsSanInFrontendCertificate
# rootCaFiles:
# - /path/to/frontend/serverCa
# Define your Authorizer and ClaimMapper configuration here. See https://docs.temporal.io/self-hosted-guide/security#authorization
# authorization:
# jwtKeyProvider:
# keySourceURIs:
# - http://localhost:/jwks.json
# refreshInterval: 1m
# permissionsClaimName: permissions
# authorizer: default
# claimMapper: default
persistence:
defaultStore: default
additionalStores: {}
default:
driver: "cassandra"
cassandra:
hosts: []
# port: 9042
keyspace: "temporal"
user: "user"
password: "password"
existingSecret: ""
replicationFactor: 1
# datacenter: "us-east-1a"
# maxQPS: 1000
# maxConns: 2
consistency:
default:
consistency: "local_quorum"
serialConsistency: "local_serial"
sql:
driver: "mysql8"
host: "mysql"
port: 3306
database: "temporal"
user: "temporal"
password: "temporal"
existingSecret: ""
secretName: ""
maxConns: 20
maxIdleConns: 20
maxConnLifetime: "1h"
# connectAttributes:
# tx_isolation: 'READ-COMMITTED'
visibility:
driver: "cassandra"
cassandra:
hosts: []
# port: 9042
keyspace: "temporal_visibility"
user: "user"
password: "password"
existingSecret: ""
# datacenter: "us-east-1a"
# maxQPS: 1000
# maxConns: 2
replicationFactor: 1
consistency:
default:
consistency: "local_quorum"
serialConsistency: "local_serial"
sql:
driver: "mysql8"
host: "mysql"
port: 3306
database: "temporal_visibility"
user: "temporal"
password: "temporal"
existingSecret: ""
secretName: ""
maxConns: 20
maxIdleConns: 20
maxConnLifetime: "1h"
# connectAttributes:
# tx_isolation: 'READ-COMMITTED'
namespaces:
# Enable this to create namespaces
create: false
namespace:
- name: default
retention: 3d
frontend:
service:
# Evaluated as template
annotations: {}
type: ClusterIP
port: 7233
appProtocol: tcp
membershipPort: 6933
membershipAppProtocol: tcp
httpPort: 7243
httpAppProtocol: http
ingress:
enabled: false
# className:
annotations: {}
# kubernetes.io/ingress.class: traefik
# ingress.kubernetes.io/ssl-redirect: "false"
# traefik.frontend.rule.type: PathPrefix
hosts:
- "/"
# - "domain.com/xyz"
# - "domain.com"
tls: []
# - secretName: chart-example-tls
# hosts:
# - chart-example.local
metrics:
annotations:
enabled: true
serviceMonitor: {}
# enabled: false
prometheus: {}
# timerType: histogram
deploymentLabels: {}
deploymentAnnotations: {}
podAnnotations: {}
podLabels: {}
resources: {}
nodeSelector: {}
tolerations: []
affinity: {}
additionalEnv: []
containerSecurityContext: {}
topologySpreadConstraints: []
podDisruptionBudget: {}
internalFrontend:
# Enable this to create internal-frontend
enabled: false
service:
# Evaluated as template
annotations: {}
type: ClusterIP
port: 7236
appProtocol: tcp
membershipPort: 6936
membershipAppProtocol: tcp
httpPort: 7246
httpAppProtocol: http
metrics:
annotations:
enabled: true
serviceMonitor: {}
# enabled: false
prometheus: {}
# timerType: histogram
deploymentLabels: {}
deploymentAnnotations: {}
podAnnotations: {}
podLabels: {}
resources: {}
nodeSelector: {}
tolerations: []
affinity: {}
additionalEnv: []
containerSecurityContext: {}
topologySpreadConstraints: []
podDisruptionBudget: {}
history:
service:
# type: ClusterIP
port: 7234
appProtocol: tcp
membershipPort: 6934
membershipAppProtocol: tcp
metrics:
annotations:
enabled: true
serviceMonitor: {}
# enabled: false
prometheus: {}
# timerType: histogram
deploymentLabels: {}
deploymentAnnotations: {}
podAnnotations: {}
podLabels: {}
resources: {}
nodeSelector: {}
tolerations: []
affinity: {}
additionalEnv: []
additionalEnvSecretName: ""
containerSecurityContext: {}
topologySpreadConstraints: []
podDisruptionBudget: {}
matching:
service:
# type: ClusterIP
port: 7235
appProtocol: tcp
membershipPort: 6935
membershipAppProtocol: tcp
metrics:
annotations:
enabled: false
serviceMonitor: {}
# enabled: false
prometheus: {}
# timerType: histogram
deploymentLabels: {}
deploymentAnnotations: {}
podAnnotations: {}
podLabels: {}
resources: {}
nodeSelector: {}
tolerations: []
affinity: {}
additionalEnv: []
containerSecurityContext: {}
topologySpreadConstraints: []
podDisruptionBudget: {}
worker:
service:
# type: ClusterIP
port: 7239
appProtocol: tcp
membershipPort: 6939
membershipAppProtocol: tcp
metrics:
annotations:
enabled: true
serviceMonitor: {}
# enabled: false
prometheus: {}
# timerType: histogram
deploymentLabels: {}
deploymentAnnotations: {}
podAnnotations: {}
podLabels: {}
resources: {}
nodeSelector: {}
tolerations: []
affinity: {}
additionalEnv: []
containerSecurityContext: {}
topologySpreadConstraints: []
podDisruptionBudget: {}
admintools:
enabled: true
image:
repository: temporalio/admin-tools
tag: "1.29.1-tctl-1.18.4-cli-1.5.0"
pullPolicy: IfNotPresent
service:
type: ClusterIP
port: 22
annotations: {}
deploymentLabels: {}
deploymentAnnotations: {}
podLabels: {}
podAnnotations: {}
nodeSelector: {}
tolerations: []
affinity: {}
additionalVolumes: []
additionalVolumeMounts: []
additionalEnv: []
additionalEnvSecretName: ""
# for sidecar containers, add containers here with restartPolicy: Always
additionalInitContainers: []
resources: {}
containerSecurityContext: {}
securityContext: {}
podDisruptionBudget: {}
web:
# additionalInitContainers: []
enabled: true
replicaCount: 1
image:
repository: temporalio/ui
tag: 2.44.0
pullPolicy: IfNotPresent
service:
# set type to NodePort if access to web needs access from outside the cluster
# for more info see https://kubernetes.io/docs/concepts/services-networking/service/#publishing-services-service-types
type: ClusterIP
# The below clusterIP setting can be set to "None" to make the temporal-web service headless.
# Note that this requires the web.service.type to be the default ClusterIP value.
# clusterIP:
port: 8080
appProtocol: http
annotations: {}
# loadBalancerIP:
ingress:
enabled: false
# className:
annotations: {}
# kubernetes.io/ingress.class: traefik
# ingress.kubernetes.io/ssl-redirect: "false"
# traefik.frontend.rule.type: PathPrefix
hosts:
- "/"
# - "domain.com/xyz"
# - "domain.com"
tls: []
# - secretName: chart-example-tls
# hosts:
# - chart-example.local
deploymentLabels: {}
deploymentAnnotations: {}
podAnnotations: {}
podLabels: {}
resources: {}
# We usually recommend not to specify default resources and to leave this as a conscious
# choice for the user. This also increases chances charts run on environments with little
# resources, such as Minikube. If you do want to specify resources, uncomment the following
# lines, adjust them as necessary, and remove the curly braces after 'resources:'.
# limits:
# cpu: 100m
# memory: 128Mi
# requests:
# cpu: 100m
# memory: 128Mi
nodeSelector: {}
tolerations: []
affinity: {}
additionalVolumes: []
additionalVolumeMounts: []
# Adjust Web UI config with environment variables:
# https://docs.temporal.io/references/web-ui-environment-variables
additionalEnv: []
additionalEnvSecretName: ""
containerSecurityContext: {}
securityContext: {}
topologySpreadConstraints: []
podDisruptionBudget: {}
schema:
createDatabase:
enabled: true
setup:
enabled: true
backoffLimit: 100
update:
enabled: true
backoffLimit: 100
podAnnotations: {}
podLabels: {}
resources: {}
containerSecurityContext: {}
securityContext: {}
elasticsearch:
enabled: true
replicas: 3
persistence:
enabled: false
imageTag: 7.17.3
host: elasticsearch-master-headless
scheme: http
port: 9200
version: "v7"
logLevel: "error"
username: ""
password: ""
visibilityIndex: "temporal_visibility_v1_dev"
prometheus:
enabled: true
nodeExporter:
enabled: false
grafana:
enabled: true
replicas: 1
testFramework:
enabled: false
rbac:
create: false
pspEnabled: false
namespaced: true
dashboardProviders:
dashboardproviders.yaml:
apiVersion: 1
providers:
- name: "default"
orgId: 1
folder: ""
type: file
disableDeletion: false
editable: true
options:
path: /var/lib/grafana/dashboards/default
datasources:
datasources.yaml:
apiVersion: 1
datasources:
- name: TemporalMetrics
type: prometheus
url: http://{{ .Release.Name }}-prometheus-server
access: proxy
isDefault: true
dashboards:
default:
server-general-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/server/server-general.json
datasource: TemporalMetrics
sdk-general-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/sdk/sdk-general.json
datasource: TemporalMetrics
misc-advanced-visibility-specific-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/misc/advanced-visibility-specific.json
datasource: TemporalMetrics
misc-clustermonitoring-kubernetes-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/misc/clustermonitoring-kubernetes.json
datasource: TemporalMetrics
misc-frontend-service-specific-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/misc/frontend-service-specific.json
datasource: TemporalMetrics
misc-history-service-specific-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/misc/history-service-specific.json
datasource: TemporalMetrics
misc-matching-service-specific-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/misc/matching-service-specific.json
datasource: TemporalMetrics
misc-worker-service-specific-github:
url: https://raw.githubusercontent.com/temporalio/dashboards/helm/misc/worker-service-specific.json
datasource: TemporalMetrics
cassandra:
enabled: true
persistence:
enabled: false
image:
repo: cassandra
tag: 3.11.3
pullPolicy: IfNotPresent
config:
cluster_size: 3
ports:
cql: 9042
num_tokens: 4
max_heap_size: 512M
heap_new_size: 128M
seed_size: 0
service:
type: ClusterIP
mysql:
enabled: false
helm show values
See also[edit]
helm install temporal, show values, temporal-admintools,kind: ExternalSecret,server.config.persistence.datastores,history:,temporal-,temporalio/, temporalio/temporal, temporalio/server, /etc/temporal/,server:,web:, Configmaps- Temporal Server (7233 GRPC),
temporal server, Temporal Worker, Temporal Server Dashboards, OIDC, TLS,/etc/temporal/certs/, dynamic configuration reference,frontend.rps,DynamicConfig:, versions - Temporal TLS:
server.config.tls [ .internode | .frontend ], Ports,web.additionalEnvfor Temporal UI,requireClientAuth(mTLS),/etc/temporal/certs/,TEMPORAL_TLS_vars:TEMPORAL_TLS
Advertising: