Files @ 695948b426ae
Branch filter:

Location: pomerium/30-cert-manager/51-pomerium-production-issuer.yaml

drewp@bigasterisk.com
redo config with kustomize (still has a bug with pomerium-proxy-tls secret name getting a suffix)
apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
  name: letsencrypt-prod
  namespace: pomerium
spec:
  acme:
    # The ACME server URL
    server: https://acme-v02.api.letsencrypt.org/directory
    # Email address used for ACME registration
    email: drewp@bigasterisk.com
    # Name of a secret used to store the ACME account private key
    privateKeySecretRef:
      name: letsencrypt-prod
    # Enable the HTTP-01 challenge provider
    solvers:
      - http01:
          ingress:
            class: pomerium