mirror of
https://github.com/truenas/charts.git
synced 2026-04-30 13:31:59 +08:00
1714 lines
109 KiB
JSON
1714 lines
109 KiB
JSON
{
|
|
"2.0.21": {
|
|
"healthy": true,
|
|
"supported": false,
|
|
"healthy_error": null,
|
|
"location": "/__w/charts/charts/charts/wg-easy/2.0.21",
|
|
"last_update": "2025-02-10 11:34:17",
|
|
"required_features": [
|
|
"normalize/acl",
|
|
"definitions/nodeIP",
|
|
"normalize/ixVolume"
|
|
],
|
|
"human_version": "14_2.0.21",
|
|
"version": "2.0.21",
|
|
"chart_metadata": {
|
|
"name": "wg-easy",
|
|
"description": "WG-Easy is the easiest way to install & manage WireGuard!",
|
|
"annotations": {
|
|
"title": "WG Easy"
|
|
},
|
|
"type": "application",
|
|
"version": "2.0.21",
|
|
"apiVersion": "v2",
|
|
"appVersion": "14",
|
|
"kubeVersion": ">=1.16.0-0",
|
|
"maintainers": [
|
|
{
|
|
"name": "truenas",
|
|
"url": "https://www.truenas.com/",
|
|
"email": "dev@ixsystems.com"
|
|
}
|
|
],
|
|
"dependencies": [
|
|
{
|
|
"name": "common",
|
|
"repository": "file://../../../common",
|
|
"version": "1.2.9"
|
|
}
|
|
],
|
|
"home": "https://github.com/WeeJeWel/wg-easy",
|
|
"icon": "https://media.sys.truenas.net/apps/wg-easy/icons/icon.png",
|
|
"sources": [
|
|
"https://github.com/WeeJeWel/wg-easy",
|
|
"https://github.com/truenas/charts/tree/master/charts/wg-easy"
|
|
],
|
|
"keywords": [
|
|
"wireguard",
|
|
"network",
|
|
"vpn"
|
|
]
|
|
},
|
|
"app_metadata": {
|
|
"runAsContext": [
|
|
{
|
|
"userName": "root",
|
|
"groupName": "root",
|
|
"gid": 0,
|
|
"uid": 0,
|
|
"description": "WG Easy runs as root user."
|
|
}
|
|
],
|
|
"capabilities": [
|
|
{
|
|
"name": "NET_RAW",
|
|
"description": "WG Easy is able to use raw sockets."
|
|
},
|
|
{
|
|
"name": "SYS_MODULE",
|
|
"description": "WG Easy is able to load kernel modules."
|
|
},
|
|
{
|
|
"name": "NET_ADMIN",
|
|
"description": "WG Easy is able to perform various network-related operations."
|
|
}
|
|
],
|
|
"hostMounts": []
|
|
},
|
|
"schema": {
|
|
"groups": [
|
|
{
|
|
"name": "WG-Easy Configuration",
|
|
"description": "Configure WG-Easy"
|
|
},
|
|
{
|
|
"name": "Advanced Pod Configuration",
|
|
"description": "Configure Advanced Pod Options for WG-Easy"
|
|
},
|
|
{
|
|
"name": "Network Configuration",
|
|
"description": "Configure Network for WG-Easy"
|
|
},
|
|
{
|
|
"name": "Storage Configuration",
|
|
"description": "Configure Storage for WG-Easy"
|
|
},
|
|
{
|
|
"name": "Resources Configuration",
|
|
"description": "Configure Resources for WG-Easy"
|
|
}
|
|
],
|
|
"portals": {
|
|
"web_portal": {
|
|
"protocols": [
|
|
"$kubernetes-resource_configmap_portal_protocol"
|
|
],
|
|
"host": [
|
|
"$kubernetes-resource_configmap_portal_host"
|
|
],
|
|
"ports": [
|
|
"$kubernetes-resource_configmap_portal_port"
|
|
],
|
|
"path": "$kubernetes-resource_configmap_portal_path"
|
|
}
|
|
},
|
|
"questions": [
|
|
{
|
|
"variable": "wgNetwork",
|
|
"label": "",
|
|
"group": "Network Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "udpPort",
|
|
"label": "UDP Port",
|
|
"description": "The port for the WG-Easy Wireguard service.",
|
|
"schema": {
|
|
"type": "int",
|
|
"default": 30057,
|
|
"min": 9000,
|
|
"max": 65535,
|
|
"show_if": [
|
|
[
|
|
"hostNetwork",
|
|
"=",
|
|
false
|
|
]
|
|
],
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "webPort",
|
|
"label": "Web Port",
|
|
"description": "The port for the WG-Easy Web UI.",
|
|
"schema": {
|
|
"type": "int",
|
|
"default": 30058,
|
|
"min": 9000,
|
|
"max": 65535,
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostNetwork",
|
|
"label": "Host Network",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "podOptions",
|
|
"label": "",
|
|
"group": "Advanced Pod Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "dnsConfig",
|
|
"label": "Advanced DNS Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "options",
|
|
"label": "DNS Options",
|
|
"schema": {
|
|
"type": "list",
|
|
"items": [
|
|
{
|
|
"variable": "optionsEntry",
|
|
"label": "DNS Option Entry",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "name",
|
|
"label": "Option Name",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "value",
|
|
"label": "Option Value",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "wgConfig",
|
|
"label": "",
|
|
"group": "WG-Easy Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "host",
|
|
"label": "Hostname or IP",
|
|
"description": "The public hostname or IP of your VPN server.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"$ref": [
|
|
"definitions/nodeIP"
|
|
],
|
|
"default": "192.168.0.10"
|
|
}
|
|
},
|
|
{
|
|
"variable": "externalPort",
|
|
"label": "Port for Client Configuration",
|
|
"description": "The port accessible from the clients.</br>\nThis is ONLY used on the client configuration generation in the \"Endpoint\" field.\n",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"default": 51820
|
|
}
|
|
},
|
|
{
|
|
"variable": "password",
|
|
"label": "Password for WebUI",
|
|
"description": "When set, requires a password when logging in to the Web UI.",
|
|
"schema": {
|
|
"type": "string",
|
|
"private": true,
|
|
"default": ""
|
|
}
|
|
},
|
|
{
|
|
"variable": "keepAlive",
|
|
"label": "Persistent Keep Alive",
|
|
"description": "Value in seconds to keep the \"connection\" open. If this value is 0, then connections won't be kept alive.",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"default": 0
|
|
}
|
|
},
|
|
{
|
|
"variable": "deviceName",
|
|
"label": "Device Name",
|
|
"description": "Ethernet device the wireguard traffic should be forwarded through.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": "eth0"
|
|
}
|
|
},
|
|
{
|
|
"variable": "clientMTU",
|
|
"label": "Clients MTU",
|
|
"description": "The MTU the clients will use.",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"default": 1420
|
|
}
|
|
},
|
|
{
|
|
"variable": "clientAddressRange",
|
|
"label": "Clients IP Address Range",
|
|
"description": "Clients IP address range.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": "10.8.0.x"
|
|
}
|
|
},
|
|
{
|
|
"variable": "clientDNSServer",
|
|
"label": "Clients DNS Server",
|
|
"description": "Clients DNS Server.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": "1.1.1.1"
|
|
}
|
|
},
|
|
{
|
|
"variable": "allowedIPs",
|
|
"label": "Allowed IPs",
|
|
"description": "Allowed IPs clients will use. If none provided, <0.0.0.0/0,::/0> will be used.",
|
|
"schema": {
|
|
"type": "list",
|
|
"default": [],
|
|
"items": [
|
|
{
|
|
"variable": "entry",
|
|
"label": "Allowed IP Entry",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": ""
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "additionalEnvs",
|
|
"label": "Additional Environment Variables",
|
|
"description": "Configure additional environment variables for WG-Easy.",
|
|
"schema": {
|
|
"type": "list",
|
|
"default": [],
|
|
"items": [
|
|
{
|
|
"variable": "env",
|
|
"label": "Environment Variable",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "name",
|
|
"label": "Name",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "value",
|
|
"label": "Value",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "wgStorage",
|
|
"label": "",
|
|
"group": "Storage Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "config",
|
|
"label": "WG-Easy Config Storage",
|
|
"description": "The path to store WG-Easy Configuration.",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "type",
|
|
"label": "Type",
|
|
"description": "ixVolume: Is dataset created automatically by the system.</br>\nHost Path: Is a path that already exists on the system.\n",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"immutable": true,
|
|
"default": "ixVolume",
|
|
"enum": [
|
|
{
|
|
"value": "hostPath",
|
|
"description": "Host Path (Path that already exists on the system)"
|
|
},
|
|
{
|
|
"value": "ixVolume",
|
|
"description": "ixVolume (Dataset created automatically by the system)"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "ixVolumeConfig",
|
|
"label": "ixVolume Configuration",
|
|
"description": "The configuration for the ixVolume dataset.",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"type",
|
|
"=",
|
|
"ixVolume"
|
|
]
|
|
],
|
|
"$ref": [
|
|
"normalize/ixVolume"
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "aclEnable",
|
|
"label": "Enable ACL",
|
|
"description": "Enable ACL for the dataset.",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "datasetName",
|
|
"label": "Dataset Name",
|
|
"description": "The name of the dataset to use for storage.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"immutable": true,
|
|
"hidden": true,
|
|
"default": "config"
|
|
}
|
|
},
|
|
{
|
|
"variable": "aclEntries",
|
|
"label": "ACL Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"aclEnable",
|
|
"=",
|
|
true
|
|
]
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "path",
|
|
"label": "Path",
|
|
"description": "Path to perform ACL",
|
|
"schema": {
|
|
"type": "string",
|
|
"hidden": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "entries",
|
|
"label": "ACL Entries",
|
|
"description": "ACL Entries",
|
|
"schema": {
|
|
"type": "list",
|
|
"items": [
|
|
{
|
|
"variable": "aclEntry",
|
|
"label": "ACL Entry",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "id_type",
|
|
"label": "ID Type",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "USER",
|
|
"description": "Entry is for a USER"
|
|
},
|
|
{
|
|
"value": "GROUP",
|
|
"description": "Entry is for a GROUP"
|
|
}
|
|
],
|
|
"default": "USER"
|
|
}
|
|
},
|
|
{
|
|
"variable": "id",
|
|
"label": "ID",
|
|
"description": "Make sure to check the ID value is correct and aligns with RunAs user context of the application",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"min": 0
|
|
}
|
|
},
|
|
{
|
|
"variable": "access",
|
|
"label": "Access",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "READ",
|
|
"description": "Read Access"
|
|
},
|
|
{
|
|
"value": "MODIFY",
|
|
"description": "Modify Access"
|
|
},
|
|
{
|
|
"value": "FULL_CONTROL",
|
|
"description": "FULL_CONTROL Access"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostPathConfig",
|
|
"label": "Host Path Config",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"type",
|
|
"=",
|
|
"hostPath"
|
|
]
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "aclEnable",
|
|
"label": "Enable ACL",
|
|
"description": "Enable ACL for the dataset.",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "acl",
|
|
"label": "ACL Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"aclEnable",
|
|
"=",
|
|
true
|
|
]
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "path",
|
|
"label": "Host Path",
|
|
"description": "Host Path to perform ACL",
|
|
"schema": {
|
|
"type": "hostpath",
|
|
"required": true,
|
|
"empty": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "entries",
|
|
"label": "ACL Entries",
|
|
"description": "ACL Entries",
|
|
"schema": {
|
|
"type": "list",
|
|
"items": [
|
|
{
|
|
"variable": "aclEntry",
|
|
"label": "ACL Entry",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "id_type",
|
|
"label": "ID Type",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "USER",
|
|
"description": "Entry is for a USER"
|
|
},
|
|
{
|
|
"value": "GROUP",
|
|
"description": "Entry is for a GROUP"
|
|
}
|
|
],
|
|
"default": "USER"
|
|
}
|
|
},
|
|
{
|
|
"variable": "id",
|
|
"label": "ID",
|
|
"description": "Make sure to check the ID value is correct and aligns with RunAs user context of the application",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"min": 0
|
|
}
|
|
},
|
|
{
|
|
"variable": "access",
|
|
"label": "Access",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "READ",
|
|
"description": "Read Access"
|
|
},
|
|
{
|
|
"value": "MODIFY",
|
|
"description": "Modify Access"
|
|
},
|
|
{
|
|
"value": "FULL_CONTROL",
|
|
"description": "FULL_CONTROL Access"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "options",
|
|
"label": "ACL Options",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "force",
|
|
"label": "Force Flag",
|
|
"description": "Enabling `Force` applies ACL even if the path has existing data",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
],
|
|
"$ref": [
|
|
"normalize/acl"
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostPath",
|
|
"label": "Host Path",
|
|
"description": "The host path to use for storage.",
|
|
"schema": {
|
|
"type": "hostpath",
|
|
"show_if": [
|
|
[
|
|
"aclEnable",
|
|
"=",
|
|
false
|
|
]
|
|
],
|
|
"required": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "additionalStorages",
|
|
"label": "Additional Storage",
|
|
"description": "Additional storage for WG-Easy.",
|
|
"schema": {
|
|
"type": "list",
|
|
"default": [],
|
|
"items": [
|
|
{
|
|
"variable": "storageEntry",
|
|
"label": "Storage Entry",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "type",
|
|
"label": "Type",
|
|
"description": "ixVolume: Is dataset created automatically by the system.</br>\nHost Path: Is a path that already exists on the system.</br>\nSMB Share: Is a SMB share that is mounted to a persistent volume claim.\n",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": "ixVolume",
|
|
"immutable": true,
|
|
"enum": [
|
|
{
|
|
"value": "hostPath",
|
|
"description": "Host Path (Path that already exists on the system)"
|
|
},
|
|
{
|
|
"value": "ixVolume",
|
|
"description": "ixVolume (Dataset created automatically by the system)"
|
|
},
|
|
{
|
|
"value": "smb-pv-pvc",
|
|
"description": "SMB Share (Mounts a persistent volume claim to a SMB share)"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "readOnly",
|
|
"label": "Read Only",
|
|
"description": "Mount the volume as read only.",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "mountPath",
|
|
"label": "Mount Path",
|
|
"description": "The path inside the container to mount the storage.",
|
|
"schema": {
|
|
"type": "path",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostPathConfig",
|
|
"label": "Host Path Config",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"type",
|
|
"=",
|
|
"hostPath"
|
|
]
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "aclEnable",
|
|
"label": "Enable ACL",
|
|
"description": "Enable ACL for the dataset.",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "acl",
|
|
"label": "ACL Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"aclEnable",
|
|
"=",
|
|
true
|
|
]
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "path",
|
|
"label": "Host Path",
|
|
"description": "Host Path to perform ACL",
|
|
"schema": {
|
|
"type": "hostpath",
|
|
"required": true,
|
|
"empty": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "entries",
|
|
"label": "ACL Entries",
|
|
"description": "ACL Entries",
|
|
"schema": {
|
|
"type": "list",
|
|
"items": [
|
|
{
|
|
"variable": "aclEntry",
|
|
"label": "ACL Entry",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "id_type",
|
|
"label": "ID Type",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "USER",
|
|
"description": "Entry is for a USER"
|
|
},
|
|
{
|
|
"value": "GROUP",
|
|
"description": "Entry is for a GROUP"
|
|
}
|
|
],
|
|
"default": "USER"
|
|
}
|
|
},
|
|
{
|
|
"variable": "id",
|
|
"label": "ID",
|
|
"description": "Make sure to check the ID value is correct and aligns with RunAs user context of the application",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"min": 0
|
|
}
|
|
},
|
|
{
|
|
"variable": "access",
|
|
"label": "Access",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "READ",
|
|
"description": "Read Access"
|
|
},
|
|
{
|
|
"value": "MODIFY",
|
|
"description": "Modify Access"
|
|
},
|
|
{
|
|
"value": "FULL_CONTROL",
|
|
"description": "FULL_CONTROL Access"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "options",
|
|
"label": "ACL Options",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "force",
|
|
"label": "Force Flag",
|
|
"description": "Enabling `Force` applies ACL even if the path has existing data",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
],
|
|
"$ref": [
|
|
"normalize/acl"
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostPath",
|
|
"label": "Host Path",
|
|
"description": "The host path to use for storage.",
|
|
"schema": {
|
|
"type": "hostpath",
|
|
"show_if": [
|
|
[
|
|
"aclEnable",
|
|
"=",
|
|
false
|
|
]
|
|
],
|
|
"required": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "ixVolumeConfig",
|
|
"label": "ixVolume Configuration",
|
|
"description": "The configuration for the ixVolume dataset.",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"type",
|
|
"=",
|
|
"ixVolume"
|
|
]
|
|
],
|
|
"$ref": [
|
|
"normalize/ixVolume"
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "aclEnable",
|
|
"label": "Enable ACL",
|
|
"description": "Enable ACL for the dataset.",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "datasetName",
|
|
"label": "Dataset Name",
|
|
"description": "The name of the dataset to use for storage.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"immutable": true,
|
|
"default": "storage_entry"
|
|
}
|
|
},
|
|
{
|
|
"variable": "aclEntries",
|
|
"label": "ACL Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"aclEnable",
|
|
"=",
|
|
true
|
|
]
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "path",
|
|
"label": "Path",
|
|
"description": "Path to perform ACL",
|
|
"schema": {
|
|
"type": "string",
|
|
"hidden": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "entries",
|
|
"label": "ACL Entries",
|
|
"description": "ACL Entries",
|
|
"schema": {
|
|
"type": "list",
|
|
"items": [
|
|
{
|
|
"variable": "aclEntry",
|
|
"label": "ACL Entry",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "id_type",
|
|
"label": "ID Type",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "USER",
|
|
"description": "Entry is for a USER"
|
|
},
|
|
{
|
|
"value": "GROUP",
|
|
"description": "Entry is for a GROUP"
|
|
}
|
|
],
|
|
"default": "USER"
|
|
}
|
|
},
|
|
{
|
|
"variable": "id",
|
|
"label": "ID",
|
|
"description": "Make sure to check the ID value is correct and aligns with RunAs user context of the application",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"min": 0
|
|
}
|
|
},
|
|
{
|
|
"variable": "access",
|
|
"label": "Access",
|
|
"schema": {
|
|
"type": "string",
|
|
"enum": [
|
|
{
|
|
"value": "READ",
|
|
"description": "Read Access"
|
|
},
|
|
{
|
|
"value": "MODIFY",
|
|
"description": "Modify Access"
|
|
},
|
|
{
|
|
"value": "FULL_CONTROL",
|
|
"description": "FULL_CONTROL Access"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "smbConfig",
|
|
"label": "SMB Share Configuration",
|
|
"description": "The configuration for the SMB Share.",
|
|
"schema": {
|
|
"type": "dict",
|
|
"show_if": [
|
|
[
|
|
"type",
|
|
"=",
|
|
"smb-pv-pvc"
|
|
]
|
|
],
|
|
"attrs": [
|
|
{
|
|
"variable": "server",
|
|
"label": "Server",
|
|
"description": "The server for the SMB share.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "share",
|
|
"label": "Share",
|
|
"description": "The share name for the SMB share.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "domain",
|
|
"label": "Domain (Optional)",
|
|
"description": "The domain for the SMB share.",
|
|
"schema": {
|
|
"type": "string"
|
|
}
|
|
},
|
|
{
|
|
"variable": "username",
|
|
"label": "Username",
|
|
"description": "The username for the SMB share.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "password",
|
|
"label": "Password",
|
|
"description": "The password for the SMB share.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"private": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "size",
|
|
"label": "Size (in Gi)",
|
|
"description": "The size of the volume quota.",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"min": 1,
|
|
"default": 1
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "resources",
|
|
"group": "Resources Configuration",
|
|
"label": "",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "limits",
|
|
"label": "Limits",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "cpu",
|
|
"label": "CPU",
|
|
"description": "CPU limit for WG-Easy.",
|
|
"schema": {
|
|
"type": "string",
|
|
"max_length": 6,
|
|
"valid_chars": "^(0\\.[1-9]|[1-9][0-9]*)(\\.[0-9]|m?)$",
|
|
"valid_chars_error": "Valid CPU limit formats are</br>\n- Plain Integer - eg. 1</br>\n- Float - eg. 0.5</br>\n- Milicpu - eg. 500m\n",
|
|
"default": "4000m",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "memory",
|
|
"label": "Memory",
|
|
"description": "Memory limit for WG-Easy.",
|
|
"schema": {
|
|
"type": "string",
|
|
"max_length": 12,
|
|
"valid_chars": "^[1-9][0-9]*([EPTGMK]i?|e[0-9]+)?$",
|
|
"valid_chars_error": "Valid Memory limit formats are</br>\n- Suffixed with E/P/T/G/M/K - eg. 1G</br>\n- Suffixed with Ei/Pi/Ti/Gi/Mi/Ki - eg. 1Gi</br>\n- Plain Integer in bytes - eg. 1024</br>\n- Exponent - eg. 134e6\n",
|
|
"default": "8Gi",
|
|
"required": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"app_readme": "<h1>WG-Easy</h1>\n<p><a href=\"https://github.com/WeeJeWel/wg-easy\">WG-Easy (WireGuard Easy)</a> is the easiest way to install & manage WireGuard!</p>",
|
|
"detailed_readme": "<h1>WG-Easy</h1>\n<p><a href=\"https://github.com/WeeJeWel/wg-easy\">WG-Easy (WireGuard Easy)</a> is the easiest way to install & manage WireGuard!</p>",
|
|
"changelog": null
|
|
},
|
|
"1.0.12": {
|
|
"healthy": true,
|
|
"supported": true,
|
|
"healthy_error": null,
|
|
"location": "/__w/charts/charts/charts/wg-easy/1.0.12",
|
|
"last_update": "2025-02-10 11:34:17",
|
|
"required_features": [
|
|
"validations/lockedHostPath",
|
|
"definitions/nodeIP",
|
|
"normalize/ixVolume"
|
|
],
|
|
"human_version": "7_1.0.12",
|
|
"version": "1.0.12",
|
|
"chart_metadata": {
|
|
"name": "wg-easy",
|
|
"description": "WG-Easy is the easiest way to install & manage WireGuard!",
|
|
"annotations": {
|
|
"title": "WG Easy"
|
|
},
|
|
"type": "application",
|
|
"version": "1.0.12",
|
|
"apiVersion": "v2",
|
|
"appVersion": "7",
|
|
"kubeVersion": ">=1.16.0-0",
|
|
"maintainers": [
|
|
{
|
|
"name": "truenas",
|
|
"url": "https://www.truenas.com/",
|
|
"email": "dev@ixsystems.com"
|
|
}
|
|
],
|
|
"dependencies": [
|
|
{
|
|
"name": "common",
|
|
"repository": "file://../../../common/2304.0.1",
|
|
"version": "2304.0.1"
|
|
}
|
|
],
|
|
"home": "https://github.com/WeeJeWel/wg-easy",
|
|
"icon": "https://media.sys.truenas.net/apps/wg-easy/icons/icon.png",
|
|
"sources": [
|
|
"https://github.com/WeeJeWel/wg-easy",
|
|
"https://github.com/truenas/charts/tree/master/charts/wg-easy"
|
|
],
|
|
"keywords": [
|
|
"wireguard",
|
|
"network",
|
|
"vpn"
|
|
]
|
|
},
|
|
"app_metadata": {
|
|
"runAsContext": [
|
|
{
|
|
"userName": "root",
|
|
"groupName": "root",
|
|
"gid": 0,
|
|
"uid": 0,
|
|
"description": "WG Easy runs as root user."
|
|
}
|
|
],
|
|
"capabilities": [
|
|
{
|
|
"name": "CHOWN",
|
|
"description": "WG Easy is able to chown files."
|
|
},
|
|
{
|
|
"name": "FOWNER",
|
|
"description": "WG Easy is able to bypass permission checks for it's sub-processes."
|
|
},
|
|
{
|
|
"name": "SYS_CHROOT",
|
|
"description": "WG Easy is able to use chroot."
|
|
},
|
|
{
|
|
"name": "MKNOD",
|
|
"description": "WG Easy is able to create device nodes."
|
|
},
|
|
{
|
|
"name": "DAC_OVERRIDE",
|
|
"description": "WG Easy is able to bypass permission checks."
|
|
},
|
|
{
|
|
"name": "FSETID",
|
|
"description": "WG Easy is able to set file capabilities."
|
|
},
|
|
{
|
|
"name": "KILL",
|
|
"description": "WG Easy is able to kill processes."
|
|
},
|
|
{
|
|
"name": "SETGID",
|
|
"description": "WG Easy is able to set group ID for it's sub-processes."
|
|
},
|
|
{
|
|
"name": "SETUID",
|
|
"description": "WG Easy is able to set user ID for it's sub-processes."
|
|
},
|
|
{
|
|
"name": "SETPCAP",
|
|
"description": "WG Easy is able to set process capabilities."
|
|
},
|
|
{
|
|
"name": "NET_BIND_SERVICE",
|
|
"description": "WG Easy is able to bind to privileged ports."
|
|
},
|
|
{
|
|
"name": "SETFCAP",
|
|
"description": "WG Easy is able to set file capabilities."
|
|
},
|
|
{
|
|
"name": "NET_RAW",
|
|
"description": "WG Easy is able to use raw sockets."
|
|
},
|
|
{
|
|
"name": "AUDIT_WRITE",
|
|
"description": "WG Easy is able to write to audit log."
|
|
},
|
|
{
|
|
"name": "SYS_MODULE",
|
|
"description": "WG Easy is able to load kernel modules."
|
|
},
|
|
{
|
|
"name": "NET_ADMIN",
|
|
"description": "WG Easy is able to perform various network-related operations."
|
|
}
|
|
],
|
|
"hostMounts": []
|
|
},
|
|
"schema": {
|
|
"groups": [
|
|
{
|
|
"name": "Configuration",
|
|
"description": "WG-Easy application configuration"
|
|
},
|
|
{
|
|
"name": "Storage",
|
|
"description": "Configure storage for WG-Easy"
|
|
},
|
|
{
|
|
"name": "Networking",
|
|
"description": "Networking Configuration for WG-Easy"
|
|
},
|
|
{
|
|
"name": "Advanced DNS Settings",
|
|
"description": "Configure DNS settings"
|
|
},
|
|
{
|
|
"name": "Resource Limits",
|
|
"description": "Set CPU/memory limits for Kubernetes Pod"
|
|
}
|
|
],
|
|
"portals": {
|
|
"web_portal": {
|
|
"protocols": [
|
|
"http"
|
|
],
|
|
"host": [
|
|
"$node_ip"
|
|
],
|
|
"ports": [
|
|
"$variable-webUIPort"
|
|
],
|
|
"path": "/"
|
|
}
|
|
},
|
|
"questions": [
|
|
{
|
|
"variable": "wgUDPPort",
|
|
"label": "WireGuard UDP Node Port for WG-Easy",
|
|
"group": "Networking",
|
|
"schema": {
|
|
"type": "int",
|
|
"min": 9000,
|
|
"max": 65535,
|
|
"default": 20920,
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "webUIPort",
|
|
"label": "WebUI Node Port for WG-Easy",
|
|
"group": "Networking",
|
|
"schema": {
|
|
"type": "int",
|
|
"min": 9000,
|
|
"max": 65535,
|
|
"default": 20921,
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostNetwork",
|
|
"label": "Host Network",
|
|
"group": "Networking",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "dnsConfig",
|
|
"label": "DNS Configuration",
|
|
"group": "Advanced DNS Settings",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "options",
|
|
"label": "DNS Options",
|
|
"schema": {
|
|
"type": "list",
|
|
"items": [
|
|
{
|
|
"variable": "optionsEntry",
|
|
"label": "Option Entry Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "name",
|
|
"label": "Option Name",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "value",
|
|
"label": "Option Value",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "wgeasy",
|
|
"label": "WG-Easy Configuration",
|
|
"group": "Configuration",
|
|
"schema": {
|
|
"type": "dict",
|
|
"additional_attrs": true,
|
|
"attrs": [
|
|
{
|
|
"variable": "host",
|
|
"label": "Hostname or IP",
|
|
"description": "The public hostname or IP of your VPN server.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"$ref": [
|
|
"definitions/nodeIP"
|
|
],
|
|
"default": "192.168.0.10"
|
|
}
|
|
},
|
|
{
|
|
"variable": "password",
|
|
"label": "Password for WebUI",
|
|
"description": "When set, requires a password when logging in to the Web UI.",
|
|
"schema": {
|
|
"type": "string",
|
|
"private": true,
|
|
"default": ""
|
|
}
|
|
},
|
|
{
|
|
"variable": "keep_alive",
|
|
"label": "Persistent Keep Alive",
|
|
"description": "Value in seconds to keep the \"connection\" open. If this value is 0, then connections won't be kept alive.",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"default": 0
|
|
}
|
|
},
|
|
{
|
|
"variable": "client_mtu",
|
|
"label": "Clients MTU",
|
|
"description": "The MTU the clients will use.",
|
|
"schema": {
|
|
"type": "int",
|
|
"required": true,
|
|
"default": 1420
|
|
}
|
|
},
|
|
{
|
|
"variable": "client_address_range",
|
|
"label": "Clients IP Address Range",
|
|
"description": "Clients IP address range.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": "10.8.0.x"
|
|
}
|
|
},
|
|
{
|
|
"variable": "client_dns_server",
|
|
"label": "Clients DNS Server",
|
|
"description": "Clients DNS Server.",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": "1.1.1.1"
|
|
}
|
|
},
|
|
{
|
|
"variable": "allowed_ips",
|
|
"label": "Allowed IPs",
|
|
"description": "Allowed IPs clients will use. If none provided, <0.0.0.0/0,::/0> will be used.",
|
|
"schema": {
|
|
"type": "list",
|
|
"default": [],
|
|
"items": [
|
|
{
|
|
"variable": "entry",
|
|
"label": "Allowed IP Entry",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": ""
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "environmentVariables",
|
|
"label": "WG-Easy Environment",
|
|
"group": "Configuration",
|
|
"schema": {
|
|
"type": "list",
|
|
"default": [],
|
|
"items": [
|
|
{
|
|
"variable": "environmentVariable",
|
|
"label": "Environment Variable",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "name",
|
|
"label": "Name",
|
|
"schema": {
|
|
"type": "string",
|
|
"required": true,
|
|
"default": ""
|
|
}
|
|
},
|
|
{
|
|
"variable": "value",
|
|
"label": "Value",
|
|
"schema": {
|
|
"type": "string",
|
|
"default": "",
|
|
"required": true
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "appVolumeMounts",
|
|
"label": "WG-Easy Storage",
|
|
"group": "Storage",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "config",
|
|
"label": "Configuration Volume",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "datasetName",
|
|
"label": "Configuration Volume Dataset Name",
|
|
"schema": {
|
|
"type": "string",
|
|
"hidden": true,
|
|
"$ref": [
|
|
"normalize/ixVolume"
|
|
],
|
|
"show_if": [
|
|
[
|
|
"hostPathEnabled",
|
|
"=",
|
|
false
|
|
]
|
|
],
|
|
"default": "ix-wg-easy_config",
|
|
"editable": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "mountPath",
|
|
"label": "Configuration Mount Path",
|
|
"description": "Path where the volume will be mounted inside the pod",
|
|
"schema": {
|
|
"type": "path",
|
|
"hidden": true,
|
|
"editable": true,
|
|
"default": "/etc/wireguard"
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostPathEnabled",
|
|
"label": "Enable Custom Host Path for WG-Easy Configuration Volume",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false,
|
|
"show_subquestions_if": true,
|
|
"subquestions": [
|
|
{
|
|
"variable": "hostPath",
|
|
"label": "Host Path for WG-Easy Configuration Volume",
|
|
"schema": {
|
|
"type": "hostpath",
|
|
"required": true,
|
|
"immutable": true,
|
|
"$ref": [
|
|
"validations/lockedHostPath"
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "extraAppVolumeMounts",
|
|
"label": "Extra Host Path Volumes",
|
|
"group": "Storage",
|
|
"schema": {
|
|
"type": "list",
|
|
"items": [
|
|
{
|
|
"variable": "extraAppVolume",
|
|
"label": "Host Path Volume",
|
|
"description": "Add an extra host path volume for WG-Easy application",
|
|
"schema": {
|
|
"type": "dict",
|
|
"attrs": [
|
|
{
|
|
"variable": "mountPath",
|
|
"label": "Mount Path in Pod",
|
|
"description": "Path where the volume will be mounted inside the pod",
|
|
"schema": {
|
|
"type": "path",
|
|
"required": true
|
|
}
|
|
},
|
|
{
|
|
"variable": "hostPath",
|
|
"label": "Host Path",
|
|
"description": "Host path",
|
|
"schema": {
|
|
"type": "hostpath",
|
|
"required": true,
|
|
"$ref": [
|
|
"validations/lockedHostPath"
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"variable": "enableResourceLimits",
|
|
"label": "Enable Pod resource limits",
|
|
"group": "Resource Limits",
|
|
"schema": {
|
|
"type": "boolean",
|
|
"default": false
|
|
}
|
|
},
|
|
{
|
|
"variable": "cpuLimit",
|
|
"label": "CPU Limit resource limits",
|
|
"description": "CPU resource limit allow plain integer values with suffix m(milli) e.g 1000m, 100.",
|
|
"group": "Resource Limits",
|
|
"schema": {
|
|
"type": "string",
|
|
"show_if": [
|
|
[
|
|
"enableResourceLimits",
|
|
"=",
|
|
true
|
|
]
|
|
],
|
|
"valid_chars": "^\\d+(?:\\.\\d+(?!.*m$)|m?$)",
|
|
"default": "4000m"
|
|
}
|
|
},
|
|
{
|
|
"variable": "memLimit",
|
|
"label": "Memory Limit",
|
|
"group": "Resource Limits",
|
|
"description": "Memory limits is specified by number of bytes. Followed by quantity suffix like E,P,T,G,M,k and Ei,Pi,Ti,Mi,Gi,Ki can also be used. e.g 129e6, 129M, 128974848000m, 123Mi",
|
|
"schema": {
|
|
"type": "string",
|
|
"show_if": [
|
|
[
|
|
"enableResourceLimits",
|
|
"=",
|
|
true
|
|
]
|
|
],
|
|
"valid_chars": "^([+-]?[0-9.]+)([eEinumkKMGTP]*[-+]?[0-9]*)$",
|
|
"default": "8Gi"
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"app_readme": "<h1>WG-Easy</h1>\n<p><a href=\"https://github.com/WeeJeWel/wg-easy\">WG-Easy (WireGuard Easy)</a> is the easiest way to install & manage WireGuard!</p>",
|
|
"detailed_readme": "<h1>WG-Easy</h1>\n<p><a href=\"https://github.com/WeeJeWel/wg-easy\">WG-Easy (WireGuard Easy)</a> is the easiest way to install & manage WireGuard!</p>",
|
|
"changelog": null
|
|
}
|
|
} |