@@ -19,7 +19,7 @@ metadata:
19
19
name : knative-serving-certmanager
20
20
labels :
21
21
app.kubernetes.io/component : net-certmanager
22
- app.kubernetes.io/version : " 20231107-c09b46ca "
22
+ app.kubernetes.io/version : " 20231110-57baadad "
23
23
app.kubernetes.io/name : knative-serving
24
24
serving.knative.dev/controller : " true"
25
25
networking.knative.dev/certificate-provider : cert-manager
@@ -52,7 +52,7 @@ metadata:
52
52
name : config.webhook.net-certmanager.networking.internal.knative.dev
53
53
labels :
54
54
app.kubernetes.io/component : net-certmanager
55
- app.kubernetes.io/version : " 20231107-c09b46ca "
55
+ app.kubernetes.io/version : " 20231110-57baadad "
56
56
app.kubernetes.io/name : knative-serving
57
57
networking.knative.dev/certificate-provider : cert-manager
58
58
webhooks :
@@ -93,7 +93,7 @@ metadata:
93
93
namespace : knative-serving
94
94
labels :
95
95
app.kubernetes.io/component : net-certmanager
96
- app.kubernetes.io/version : " 20231107-c09b46ca "
96
+ app.kubernetes.io/version : " 20231110-57baadad "
97
97
app.kubernetes.io/name : knative-serving
98
98
networking.knative.dev/certificate-provider : cert-manager
99
99
@@ -119,7 +119,7 @@ metadata:
119
119
namespace : knative-serving
120
120
labels :
121
121
app.kubernetes.io/component : net-certmanager
122
- app.kubernetes.io/version : " 20231107-c09b46ca "
122
+ app.kubernetes.io/version : " 20231110-57baadad "
123
123
app.kubernetes.io/name : knative-serving
124
124
networking.knative.dev/certificate-provider : cert-manager
125
125
data :
@@ -138,23 +138,32 @@ data:
138
138
# These sample configuration options may be copied out of
139
139
# this block and unindented to actually change the configuration.
140
140
141
- # issuerRef is a reference to the issuer for cluster external certificates used for ingress.
141
+ # issuerRef is a reference to the issuer for external-domain certificates used for ingress.
142
142
# IssuerRef should be either `ClusterIssuer` or `Issuer`.
143
143
# Please refer `IssuerRef` in https://github.com/cert-manager/cert-manager/tree/master/pkg/apis/certmanager/v1/types_certificate.go
144
144
# for more details about IssuerRef configuration.
145
- # If the issuerRef is not specified, the self-signed `knative-internal-encryption-ca ` ClusterIssuer is used.
145
+ # If the issuerRef is not specified, the self-signed `knative-selfsigned-issuer ` ClusterIssuer is used.
146
146
issuerRef: |
147
147
kind: ClusterIssuer
148
148
name: letsencrypt-issuer
149
149
150
- # clusterInternalIssuerRef is a reference to the issuer for cluster internal certificates used for ingress.
151
- # ClusterInternalIssuerRef should be either `ClusterIssuer` or `Issuer`.
150
+ # clusterLocalIssuerRef is a reference to the issuer for cluster-local-domain certificates used for ingress.
151
+ # clusterLocalIssuerRef should be either `ClusterIssuer` or `Issuer`.
152
152
# Please refer `IssuerRef` in https://github.com/cert-manager/cert-manager/tree/master/pkg/apis/certmanager/v1/types_certificate.go
153
153
# for more details about ClusterInternalIssuerRef configuration.
154
- # If the clusterInternalIssuerRef is not specified, the self-signed `knative-internal-encryption-ca ` ClusterIssuer is used.
155
- clusterInternalIssuerRef : |
154
+ # If the clusterLocalIssuerRef is not specified, the self-signed `knative-selfsigned-issuer ` ClusterIssuer is used.
155
+ clusterLocalIssuerRef : |
156
156
kind: ClusterIssuer
157
- name: knative-internal-encryption-issuer
157
+ name: your-company-issuer
158
+
159
+ # systemInternalIssuerRef is a reference to the issuer for certificates for system-internal-tls certificates used by Knative internal components.
160
+ # systemInternalIssuerRef should be either `ClusterIssuer` or `Issuer`.
161
+ # Please refer `IssuerRef` in https://github.com/cert-manager/cert-manager/tree/master/pkg/apis/certmanager/v1/types_certificate.go
162
+ # for more details about ClusterInternalIssuerRef configuration.
163
+ # If the systemInternalIssuerRef is not specified, the self-signed `knative-selfsigned-issuer` ClusterIssuer is used.
164
+ systemInternalIssuerRef: |
165
+ kind: ClusterIssuer
166
+ name: knative-selfsigned-issuer
158
167
159
168
---
160
169
# Copyright 2020 The Knative Authors
@@ -178,7 +187,7 @@ metadata:
178
187
namespace : knative-serving
179
188
labels :
180
189
app.kubernetes.io/component : net-certmanager
181
- app.kubernetes.io/version : " 20231107-c09b46ca "
190
+ app.kubernetes.io/version : " 20231110-57baadad "
182
191
app.kubernetes.io/name : knative-serving
183
192
networking.knative.dev/certificate-provider : cert-manager
184
193
spec :
@@ -190,15 +199,15 @@ spec:
190
199
labels :
191
200
app : net-certmanager-controller
192
201
app.kubernetes.io/component : net-certmanager
193
- app.kubernetes.io/version : " 20231107-c09b46ca "
202
+ app.kubernetes.io/version : " 20231110-57baadad "
194
203
app.kubernetes.io/name : knative-serving
195
204
spec :
196
205
serviceAccountName : controller
197
206
containers :
198
207
- name : controller
199
208
# This is the Go import path for the binary that is containerized
200
209
# and substituted here.
201
- image : gcr .io/knative-nightly/knative.dev/ net-certmanager/cmd/ controller@sha256:b158663e24103e6b049557e3a666e6ebd8c42bf93a8224926fe21eabacb4520d
210
+ image : quay .io/rlehmann/ net-certmanager- controller:latest
202
211
resources :
203
212
requests :
204
213
cpu : 30m
@@ -239,7 +248,7 @@ metadata:
239
248
labels :
240
249
app : net-certmanager-controller
241
250
app.kubernetes.io/component : net-certmanager
242
- app.kubernetes.io/version : " 20231107-c09b46ca "
251
+ app.kubernetes.io/version : " 20231110-57baadad "
243
252
app.kubernetes.io/name : knative-serving
244
253
networking.knative.dev/certificate-provider : cert-manager
245
254
name : net-certmanager-controller
@@ -277,7 +286,7 @@ metadata:
277
286
name : selfsigned-cluster-issuer
278
287
labels :
279
288
app.kubernetes.io/component : net-certmanager
280
- app.kubernetes.io/version : " 20231107-c09b46ca "
289
+ app.kubernetes.io/version : " 20231110-57baadad "
281
290
app.kubernetes.io/name : knative-serving
282
291
networking.knative.dev/certificate-provider : cert-manager
283
292
spec :
@@ -286,28 +295,28 @@ spec:
286
295
apiVersion : cert-manager.io/v1
287
296
kind : ClusterIssuer
288
297
metadata :
289
- name : knative-internal-encryption -issuer
298
+ name : knative-selfsigned -issuer
290
299
labels :
291
300
app.kubernetes.io/component : net-certmanager
292
- app.kubernetes.io/version : " 20231107-c09b46ca "
301
+ app.kubernetes.io/version : " 20231110-57baadad "
293
302
app.kubernetes.io/name : knative-serving
294
303
networking.knative.dev/certificate-provider : cert-manager
295
304
spec :
296
305
ca :
297
- secretName : knative-internal-encryption -ca
306
+ secretName : knative-selfsigned -ca
298
307
---
299
308
apiVersion : cert-manager.io/v1
300
309
kind : Certificate
301
310
metadata :
302
- name : knative-internal-encryption -ca
311
+ name : knative-selfsigned -ca
303
312
namespace : cert-manager # If you want to use it as a ClusterIssuer the secret must be in the cert-manager namespace.
304
313
labels :
305
314
app.kubernetes.io/component : net-certmanager
306
- app.kubernetes.io/version : " 20231107-c09b46ca "
315
+ app.kubernetes.io/version : " 20231110-57baadad "
307
316
app.kubernetes.io/name : knative-serving
308
317
networking.knative.dev/certificate-provider : cert-manager
309
318
spec :
310
- secretName : knative-internal-encryption -ca
319
+ secretName : knative-selfsigned -ca
311
320
commonName : knative.dev
312
321
usages :
313
322
- server auth
@@ -338,7 +347,7 @@ metadata:
338
347
namespace : knative-serving
339
348
labels :
340
349
app.kubernetes.io/component : net-certmanager
341
- app.kubernetes.io/version : " 20231107-c09b46ca "
350
+ app.kubernetes.io/version : " 20231110-57baadad "
342
351
app.kubernetes.io/name : knative-serving
343
352
networking.knative.dev/certificate-provider : cert-manager
344
353
spec :
@@ -351,7 +360,7 @@ spec:
351
360
labels :
352
361
app : net-certmanager-webhook
353
362
app.kubernetes.io/component : net-certmanager
354
- app.kubernetes.io/version : " 20231107-c09b46ca "
363
+ app.kubernetes.io/version : " 20231110-57baadad "
355
364
app.kubernetes.io/name : knative-serving
356
365
role : net-certmanager-webhook
357
366
spec :
@@ -360,7 +369,7 @@ spec:
360
369
- name : webhook
361
370
# This is the Go import path for the binary that is containerized
362
371
# and substituted here.
363
- image : gcr .io/knative-nightly/knative.dev/ net-certmanager/cmd/ webhook@sha256:5d890bbbabbe36c09f1c5c026fd3f4e12e0f4a5773d816bb434dbf9a518334c4
372
+ image : quay .io/rlehmann/ net-certmanager- webhook:latest
364
373
resources :
365
374
requests :
366
375
cpu : 20m
@@ -426,7 +435,7 @@ metadata:
426
435
labels :
427
436
role : net-certmanager-webhook
428
437
app.kubernetes.io/component : net-certmanager
429
- app.kubernetes.io/version : " 20231107-c09b46ca "
438
+ app.kubernetes.io/version : " 20231110-57baadad "
430
439
app.kubernetes.io/name : knative-serving
431
440
networking.knative.dev/certificate-provider : cert-manager
432
441
spec :
0 commit comments