Difference between revisions of "Kind: Certificate"
Jump to navigation
Jump to search
(18 intermediate revisions by 2 users not shown) | |||
Line 6: | Line 6: | ||
kind: Certificate | kind: Certificate | ||
metadata: | metadata: | ||
− | name: | + | name: your-cert |
spec: | spec: | ||
[[secretName:]] acme-crt-secret | [[secretName:]] acme-crt-secret | ||
Line 12: | Line 12: | ||
- example.com | - example.com | ||
- foo.example.com | - foo.example.com | ||
− | issuerRef: | + | [[issuerRef:]] |
name: letsencrypt-prod | name: letsencrypt-prod | ||
# We can reference ClusterIssuers by changing the kind here. | # We can reference ClusterIssuers by changing the kind here. | ||
# The default value is Issuer (i.e. a locally namespaced Issuer) | # The default value is Issuer (i.e. a locally namespaced Issuer) | ||
[[kind: Issuer]] | [[kind: Issuer]] | ||
− | group: cert-manager.io | + | [[group:]] [[cert-manager.io]] |
+ | kubectl apply -f certificate.yml | ||
+ | certificate.cert-manager.io/your-cert created | ||
+ | |||
+ | [[kubectl describe cert]] your-cert && [[kubectl describe certificaterequest]] your-cert && [[kubectl describe challenge]] | ||
+ | |||
+ | |||
+ | == Related == | ||
+ | * <code>[[kind: ClusterIssuer]]</code> | ||
+ | * [[certificates.k8s.io]] | ||
+ | * [[kubectl get issuer]] | ||
+ | * [[kubectl delete certificate]] | ||
+ | * [[kubectl describe challenges]] | ||
+ | * [[kubectl get cr]] | ||
+ | * [[kind: Order]] | ||
== See also == | == See also == | ||
+ | * {{kubectl certificate}} | ||
+ | * {{kind: Certificate}} | ||
* {{cert-manager}} | * {{cert-manager}} | ||
* {{kind}} | * {{kind}} | ||
− | |||
[[Category:K8s]] | [[Category:K8s]] |
Latest revision as of 19:27, 15 February 2024
kind: Certificate
https://cert-manager.io/docs/concepts/certificate/
apiVersion: cert-manager.io/v1 kind: Certificate metadata: name: your-cert spec: secretName: acme-crt-secret dnsNames: - example.com - foo.example.com issuerRef: name: letsencrypt-prod # We can reference ClusterIssuers by changing the kind here. # The default value is Issuer (i.e. a locally namespaced Issuer) kind: Issuer group: cert-manager.io
kubectl apply -f certificate.yml certificate.cert-manager.io/your-cert created
kubectl describe cert your-cert && kubectl describe certificaterequest your-cert && kubectl describe challenge
Related[edit]
kind: ClusterIssuer
- certificates.k8s.io
- kubectl get issuer
- kubectl delete certificate
- kubectl describe challenges
- kubectl get cr
- kind: Order
See also[edit]
kubectl certificate [ approve ]
kind: Certificate, kind: Order, kind: Challenge
cert-manager
,cert-manager-controller, ingress-shim
,kind: Certificate, kind: ClusterIssuer, Kind: CertificateSigningRequest
, kind: Issuer,kubectl [ get | describe ] certificates
,cmctl
,kubectl get issuer, kubectl get csr, IngressShim
kind:
[Pod | Ingress | ClusterConfiguration
|Config | ConfigMap | ServiceAccount | Deployment | List | Secret | Status ], spec: metadata: data:
Advertising: