Skip to content
Snippets Groups Projects
Commit 06e49b73 authored by OZGCloud's avatar OZGCloud
Browse files

OZG-3276 OZG-3318 disable user-manager-tls secret in seperate file; set fix...

OZG-3276 OZG-3318 disable user-manager-tls secret in seperate file; set fix name for issuer; rename secret to "user-manager-tls"
parent ccf046fe
Branches
Tags
No related merge requests found
...@@ -24,11 +24,11 @@ ...@@ -24,11 +24,11 @@
apiVersion: cert-manager.io/v1 apiVersion: cert-manager.io/v1
kind: Issuer kind: Issuer
metadata: metadata:
name: {{ include "app.kopBezeichner" . }}-ca-issuer name: user-manager-ca-issuer
namespace: {{ include "app.namespace" . }} namespace: {{ include "app.namespace" . }}
spec: spec:
ca: ca:
secretName: user-manager-ca-cert secretName: user-manager-tls
--- ---
apiVersion: cert-manager.io/v1 apiVersion: cert-manager.io/v1
kind: Certificate kind: Certificate
...@@ -36,9 +36,9 @@ metadata: ...@@ -36,9 +36,9 @@ metadata:
name: user-manager-ca-cert name: user-manager-ca-cert
namespace: {{ include "app.namespace" . }} namespace: {{ include "app.namespace" . }}
spec: spec:
secretName: user-manager-ca-cert secretName: user-manager-tls
issuerRef: issuerRef:
name: {{ include "app.kopBezeichner" . }}-ca-issuer name: user-manager-ca-issuer
kind: Issuer kind: Issuer
duration: 8760h0m0s duration: 8760h0m0s
renewBefore: 720h0m0s renewBefore: 720h0m0s
...@@ -158,18 +158,18 @@ spec: ...@@ -158,18 +158,18 @@ spec:
terminationMessagePolicy: File terminationMessagePolicy: File
tty: true tty: true
volumeMounts: volumeMounts:
- name: user-manager-tls-ca - name: user-manager-tls
mountPath: "/user-manager-tls-ca/tls.crt" mountPath: "/user-manager-tls/tls.crt"
subPath: tls.crt subPath: tls.crt
readOnly: true readOnly: true
- name: user-manager-tls-ca - name: user-manager-tls
mountPath: "/user-manager-tls-ca/tls.key" mountPath: "/user-manager-tls/tls.key"
subPath: tls.key subPath: tls.key
readOnly: true readOnly: true
volumes: volumes:
- name: user-manager-tls-ca - name: user-manager-tls
secret: secret:
secretName: user-manager-ca-cert secretName: user-manager-tls
dnsConfig: {} dnsConfig: {}
dnsPolicy: ClusterFirst dnsPolicy: ClusterFirst
imagePullSecrets: imagePullSecrets:
......
...@@ -22,32 +22,32 @@ ...@@ -22,32 +22,32 @@
# unter der Lizenz sind dem Lizenztext zu entnehmen. # unter der Lizenz sind dem Lizenztext zu entnehmen.
# #
apiVersion: cert-manager.io/v1 #apiVersion: cert-manager.io/v1
kind: Issuer #kind: Issuer
metadata: #metadata:
name: {{ include "app.kopBezeichner" . }}-ca-issuer # name: {{ include "app.kopBezeichner" . }}-ca-issuer
namespace: {{ include "app.namespace" . }} # namespace: {{ include "app.namespace" . }}
spec: #spec:
ca: # ca:
secretName: user-manager-ca-cert # secretName: user-manager-ca-cert
--- #---
apiVersion: cert-manager.io/v1 #apiVersion: cert-manager.io/v1
kind: Certificate #kind: Certificate
metadata: #metadata:
name: user-manager-ca-cert # name: user-manager-ca-cert
namespace: {{ include "app.namespace" . }} # namespace: {{ include "app.namespace" . }}
spec: #spec:
secretName: user-manager-ca-cert # secretName: user-manager-ca-cert
issuerRef: # issuerRef:
name: {{ include "app.kopBezeichner" . }}-ca-issuer # name: {{ include "app.kopBezeichner" . }}-ca-issuer
kind: Issuer # kind: Issuer
duration: 8760h0m0s # duration: 8760h0m0s
renewBefore: 720h0m0s # renewBefore: 720h0m0s
commonName: "user-manager-svc" # commonName: "user-manager-svc"
dnsNames: # dnsNames:
- "*.user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" # - "*.user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local"
- "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" # - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local"
- "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster" # - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster"
- "user-manager-svc.{{ include "app.namespace" . }}.svc" # - "user-manager-svc.{{ include "app.namespace" . }}.svc"
- "user-manager-svc.{{ include "app.namespace" . }}" # - "user-manager-svc.{{ include "app.namespace" . }}"
- "user-manager-svc" # - "user-manager-svc"
\ No newline at end of file \ No newline at end of file
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment