From dde2baf5bfa16d170f60adb8ca3bf2c7178f4e25 Mon Sep 17 00:00:00 2001 From: OZGCloud <ozgcloud@mgm-tp.com> Date: Fri, 13 Jan 2023 14:14:33 +0100 Subject: [PATCH] OZG-3276 OZG-3318 seperat secret and deployment to check secret creation --- src/main/helm/templates/deployment.yaml | 38 ----------- .../templates/usermanager_tls_secret.yaml | 67 +++++++++++-------- 2 files changed, 38 insertions(+), 67 deletions(-) diff --git a/src/main/helm/templates/deployment.yaml b/src/main/helm/templates/deployment.yaml index c8c59e7d..dc7a83c6 100644 --- a/src/main/helm/templates/deployment.yaml +++ b/src/main/helm/templates/deployment.yaml @@ -22,44 +22,6 @@ # unter der Lizenz sind dem Lizenztext zu entnehmen. # -apiVersion: cert-manager.io/v1 -kind: Issuer -metadata: - name: user-manager-issuer - namespace: {{ include "app.namespace" . }} -spec: - selfSigned: {} ---- -apiVersion: cert-manager.io/v1 -kind: Issuer -metadata: - name: user-manager-ca-issuer - namespace: {{ include "app.namespace" . }} -spec: - ca: - secretName: user-manager-ca-cert ---- -apiVersion: cert-manager.io/v1 -kind: Certificate -metadata: - name: user-manager-tls-certificate - namespace: {{ include "app.namespace" . }} -spec: - secretName: user-manager-tls-cert - issuerRef: - name: user-manager-ca-issuer - kind: Issuer - duration: 8760h0m0s - renewBefore: 720h0m0s - commonName: "user-manager-svc" - dnsNames: - - "*.user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" - - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" - - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster" - - "user-manager-svc.{{ include "app.namespace" . }}.svc" - - "user-manager-svc.{{ include "app.namespace" . }}" - - "user-manager-svc" ---- apiVersion: apps/v1 kind: Deployment metadata: diff --git a/src/main/helm/templates/usermanager_tls_secret.yaml b/src/main/helm/templates/usermanager_tls_secret.yaml index fd09afee..1ceab999 100644 --- a/src/main/helm/templates/usermanager_tls_secret.yaml +++ b/src/main/helm/templates/usermanager_tls_secret.yaml @@ -22,32 +22,41 @@ # unter der Lizenz sind dem Lizenztext zu entnehmen. # -#apiVersion: cert-manager.io/v1 -#kind: Issuer -#metadata: -# name: {{ include "app.kopBezeichner" . }}-ca-issuer -# namespace: {{ include "app.namespace" . }} -#spec: -# ca: -# secretName: user-manager-ca-cert -#--- -#apiVersion: cert-manager.io/v1 -#kind: Certificate -#metadata: -# name: user-manager-ca-cert -# namespace: {{ include "app.namespace" . }} -#spec: -# secretName: user-manager-ca-cert -# issuerRef: -# name: {{ include "app.kopBezeichner" . }}-ca-issuer -# kind: Issuer -# duration: 8760h0m0s -# renewBefore: 720h0m0s -# commonName: "user-manager-svc" -# dnsNames: -# - "*.user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" -# - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" -# - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster" -# - "user-manager-svc.{{ include "app.namespace" . }}.svc" -# - "user-manager-svc.{{ include "app.namespace" . }}" -# - "user-manager-svc" \ No newline at end of file +apiVersion: cert-manager.io/v1 +kind: Issuer +metadata: + name: user-manager-issuer + namespace: {{ include "app.namespace" . }} +spec: + selfSigned: {} +--- +apiVersion: cert-manager.io/v1 +kind: Issuer +metadata: + name: user-manager-ca-issuer + namespace: {{ include "app.namespace" . }} +spec: + ca: + secretName: user-manager-ca-cert +--- +apiVersion: cert-manager.io/v1 +kind: Certificate +metadata: + name: user-manager-tls-certificate + namespace: {{ include "app.namespace" . }} +spec: + secretName: user-manager-tls-cert + issuerRef: + name: user-manager-ca-issuer + kind: Issuer + duration: 8760h0m0s + renewBefore: 720h0m0s + commonName: "user-manager-svc" + dnsNames: + - "*.user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" + - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster.local" + - "user-manager-svc.{{ include "app.namespace" . }}.svc.cluster" + - "user-manager-svc.{{ include "app.namespace" . }}.svc" + - "user-manager-svc.{{ include "app.namespace" . }}" + - "user-manager-svc" +--- \ No newline at end of file -- GitLab