Docs

Browse releases →
OptionTypeDescription
enablebooleanEnable the selected k3s role.
integrations.cniattribute set of submoduleNamed, package-contributable CNI integration requirements.
integrations.csiattribute set of submoduleNamed, package-contributable CSI integration requirements.
integrations.resourcesattribute set of submoduleNamed, package-contributable Kubernetes YAML bundles reconciled by server roles.
kubeconfigModeone of ["0600","0640","0644"]Mode of the administrator kubeconfig emitted by server roles.
networking.clusterCidrstring matching .+ or nullCIDR from which pod addresses are allocated.
networking.clusterDnsstring matching .+ or nullCluster DNS service address.
networking.disableKubeProxybooleanDisable kube-proxy for a replacement data plane.
networking.disableNetworkPolicybooleanDisable the built-in network-policy controller.
networking.flannelBackendone of ["vxlan","host-gw","wireguard-native","none"]Flannel backend, or `none` when an external CNI owns pod networking.
networking.flannelInterfacestring matching .+ or nullHost interface used for Flannel traffic.
networking.serviceCidrstring matching .+ or nullCIDR from which service addresses are allocated.
node.externalIpstring matching .+ or nullExternal IP address advertised for the node.
node.ipstring matching .+ or nullIP address advertised for the node.
node.labelsattribute set of stringLabels registered on the node.
node.namestring matching .+ or nullKubernetes node name.
node.taintslist of string matching .+Taints registered on the node in Kubernetes taint syntax.
roleone of ["worker","control-plane","combined"]The k3s role implemented by the selected package.
server.clusterInitbooleanInitialize a new embedded-etcd cluster.
server.disableComponentslist of one of ["coredns","servicelb","traefik","local-storage","metrics-server","runtimes"]Packaged server components not deployed by k3s.
server.tlsSanslist of string matching .+Additional subject alternative names for the API server certificate.
serverUrlstring matching .+ or nullHTTPS URL of an existing k3s server to join.
tokensubmodule or nullOpaque reference to the cluster token loaded as a systemd credential.