Skip to content
Snippets Groups Projects
Commit 06e49b73 authored by OZGCloud's avatar OZGCloud
Browse files

OZG-3276 OZG-3318 disable user-manager-tls secret in seperate file; set fix...

OZG-3276 OZG-3318 disable user-manager-tls secret in seperate file; set fix name for issuer; rename secret to "user-manager-tls"
parent ccf046fe
No related branches found
No related tags found
No related merge requests found
......@@ -24,11 +24,11 @@
apiVersion: cert-manager.io/v1
kind: Issuer
metadata:
name: {{ include "app.kopBezeichner" . }}-ca-issuer
name: user-manager-ca-issuer
namespace: {{ include "app.namespace" . }}
spec:
ca:
secretName: user-manager-ca-cert
secretName: user-manager-tls
---
apiVersion: cert-manager.io/v1
kind: Certificate
......@@ -36,9 +36,9 @@ metadata:
name: user-manager-ca-cert
namespace: {{ include "app.namespace" . }}
spec:
secretName: user-manager-ca-cert
secretName: user-manager-tls
issuerRef:
name: {{ include "app.kopBezeichner" . }}-ca-issuer
name: user-manager-ca-issuer
kind: Issuer
duration: 8760h0m0s
renewBefore: 720h0m0s
......@@ -158,18 +158,18 @@ spec:
terminationMessagePolicy: File
tty: true
volumeMounts:
- name: user-manager-tls-ca
mountPath: "/user-manager-tls-ca/tls.crt"
- name: user-manager-tls
mountPath: "/user-manager-tls/tls.crt"
subPath: tls.crt
readOnly: true
- name: user-manager-tls-ca
mountPath: "/user-manager-tls-ca/tls.key"
- name: user-manager-tls
mountPath: "/user-manager-tls/tls.key"
subPath: tls.key
readOnly: true
volumes:
- name: user-manager-tls-ca
- name: user-manager-tls
secret:
secretName: user-manager-ca-cert
secretName: user-manager-tls
dnsConfig: {}
dnsPolicy: ClusterFirst
imagePullSecrets:
......
......@@ -22,32 +22,32 @@
# unter der Lizenz sind dem Lizenztext zu entnehmen.
#
apiVersion: cert-manager.io/v1
kind: Issuer
metadata:
name: {{ include "app.kopBezeichner" . }}-ca-issuer
namespace: {{ include "app.namespace" . }}
spec:
ca:
secretName: user-manager-ca-cert
---
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: user-manager-ca-cert
namespace: {{ include "app.namespace" . }}
spec:
secretName: user-manager-ca-cert
issuerRef:
name: {{ include "app.kopBezeichner" . }}-ca-issuer
kind: Issuer
duration: 8760h0m0s
renewBefore: 720h0m0s
commonName: "user-manager-svc"
dnsNames:
- "*.user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local"
- "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local"
- "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster"
- "user-manager-svc.{{ include "app.namespace" . }}.svc"
- "user-manager-svc.{{ include "app.namespace" . }}"
- "user-manager-svc"
\ No newline at end of file
#apiVersion: cert-manager.io/v1
#kind: Issuer
#metadata:
# name: {{ include "app.kopBezeichner" . }}-ca-issuer
# namespace: {{ include "app.namespace" . }}
#spec:
# ca:
# secretName: user-manager-ca-cert
#---
#apiVersion: cert-manager.io/v1
#kind: Certificate
#metadata:
# name: user-manager-ca-cert
# namespace: {{ include "app.namespace" . }}
#spec:
# secretName: user-manager-ca-cert
# issuerRef:
# name: {{ include "app.kopBezeichner" . }}-ca-issuer
# kind: Issuer
# duration: 8760h0m0s
# renewBefore: 720h0m0s
# commonName: "user-manager-svc"
# dnsNames:
# - "*.user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local"
# - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local"
# - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster"
# - "user-manager-svc.{{ include "app.namespace" . }}.svc"
# - "user-manager-svc.{{ include "app.namespace" . }}"
# - "user-manager-svc"
\ No newline at end of file
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment