Search K
Appearance
Appearance
To see how you can use the CAI deploy application, read Deploy AI Security to the cloud.
application_url to Azure and GCP provider configsingressClassName explicitly so F5 NGINX Ingress Controller claims the moderator ingressnginx-ingress chart's default nginx/nginx-ingress repository as an ambiguous short name, leaving the controller pod in ImageInspectError. Pin the repository to docker.io and let the chart's appVersion supply the tag.ingress-nginx with F5 NGINX Ingress Controller nginx-ingress chart 2.6.4 from https://helm.nginx.com/stable. As this is the OSS edition, the installer requires no NGINX Plus license or private registry credentials. Azure also drops the pulumi-kubernetes-ingress-nginx component, which wrapped the same retired chart and hid its version from this repo. The controllers are not drop-in equivalents, so four behaviours are now explicitly preserved:spec.tls.default-ssl-certificate covered every host. The certificate is served from controller.wildcardTLS. It stays in the NGINX Ingress namespace. It is no longer copied into each application namespace.nginx.org/ssl-redirect. The nginx.org/redirect-to-httpsalternative keys off X-Forwarded-Proto, which the L4 cloud load balancers in front of these clusters never set.controller.enableSnippets.kubernetes.io/ingress.class annotation to controller.ingressClass.setAsDefaultIngress, since F5 NIC matches on spec.ingressClassName.X-Forwarded-For.linux-libc-dev to clear CVE findingsprefectUiApiUrl