This commit is contained in:
2024-03-09 08:11:18 -06:00
parent 941a0c0676
commit 0ae329e636
4 changed files with 10 additions and 154 deletions

View File

@@ -1,106 +0,0 @@
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: kong-tls
spec:
secretName: kong-tls
issuerRef:
name: letsencrypt-production
kind: ClusterIssuer
commonName: "kong.durp.info"
dnsNames:
- "kong.durp.info"
---
apiVersion: traefik.containo.us/v1alpha1
kind: IngressRoute
metadata:
name: kong-kong-proxy
namespace: kong
spec:
entryPoints:
- websecure
routes:
- match: Host(`kong.durp.info`) && PathPrefix(`/`)
kind: Rule
services:
- name: kong-kong-proxy
port: 443
scheme: https
tls:
secretName: kong-tls
---
kind: Service
apiVersion: v1
metadata:
name: developer-external-dns
annotations:
external-dns.alpha.kubernetes.io/hostname: developer.durp.info
spec:
type: ExternalName
externalName: a89ff7f4357c.us.portal.konghq.com
---
kind: Service
apiVersion: v1
metadata:
name: kong-external-dns
annotations:
external-dns.alpha.kubernetes.io/hostname: kong.durp.info
spec:
type: ExternalName
externalName: durp.info
---
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: api-tls
spec:
secretName: api-tls
issuerRef:
name: letsencrypt-production
kind: ClusterIssuer
commonName: "api.durp.info"
dnsNames:
- "api.durp.info"
---
apiVersion: traefik.containo.us/v1alpha1
kind: IngressRoute
metadata:
name: kong-api-proxy
namespace: kong
spec:
entryPoints:
- websecure
routes:
- match: Host(`api.durp.info`) && PathPrefix(`/`)
middlewares:
- name: authentik-proxy-provider
namespace: traefik
kind: Rule
services:
- name: kong-kong-proxy
port: 443
scheme: https
tls:
secretName: api-tls
---
kind: Service
apiVersion: v1
metadata:
name: api-external-dns
annotations:
external-dns.alpha.kubernetes.io/hostname: api.durp.info
spec:
type: ExternalName
externalName: durp.info

View File

@@ -1,19 +0,0 @@
apiVersion: external-secrets.io/v1beta1
kind: ExternalSecret
metadata:
name: kong-cluster-cert
spec:
secretStoreRef:
name: vault
kind: ClusterSecretStore
target:
name: kong-cluster-cert
data:
- secretKey: tls.crt
remoteRef:
key: secrets/kong/tls
property: cert
- secretKey: tls.key
remoteRef:
key: secrets/kong/tls
property: key