Skip to content

Commit

Permalink
feat(cert-manager): switch to algorithm P-384 (#18098)
Browse files Browse the repository at this point in the history
  • Loading branch information
hongbo-miao authored Jul 18, 2024
1 parent bbb5031 commit 2f942b5
Show file tree
Hide file tree
Showing 10 changed files with 40 additions and 0 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,11 @@ metadata:
traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.tls: "true"
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,11 @@ metadata:
# https://kubernetes-sigs.github.io/external-dns/latest/annotations/annotations
external-dns.alpha.kubernetes.io/hostname: hm-akhq.internal.hongbomiao.com
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,11 @@ metadata:
# https://kubernetes-sigs.github.io/external-dns/latest/annotations/annotations
external-dns.alpha.kubernetes.io/hostname: hm-argo-cd.internal.hongbomiao.com
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
labels:
app.kubernetes.io/name: hm-argo-cd-ingress
app.kubernetes.io/part-of: production-hm-argo-cd
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,11 @@ metadata:
# https://kubernetes-sigs.github.io/external-dns/latest/annotations/annotations
external-dns.alpha.kubernetes.io/hostname: hm-kafbat-ui.internal.hongbomiao.com
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,11 @@ metadata:
# https://kubernetes-sigs.github.io/external-dns/latest/annotations/annotations
external-dns.alpha.kubernetes.io/hostname: hm-mlflow.internal.hongbomiao.com
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,11 @@ metadata:
# https://kubernetes-sigs.github.io/external-dns/latest/annotations/annotations
external-dns.alpha.kubernetes.io/hostname: hm-netdata.internal.hongbomiao.com
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,11 @@ metadata:
traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.tls: "true"
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,11 @@ metadata:
traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.tls: "true"
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,11 @@ metadata:
# https://kubernetes-sigs.github.io/external-dns/latest/annotations/annotations
external-dns.alpha.kubernetes.io/hostname: hm-ray.internal.hongbomiao.com
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,11 @@ metadata:
# https://kubernetes-sigs.github.io/external-dns/latest/annotations/annotations
external-dns.alpha.kubernetes.io/hostname: hm-redpanda-console.internal.hongbomiao.com
# https://cert-manager.io/docs/usage/ingress/#supported-annotations
# https://letsencrypt.org/certificates
cert-manager.io/cluster-issuer: production-lets-encrypt-cluster-issuer
cert-manager.io/private-key-algorithm: ECDSA
cert-manager.io/private-key-size: "384"
cert-manager.io/private-key-rotation-policy: Always
# https://argo-cd.readthedocs.io/en/stable/user-guide/resource_hooks
argocd.argoproj.io/hook: PostSync
labels:
Expand Down

0 comments on commit 2f942b5

Please sign in to comment.