wip
This commit is contained in:
parent
2eed379533
commit
d410d564f3
5 changed files with 162 additions and 0 deletions
33
clusters/cherry/manifests/vault/ca.yaml
Normal file
33
clusters/cherry/manifests/vault/ca.yaml
Normal file
|
|
@ -0,0 +1,33 @@
|
|||
apiVersion: cert-manager.io/v1
|
||||
kind: Issuer
|
||||
metadata:
|
||||
name: selfsigned
|
||||
spec:
|
||||
selfSigned: {}
|
||||
---
|
||||
apiVersion: cert-manager.io/v1
|
||||
kind: Certificate
|
||||
metadata:
|
||||
name: server-selfsigned-ca
|
||||
spec:
|
||||
isCA: true
|
||||
commonName: Vault Server CA
|
||||
secretName: server-ca
|
||||
duration: 87660h # 10 years
|
||||
privateKey:
|
||||
algorithm: RSA
|
||||
size: 4096
|
||||
issuerRef:
|
||||
name: selfsigned
|
||||
kind: Issuer
|
||||
group: cert-manager.io
|
||||
additionalOutputFormats:
|
||||
- type: CombinedPEM
|
||||
---
|
||||
apiVersion: cert-manager.io/v1
|
||||
kind: Issuer
|
||||
metadata:
|
||||
name: server-ca-issuer
|
||||
spec:
|
||||
ca:
|
||||
secretName: server-ca
|
||||
Reference in a new issue