yyvf22 pushed to branch main at Root / Kubernetes / FluxCD
Commits:
-
afc9c7fe
by yyvf at 2025-08-04T16:08:17-03:00
12 changed files:
- apps/base/ademir/ing.yaml
- apps/base/codimd/ing.yaml
- apps/base/matrix/helmrelease.yaml
- apps/base/netbox/helmrelease.yaml
- apps/base/nextcloud/helmrelease.yaml
- apps/base/rallly/ing.yaml
- apps/base/wordpress/ing.yaml
- infrastructure/base/cert-manager/clusterissuer.yaml
- infrastructure/base/harbor/helmrelease.yaml
- infrastructure/base/keycloak/ing.yaml
- infrastructure/base/openbao/helmrelease.yaml
- monitoring/base/kube-prometheus-stack/helmrelease.yaml
Changes:
... | ... | @@ -4,7 +4,7 @@ metadata: |
4 | 4 | name: ademir
|
5 | 5 | namespace: ademir
|
6 | 6 | annotations:
|
7 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
7 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
8 | 8 | spec:
|
9 | 9 | ingressClassName: cilium
|
10 | 10 | rules:
|
... | ... | @@ -4,7 +4,7 @@ metadata: |
4 | 4 | name: codimd
|
5 | 5 | namespace: codimd
|
6 | 6 | annotations:
|
7 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
7 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
8 | 8 | spec:
|
9 | 9 | ingressClassName: cilium
|
10 | 10 | rules:
|
... | ... | @@ -16,7 +16,7 @@ spec: |
16 | 16 | ingress:
|
17 | 17 | className: cilium
|
18 | 18 | annotations:
|
19 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
19 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
20 | 20 | tlsSecret: matrix-tls
|
21 | 21 | postgres:
|
22 | 22 | # do not use **internal** postgres db
|
... | ... | @@ -98,7 +98,7 @@ spec: |
98 | 98 | enabled: true
|
99 | 99 | className: cilium
|
100 | 100 | annotations:
|
101 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
101 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
102 | 102 | hosts:
|
103 | 103 | - host: netbox.k8sstage.c3sl.ufpr.br
|
104 | 104 | paths:
|
... | ... | @@ -18,7 +18,7 @@ spec: |
18 | 18 | enabled: true
|
19 | 19 | className: cilium
|
20 | 20 | annotations:
|
21 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
21 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
22 | 22 | tls:
|
23 | 23 | - secretName: nextcloud-tls
|
24 | 24 | hosts:
|
... | ... | @@ -4,7 +4,7 @@ metadata: |
4 | 4 | name: rallly
|
5 | 5 | namespace: rallly
|
6 | 6 | annotations:
|
7 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
7 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
8 | 8 | spec:
|
9 | 9 | ingressClassName: cilium
|
10 | 10 | rules:
|
... | ... | @@ -4,7 +4,7 @@ metadata: |
4 | 4 | name: wordpress
|
5 | 5 | namespace: wordpress
|
6 | 6 | annotations:
|
7 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
7 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
8 | 8 | spec:
|
9 | 9 | ingressClassName: cilium
|
10 | 10 | rules:
|
1 | 1 | apiVersion: cert-manager.io/v1
|
2 | 2 | kind: ClusterIssuer
|
3 | 3 | metadata:
|
4 | - name: letsencrypt-wildcard
|
|
4 | + name: letsencrypt-dns01
|
|
5 | 5 | spec:
|
6 | 6 | acme:
|
7 | 7 | server: https://acme-v02.api.letsencrypt.org/directory
|
8 | 8 | email: root@inf.ufpr.br
|
9 | 9 | privateKeySecretRef:
|
10 | - name: letsencrypt-wildcard
|
|
10 | + name: letsencrypt-dns01
|
|
11 | 11 | solvers:
|
12 | 12 | - dns01:
|
13 | 13 | rfc2136:
|
... | ... | @@ -19,7 +19,7 @@ spec: |
19 | 19 | hosts:
|
20 | 20 | core: harbor.c3sl.ufpr.br
|
21 | 21 | annotations:
|
22 | - cert-manager.io/cluster-issuer: "letsencrypt-wildcard"
|
|
22 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
23 | 23 | tls:
|
24 | 24 | certSource: secret
|
25 | 25 | secret:
|
... | ... | @@ -4,7 +4,7 @@ metadata: |
4 | 4 | name: keycloak
|
5 | 5 | namespace: keycloak
|
6 | 6 | annotations:
|
7 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
7 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
8 | 8 | spec:
|
9 | 9 | ingressClassName: cilium
|
10 | 10 | rules:
|
... | ... | @@ -50,7 +50,7 @@ spec: |
50 | 50 | annotations:
|
51 | 51 | ingress.cilium.io/loadbalancer-mode: dedicated
|
52 | 52 | ingress.cilium.io/service-type: LoadBalancer
|
53 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
53 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
54 | 54 | ingressClassName: cilium
|
55 | 55 | pathType: Prefix
|
56 | 56 | hosts:
|
... | ... | @@ -19,7 +19,7 @@ spec: |
19 | 19 | ingress:
|
20 | 20 | enabled: true
|
21 | 21 | annotations:
|
22 | - cert-manager.io/cluster-issuer: letsencrypt-wildcard
|
|
22 | + cert-manager.io/cluster-issuer: letsencrypt-dns01
|
|
23 | 23 | ingressClassName: cilium
|
24 | 24 | hosts:
|
25 | 25 | - grafana.k8sstage.c3sl.ufpr.br
|