Defaults The chart deploys SPIRE Controller Manager to manage SPIFFE Identifiers by Kubernetes Custom Resources. The chart deploys a ClusterSPIFFEID Custom Resource that gives an identifier to all pods of the form spiffe://{ { .TrustDomain } }/ns/{ { .PodMeta.Namespace } }/sa/{ { .PodSpec.ServiceAccountName } }. For a lot of use cases you don’t need to add additional identifiers.