view config/dns-issuers.yaml @ 33:48b4ebc37636

dns issuer, plus digitalocean workaround
author drewp@bigasterisk.com
date Wed, 21 Jun 2023 22:59:12 -0700
parents
children
line wrap: on
line source

apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
  name: letsencrypt-dns-staging
  namespace: pomerium
spec:
  acme:
    email: drewp@bigasterisk.com
    server: https://acme-staging-v02.api.letsencrypt.org/directory
    privateKeySecretRef:
      name: letsencrypt-dns-staging
    solvers:
    - dns01:
        digitalocean:
          tokenSecretRef:
            name: digitalocean-dns
            key: access-token
---
apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
  name: letsencrypt-dns-prod
  namespace: pomerium
spec:
  acme:
    email: drewp@bigasterisk.com
    server: https://acme-v02.api.letsencrypt.org/directory
    privateKeySecretRef:
      name: letsencrypt-dns-prod
    solvers:
    - dns01:
        digitalocean:
          tokenSecretRef:
            name: digitalocean-dns
            key: access-token