From fa40a28c0c81b57d6678305adfcb3705bfc69fc7 Mon Sep 17 00:00:00 2001 From: michaeljguarino Date: Mon, 21 Aug 2023 15:14:24 -0400 Subject: [PATCH] Include nginx based issuer for more flexible cert issuance This isn't something we should rely on since it can occasionally flake, but for things like one-off domains, its pretty useful. --- bootstrap/helm/bootstrap/Chart.yaml | 2 +- bootstrap/helm/bootstrap/templates/issuer.yaml | 16 ++++++++++++++++ 2 files changed, 17 insertions(+), 1 deletion(-) diff --git a/bootstrap/helm/bootstrap/Chart.yaml b/bootstrap/helm/bootstrap/Chart.yaml index 781a0c78c..eb4a266d7 100644 --- a/bootstrap/helm/bootstrap/Chart.yaml +++ b/bootstrap/helm/bootstrap/Chart.yaml @@ -10,7 +10,7 @@ maintainers: email: mguarino46@gmail.com - name: David van der Spek email: david@plural.sh -version: 0.8.71 +version: 0.8.72 dependencies: - name: external-dns version: 6.14.1 diff --git a/bootstrap/helm/bootstrap/templates/issuer.yaml b/bootstrap/helm/bootstrap/templates/issuer.yaml index 5d5dfe5e1..438c77645 100644 --- a/bootstrap/helm/bootstrap/templates/issuer.yaml +++ b/bootstrap/helm/bootstrap/templates/issuer.yaml @@ -14,6 +14,22 @@ metadata: spec: selfSigned: {} {{ else }} +--- +apiVersion: cert-manager.io/v1 +kind: Issuer +metadata: + name: plural-nginx +spec: + acme: + email: {{ .Values.ownerEmail }} + server: {{ .Values.acmeServer }} + privateKeySecretRef: + name: cert-manager-nginx-key + solvers: + - http01: + ingress: + class: nginx +--- apiVersion: cert-manager.io/v1 kind: ClusterIssuer metadata: