yyvf22 pushed to branch main at Root / Kubernetes / FluxCD

Commits:

12 changed files:

Changes:

  • apps/base/ademir/ing.yaml
    ... ... @@ -4,7 +4,7 @@ metadata:
    4 4
       name: ademir
    
    5 5
       namespace: ademir
    
    6 6
       annotations:
    
    7
    -    cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    7
    +    cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    8 8
     spec:
    
    9 9
       ingressClassName: cilium
    
    10 10
       rules:
    

  • apps/base/codimd/ing.yaml
    ... ... @@ -4,7 +4,7 @@ metadata:
    4 4
       name: codimd
    
    5 5
       namespace: codimd
    
    6 6
       annotations:
    
    7
    -    cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    7
    +    cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    8 8
     spec:
    
    9 9
       ingressClassName: cilium
    
    10 10
       rules:
    

  • apps/base/matrix/helmrelease.yaml
    ... ... @@ -16,7 +16,7 @@ spec:
    16 16
         ingress:
    
    17 17
           className: cilium
    
    18 18
           annotations:
    
    19
    -        cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    19
    +        cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    20 20
           tlsSecret: matrix-tls
    
    21 21
         postgres:
    
    22 22
           # do not use **internal** postgres db
    

  • apps/base/netbox/helmrelease.yaml
    ... ... @@ -98,7 +98,7 @@ spec:
    98 98
           enabled: true
    
    99 99
           className: cilium
    
    100 100
           annotations:
    
    101
    -        cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    101
    +        cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    102 102
           hosts:
    
    103 103
             - host: netbox.k8sstage.c3sl.ufpr.br
    
    104 104
               paths:
    

  • apps/base/nextcloud/helmrelease.yaml
    ... ... @@ -18,7 +18,7 @@ spec:
    18 18
           enabled: true
    
    19 19
           className: cilium
    
    20 20
           annotations:
    
    21
    -        cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    21
    +        cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    22 22
           tls:
    
    23 23
             - secretName: nextcloud-tls
    
    24 24
               hosts:
    

  • apps/base/rallly/ing.yaml
    ... ... @@ -4,7 +4,7 @@ metadata:
    4 4
       name: rallly
    
    5 5
       namespace: rallly
    
    6 6
       annotations:
    
    7
    -    cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    7
    +    cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    8 8
     spec:
    
    9 9
       ingressClassName: cilium
    
    10 10
       rules:
    

  • apps/base/wordpress/ing.yaml
    ... ... @@ -4,7 +4,7 @@ metadata:
    4 4
       name: wordpress
    
    5 5
       namespace: wordpress
    
    6 6
       annotations:
    
    7
    -    cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    7
    +    cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    8 8
     spec:
    
    9 9
       ingressClassName: cilium
    
    10 10
       rules:
    

  • infrastructure/base/cert-manager/clusterissuer.yaml
    1 1
     apiVersion: cert-manager.io/v1
    
    2 2
     kind: ClusterIssuer
    
    3 3
     metadata:
    
    4
    -  name: letsencrypt-wildcard
    
    4
    +  name: letsencrypt-dns01
    
    5 5
     spec:
    
    6 6
       acme:
    
    7 7
         server: https://acme-v02.api.letsencrypt.org/directory
    
    8 8
         email: root@inf.ufpr.br
    
    9 9
         privateKeySecretRef:
    
    10
    -      name: letsencrypt-wildcard
    
    10
    +      name: letsencrypt-dns01
    
    11 11
         solvers:
    
    12 12
           - dns01:
    
    13 13
               rfc2136:
    

  • infrastructure/base/harbor/helmrelease.yaml
    ... ... @@ -19,7 +19,7 @@ spec:
    19 19
             hosts:
    
    20 20
               core: harbor.c3sl.ufpr.br
    
    21 21
             annotations:
    
    22
    -          cert-manager.io/cluster-issuer: "letsencrypt-wildcard"
    
    22
    +          cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    23 23
           tls:
    
    24 24
             certSource: secret
    
    25 25
             secret:
    

  • infrastructure/base/keycloak/ing.yaml
    ... ... @@ -4,7 +4,7 @@ metadata:
    4 4
       name: keycloak
    
    5 5
       namespace: keycloak
    
    6 6
       annotations:
    
    7
    -    cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    7
    +    cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    8 8
     spec:
    
    9 9
       ingressClassName: cilium
    
    10 10
       rules:
    

  • infrastructure/base/openbao/helmrelease.yaml
    ... ... @@ -50,7 +50,7 @@ spec:
    50 50
             annotations:
    
    51 51
               ingress.cilium.io/loadbalancer-mode: dedicated
    
    52 52
               ingress.cilium.io/service-type: LoadBalancer
    
    53
    -          cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    53
    +          cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    54 54
             ingressClassName: cilium
    
    55 55
             pathType: Prefix
    
    56 56
             hosts:
    

  • monitoring/base/kube-prometheus-stack/helmrelease.yaml
    ... ... @@ -19,7 +19,7 @@ spec:
    19 19
           ingress:
    
    20 20
             enabled: true
    
    21 21
             annotations:
    
    22
    -          cert-manager.io/cluster-issuer: letsencrypt-wildcard
    
    22
    +          cert-manager.io/cluster-issuer: letsencrypt-dns01
    
    23 23
             ingressClassName: cilium
    
    24 24
             hosts:
    
    25 25
               - grafana.k8sstage.c3sl.ufpr.br