---
title: Charmhub | Deploy Discourse using Charmhub - The Open Operator Collection
description: Deploy the latest version of Discourse as a Kubernetes Operator on any
  cloud.
url: https://charmhub.io/discourse-k8s/configurations
---

# Discourse

[Canonical IS DevOps](https://charmhub.io/publisher/canonical-is-devops "View all packages from Canonical IS DevOps")

* [Canonical IS DevOps](https://charmhub.io/publisher/canonical-is-devops "View all packages from Canonical IS DevOps")

Platform:

stable 9adaf178

```
juju deploy discourse-k8s
```

[Learn to deploy on juju >](https://juju.is/docs/juju/manage-applications)

* [augment\_cors\_origin](https://charmhub.io/discourse-k8s/configurations#augment_cors_origin)
* [cors\_origin](https://charmhub.io/discourse-k8s/configurations#cors_origin)
* [developer\_emails](https://charmhub.io/discourse-k8s/configurations#developer_emails)
* [enable\_cors](https://charmhub.io/discourse-k8s/configurations#enable_cors)
* [external\_hostname](https://charmhub.io/discourse-k8s/configurations#external_hostname)
* [force\_https](https://charmhub.io/discourse-k8s/configurations#force_https)
* [force\_saml\_login](https://charmhub.io/discourse-k8s/configurations#force_saml_login)
* [max\_category\_nesting](https://charmhub.io/discourse-k8s/configurations#max_category_nesting)
* [s3\_access\_key\_id](https://charmhub.io/discourse-k8s/configurations#s3_access_key_id)
* [s3\_backup\_bucket](https://charmhub.io/discourse-k8s/configurations#s3_backup_bucket)
* [s3\_bucket](https://charmhub.io/discourse-k8s/configurations#s3_bucket)
* [s3\_cdn\_url](https://charmhub.io/discourse-k8s/configurations#s3_cdn_url)
* [s3\_enabled](https://charmhub.io/discourse-k8s/configurations#s3_enabled)
* [s3\_endpoint](https://charmhub.io/discourse-k8s/configurations#s3_endpoint)
* [s3\_install\_cors\_rule](https://charmhub.io/discourse-k8s/configurations#s3_install_cors_rule)
* [s3\_region](https://charmhub.io/discourse-k8s/configurations#s3_region)
* [s3\_secret\_access\_key](https://charmhub.io/discourse-k8s/configurations#s3_secret_access_key)
* [saml\_sync\_groups](https://charmhub.io/discourse-k8s/configurations#saml_sync_groups)
* [sidekiq\_max\_memory](https://charmhub.io/discourse-k8s/configurations#sidekiq_max_memory)
* [smtp\_address](https://charmhub.io/discourse-k8s/configurations#smtp_address)
* [smtp\_authentication](https://charmhub.io/discourse-k8s/configurations#smtp_authentication)
* [smtp\_domain](https://charmhub.io/discourse-k8s/configurations#smtp_domain)
* [smtp\_enable\_start\_tls](https://charmhub.io/discourse-k8s/configurations#smtp_enable_start_tls)
* [smtp\_force\_tls](https://charmhub.io/discourse-k8s/configurations#smtp_force_tls)
* [smtp\_openssl\_verify\_mode](https://charmhub.io/discourse-k8s/configurations#smtp_openssl_verify_mode)
* [smtp\_password](https://charmhub.io/discourse-k8s/configurations#smtp_password)
* [smtp\_port](https://charmhub.io/discourse-k8s/configurations#smtp_port)
* [smtp\_username](https://charmhub.io/discourse-k8s/configurations#smtp_username)
* [throttle\_level](https://charmhub.io/discourse-k8s/configurations#throttle_level)

[Learn about configurations >](https://juju.is/docs/juju/configuration#heading--application-configuration)

* augment\_cors\_origin | boolean

  Default: True

  Appends external\_hostname (with http/https) and s3\_cdn\_url to the list of
  allowed CORS origins. Has no effect if 'cors\_origin' is "\*".
  To rely only on automatic cors origins, set 'cors\_origin' to an empty string.
* cors\_origin | string

  Comma-separated list of allowed CORS origins. Defaults to "\*", allowing all
  origins. To restrict access, provide specific origins or set to an empty string
  to rely solely on 'augment\_cors\_origin' if enabled.
* developer\_emails | string

  Comma delimited list of email addresses that should have developer level access.
* enable\_cors | boolean

  Default: True

  Enable Cross-origin Resource Sharing (CORS) at the application level (required for SSO).
* external\_hostname | string

  External hostname this discourse instance responds to. Defaults to application name.
* force\_https | boolean

  Configure Discourse to use https.
* force\_saml\_login | boolean

  Force SAML login (full screen, no local database logins).
* max\_category\_nesting | int

  Default: 2

  Maximum category nesting allowed. Minimum is 2, maximum is 3.
* s3\_access\_key\_id | string

  The S3 access key ID to use.

  Sets DISCOURSE\_S3\_ACCESS\_KEY\_ID.
  Required if s3\_enabled is true.
* s3\_backup\_bucket | string

  The S3 bucket to use for backups.

  Sets DISCOURSE\_S3\_BACKUP\_BUCKET.
  Also sets DISCOURSE\_BACKUP\_LOCATION=s3.
* s3\_bucket | string

  The S3 bucket to use.

  Sets DISCOURSE\_S3\_BUCKET.
  Required if s3\_enabled is true.
* s3\_cdn\_url | string

  The S3 Content Delivery Network URL.

  Sets DISCOURSE\_S3\_CDN\_URL.
* s3\_enabled | boolean

  Store uploaded objects in an S3-compatible object storage service instead of a local directory.

  If true, sets DISCOURSE\_USE\_S3=true.
  Check https://meta.discourse.org/t/using-object-storage-for-uploads-s3-clones/148916 for more details.
* s3\_endpoint | string

  Default: https://s3.amazonaws.com

  The S3 endpoint to use. This may be a non-Amazon S3-compatible endpoint.

  Sets DISCOURSE\_S3\_ENDPOINT
* s3\_install\_cors\_rule | boolean

  Default: True

  Will discourse set cors rule on the S3 bucket.

  Sets DISCOURSE\_S3\_INSTALL\_CORS\_RULE
* s3\_region | string

  The S3 region to use.

  Sets DISCOURSE\_S3\_REGION.
  Required if s3\_enabled is true.
* s3\_secret\_access\_key | string

  The S3 secret key to use.

  Sets DISCOURSE\_S3\_SECRET\_ACCESS\_KEY.
  Required if s3\_enabled is true.
* saml\_sync\_groups | string

  Comma-separated list of groups to sync from SAML provider.
* sidekiq\_max\_memory | int

  Default: 1000

  Maximum memory for sidekiq in megabytes. This configuration will set the UNICORN\_SIDEKIQ\_MAX\_RSS environment variable.
* smtp\_address | string

  Hostname / IP that should be used to send SMTP mail.
* smtp\_authentication | string

  Default: none

  Type of smtp authentication to use. Valid values: none, login, plain, cram\_md5.
* smtp\_domain | string

  Hostname that email sent by this discourse should appear to come from.
* smtp\_enable\_start\_tls | string

  Default: true

  Enable TLS encryption for smtp connections.
* smtp\_force\_tls | string

  Default: false

  Force implicit TLS as per RFC 8314 3.3.
* smtp\_openssl\_verify\_mode | string

  Default: none

  Should discourse verify SSL certs.
* smtp\_password | string

  Password to use when sending mail via SMTP.
* smtp\_port | int

  Default: 587

  Port to use when connecting to SMTP server.
* smtp\_username | string

  Username to use when sending mail via SMTP.
* throttle\_level | string

  Default: none

  Throttle level - blocks excessive usage by ip. Accepted values: none, permissive, strict.
