apiVersion: v1 kind: Namespace metadata: name: amazon-cloudwatch labels: name: amazon-cloudwatch --- apiVersion: cert-manager.io/v1 kind: Issuer metadata: labels: app.kubernetes.io/name: amazon-cloudwatch-observability app.kubernetes.io/instance: amazon-cloudwatch-observability app.kubernetes.io/version: "1.0.0" app.kubernetes.io/managed-by: "amazon-cloudwatch-agent-operator" name: amazon-cloudwatch-observability-selfsigned-issuer namespace: amazon-cloudwatch spec: selfSigned: {} --- apiVersion: cert-manager.io/v1 kind: Issuer metadata: labels: app.kubernetes.io/name: amazon-cloudwatch-observability app.kubernetes.io/instance: amazon-cloudwatch-observability app.kubernetes.io/version: "1.0.0" app.kubernetes.io/managed-by: "amazon-cloudwatch-agent-operator" name: "agent-ca" namespace: amazon-cloudwatch spec: selfSigned: {} --- apiVersion: cert-manager.io/v1 kind: Certificate metadata: labels: app.kubernetes.io/name: amazon-cloudwatch-observability app.kubernetes.io/instance: amazon-cloudwatch-observability app.kubernetes.io/version: "1.0.0" app.kubernetes.io/managed-by: "amazon-cloudwatch-agent-operator" name: amazon-cloudwatch-observability-serving-cert namespace: amazon-cloudwatch spec: dnsNames: - amazon-cloudwatch-observability-webhook-service.amazon-cloudwatch - amazon-cloudwatch-observability-webhook-service.amazon-cloudwatch.svc - amazon-cloudwatch-observability-webhook-service.amazon-cloudwatch.svc.cluster.local issuerRef: kind: Issuer name: amazon-cloudwatch-observability-selfsigned-issuer secretName: amazon-cloudwatch-observability-controller-manager-service-cert subject: organizationalUnits: - amazon-cloudwatch-observability --- apiVersion: cert-manager.io/v1 kind: Certificate metadata: labels: app.kubernetes.io/name: amazon-cloudwatch-observability app.kubernetes.io/instance: amazon-cloudwatch-observability app.kubernetes.io/version: "1.0.0" app.kubernetes.io/managed-by: "amazon-cloudwatch-agent-operator" name: "amazon-cloudwatch-observability-agent-cert" namespace: amazon-cloudwatch spec: dnsNames: - "dcgm-exporter-service" - "dcgm-exporter-service.amazon-cloudwatch.svc" - "neuron-monitor-service" - "neuron-monitor-service.amazon-cloudwatch.svc" issuerRef: kind: Issuer name: "agent-ca" secretName: "amazon-cloudwatch-observability-agent-cert" --- apiVersion: v1 kind: Secret metadata: labels: app.kubernetes.io/name: amazon-cloudwatch-observability app.kubernetes.io/instance: amazon-cloudwatch-observability app.kubernetes.io/version: "1.0.0" app.kubernetes.io/managed-by: "amazon-cloudwatch-agent-operator" name: "amazon-cloudwatch-observability-agent-cert" namespace: amazon-cloudwatch --- apiVersion: v1 kind: ServiceAccount metadata: name: cloudwatch-agent namespace: amazon-cloudwatch --- apiVersion: v1 kind: ServiceAccount metadata: labels: app.kubernetes.io/name: amazon-cloudwatch-observability app.kubernetes.io/instance: amazon-cloudwatch-observability app.kubernetes.io/version: "1.0.0" app.kubernetes.io/managed-by: "amazon-cloudwatch-agent-operator" name: amazon-cloudwatch-observability-controller-manager namespace: amazon-cloudwatch --- apiVersion: v1 kind: Secret metadata: labels: app.kubernetes.io/name: amazon-cloudwatch-observability app.kubernetes.io/instance: amazon-cloudwatch-observability app.kubernetes.io/version: "1.0.0" app.kubernetes.io/managed-by: "amazon-cloudwatch-agent-operator" name: "amazon-cloudwatch-observability-agent-cert" namespace: amazon-cloudwatch --- apiVersion: v1 kind: ConfigMap metadata: name: fluent-bit-config namespace: amazon-cloudwatch labels: k8s-app: fluent-bit data: fluent-bit.conf: | [SERVICE] Flush 5 Grace 30 Log_Level error Daemon off Parsers_File parsers.conf storage.path /var/fluent-bit/state/flb-storage/ storage.sync normal storage.checksum off storage.backlog.mem_limit 5M @INCLUDE application-log.conf @INCLUDE dataplane-log.conf @INCLUDE host-log.conf parsers.conf: | [PARSER] Name syslog Format regex Regex ^(?