|
|
@@ -1,11 +1,26 @@
|
|
1
|
1
|
apiVersion: cert-manager.io/v1
|
|
2
|
2
|
kind: Certificate
|
|
3
|
3
|
metadata:
|
|
4
|
|
- name: lahelice.vespot.co
|
|
|
4
|
+ name: secure-lahelicevespotco
|
|
|
5
|
+ namespace: default
|
|
5
|
6
|
spec:
|
|
|
7
|
+ secretName: secure-lahelicevespotco-tls
|
|
|
8
|
+ duration: 2160h # 90d
|
|
|
9
|
+ renewBefore: 360h # 15d
|
|
|
10
|
+ subject:
|
|
|
11
|
+ organizations:
|
|
|
12
|
+ - lahelicevespotco
|
|
|
13
|
+ isCA: false
|
|
|
14
|
+ privateKey:
|
|
|
15
|
+ algorithm: RSA
|
|
|
16
|
+ encoding: PKCS1
|
|
|
17
|
+ size: 2048
|
|
|
18
|
+ usages:
|
|
|
19
|
+ - server auth
|
|
|
20
|
+ - client auth
|
|
6
|
21
|
dnsNames:
|
|
7
|
|
- - lahelice.vespot.co
|
|
|
22
|
+ - lahelice.vespot.co
|
|
8
|
23
|
issuerRef:
|
|
9
|
|
- name: letsencrypt
|
|
10
|
|
- kind: Issuer
|
|
11
|
|
- secretName: lahelicevespot-tls
|
|
|
24
|
+ name: letsencrypt-prod
|
|
|
25
|
+ kind: ClusterIssuer
|
|
|
26
|
+ group: cert-manager.io
|