Browse Source

cert change for helm

afeiszli 3 years ago
parent
commit
ef029b0713
2 changed files with 5 additions and 3 deletions
  1. 3 0
      kube/helm/netmaker/templates/ingress.yaml
  2. 2 3
      kube/helm/netmaker/values.yaml

+ 3 - 0
kube/helm/netmaker/templates/ingress.yaml

@@ -35,6 +35,7 @@ metadata:
     {{- end }}
     {{- if .tls.enabled }}
     {{- toYaml .annotations.tls | nindent 4 }}
+    cert-manager.io/cluster-issuer: {{ .tls.issuerName }}
     {{- end }}
   {{- end }}
 spec:
@@ -89,6 +90,7 @@ metadata:
     {{- end }}
     {{- if .tls.enabled }}
     {{- toYaml .annotations.tls | nindent 4 }}
+    cert-manager.io/cluster-issuer: {{ .tls.issuerName }}
     {{- end }}
   {{- end }}
 spec:
@@ -145,6 +147,7 @@ metadata:
     {{- end }}
     {{- if .tls.enabled }}
     {{- toYaml .annotations.tls | nindent 4 }}
+    cert-manager.io/cluster-issuer: {{ .tls.issuerName }}
     {{- end }}
   {{- end }}
 spec:

+ 2 - 3
kube/helm/netmaker/values.yaml

@@ -53,15 +53,14 @@ ingress:
   enabled: false
   tls:
     enabled: true
+    issuerName: "letsencrypt-prod"
   annotations:
     base:
       # -- annotation to generate ACME certs if available
       kubernetes.io/ingress.allow-http: "false"    
     tls:
+      # -- use acme cert if available
       kubernetes.io/tls-acme: "true"
-      # -- LE issuer name 
-      cert-manager.io/cluster-issuer: "letsencrypt-prod"
-      # -- Block HTTP requests
     nginx:
       # -- Redirect http to https 
       nginx.ingress.kubernetes.io/ssl-redirect: 'true'