diff --git a/src/main/helm/templates/deployment.yaml b/src/main/helm/templates/deployment.yaml index 61a5ff5f6413cca9a79b74350c20a92ae353de63..c8c59e7d0d4b17eceaa434ca8d523e08db454db0 100644 --- a/src/main/helm/templates/deployment.yaml +++ b/src/main/helm/templates/deployment.yaml @@ -21,6 +21,15 @@ # Die sprachspezifischen Genehmigungen und Beschränkungen # unter der Lizenz sind dem Lizenztext zu entnehmen. # + +apiVersion: cert-manager.io/v1 +kind: Issuer +metadata: + name: user-manager-issuer + namespace: {{ include "app.namespace" . }} +spec: + selfSigned: {} +--- apiVersion: cert-manager.io/v1 kind: Issuer metadata: @@ -28,15 +37,15 @@ metadata: namespace: {{ include "app.namespace" . }} spec: ca: - secretName: user-manager-tls + secretName: user-manager-ca-cert --- apiVersion: cert-manager.io/v1 kind: Certificate metadata: - name: user-manager-ca-cert + name: user-manager-tls-certificate namespace: {{ include "app.namespace" . }} spec: - secretName: user-manager-tls + secretName: user-manager-tls-cert issuerRef: name: user-manager-ca-issuer kind: Issuer @@ -158,18 +167,18 @@ spec: terminationMessagePolicy: File tty: true volumeMounts: - - name: user-manager-tls - mountPath: "/user-manager-tls/tls.crt" + - name: user-manager-tls-certificate + mountPath: "/user-manager-tls-certificate/tls.crt" subPath: tls.crt readOnly: true - - name: user-manager-tls - mountPath: "/user-manager-tls/tls.key" + - name: user-manager-tls-certificate + mountPath: "/user-manager-tls-certificate/tls.key" subPath: tls.key readOnly: true volumes: - - name: user-manager-tls + - name: user-manager-tls-certificate secret: - secretName: user-manager-tls + secretName: user-manager-tls-certificate dnsConfig: {} dnsPolicy: ClusterFirst imagePullSecrets: