apiVersion: cert-manager.io/v1 kind: Certificate metadata: name: api-tls spec: secretName: api-tls issuerRef: name: letsencrypt-production kind: ClusterIssuer commonName: "api.durp.info" dnsNames: - "api.durp.info" --- apiVersion: traefik.containo.us/v1alpha1 kind: IngressRoute metadata: name: kong-api-proxy namespace: kong spec: entryPoints: - websecure routes: - match: Host(`api.durp.info`) && PathPrefix(`/`) middlewares: - name: authentik-proxy-provider namespace: traefik kind: Rule services: - name: krakend-service port: 8080 scheme: http tls: secretName: api-tls --- kind: Service apiVersion: v1 metadata: name: api-external-dns annotations: external-dns.alpha.kubernetes.io/hostname: api.durp.info spec: type: ExternalName externalName: durp.info