namespace #3
This commit is contained in:
@@ -12760,7 +12760,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: v1
|
apiVersion: v1
|
||||||
automountServiceAccountToken: true
|
automountServiceAccountToken: true
|
||||||
@@ -12775,7 +12775,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-cainjector
|
name: cert-manager-cainjector
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: v1
|
apiVersion: v1
|
||||||
automountServiceAccountToken: true
|
automountServiceAccountToken: true
|
||||||
@@ -12794,7 +12794,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-startupapicheck
|
name: cert-manager-startupapicheck
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: v1
|
apiVersion: v1
|
||||||
automountServiceAccountToken: true
|
automountServiceAccountToken: true
|
||||||
@@ -12809,87 +12809,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-webhook
|
name: cert-manager-webhook
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
|
||||||
kind: Role
|
|
||||||
metadata:
|
|
||||||
annotations:
|
|
||||||
helm.sh/hook: post-install
|
|
||||||
helm.sh/hook-delete-policy: before-hook-creation,hook-succeeded
|
|
||||||
helm.sh/hook-weight: "-5"
|
|
||||||
labels:
|
|
||||||
app: startupapicheck
|
|
||||||
app.kubernetes.io/component: startupapicheck
|
|
||||||
app.kubernetes.io/instance: cert-manager
|
|
||||||
app.kubernetes.io/managed-by: Helm
|
|
||||||
app.kubernetes.io/name: startupapicheck
|
|
||||||
app.kubernetes.io/version: v1.17.0
|
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
|
||||||
name: cert-manager-startupapicheck:create-cert
|
|
||||||
namespace: cert-manager
|
|
||||||
rules:
|
|
||||||
- apiGroups:
|
|
||||||
- cert-manager.io
|
|
||||||
resources:
|
|
||||||
- certificaterequests
|
|
||||||
verbs:
|
|
||||||
- create
|
|
||||||
---
|
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
|
||||||
kind: Role
|
|
||||||
metadata:
|
|
||||||
labels:
|
|
||||||
app: cert-manager
|
|
||||||
app.kubernetes.io/component: controller
|
|
||||||
app.kubernetes.io/instance: cert-manager
|
|
||||||
app.kubernetes.io/managed-by: Helm
|
|
||||||
app.kubernetes.io/name: cert-manager
|
|
||||||
app.kubernetes.io/version: v1.17.0
|
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
|
||||||
name: cert-manager-tokenrequest
|
|
||||||
namespace: cert-manager
|
|
||||||
rules:
|
|
||||||
- apiGroups:
|
|
||||||
- ""
|
|
||||||
resourceNames:
|
|
||||||
- cert-manager
|
|
||||||
resources:
|
|
||||||
- serviceaccounts/token
|
|
||||||
verbs:
|
|
||||||
- create
|
|
||||||
---
|
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
|
||||||
kind: Role
|
|
||||||
metadata:
|
|
||||||
labels:
|
|
||||||
app: webhook
|
|
||||||
app.kubernetes.io/component: webhook
|
|
||||||
app.kubernetes.io/instance: cert-manager
|
|
||||||
app.kubernetes.io/managed-by: Helm
|
|
||||||
app.kubernetes.io/name: webhook
|
|
||||||
app.kubernetes.io/version: v1.17.0
|
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
|
||||||
name: cert-manager-webhook:dynamic-serving
|
|
||||||
namespace: cert-manager
|
|
||||||
rules:
|
|
||||||
- apiGroups:
|
|
||||||
- ""
|
|
||||||
resourceNames:
|
|
||||||
- cert-manager-webhook-ca
|
|
||||||
resources:
|
|
||||||
- secrets
|
|
||||||
verbs:
|
|
||||||
- get
|
|
||||||
- list
|
|
||||||
- watch
|
|
||||||
- update
|
|
||||||
- apiGroups:
|
|
||||||
- ""
|
|
||||||
resources:
|
|
||||||
- secrets
|
|
||||||
verbs:
|
|
||||||
- create
|
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: Role
|
kind: Role
|
||||||
@@ -12903,7 +12823,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-cainjector:leaderelection
|
name: cert-manager-cainjector:leaderelection
|
||||||
namespace: kube-system
|
namespace: cert-manager
|
||||||
rules:
|
rules:
|
||||||
- apiGroups:
|
- apiGroups:
|
||||||
- coordination.k8s.io
|
- coordination.k8s.io
|
||||||
@@ -12935,7 +12855,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager:leaderelection
|
name: cert-manager:leaderelection
|
||||||
namespace: kube-system
|
namespace: cert-manager
|
||||||
rules:
|
rules:
|
||||||
- apiGroups:
|
- apiGroups:
|
||||||
- coordination.k8s.io
|
- coordination.k8s.io
|
||||||
@@ -12955,6 +12875,86 @@ rules:
|
|||||||
- create
|
- create
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
|
kind: Role
|
||||||
|
metadata:
|
||||||
|
annotations:
|
||||||
|
helm.sh/hook: post-install
|
||||||
|
helm.sh/hook-delete-policy: before-hook-creation,hook-succeeded
|
||||||
|
helm.sh/hook-weight: "-5"
|
||||||
|
labels:
|
||||||
|
app: startupapicheck
|
||||||
|
app.kubernetes.io/component: startupapicheck
|
||||||
|
app.kubernetes.io/instance: cert-manager
|
||||||
|
app.kubernetes.io/managed-by: Helm
|
||||||
|
app.kubernetes.io/name: startupapicheck
|
||||||
|
app.kubernetes.io/version: v1.17.0
|
||||||
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
|
name: cert-manager-startupapicheck:create-cert
|
||||||
|
namespace: default
|
||||||
|
rules:
|
||||||
|
- apiGroups:
|
||||||
|
- cert-manager.io
|
||||||
|
resources:
|
||||||
|
- certificaterequests
|
||||||
|
verbs:
|
||||||
|
- create
|
||||||
|
---
|
||||||
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
|
kind: Role
|
||||||
|
metadata:
|
||||||
|
labels:
|
||||||
|
app: cert-manager
|
||||||
|
app.kubernetes.io/component: controller
|
||||||
|
app.kubernetes.io/instance: cert-manager
|
||||||
|
app.kubernetes.io/managed-by: Helm
|
||||||
|
app.kubernetes.io/name: cert-manager
|
||||||
|
app.kubernetes.io/version: v1.17.0
|
||||||
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
|
name: cert-manager-tokenrequest
|
||||||
|
namespace: default
|
||||||
|
rules:
|
||||||
|
- apiGroups:
|
||||||
|
- ""
|
||||||
|
resourceNames:
|
||||||
|
- cert-manager
|
||||||
|
resources:
|
||||||
|
- serviceaccounts/token
|
||||||
|
verbs:
|
||||||
|
- create
|
||||||
|
---
|
||||||
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
|
kind: Role
|
||||||
|
metadata:
|
||||||
|
labels:
|
||||||
|
app: webhook
|
||||||
|
app.kubernetes.io/component: webhook
|
||||||
|
app.kubernetes.io/instance: cert-manager
|
||||||
|
app.kubernetes.io/managed-by: Helm
|
||||||
|
app.kubernetes.io/name: webhook
|
||||||
|
app.kubernetes.io/version: v1.17.0
|
||||||
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
|
name: cert-manager-webhook:dynamic-serving
|
||||||
|
namespace: default
|
||||||
|
rules:
|
||||||
|
- apiGroups:
|
||||||
|
- ""
|
||||||
|
resourceNames:
|
||||||
|
- cert-manager-webhook-ca
|
||||||
|
resources:
|
||||||
|
- secrets
|
||||||
|
verbs:
|
||||||
|
- get
|
||||||
|
- list
|
||||||
|
- watch
|
||||||
|
- update
|
||||||
|
- apiGroups:
|
||||||
|
- ""
|
||||||
|
resources:
|
||||||
|
- secrets
|
||||||
|
verbs:
|
||||||
|
- create
|
||||||
|
---
|
||||||
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRole
|
kind: ClusterRole
|
||||||
metadata:
|
metadata:
|
||||||
labels:
|
labels:
|
||||||
@@ -13632,6 +13632,50 @@ rules:
|
|||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: RoleBinding
|
kind: RoleBinding
|
||||||
|
metadata:
|
||||||
|
labels:
|
||||||
|
app: cainjector
|
||||||
|
app.kubernetes.io/component: cainjector
|
||||||
|
app.kubernetes.io/instance: cert-manager
|
||||||
|
app.kubernetes.io/managed-by: Helm
|
||||||
|
app.kubernetes.io/name: cainjector
|
||||||
|
app.kubernetes.io/version: v1.17.0
|
||||||
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
|
name: cert-manager-cainjector:leaderelection
|
||||||
|
namespace: cert-manager
|
||||||
|
roleRef:
|
||||||
|
apiGroup: rbac.authorization.k8s.io
|
||||||
|
kind: Role
|
||||||
|
name: cert-manager-cainjector:leaderelection
|
||||||
|
subjects:
|
||||||
|
- kind: ServiceAccount
|
||||||
|
name: cert-manager-cainjector
|
||||||
|
namespace: default
|
||||||
|
---
|
||||||
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
|
kind: RoleBinding
|
||||||
|
metadata:
|
||||||
|
labels:
|
||||||
|
app: cert-manager
|
||||||
|
app.kubernetes.io/component: controller
|
||||||
|
app.kubernetes.io/instance: cert-manager
|
||||||
|
app.kubernetes.io/managed-by: Helm
|
||||||
|
app.kubernetes.io/name: cert-manager
|
||||||
|
app.kubernetes.io/version: v1.17.0
|
||||||
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
|
name: cert-manager:leaderelection
|
||||||
|
namespace: cert-manager
|
||||||
|
roleRef:
|
||||||
|
apiGroup: rbac.authorization.k8s.io
|
||||||
|
kind: Role
|
||||||
|
name: cert-manager:leaderelection
|
||||||
|
subjects:
|
||||||
|
- kind: ServiceAccount
|
||||||
|
name: cert-manager
|
||||||
|
namespace: default
|
||||||
|
---
|
||||||
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
|
kind: RoleBinding
|
||||||
metadata:
|
metadata:
|
||||||
labels:
|
labels:
|
||||||
app: cert-manager
|
app: cert-manager
|
||||||
@@ -13642,7 +13686,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-cert-manager-tokenrequest
|
name: cert-manager-cert-manager-tokenrequest
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
roleRef:
|
roleRef:
|
||||||
apiGroup: rbac.authorization.k8s.io
|
apiGroup: rbac.authorization.k8s.io
|
||||||
kind: Role
|
kind: Role
|
||||||
@@ -13650,7 +13694,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: RoleBinding
|
kind: RoleBinding
|
||||||
@@ -13668,7 +13712,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-startupapicheck:create-cert
|
name: cert-manager-startupapicheck:create-cert
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
roleRef:
|
roleRef:
|
||||||
apiGroup: rbac.authorization.k8s.io
|
apiGroup: rbac.authorization.k8s.io
|
||||||
kind: Role
|
kind: Role
|
||||||
@@ -13676,7 +13720,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager-startupapicheck
|
name: cert-manager-startupapicheck
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: RoleBinding
|
kind: RoleBinding
|
||||||
@@ -13690,7 +13734,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-webhook:dynamic-serving
|
name: cert-manager-webhook:dynamic-serving
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
roleRef:
|
roleRef:
|
||||||
apiGroup: rbac.authorization.k8s.io
|
apiGroup: rbac.authorization.k8s.io
|
||||||
kind: Role
|
kind: Role
|
||||||
@@ -13698,51 +13742,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager-webhook
|
name: cert-manager-webhook
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
|
||||||
kind: RoleBinding
|
|
||||||
metadata:
|
|
||||||
labels:
|
|
||||||
app: cainjector
|
|
||||||
app.kubernetes.io/component: cainjector
|
|
||||||
app.kubernetes.io/instance: cert-manager
|
|
||||||
app.kubernetes.io/managed-by: Helm
|
|
||||||
app.kubernetes.io/name: cainjector
|
|
||||||
app.kubernetes.io/version: v1.17.0
|
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
|
||||||
name: cert-manager-cainjector:leaderelection
|
|
||||||
namespace: kube-system
|
|
||||||
roleRef:
|
|
||||||
apiGroup: rbac.authorization.k8s.io
|
|
||||||
kind: Role
|
|
||||||
name: cert-manager-cainjector:leaderelection
|
|
||||||
subjects:
|
|
||||||
- kind: ServiceAccount
|
|
||||||
name: cert-manager-cainjector
|
|
||||||
namespace: cert-manager
|
|
||||||
---
|
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
|
||||||
kind: RoleBinding
|
|
||||||
metadata:
|
|
||||||
labels:
|
|
||||||
app: cert-manager
|
|
||||||
app.kubernetes.io/component: controller
|
|
||||||
app.kubernetes.io/instance: cert-manager
|
|
||||||
app.kubernetes.io/managed-by: Helm
|
|
||||||
app.kubernetes.io/name: cert-manager
|
|
||||||
app.kubernetes.io/version: v1.17.0
|
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
|
||||||
name: cert-manager:leaderelection
|
|
||||||
namespace: kube-system
|
|
||||||
roleRef:
|
|
||||||
apiGroup: rbac.authorization.k8s.io
|
|
||||||
kind: Role
|
|
||||||
name: cert-manager:leaderelection
|
|
||||||
subjects:
|
|
||||||
- kind: ServiceAccount
|
|
||||||
name: cert-manager
|
|
||||||
namespace: cert-manager
|
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13763,7 +13763,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager-cainjector
|
name: cert-manager-cainjector
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13784,7 +13784,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13805,7 +13805,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13826,7 +13826,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13847,7 +13847,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13868,7 +13868,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13889,7 +13889,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13910,7 +13910,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13931,7 +13931,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
@@ -13952,7 +13952,7 @@ roleRef:
|
|||||||
subjects:
|
subjects:
|
||||||
- kind: ServiceAccount
|
- kind: ServiceAccount
|
||||||
name: cert-manager-webhook
|
name: cert-manager-webhook
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
---
|
---
|
||||||
apiVersion: v1
|
apiVersion: v1
|
||||||
kind: Service
|
kind: Service
|
||||||
@@ -13966,7 +13966,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
spec:
|
spec:
|
||||||
ports:
|
ports:
|
||||||
- name: tcp-prometheus-servicemonitor
|
- name: tcp-prometheus-servicemonitor
|
||||||
@@ -13991,7 +13991,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-cainjector
|
name: cert-manager-cainjector
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
spec:
|
spec:
|
||||||
ports:
|
ports:
|
||||||
- name: http-metrics
|
- name: http-metrics
|
||||||
@@ -14015,7 +14015,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-webhook
|
name: cert-manager-webhook
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
spec:
|
spec:
|
||||||
ports:
|
ports:
|
||||||
- name: https
|
- name: https
|
||||||
@@ -14044,7 +14044,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager
|
name: cert-manager
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
spec:
|
spec:
|
||||||
replicas: 1
|
replicas: 1
|
||||||
selector:
|
selector:
|
||||||
@@ -14071,7 +14071,7 @@ spec:
|
|||||||
- args:
|
- args:
|
||||||
- --v=2
|
- --v=2
|
||||||
- --cluster-resource-namespace=$(POD_NAMESPACE)
|
- --cluster-resource-namespace=$(POD_NAMESPACE)
|
||||||
- --leader-election-namespace=kube-system
|
- --leader-election-namespace=cert-manager
|
||||||
- --acme-http01-solver-image=quay.io/jetstack/cert-manager-acmesolver:v1.17.0
|
- --acme-http01-solver-image=quay.io/jetstack/cert-manager-acmesolver:v1.17.0
|
||||||
- --enable-gateway-api
|
- --enable-gateway-api
|
||||||
- --max-concurrent-challenges=60
|
- --max-concurrent-challenges=60
|
||||||
@@ -14127,7 +14127,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-cainjector
|
name: cert-manager-cainjector
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
spec:
|
spec:
|
||||||
replicas: 1
|
replicas: 1
|
||||||
selector:
|
selector:
|
||||||
@@ -14153,7 +14153,7 @@ spec:
|
|||||||
containers:
|
containers:
|
||||||
- args:
|
- args:
|
||||||
- --v=2
|
- --v=2
|
||||||
- --leader-election-namespace=kube-system
|
- --leader-election-namespace=cert-manager
|
||||||
env:
|
env:
|
||||||
- name: POD_NAMESPACE
|
- name: POD_NAMESPACE
|
||||||
valueFrom:
|
valueFrom:
|
||||||
@@ -14193,7 +14193,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-webhook
|
name: cert-manager-webhook
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
spec:
|
spec:
|
||||||
replicas: 1
|
replicas: 1
|
||||||
selector:
|
selector:
|
||||||
@@ -14294,7 +14294,7 @@ metadata:
|
|||||||
app.kubernetes.io/version: v1.17.0
|
app.kubernetes.io/version: v1.17.0
|
||||||
helm.sh/chart: cert-manager-v1.17.0
|
helm.sh/chart: cert-manager-v1.17.0
|
||||||
name: cert-manager-startupapicheck
|
name: cert-manager-startupapicheck
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
spec:
|
spec:
|
||||||
backoffLimit: 4
|
backoffLimit: 4
|
||||||
template:
|
template:
|
||||||
@@ -14342,7 +14342,7 @@ apiVersion: admissionregistration.k8s.io/v1
|
|||||||
kind: MutatingWebhookConfiguration
|
kind: MutatingWebhookConfiguration
|
||||||
metadata:
|
metadata:
|
||||||
annotations:
|
annotations:
|
||||||
cert-manager.io/inject-ca-from-secret: cert-manager/cert-manager-webhook-ca
|
cert-manager.io/inject-ca-from-secret: default/cert-manager-webhook-ca
|
||||||
labels:
|
labels:
|
||||||
app: webhook
|
app: webhook
|
||||||
app.kubernetes.io/component: webhook
|
app.kubernetes.io/component: webhook
|
||||||
@@ -14358,7 +14358,7 @@ webhooks:
|
|||||||
clientConfig:
|
clientConfig:
|
||||||
service:
|
service:
|
||||||
name: cert-manager-webhook
|
name: cert-manager-webhook
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
path: /mutate
|
path: /mutate
|
||||||
failurePolicy: Fail
|
failurePolicy: Fail
|
||||||
matchPolicy: Equivalent
|
matchPolicy: Equivalent
|
||||||
@@ -14379,7 +14379,7 @@ apiVersion: admissionregistration.k8s.io/v1
|
|||||||
kind: ValidatingWebhookConfiguration
|
kind: ValidatingWebhookConfiguration
|
||||||
metadata:
|
metadata:
|
||||||
annotations:
|
annotations:
|
||||||
cert-manager.io/inject-ca-from-secret: cert-manager/cert-manager-webhook-ca
|
cert-manager.io/inject-ca-from-secret: default/cert-manager-webhook-ca
|
||||||
labels:
|
labels:
|
||||||
app: webhook
|
app: webhook
|
||||||
app.kubernetes.io/component: webhook
|
app.kubernetes.io/component: webhook
|
||||||
@@ -14395,7 +14395,7 @@ webhooks:
|
|||||||
clientConfig:
|
clientConfig:
|
||||||
service:
|
service:
|
||||||
name: cert-manager-webhook
|
name: cert-manager-webhook
|
||||||
namespace: cert-manager
|
namespace: default
|
||||||
path: /validate
|
path: /validate
|
||||||
failurePolicy: Fail
|
failurePolicy: Fail
|
||||||
matchPolicy: Equivalent
|
matchPolicy: Equivalent
|
||||||
|
|||||||
@@ -7,5 +7,4 @@ helmCharts:
|
|||||||
repo: https://charts.jetstack.io
|
repo: https://charts.jetstack.io
|
||||||
version: 1.17.0
|
version: 1.17.0
|
||||||
releaseName: cert-manager
|
releaseName: cert-manager
|
||||||
namespace: cert-manager
|
|
||||||
valuesFile: values.yaml
|
valuesFile: values.yaml
|
||||||
|
|||||||
@@ -3,3 +3,7 @@ crds:
|
|||||||
|
|
||||||
extraArgs:
|
extraArgs:
|
||||||
- --enable-gateway-api
|
- --enable-gateway-api
|
||||||
|
|
||||||
|
global:
|
||||||
|
leaderElection:
|
||||||
|
namespace: cert-manager
|
||||||
Reference in New Issue
Block a user