rtsp
2 years ago
committed by
GitHub
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
3 changed files with
7 additions and
2 deletions
-
inventory/sample/group_vars/k8s_cluster/addons.yml
-
roles/kubernetes-apps/ingress_controller/cert_manager/defaults/main.yml
-
roles/kubernetes-apps/ingress_controller/cert_manager/templates/cert-manager.yml.j2
|
|
@ -152,6 +152,7 @@ cert_manager_enabled: false |
|
|
|
# -----BEGIN CERTIFICATE----- |
|
|
|
# [REPLACE with your CA certificate] |
|
|
|
# -----END CERTIFICATE----- |
|
|
|
# cert_manager_leader_election_namespace: kube-system |
|
|
|
|
|
|
|
# MetalLB deployment |
|
|
|
metallb_enabled: false |
|
|
|
|
|
@ -4,3 +4,7 @@ cert_manager_user: 1001 |
|
|
|
cert_manager_tolerations: [] |
|
|
|
cert_manager_affinity: {} |
|
|
|
cert_manager_nodeselector: {} |
|
|
|
|
|
|
|
## Change leader election namespace when deploying on GKE Autopilot that forbid the changes on kube-system namespace. |
|
|
|
## See https://github.com/jetstack/cert-manager/issues/3717 |
|
|
|
cert_manager_leader_election_namespace: kube-system |
|
|
@ -866,7 +866,7 @@ spec: |
|
|
|
imagePullPolicy: {{ k8s_image_pull_policy }} |
|
|
|
args: |
|
|
|
- --v=2 |
|
|
|
- --leader-election-namespace=kube-system |
|
|
|
- --leader-election-namespace={{ cert_manager_leader_election_namespace }} |
|
|
|
env: |
|
|
|
- name: POD_NAMESPACE |
|
|
|
valueFrom: |
|
|
@ -940,7 +940,7 @@ spec: |
|
|
|
args: |
|
|
|
- --v=2 |
|
|
|
- --cluster-resource-namespace=$(POD_NAMESPACE) |
|
|
|
- --leader-election-namespace=kube-system |
|
|
|
- --leader-election-namespace={{ cert_manager_leader_election_namespace }} |
|
|
|
ports: |
|
|
|
- containerPort: 9402 |
|
|
|
protocol: TCP |
|
|
|