-
Notifications
You must be signed in to change notification settings - Fork 1
Helm themisdb
A Helm chart for deploying ThemisDB - Multi-Model Database with ACID Transactions on Kubernetes.
- Kubernetes 1.23+
- Helm 3.8+
- PV provisioner support in the underlying infrastructure (if persistence is enabled)
- Prometheus Operator (optional, required for ServiceMonitor)
- VPA controller (optional, required for VPA)
- Grafana with grafana-sc-dashboard sidecar (optional, required for automatic dashboard import)
helm repo add themisdb https://makr-code.github.io/ThemisDB
helm repo updatehelm install themisdb themisdb/themisdbhelm install themisdb ./helm/themisdbSee values.yaml for the full list of configurable parameters.
| Parameter | Description | Default |
|---|---|---|
replicaCount |
Number of replicas | 1 |
image.repository |
Container image repository | themisdb/themisdb |
image.tag |
Container image tag | Chart.AppVersion |
service.type |
Kubernetes service type | ClusterIP |
service.port |
HTTP API service port | 8080 |
service.metricsPort |
Prometheus metrics port | 9091 |
persistence.enabled |
Enable persistent storage | true |
persistence.size |
PVC size | 10Gi |
resources.limits.memory |
Memory limit | 2Gi |
resources.limits.cpu |
CPU limit | 1000m |
| Parameter | Description | Default |
|---|---|---|
autoscaling.enabled |
Enable HPA | false |
autoscaling.minReplicas |
Minimum replicas | 1 |
autoscaling.maxReplicas |
Maximum replicas | 10 |
autoscaling.targetCPUUtilizationPercentage |
CPU target | 75 |
autoscaling.targetMemoryUtilizationPercentage |
Memory target | 80 |
| Parameter | Description | Default |
|---|---|---|
vpa.enabled |
Enable VPA | false |
vpa.updateMode |
VPA update mode (Off / Initial / Recreate / Auto) |
"Off" |
vpa.minAllowed.cpu |
Minimum CPU recommendation | 100m |
vpa.minAllowed.memory |
Minimum memory recommendation | 256Mi |
vpa.maxAllowed.cpu |
Maximum CPU recommendation | 4000m |
vpa.maxAllowed.memory |
Maximum memory recommendation | 8Gi |
| Parameter | Description | Default |
|---|---|---|
metrics.enabled |
Enable metrics endpoint | true |
metrics.serviceMonitor.enabled |
Create ServiceMonitor (requires Prometheus Operator) | false |
metrics.serviceMonitor.namespace |
Namespace for ServiceMonitor | release namespace |
metrics.serviceMonitor.interval |
Scrape interval | 30s |
metrics.serviceMonitor.scrapeTimeout |
Scrape timeout | 10s |
| Parameter | Description | Default |
|---|---|---|
networkPolicy.enabled |
Enable NetworkPolicy | false |
networkPolicy.prometheusNamespace |
Namespace allowed to scrape metrics | "monitoring" |
networkPolicy.allowAllIngress |
Allow all ingress (no podSelector filter) | false |
networkPolicy.storageEgressPorts |
TCP ports allowed in egress | [8766, 8769] |
networkPolicy.allowHttpsEgress |
Allow HTTPS (443) egress | false |
| Parameter | Description | Default |
|---|---|---|
grafana.dashboards.enabled |
Create Grafana dashboard ConfigMaps | false |
grafana.dashboards.namespace |
Namespace for ConfigMaps | release namespace |
grafana.dashboards.label |
Label key for Grafana sidecar discovery | grafana_dashboard |
grafana.dashboards.labelValue |
Label value | "1" |
grafana.dashboards.categories.llm |
Include LLM dashboards | true |
grafana.dashboards.categories.performance |
Include Performance dashboards | true |
grafana.dashboards.categories.security |
Include Security dashboards | true |
grafana.dashboards.categories.operations |
Include Operations dashboards | true |
grafana.dashboards.categories.compliance |
Include Compliance dashboards | true |
grafana.dashboards.categories.plugins |
Include Plugin dashboards | false |
grafana.dashboards.categories.bt4 |
Include BT4/FLARE dashboards | false |
| Parameter | Description | Default |
|---|---|---|
serviceMesh.istioInject |
Inject Istio sidecar | false |
serviceMesh.trustSidecarMTLS |
Delegate mTLS to Envoy | false |
serviceMesh.drainTimeoutMs |
Envoy drain timeout on shutdown | 5000 |
Official community image on Docker Hub: themisdb/themisdb
The chart default already uses this repository. Override image.repository only if you want
to deploy from a different registry (for example a private mirror):
image:
repository: registry.example.com/themisdb/themisdb
tag: latestreplicaCount: 3
resources:
limits:
cpu: 2000m
memory: 4Gi
requests:
cpu: 500m
memory: 1Gi
persistence:
enabled: true
size: 50Gi
storageClass: "fast-ssd"
metrics:
serviceMonitor:
enabled: true
namespace: monitoring
grafana:
dashboards:
enabled: true
namespace: monitoring
networkPolicy:
enabled: true
prometheusNamespace: monitoring
autoscaling:
enabled: true
minReplicas: 2
maxReplicas: 10Install with custom values:
helm install themisdb themisdb/themisdb -f custom-values.yamlhelm upgrade themisdb themisdb/themisdb0.1.x β 0.2.x
-
service.metricsPortdefault changed from4318to9091(Prometheus-compatible). If you relied on the OTel HTTP port4318as the scrape target, update yourvalues.yamlaccordingly. - ServiceMonitor now references the named port
metricson the Service. Ensuremetrics.serviceMonitor.enabled=trueand the Prometheus Operator is installed. - New optional resources:
NetworkPolicy,VPA, GrafanaConfigMaps. All are disabled by default β no action needed on upgrade.
helm uninstall themisdbNote: This will not delete the PersistentVolumeClaim. To fully remove the data:
kubectl delete pvc -l app.kubernetes.io/name=themisdb
This chart has no hard Helm dependencies, but the following operators unlock optional features:
| Feature | Operator / Component |
|---|---|
metrics.serviceMonitor |
Prometheus Operator |
vpa |
VPA controller |
grafana.dashboards |
Grafana chart with sidecar.dashboards.enabled=true
|
serviceMesh.istioInject |
Istio control plane |
Apache License 2.0 - See LICENSE for details.
ThemisDB 1.9.0-beta Β· Home Β· Module-Index Β· GitHub Β· Issues
ThemisDB 1.9.0-beta Β· Home Β· Wiki-Index Β· Module-Index Β· FAQ Β· Quick-Reference Β· GitHub Β· Issues Β· Discussions Β· License
- Batch Operations
- Best Practices
- CRUD Tutorial
- Custom Document Ingestion
- Getting Started Tutorial
- Interactive Examples
- Schema Design
- Video Tutorials
- AQL Reference
- AQL Examples
- AQL Overview
- AQL Feature Roadmap
- AQL Geospatial Guide
- AQL LLM Migration Guide
- AQL API
- AQL Grammar (EBNF)
- AQL Root Overview
- AQL Examples (root)
- API Reference
- API Module README
- OpenAPI Overview
- Client SDK Overview
- SDK Overview
- Operations
- Operations Overview
- Operations Runbook
- Operations Handbook
- ThemisCtl Admin Guide
- Pipeline E2E SOPs
- Deploy Overview
- Docker Overview
- Docker Hub README
- Helm Overview
- Packaging Overview
- Operator Overview
- Security Policy
- Production Hardening Checklist
- Security Hardening Guide
- Encryption Key Management
- Access Control Framework
- Zero Trust Policy
- API Authentication & Authorization
- HSM Production Setup
- PKCS11 Integration
- DSGVO / SOC2 Checklist
- Access Model Runbooks
- Access Model Dashboard
- Maturity Automation Runbook
- Access Review Automation
- Access Model Dashboard
- Access Model Runbooks
- Rights Revocation
- Dr Checklists
- Dr Testing
- Incident Response Playbook
- Incident Response Testing
- GPU Oom Recovery
- Grammar Debugging
- Metrics Scrape Troubleshooting
- Model Swap Procedure
- Quota Tuning
- Subagent Deployment
- Logging Configuration
- Content Model
- Crypto & Keys
- Feature Flags Reference
- Modular Architecture Roadmap
- Modularization Guide
- Module Architecture Index
- PostgreSQL Wire Protocol
- Query Scheduling
- Raft Consensus Design
- Resource Pooling
- Source Directory Guide
- Unified Access Model
- E1 001 Layered Retrieval Design
- E1 002 Ann Abstraction Strategy
- E1 003 Tensor Summary Types
- E1 004 Lora Package Distinction
- E1 005 Model Switch Compatibility
- E1 006 Federated Tensor Summaries
- E2 001 Evaluation Framework Design
- E2 002 Hardware Profile Strategy
- E2 003 Query Planner Routing Model
- E2 004 Approximation Governance Rules
- E2 005 Cross Layer Fallback Confidence Policy
- E3 001 Distributed Tensor Design
- E3 002 Manifest Coordination Strategy
- E3 003 Recovery And Erasure Choice
- E3 004 Tensor Fabric Infrastructure
- Contributing
- Contributing (root)
- Code of Conduct
- Support
- Maintainers
- CTest Guide
- Build Quick Reference
- Developer Wiki Index
- Build / Test / CI
- Module Index
- Branching Strategy
- Disabled Stub Policy
- Docs PR Policy
- GA Promotion Sign Off
- Github Milestones Setup
- Maturity Claim Verification Checklist
- Maturity Evidence Registry
- Merge Gate Bot Config
- Merge Gate Status Live
- Phase 1 Closure Report
- Phase Closure Policy
- Phase Dependency Graph
- Phase3 Enforcement Runbook
- Plugin Submodule Rollback
- PR Version Targeting
- PR Version Targeting Backfill
- Production Ready 2026 Delivery Plan
- Query Module Status
- Readme
- Release Promotion Gate Policy
- Release Validation Checklist
- Security Module 5671 Evidence Summary
- Sharding P6 Residual Risk Acceptance
- Sourcecode Compliance Governance
- Updates Development Status Sign Off
- Wave C Implementation Complete
- Blob Storage
- Cuda
- Ethics Ai
- Exporters
- Huggingface
- Image Analysis
- Importers
- RPC
- Scraper
- Themisdb Ai Watermark Detector
- User Storage Encrypted
- Chimera Architecture
- Chimera Future
- Chimera Readme
- Chimera Roadmap
- Covina Fastapi Ingestion Architecture
- Covina Fastapi Ingestion Future
- Covina Fastapi Ingestion Roadmap
- Vcc Base Architecture
- Vcc Base Future
- Vcc Base Roadmap
- Vcc Clara Ingestion Architecture
- Vcc Clara Ingestion Future
- Vcc Clara Ingestion Roadmap
- Vcc Veritas Architecture
- Vcc Veritas Future
- Vcc Veritas Roadmap
- 01 Hello World
- 02 Todo App
- 03 Contact Manager
- 04 Inventory System
- 05 Time Series Monitor
- 06 Graph Social Network
- 07 Vector Search Documents
- 08 Dms Erp System
- 09 Iot Sensor Network
- 10 Drone Image Analysis
- 11 Blog Wiki
- 12 Expense Tracker
- 13 Recipe Manager
- 14 Ecommerce Catalog
- 15 Event Management
- 16 Kanban Board
- 17 Crm
- 18 Realtime Chat
- 19 Recommendation Engine
- 20 Smart Home
- 21 Coding Platform
- 22 AQL Diagram Tool
- 23 Traveling Salesman
- 24 Moral Philosophy Debates
- API Versioning
- Distributed Sharding
- Feedback Plugins
- Geo
- Gnn
- Image Analysis
- Legal Lora Training
- LLM
- Lora Sync
- Migration
- Nlp
- Performance
- Railway
- Replication
- Rope Visualization
- Sample Product Config
- Security
- Client SDK Overview
- Quickstart
- Sdk Enhancements
- Sdk Implementation Summary
- Test Suite Readme
- Go
- Java
- Javascript
- Php
- Python
- Ruby
- Rust
- Typescript
- 01 Grundlegende Operationen
- 02 AQL Queries
- 03 Graph Daten
- 04 Multimodell Anwendung
- 01 Quickstart Guide
- 02 AQL Referenz Kurzuebersicht
- 03 Datenmodellierung Guide
- 04 Uebungsaufgaben
- 05 Best Practices Guide
- Training Documents
- Training Overview
- 01 Einfuehrung Und Uebersicht
- 02 Datenmodelle Und Architektur
- 03 AQL Abfragesprache
- 04 Installation Und Setup
- 05 Anwendungsbeispiele
- Training Presentations
- Dependencies Readme
- Processmonitor Readme
- Themis.admintools.shared Readme
- Themis.aqlquerybuilder Readme
- Themis.aqlquerybuilder Roadmap
- Themis.auditlogviewer Readme
- Themis.auditlogviewer Roadmap
- Themis.classificationdashboard Readme
- Themis.classificationdashboard Roadmap
- Themis.compliancereports Readme
- Themis.compliancereports Roadmap
- Themis.gisviewer.controlpanel Readme
- Themis.gisviewer.controlpanel Roadmap
- Themis.impactanalysisviewer Readme
- Themis.impactanalysisviewer Roadmap
- Themis.ingestiontool Readme
- Themis.ingestiontool Roadmap
- Themis.keyrotationdashboard Readme
- Themis.keyrotationdashboard Roadmap
- Themis.piimanager Readme
- Themis.piimanager Roadmap
- Themis.retentionmanager Readme
- Themis.retentionmanager Roadmap
- Themis.sagaverifier Readme
- Themis.sagaverifier Roadmap
- Themis.usbadmintool Readme
- Themis.usbadmintool Roadmap
- CI Readme
- CI Roadmap
- Compiler Diagnostics Readme
- Compiler Diagnostics Roadmap
- Completion Readme
- Copilot Ollama Router Readme
- Copilot Ollama Router Roadmap
- Gnn Readme
- Gnn Roadmap
- Rope Visualizer Readme
- Rope Visualizer Roadmap
- Tco Calculator Readme
- Tco Calculator Roadmap
- Tests Readme
- Tests Roadmap
- Themis Config Wx Readme
- Themis Docs Builder Readme
- Wikipedia Ingestion Readme