--- /dev/null
+---
+# Please see roles/container-engine/containerd/defaults/main.yml for more configuration options
+
+# containerd_storage_dir: "/var/lib/containerd"
+# containerd_state_dir: "/run/containerd"
+# containerd_oom_score: 0
+
+# containerd_default_runtime: "runc"
+# containerd_snapshotter: "native"
+
+# containerd_runc_runtime:
+# name: runc
+# type: "io.containerd.runc.v2"
+# engine: ""
+# root: ""
+
+# containerd_additional_runtimes:
+# Example for Kata Containers as additional runtime:
+# - name: kata
+# type: "io.containerd.kata.v2"
+# engine: ""
+# root: ""
+
+# containerd_grpc_max_recv_message_size: 16777216
+# containerd_grpc_max_send_message_size: 16777216
+
+# containerd_debug_level: "info"
+
+# containerd_metrics_address: ""
+
+# containerd_metrics_grpc_histogram: false
+
+## An obvious use case is allowing insecure-registry access to self hosted registries.
+## Can be ipaddress and domain_name.
+## example define mirror.registry.io or 172.19.16.11:5000
+## set "name": "url". insecure url must be started http://
+## Port number is also needed if the default HTTPS port is not used.
+# containerd_insecure_registries:
+# "localhost": "http://127.0.0.1"
+# "172.19.16.11:5000": "http://172.19.16.11:5000"
+
+# containerd_registries:
+# "docker.io": "https://registry-1.docker.io"
+
+# containerd_max_container_log_line_size: -1
+
+# containerd_registry_auth:
+# - registry: 10.0.0.2:5000
+# username: user
+# password: pass