PD
Size: a a a
PD
DS
kind: Certificate
, есть поле spec
.secretName
PD
kind: Certificate
, есть поле spec
.secretName
PD
# cert.yaml
apiVersion: cert-manager.io/v1alpha2
kind: Certificate
metadata:
name: tls-keycloak
spec:
secretName: tls-keycloak
dnsNames:
- keycloak.localtest.me
issuerRef:
name: keycloak-issuer
kind: Issuer
group: cert-manager.io
DS
spec
.secretName
- с этим именем создается секретDS
# cert.yaml
apiVersion: cert-manager.io/v1alpha2
kind: Certificate
metadata:
name: tls-keycloak
spec:
secretName: tls-keycloak
dnsNames:
- keycloak.localtest.me
issuerRef:
name: keycloak-issuer
kind: Issuer
group: cert-manager.io
tls-keycloak
- будет имя секретаPD
$ kubectl get secret
NAME TYPE DATA AGE
default-token-lbt48 kubernetes.io/service-account-token 3 61m
keycloak-admin-password Opaque 1 54m
keycloak-realm-secret Opaque 1 54m
tls-keycloak-czv9g Opaque 1 54m
PD
tls-keycloak
- будет имя секретаDS
$ kubectl get secret
NAME TYPE DATA AGE
default-token-lbt48 kubernetes.io/service-account-token 3 61m
keycloak-admin-password Opaque 1 54m
keycloak-realm-secret Opaque 1 54m
tls-keycloak-czv9g Opaque 1 54m
tls-keycloak-czv9g
- этот секрет создал не cert-managerPD
tls-keycloak-czv9g
- этот секрет создал не cert-managerDS
kubernetes.io/tls
DS
PD
PD
$ kubectl describe secrets/tls-keycloak-czv9g
Name: tls-keycloak-czv9g
Namespace: default
Labels: cert-manager.io/next-private-key=true
Annotations: <none>
Type: Opaque
Data
====
tls.key: 1704 bytes
DS
DS
$ kubectl describe secrets/tls-keycloak-czv9g
Name: tls-keycloak-czv9g
Namespace: default
Labels: cert-manager.io/next-private-key=true
Annotations: <none>
Type: Opaque
Data
====
tls.key: 1704 bytes
DS
$ kubectl describe secrets/tls-keycloak-czv9g
Name: tls-keycloak-czv9g
Namespace: default
Labels: cert-manager.io/next-private-key=true
Annotations: <none>
Type: Opaque
Data
====
tls.key: 1704 bytes
PD
DS
DS