Files
ansible/roles/kubernetes_cert_manager/templates/clusterissuer.yml.j2
2025-07-13 14:25:53 +02:00

19 lines
728 B
Django/Jinja

apiVersion: cert-manager.io/v1
kind: ClusterIssuer
spec:
# For staging: https://acme-staging-v02.api.letsencrypt.org/directory
# For production: https://acme-v02.api.letsencrypt.org/directory
server: "{% if cert_manager_issuer_env == 'production' %}https://acme-v02.api.letsencrypt.org/directory{% else %}https://acme-staging-v02.api.letsencrypt.org/directory{% endif %}"
email: "{{ cert_manager_email }}"
privateKeySecretRef:
name: "{{ cert_manager_issuer_name }}-account-key"
solvers:
- dns01:
webhook:
groupName: com.netcup.webhook
solverName: netcup
config:
secretRef: netcup-secret
secretNamespace: cert-manager