Skip to content

Commit c0b0ccc

Browse files
committed
UPSTREAM: <carry>: generate and mount service-ca server cert
Signed-off-by: Joe Lanford <[email protected]>
1 parent ee1cc93 commit c0b0ccc

File tree

3 files changed

+24
-0
lines changed

3 files changed

+24
-0
lines changed

openshift/kustomize/overlays/openshift/olmv1-ns/kustomization.yaml

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -7,6 +7,10 @@ resources:
77
- ../../../../../config/base/manager
88

99
patches:
10+
- target:
11+
kind: Service
12+
name: service
13+
path: patches/manager_service.yaml
1014
- target:
1115
kind: ClusterRole
1216
name: manager-role
@@ -15,6 +19,10 @@ patches:
1519
kind: Deployment
1620
name: controller-manager
1721
path: patches/manager_deployment_ca.yaml
22+
- target:
23+
kind: Deployment
24+
name: controller-manager
25+
path: patches/manager_deployment_certs.yaml
1826
- target:
1927
kind: Deployment
2028
name: controller-manager
Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
- op: add
2+
path: /spec/template/spec/volumes/-
3+
value: {"name":"operator-controller-certs", "secret":{"optional":false,"secretName":"operator-controller-cert"}}
4+
- op: add
5+
path: /spec/template/spec/containers/0/volumeMounts/-
6+
value: {"name":"operator-controller-certs", "mountPath":"/var/certs"}
7+
- op: add
8+
path: /spec/template/spec/containers/0/args/-
9+
value: "--tls-cert=/var/certs/tls.crt"
10+
- op: add
11+
path: /spec/template/spec/containers/0/args/-
12+
value: "--tls-key=/var/certs/tls.key"
Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,4 @@
1+
- op: add
2+
path: /metadata/annotations
3+
value:
4+
service.beta.openshift.io/serving-cert-secret-name: operator-controller-cert

0 commit comments

Comments
 (0)