ipam: mode: kubernetes kubeProxyReplacement: true securityContext: capabilities: ciliumAgent: - CHOWN - KILL - NET_ADMIN - NET_RAW - IPC_LOCK - SYS_ADMIN - SYS_RESOURCE - DAC_OVERRIDE - FOWNER - SETGID - SETUID cleanCiliumState: - NET_ADMIN - SYS_ADMIN - SYS_RESOURCE cgroup: autoMount: enabled: false hostRoot: /sys/fs/cgroup k8sServiceHost: 192.168.23.54 k8sServicePort: 6443 l2announcements: enabled: true devices: ^ens+ hubble: relay: enabled: true ui: enabled: true