Skip to content

Commit ca51dba

Browse files
committed
add an option to generate tls cert during helm install
1 parent c0ecefa commit ca51dba

File tree

2 files changed

+34
-0
lines changed

2 files changed

+34
-0
lines changed

deploy/templates/cert.yaml

Lines changed: 31 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
{{- if .Values.generateTlsCert }}
2+
apiVersion: cert-manager.io/v1
3+
kind: Certificate
4+
metadata:
5+
name: ocm-registry-tls-certs
6+
namespace: sap-ocm-controller
7+
spec:
8+
secretName: ocm-registry-tls-certs
9+
dnsNames:
10+
- registry.sap-ocm-controller.svc.cluster.local
11+
- localhost
12+
ipAddresses:
13+
- 127.0.0.1
14+
- ::1
15+
privateKey:
16+
algorithm: RSA
17+
encoding: PKCS8
18+
size: 2048
19+
issuerRef:
20+
name: ocm-certificate-issuer
21+
kind: ClusterIssuer
22+
group: cert-manager.io
23+
---
24+
apiVersion: cert-manager.io/v1
25+
kind: ClusterIssuer
26+
metadata:
27+
name: ocm-certificate-issuer
28+
spec:
29+
ca:
30+
secretName: ocm-registry-tls-certs
31+
{{- end}}

deploy/values.yaml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -63,5 +63,8 @@ manager:
6363
clusterRole:
6464
labels:
6565

66+
# Generate TLS Certificate for registry and manager
67+
generateTlsCert: false
68+
6669
monitoring:
6770
enabled: false

0 commit comments

Comments
 (0)