Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
4 changes: 2 additions & 2 deletions charts/langsmith/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -68,7 +68,7 @@ For information on how to use this chart, up-to-date release notes, and other gu
| clickhouse.statefulSet.resources.limits.cpu | string | `"8000m"` | |
| clickhouse.statefulSet.resources.limits.memory | string | `"32Gi"` | |
| clickhouse.statefulSet.resources.requests.cpu | string | `"3500m"` | |
| clickhouse.statefulSet.resources.requests.memory | string | `"15Gi"` | |
| clickhouse.statefulSet.resources.requests.memory | string | `"12Gi"` | |
| clickhouse.statefulSet.securityContext | object | `{}` | |
| clickhouse.statefulSet.sidecars | list | `[]` | |
| clickhouse.statefulSet.startupProbe.failureThreshold | int | `6` | |
Expand Down Expand Up @@ -308,7 +308,7 @@ For information on how to use this chart, up-to-date release notes, and other gu
| clickhouse.statefulSet.resources.limits.cpu | string | `"8000m"` | |
| clickhouse.statefulSet.resources.limits.memory | string | `"32Gi"` | |
| clickhouse.statefulSet.resources.requests.cpu | string | `"3500m"` | |
| clickhouse.statefulSet.resources.requests.memory | string | `"15Gi"` | |
| clickhouse.statefulSet.resources.requests.memory | string | `"12Gi"` | |
| clickhouse.statefulSet.securityContext | object | `{}` | |
| clickhouse.statefulSet.sidecars | list | `[]` | |
| clickhouse.statefulSet.startupProbe.failureThreshold | int | `6` | |
Expand Down
127 changes: 127 additions & 0 deletions charts/langsmith/ci/readonly-config-values.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,127 @@
# Read-Only configuration. Use this if you are running in an environment where containers must run as read-only.
config:
langsmithLicenseKey: "YOUR_LICENSE_KEY"
apiKeySalt: "YOUR_API_KEY_SALT"

backend:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true

frontend:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp

platformBackend:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true

playground:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
command:
- "yarn"
- "start"
- "--cache-folder"
- "/tmp/.yarn"
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp

queue:
deployment:
replicas: 1
resources:
requests:
cpu: 100m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true


postgres:
statefulSet:
resources:
requests:
cpu: 200m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
- name: postgres
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp
- name: postgres
mountPath: /run/postgresql

redis:
statefulSet:
resources:
requests:
cpu: 200m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true

clickhouse:
statefulSet:
resources:
requests:
cpu: 200m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
- name: var
emptyDir: {}
- name: etc
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp
- name: var
mountPath: /var
- name: etc
mountPath: /etc/clickhouse-server/users.d
109 changes: 109 additions & 0 deletions charts/langsmith/examples/read_only_config.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,109 @@
# Read-Only configuration. Use this if you are running in an environment where containers must run as read-only.
config:
langsmithLicenseKey: "YOUR_LICENSE_KEY"
apiKeySalt: "YOUR_API_KEY_SALT"

backend:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true

frontend:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp

platformBackend:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true

playground:
deployment:
resources:
requests:
cpu: 100m
memory: 500Mi
command:
- "yarn"
- "start"
- "--cache-folder"
- "/tmp/.yarn"
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp

queue:
deployment:
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true


postgres:
statefulSet:
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
- name: postgres
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp
- name: postgres
mountPath: /run/postgresql

redis:
statefulSet:
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true

clickhouse:
securityContext:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
volumes:
- name: tmp
emptyDir: {}
- name: var
emptyDir: {}
- name: etc
emptyDir: {}
volumeMounts:
- name: tmp
mountPath: /tmp
- name: var
mountPath: /var
- name: etc
mountPath: /etc/clickhouse-server/users.d
2 changes: 1 addition & 1 deletion charts/langsmith/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -300,7 +300,7 @@ clickhouse:
memory: 32Gi
requests:
cpu: 3500m
memory: 15Gi
memory: 12Gi
command:
- "/bin/bash"
- "-c"
Expand Down
Loading