Name: cilium-config Namespace: kube-system Labels: app.kubernetes.io/managed-by=Helm Annotations: meta.helm.sh/release-name: cilium meta.helm.sh/release-namespace: kube-system Data ==== auto-direct-node-routes: ---- false debug-verbose: ---- enable-ipv6: ---- false monitor-aggregation: ---- medium set-cilium-node-taints: ---- true tofqdns-endpoint-max-ip-per-hostname: ---- 50 tunnel-port: ---- 6082 vtep-endpoint: ---- write-cni-conf-when-ready: ---- /host/etc/cni/net.d/05-cilium.conflist bpf-lb-external-clusterip: ---- false cluster-name: ---- default ipam-cilium-node-update-rate: ---- 15s synchronize-k8s-nodes: ---- true tofqdns-enable-dns-compression: ---- true cluster-pool-ipv4-mask-size: ---- 24 enable-l2-neigh-discovery: ---- true k8s-client-qps: ---- 5 mesh-auth-queue-size: ---- 1024 bpf-map-dynamic-size-ratio: ---- 0.0025 bpf-root: ---- /sys/fs/bpf cgroup-root: ---- /run/cilium/cgroupv2 enable-ipv6-big-tcp: ---- false enable-vtep: ---- false enable-well-known-identities: ---- false mesh-auth-gc-interval: ---- 5m0s proxy-max-requests-per-connection: ---- 0 bpf-lb-sock: ---- false cluster-id: ---- 0 enable-bpf-clock-probe: ---- false enable-ipv4-masquerade: ---- true ipam: ---- cluster-pool proxy-connect-timeout: ---- 2 cilium-endpoint-gc-interval: ---- 5m0s enable-health-check-nodeport: ---- true enable-remote-node-identity: ---- true external-envoy-proxy: ---- false routing-mode: ---- tunnel tofqdns-idle-connection-grace-period: ---- 0s enable-ipv4: ---- true enable-sctp: ---- false mesh-auth-rotated-identities-queue-size: ---- 1024 skip-cnp-status-startup-clean: ---- false agent-not-ready-taint-key: ---- node.cilium.io/agent-not-ready enable-bgp-control-plane: ---- false identity-gc-interval: ---- 15m0s nodes-gc-interval: ---- 5m0s set-cilium-is-up-condition: ---- true arping-refresh-period: ---- 30s bpf-lb-map-max: ---- 65536 bpf-policy-map-max: ---- 16384 enable-ipv4-big-tcp: ---- false enable-policy: ---- default proxy-prometheus-port: ---- 9964 remove-cilium-node-taints: ---- true cnp-node-status-gc-interval: ---- 0s enable-auto-protect-node-port-range: ---- true enable-ipv6-masquerade: ---- true enable-local-redirect-policy: ---- false identity-allocation-mode: ---- crd mesh-auth-enabled: ---- true vtep-mask: ---- cni-log-file: ---- /var/run/cilium/cilium-cni.log disable-cnp-status-updates: ---- true egress-gateway-reconciliation-trigger-interval: ---- 1s unmanaged-pod-watcher-interval: ---- 15 enable-k8s-networkpolicy: ---- true enable-xt-socket-fallback: ---- true debug: ---- false enable-k8s-terminating-endpoint: ---- true identity-heartbeat-timeout: ---- 30m0s operator-api-serve-addr: ---- 127.0.0.1:9234 preallocate-bpf-maps: ---- false procfs: ---- /host/proc vtep-cidr: ---- cluster-pool-ipv4-cidr: ---- 172.24.0.0/16 dnsproxy-enable-transparent-mode: ---- true kube-proxy-replacement: ---- disabled node-port-bind-protection: ---- true tunnel-protocol: ---- geneve enable-endpoint-health-checking: ---- true enable-l7-proxy: ---- true enable-svc-source-range-check: ---- true install-no-conntrack-iptables-rules: ---- false monitor-aggregation-interval: ---- 5s proxy-max-connection-duration-seconds: ---- 0 tofqdns-dns-reject-response-code: ---- refused tofqdns-proxy-response-max-delay: ---- 100ms cni-exclusive: ---- true custom-cni-conf: ---- false enable-health-checking: ---- true k8s-client-burst: ---- 10 monitor-aggregation-flags: ---- all sidecar-istio-proxy-image: ---- cilium/istio_proxy tofqdns-max-deferred-connection-deletes: ---- 10000 vtep-mac: ---- BinaryData ==== Events: