1
0
Fork 0

k/cert-manager: add DigitalOcean ClusterIssuer

This commit is contained in:
ryan-distrust.co 2023-05-14 15:06:43 -04:00
parent 6fa454652a
commit e83610ce47
Signed by untrusted user who does not match committer: ryan
GPG Key ID: 8E401478A3FBEF72
4 changed files with 29 additions and 0 deletions

View File

@ -0,0 +1,16 @@
apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
name: letsencrypt
spec:
acme:
email: ryan@distrust.co
privateKeySecretRef:
name: letsencrypt
server: https://acme-v02.api.letsencrypt.org/directory
solvers:
- dns01:
digitalocean:
tokenSecretRef:
name: digitalocean
key: access-token

View File

@ -0,0 +1,6 @@
apiVersion: kustomize.config.k8s.io/v1beta1
kind: Kustomization
resources:
- issuer.yaml
generators:
- secret-generator.yaml

View File

@ -0,0 +1,6 @@
apiVersion: viaduct.ai/v1
kind: ksops
metadata:
name: ksops
files:
- ../../digitalocean/digitalocean-config.enc.yaml

View File

@ -3,6 +3,7 @@ kind: Kustomization
namespace: cert-manager namespace: cert-manager
resources: resources:
- https://github.com/james-callahan/cert-manager-kustomize?ref=b9560b4603bffac901c99d7d9d16e5e2a07e44d8 - https://github.com/james-callahan/cert-manager-kustomize?ref=b9560b4603bffac901c99d7d9d16e5e2a07e44d8
- cluster-issuer
- namespace.yaml - namespace.yaml
replacements: replacements:
- source: - source: