Skip to content

Commit 12ea713

Browse files
committed
fix: Correct sync wave ordering for certificate dependency chain
Move nginx-ingress-pxe-boots from wave 1200 → 1100 so it creates tls-boots secret BEFORE infra-onboarding (wave 1150) needs boots-ca-cert. Wave ordering: - 1100: nginx-ingress-pxe-boots creates tls-boots Certificate resource - 1140: copy-ca-cert-boots-to-infra copies tls-boots → boots-ca-cert (ExternalSecret) - 1150: infra-onboarding deploys with boots-ca-cert available for dkam This fixes dkam CrashLoopBackOff due to missing /etc/ssl/boots-ca-cert/ca.crt
1 parent 0e1b544 commit 12ea713

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

argocd/applications/templates/nginx-ingress-pxe-boots.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@
44

55
{{- $appName := "nginx-ingress-pxe-boots" }}
66
{{- $namespace := "orch-boots" }}
7-
{{- $syncWave := "1200" }}
7+
{{- $syncWave := "1100" }}
88
---
99
{{- if (index .Values.argo.enabled $appName) }}
1010
apiVersion: argoproj.io/v1alpha1

0 commit comments

Comments
 (0)