Install the Plugin
Copy the Preflight Helm Chart
Add the preflight chart to your ECR copy step:Run the Checks
Usehelm template to render the preflight spec, then pipe it to kubectl preflight:
Custom Namespaces
By default the analyzed namespace is derived asns-<clickhouseClusterName>. Clusters that live in a namespace that does not follow this convention must set preflight.namespace to their actual namespace. Otherwise the preflight will analyze the wrong namespace and report all cluster-scoped checks as failing.
For example, for a ClickHouse cluster named clickhouse-cluster-01 that runs in the namespace clickhouse-cluster-01 (no ns- prefix):
Required Permissions
The user or service account executingkubectl preflight needs read access to the following:
A principal with the built-in
view ClusterRole plus view access to the relevant namespaces is sufficient.