fix: remove all manual usages of wildcard cert, only use traefik default cert

This commit is contained in:
SeanOMik 2024-02-03 23:16:50 -05:00
parent ccc22fe9fd
commit 44d02b317c
Signed by: SeanOMik
GPG Key ID: FEC9E2FC15235964
4 changed files with 3 additions and 11 deletions

View File

@ -33,7 +33,6 @@ spec:
main: main:
enabled: true enabled: true
annotations: annotations:
cert-manager.io/cluster-issuer: letsencrypt-production
traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.middlewares: traefik-authentik@kubernetescrd traefik.ingress.kubernetes.io/router.middlewares: traefik-authentik@kubernetescrd
hosts: hosts:
@ -44,4 +43,3 @@ spec:
tls: tls:
- hosts: - hosts:
- *host - *host
secretName: wildcard-main-tls

View File

@ -64,7 +64,6 @@ spec:
enabled: true enabled: true
annotations: annotations:
cert-manager.io/cluster-issuer: letsencrypt-production
traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.entrypoints: websecure
hosts: hosts:
@ -76,4 +75,3 @@ spec:
tls: tls:
- hosts: - hosts:
- *host - *host
secretName: wildcard-main-tls

View File

@ -4,7 +4,6 @@ metadata:
name: traefik-dash-ingress name: traefik-dash-ingress
namespace: traefik namespace: traefik
annotations: annotations:
cert-manager.io/cluster-issuer: letsencrypt-production
traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.middlewares: traefik-authentik@kubernetescrd traefik.ingress.kubernetes.io/router.middlewares: traefik-authentik@kubernetescrd
spec: spec:
@ -23,4 +22,3 @@ spec:
- hosts: - hosts:
- "${SECRET_DOMAIN}" - "${SECRET_DOMAIN}"
- "traefik.${SECRET_DOMAIN}" - "traefik.${SECRET_DOMAIN}"
secretName: wildcard-main-tls

View File

@ -21,12 +21,10 @@ spec:
ingress: ingress:
enabled: true enabled: true
annotations: annotations:
cert-manager.io/cluster-issuer: letsencrypt-production
traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.middlewares: traefik-authentik@kubernetescrd traefik.ingress.kubernetes.io/router.middlewares: traefik-authentik@kubernetescrd
host: lnghrn.${SECRET_NEW_DOMAIN} host: lnghrn.${SECRET_NEW_DOMAIN}
tls: true tls: true
tlsSecret: wildcard-main-tls
persistence: persistence:
defaultClassReplicaCount: 1 # TODO: When the cluster expands, expand the replica count defaultClassReplicaCount: 1 # TODO: When the cluster expands, expand the replica count