ghapvharmo/gha-lab-a815a82f03-1

GitHub: ghapvharmo/gha-lab-a815a82f03-1

一套精心挑选的、安全且高度可配置的生产级开源 Helm charts,用于在 Kubernetes 上快速部署常见的云原生应用。

Stars: 0 | Forks: 0

# CloudPirates 开源 Helm Charts 一组精心挑选的生产级 Helm charts,适用于开源云原生应用。 本仓库提供安全、文档齐全且高度可配置的 Helm charts,并遵循云原生最佳实践。 **⚠️ 重要提示**:自 **2026 年 4 月 15 日** 起,所有更新日志仅存在于 GitHub 发布说明中。为保持向后兼容性,保留了旧的更新日志。 ## 可用 Charts | Chart | 描述 | 版本 | | -------------------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | | [ClusterPirate](charts/clusterpirate/) | CloudPirates 托管可观测性平台的客户端代理,用于将您的 Kubernetes 集群连接到我们的基础设施 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/clusterpirate/Chart.yaml&label=&query=version&prefix=v) | | [Common](charts/common/) | 用于通用模板和辅助函数的库 chart | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/common/Chart.yaml&label=&query=version&prefix=v) | | [Etcd](charts/etcd/) | 分布式可靠的键值存储 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/etcd/Chart.yaml&label=&query=version&prefix=v) | | [Ghost](charts/ghost/) | 简单而强大的发布平台,让您可以与世界分享您的故事。 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/ghost/Chart.yaml&label=&query=version&prefix=v) | | [Keycloak](charts/keycloak/) | 开源的身份和访问管理解决方案 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/keycloak/Chart.yaml&label=&query=version&prefix=v) | | [MariaDB](charts/mariadb/) | 高性能、开源的关系型数据库服务器,可直接替代 MySQL | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/mariadb/Chart.yaml&label=&query=version&prefix=v) | | [Memcached](charts/memcached/) | 高性能、分布式的内存对象缓存系统 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/memcached/Chart.yaml&label=&query=version&prefix=v) | | [MinIO](charts/minio/) | 兼容 Amazon S3 API 的高性能对象存储 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/minio/Chart.yaml&label=&query=version&prefix=v) | | [MongoDB](charts/mongodb/) | MongoDB,一种灵活的 NoSQL 数据库,用于可扩展的实时数据管理 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/mongodb/Chart.yaml&label=&query=version&prefix=v) | | [Nginx](charts/nginx/) | 高性能的 HTTP 服务器和反向代理 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/nginx/Chart.yaml&label=&query=version&prefix=v) | | [PostgreSQL](charts/postgres/) | 世界上最先进的开源关系型数据库 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/postgres/Chart.yaml&label=&query=version&prefix=v) | | [RabbitMQ](charts/rabbitmq/) | 实现高级消息队列协议 (AMQP) 的消息代理 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/rabbitmq/Chart.yaml&label=&query=version&prefix=v) | | [RabbitMQ Cluster Operator](charts/rabbitmq-cluster-operator/) | 用于部署和管理 RabbitMQ 集群的 Kubernetes Operator | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/rabbitmq-cluster-operator/Chart.yaml&label=&query=version&prefix=v) | | [Redis](charts/redis/) | 内存数据结构存储,可用作数据库、缓存和消息代理 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/redis/Chart.yaml&label=&query=version&prefix=v) | | [RustFS](charts/rustfs/) | 带有兼容 S3 API 的高性能分布式对象存储(MinIO 替代方案)[ALPHA] | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/rustfs/Chart.yaml&label=&query=version&prefix=v) | | [TimescaleDB](charts/timescaledb/) | TimescaleDB 是一个 PostgreSQL 扩展,用于对时间序列和事件数据进行高性能实时分析 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/timescaledb/Chart.yaml&label=&query=version&prefix=v) | | [Valkey](charts/valkey/) | 高性能的内存数据结构存储,Redis 的分支 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/valkey/Chart.yaml&label=&query=version&prefix=v) | | [Zookeeper](charts/zookeeper/) | 用于维护配置信息、命名、提供分布式同步和组服务的集中式服务 | ![Version](https://img.shields.io/badge/dynamic/yaml?url=https://raw.githubusercontent.com/CloudPirates-io/helm-charts/main/charts/zookeeper/Chart.yaml&label=&query=version&prefix=v) | ## 快速开始 ### 前置条件 - Kubernetes 1.24+ - Helm 3.2.0+ - 底层基础设施支持 PV provisioner(如果启用了持久化) ### 安装 Charts ``` # 从 Docker Hub registry helm install my-release oci://registry-1.docker.io/cloudpirates/ # 从 GitHub Container Registry (GHCR) helm install my-release oci://ghcr.io/cloudpirates-io/helm-charts/ # 从 local clone helm install my-release ./charts/ ``` ## Chart 功能 本仓库中的所有 chart 均提供: ### **安全第一** - **加密签名**:所有 chart 均使用 [Cosign](COSIGN.md) 签名,以保障供应链安全 - 默认使用非 root 容器 - 尽可能使用只读的根文件系统 - 丢弃 Linux 权限 (capabilities) - 配置了 Security Context - 无硬编码凭证 ### **生产就绪** - 全面的健康检查(liveness、readiness、startup probes) - 支持资源请求和限制 - 持久化存储配置 - 滚动更新策略 - 健康检查 endpoint ### **高度可配置** - 包含详细文档的丰富 values.yaml - 支持现有的 secrets 和 ConfigMaps - 灵活的 ingress 配置 - Service account 自定义 - 支持通用标签和注解 ## 配置 每个 chart 都通过 `values.yaml` 提供了丰富的配置选项。关键配置领域包括: - **认证与安全**:用户凭证、现有 secrets、Security Context - **存储**:Persistent Volume、Storage Class、备份配置 - **网络**:Service、Ingress、Network Policy - **扩展**:副本数、自动扩缩容、资源限制 - **监控**:指标、Service Monitor、健康检查 有关详细的配置选项,请参阅各个 chart 的 README。 ### Chart 问题 对于这些 Helm chart 的特定问题: - 查看各个 chart 的 README 文件进行故障排除 - 查看 chart 文档和示例 - 验证配置值 - 在 GitHub 上提 issue
标签:API集成, Cutter, GitHub Actions, Helm, 可观测性, 子域名突变, 日志审计, 自动笔记, 运维部署