apiVersion: traefik.io/v1alpha1 kind: IngressRoute metadata: name: traefik-ingress spec: entryPoints: - websecure routes: - match: Host(`traefik.dmz.durp.info`) kind: Rule middlewares: - name: whitelist namespace: traefik - name: authentik-proxy-provider namespace: traefik services: - name: api@internal kind: TraefikService tls: secretName: traefik-tls --- apiVersion: cert-manager.io/v1 kind: Certificate metadata: name: traefik-tls namespace: traefik spec: secretName: traefik-tls issuerRef: name: vault-issuer kind: ClusterIssuer commonName: "traefik.dmz.durp.info" dnsNames: - "traefik.dmz.durp.info"