This commit is contained in:
2025-05-17 08:12:47 -05:00
parent cd1abb4cec
commit 29661b9bf7
3 changed files with 102 additions and 52 deletions

View File

@@ -1,12 +0,0 @@
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: authentik-tls
spec:
issuerRef:
name: letsencrypt-production
kind: ClusterIssuer
secretName: authentik-tls
commonName: "authentik.durp.info"
dnsNames:
- "authentik.durp.info"

View File

@@ -0,0 +1,62 @@
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: authentik-tls
spec:
issuerRef:
name: letsencrypt-production
kind: ClusterIssuer
secretName: authentik-tls
commonName: "authentik.durp.info"
dnsNames:
- "authentik.durp.info"
---
apiVersion: traefik.io/v1alpha1
kind: IngressRoute
metadata:
name: authentik-ingress
spec:
entryPoints:
- websecure
routes:
- match: Host(`authentik.durp.info`) && PathPrefix(`/`)
kind: Rule
services:
- name: infra-cluster
port: 443
tls:
secretName: authentik-tls
---
kind: Service
apiVersion: v1
metadata:
name: authentik-external-dns
annotations:
external-dns.alpha.kubernetes.io/hostname: authentik.durp.info
spec:
type: ExternalName
externalName: durp.info
---
apiVersion: v1
kind: Endpoints
metadata:
name: infra-cluster
subsets:
- addresses:
- ip: 192.168.12.130
ports:
- port: 443
---
apiVersion: v1
kind: Service
metadata:
name: infra-cluster
spec:
ports:
- protocol: TCP
port: 443
targetPort: 443

View File

@@ -1,40 +1,40 @@
apiVersion: traefik.io/v1alpha1 #apiVersion: traefik.io/v1alpha1
kind: IngressRoute #kind: IngressRoute
metadata: #metadata:
name: authentik-ingress # name: authentik-ingress
spec: #spec:
entryPoints: # entryPoints:
- websecure # - websecure
routes: # routes:
- match: Host(`authentik.durp.info`) && PathPrefix(`/`) # - match: Host(`authentik.durp.info`) && PathPrefix(`/`)
kind: Rule # kind: Rule
services: # services:
- name: infra-cluster # - name: infra-cluster
port: 443 # port: 443
tls: # tls:
secretName: authentik-tls # secretName: authentik-tls
#
--- #---
apiVersion: cert-manager.io/v1 #apiVersion: cert-manager.io/v1
kind: Certificate #kind: Certificate
metadata: #metadata:
name: authentik-tls # name: authentik-tls
spec: #spec:
issuerRef: # issuerRef:
name: letsencrypt-production # name: letsencrypt-production
kind: ClusterIssuer # kind: ClusterIssuer
secretName: authentik-tls # secretName: authentik-tls
commonName: "authentik.durp.info" # commonName: "authentik.durp.info"
dnsNames: # dnsNames:
- "authentik.durp.info" # - "authentik.durp.info"
#
--- #---
kind: Service #kind: Service
apiVersion: v1 #apiVersion: v1
metadata: #metadata:
name: authentik-external-dns # name: authentik-external-dns
annotations: # annotations:
external-dns.alpha.kubernetes.io/hostname: authentik.durp.info # external-dns.alpha.kubernetes.io/hostname: authentik.durp.info
spec: #spec:
type: ExternalName # type: ExternalName
externalName: durp.info # externalName: durp.info