2020-01-07 11:26:05 +01:00
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: TraefikService
|
|
|
|
metadata:
|
|
|
|
name: wrr2
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
weighted:
|
|
|
|
services:
|
|
|
|
- name: s1
|
|
|
|
weight: 1
|
|
|
|
port: 80
|
|
|
|
# Optional, as it is the default value
|
|
|
|
kind: Service
|
|
|
|
- name: s3
|
|
|
|
weight: 1
|
|
|
|
port: 80
|
|
|
|
|
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: TraefikService
|
|
|
|
metadata:
|
|
|
|
name: wrr1
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
weighted:
|
|
|
|
services:
|
|
|
|
- name: wrr2
|
|
|
|
kind: TraefikService
|
|
|
|
weight: 1
|
|
|
|
- name: s3
|
|
|
|
weight: 1
|
|
|
|
port: 80
|
|
|
|
|
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: TraefikService
|
|
|
|
metadata:
|
|
|
|
name: mirror1
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
mirroring:
|
|
|
|
name: s1
|
|
|
|
port: 80
|
|
|
|
mirrors:
|
|
|
|
- name: s3
|
|
|
|
percent: 20
|
|
|
|
port: 80
|
|
|
|
- name: mirror2
|
|
|
|
kind: TraefikService
|
|
|
|
percent: 20
|
|
|
|
|
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: TraefikService
|
|
|
|
metadata:
|
|
|
|
name: mirror2
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
mirroring:
|
|
|
|
name: wrr2
|
|
|
|
kind: TraefikService
|
2021-03-03 15:32:04 +01:00
|
|
|
# Optional
|
|
|
|
maxBodySize: 2000000000
|
2020-01-07 11:26:05 +01:00
|
|
|
mirrors:
|
|
|
|
- name: s2
|
|
|
|
# Optional, as it is the default value
|
|
|
|
kind: Service
|
|
|
|
percent: 20
|
|
|
|
port: 80
|
|
|
|
|
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: IngressRoute
|
|
|
|
metadata:
|
|
|
|
name: ingressroute
|
2021-03-03 15:32:04 +01:00
|
|
|
|
2020-01-07 11:26:05 +01:00
|
|
|
spec:
|
|
|
|
entryPoints:
|
|
|
|
- web
|
2020-01-23 16:36:08 +01:00
|
|
|
- websecure
|
2020-01-07 11:26:05 +01:00
|
|
|
routes:
|
2020-03-13 22:50:05 +01:00
|
|
|
- match: Host(`example.net`) && PathPrefix(`/bar`)
|
2020-01-07 11:26:05 +01:00
|
|
|
kind: Rule
|
|
|
|
priority: 12
|
|
|
|
# defining several services is possible and allowed, but for now the servers of
|
|
|
|
# all the services (for a given route) get merged altogether under the same
|
|
|
|
# load-balancing strategy.
|
|
|
|
services:
|
|
|
|
- name: s1
|
|
|
|
port: 80
|
|
|
|
# strategy defines the load balancing strategy between the servers. It defaults
|
|
|
|
# to Round Robin, and for now only Round Robin is supported anyway.
|
|
|
|
strategy: RoundRobin
|
|
|
|
- name: s2
|
|
|
|
port: 433
|
2021-02-01 13:58:03 +01:00
|
|
|
serversTransport: mytransport
|
2020-01-07 11:26:05 +01:00
|
|
|
- match: PathPrefix(`/misc`)
|
2021-03-03 15:32:04 +01:00
|
|
|
kind: Rule
|
2020-01-07 11:26:05 +01:00
|
|
|
services:
|
|
|
|
- name: s3
|
|
|
|
port: 80
|
|
|
|
middlewares:
|
|
|
|
- name: stripprefix
|
|
|
|
- name: addprefix
|
|
|
|
- match: PathPrefix(`/misc`)
|
2021-03-03 15:32:04 +01:00
|
|
|
kind: Rule
|
2020-01-07 11:26:05 +01:00
|
|
|
services:
|
|
|
|
- name: s3
|
|
|
|
# Optional, as it is the default value
|
|
|
|
kind: Service
|
|
|
|
port: 8443
|
|
|
|
# scheme allow to override the scheme for the service. (ex: https or h2c)
|
|
|
|
scheme: https
|
|
|
|
- match: PathPrefix(`/lb`)
|
2021-03-03 15:32:04 +01:00
|
|
|
kind: Rule
|
2020-01-07 11:26:05 +01:00
|
|
|
services:
|
|
|
|
- name: wrr1
|
|
|
|
kind: TraefikService
|
|
|
|
- match: PathPrefix(`/mirrored`)
|
2021-03-03 15:32:04 +01:00
|
|
|
kind: Rule
|
2020-01-07 11:26:05 +01:00
|
|
|
services:
|
|
|
|
- name: mirror1
|
|
|
|
kind: TraefikService
|
|
|
|
# use an empty tls object for TLS with Let's Encrypt
|
|
|
|
tls:
|
|
|
|
secretName: supersecret
|
|
|
|
options:
|
2020-04-28 17:18:04 +02:00
|
|
|
name: my-tls-option
|
2020-01-07 11:26:05 +01:00
|
|
|
namespace: default
|
|
|
|
|
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: IngressRouteTCP
|
|
|
|
metadata:
|
|
|
|
name: ingressroutetcp.crd
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
entryPoints:
|
|
|
|
- footcp
|
|
|
|
routes:
|
2020-03-13 22:50:05 +01:00
|
|
|
- match: HostSNI(`example.com`)
|
2020-01-07 11:26:05 +01:00
|
|
|
services:
|
|
|
|
- name: whoamitcp
|
|
|
|
port: 8080
|
2021-06-11 15:30:05 +02:00
|
|
|
middlewares:
|
|
|
|
- name: ipwhitelist
|
2020-01-07 11:26:05 +01:00
|
|
|
tls:
|
|
|
|
secretName: foosecret
|
|
|
|
passthrough: false
|
|
|
|
options:
|
2020-04-28 17:18:04 +02:00
|
|
|
name: my-tls-option
|
2020-01-07 11:26:05 +01:00
|
|
|
namespace: default
|
2020-02-12 11:06:04 -06:00
|
|
|
|
2020-02-26 12:28:05 +01:00
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: IngressRouteUDP
|
|
|
|
metadata:
|
|
|
|
name: ingressrouteudp.crd
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
entryPoints:
|
|
|
|
- footcp
|
|
|
|
routes:
|
|
|
|
- services:
|
|
|
|
- name: whoamiudp
|
|
|
|
port: 8080
|
|
|
|
|
2020-02-12 11:06:04 -06:00
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: TLSOption
|
|
|
|
metadata:
|
|
|
|
name: tlsoption
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
minVersion: foobar
|
|
|
|
maxVersion: foobar
|
|
|
|
cipherSuites:
|
|
|
|
- foobar
|
|
|
|
- foobar
|
|
|
|
curvePreferences:
|
|
|
|
- foobar
|
|
|
|
- foobar
|
|
|
|
clientAuth:
|
2021-03-03 15:32:04 +01:00
|
|
|
secretNames:
|
2020-02-12 11:06:04 -06:00
|
|
|
- foobar
|
|
|
|
- foobar
|
2021-03-03 15:32:04 +01:00
|
|
|
clientAuthType: RequireAndVerifyClientCert
|
2020-02-12 11:06:04 -06:00
|
|
|
sniStrict: true
|
|
|
|
preferServerCipherSuites: true
|
2020-09-11 15:40:03 +02:00
|
|
|
|
|
|
|
---
|
|
|
|
apiVersion: traefik.containo.us/v1alpha1
|
|
|
|
kind: ServersTransport
|
|
|
|
metadata:
|
|
|
|
name: mytransport
|
|
|
|
namespace: default
|
|
|
|
|
|
|
|
spec:
|
|
|
|
serverName: foobar
|
|
|
|
insecureSkipVerify: true
|
|
|
|
rootCAsSecrets:
|
|
|
|
- foobar
|
|
|
|
- foobar
|
|
|
|
certificatesSecrets:
|
|
|
|
- foobar
|
|
|
|
- foobar
|
|
|
|
maxIdleConnsPerHost: 1
|
|
|
|
forwardingTimeouts:
|
|
|
|
dialTimeout: 42s
|
|
|
|
responseHeaderTimeout: 42s
|
|
|
|
idleConnTimeout: 42s
|
2021-03-29 05:32:03 -07:00
|
|
|
disableHTTP2: true
|