ClubCedille / Plateforme-Cedille

Nouvelle infra du club Cédille
https://wiki.omni.cedille.club
MIT License
6 stars 0 forks source link

Ajouter cert manager a la base #234

Open Simon-Boyer opened 2 weeks ago

Simon-Boyer commented 2 weeks ago

https://github.com/ClubCedille/Plateforme-Cedille/tree/master/system/cert-manager

Simon-Boyer commented 2 weeks ago

https://cert-manager.io/

JulienGiguere commented 1 week ago

kubectl config pour lanets-staging: omni cidero link.

used this procedure: cert-manager install procedure link.

used previous configs github link.

  kubectl apply -f issuer-prod.yaml
  kubectl apply -f issuer-staging.yaml

What was done: Installed cert-manager that uses letsencrypt on lanets-staging.

Awaiting test to see if it works with contour.

JulienGiguere commented 19 hours ago

Modifier le champ 'solvers' des fichiers issuer-staging.yaml & issuer-prod.yaml pour utiliser dns au lieu de http puisque l'ETS bloque le port 80.

doc

    solvers:
    - dns01:
        cloudflare:
          apiTokenSecretRef:
            name: cloudflare-token
            key: token