Sign inSign up
Cilium Helm chart

dhi.io/cilium-chart

Cilium Helm chart

eBPF-based Networking, Security, and Observability for Kubernetes

About this Helm chart

This is a Cilium Helm chart built from the upstream Cilium Helm chart and using a hardened configuration with Docker Hardened Images.

The following Docker Hardened Images are used in this Helm chart:

  • dhi/cilium
  • dhi/cilium-operator
  • dhi/hubble-relay
  • dhi/hubble-ui
  • dhi/hubble-ui-backend
  • dhi/cilium-envoy
  • dhi/cilium-certgen
  • dhi/cilium-clustermesh-apiserver
  • dhi/cilium-startup-script
  • dhi/ztunnel
  • dhi/spire-agent
  • dhi/spire-server
  • dhi/busybox

To learn more about how to use this Helm chart you can visit the upstream documentation: https://docs.cilium.io/en/stable/gettingstarted/k8s-install-default/⁠

About Cilium

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. It provides a simple flat Layer 3 network with the ability to span multiple clusters in either a native routing or overlay mode. It is L7-protocol aware and can enforce network policies on L3-L7 using an identity-based security model that is decoupled from network addressing.

Cilium includes Hubble, a fully distributed networking and security observability platform built on top of Cilium and eBPF. Hubble provides deep visibility into service-to-service communication with a network flow log, a service map, and integration with Grafana and Prometheus.

For more details, visit https://cilium.io/⁠.

About Docker Hardened Images

Docker Hardened Images are built to meet the highest security and compliance standards. They provide a trusted foundation for containerized workloads by incorporating security best practices from the start.

Why use Docker Hardened Images?

These images are published with near-zero known CVEs, include signed provenance, and come with a complete Software Bill of Materials (SBOM) and VEX metadata. They're designed to secure your software supply chain while fitting seamlessly into existing Docker workflows.

Trademarks

CiliumĀ® is a registered trademark of the Linux Foundation. All rights in the mark are reserved to the Linux Foundation. Any use by Docker is for referential purposes only and does not indicate sponsorship, endorsement, or affiliation.

Try DHI Enterprise

Start a free 30-day DHI Enterprise trial to mirror this image to your organization's registry and unlock full benefits.

SLA-backed CVE remediations

FIPS & STIG-compliant variants

Customizations at enterprise scale

Try DHI Enterprise

BusyBox 1.x

Cilium 1.20.x

Cilium Certgen 0.x

Cilium Clustermesh API Server 1.20.x

Cilium DNS Proxy 1.20.x

Cilium Envoy 1.20.x (compat)

Cilium Operator 1.x

cilium-startup-script

Hubble Relay 1.x

Cilium Hubble UI 0.x

Hubble UI Backend 0.x

Spiffe Spire Agent 1.15.x

Spiffe Spire Server 1.15.x

Istio Ztunnel 1.31.x

Got questions or feedback about this Helm chart?

Join GitHub Discussions or our Slack community to share ideas, ask questions, and connect with the team.

Go to discussions⁠Join communityā