update issuers
This commit is contained in:
@@ -4,40 +4,29 @@ metadata:
|
|||||||
name: letsencrypt-dns01-prod
|
name: letsencrypt-dns01-prod
|
||||||
spec:
|
spec:
|
||||||
acme:
|
acme:
|
||||||
# Serveur Let's Encrypt production
|
|
||||||
server: https://acme-v02.api.letsencrypt.org/directory
|
server: https://acme-v02.api.letsencrypt.org/directory
|
||||||
# Email pour les notifications Let's Encrypt
|
|
||||||
email: gkpoubelle78@gmail.com
|
email: gkpoubelle78@gmail.com
|
||||||
# Secret pour stocker la clé privée de l'account ACME
|
|
||||||
privateKeySecretRef:
|
privateKeySecretRef:
|
||||||
name: letsencrypt-dns01-prod
|
name: letsencrypt-dns01-prod
|
||||||
# Challenge DNS-01 pour les certificats wildcard (sites internes)
|
|
||||||
solvers:
|
solvers:
|
||||||
- dns01:
|
- dns01:
|
||||||
webhook:
|
webhook:
|
||||||
groupName: acme.gkdomaine.fr
|
groupName: acme.gkdomaine.fr
|
||||||
solverName: ovh
|
solverName: ovh
|
||||||
config:
|
config:
|
||||||
# Configuration OVH pour le webhook
|
# MODIFICATION : Utiliser 'endpoint' au lieu de 'ovhEndpointName'
|
||||||
# IMPORTANT: L'ordre des champs est critique pour le webhook
|
endpoint: ovh-eu
|
||||||
# Application Key OVH (doit correspondre à celle dans le secret)
|
# MODIFICATION : 'authMethod' est correct, on le garde
|
||||||
|
authMethod: application
|
||||||
applicationKey: "1d1a85ccc3a5bcc9"
|
applicationKey: "1d1a85ccc3a5bcc9"
|
||||||
# Application Secret (référence au secret dans le namespace cert-manager-ops)
|
|
||||||
applicationSecretRef:
|
applicationSecretRef:
|
||||||
name: ovh-credentials
|
name: ovh-credentials
|
||||||
key: application-secret
|
key: application-secret
|
||||||
# Consumer Key (référence au secret dans le namespace cert-manager-ops)
|
|
||||||
consumerKeyRef:
|
consumerKeyRef:
|
||||||
name: ovh-credentials
|
name: ovh-credentials
|
||||||
key: consumer-key
|
key: consumer-key
|
||||||
# Méthode d'authentification OVH (application ou oauth2)
|
|
||||||
authMethod: application
|
|
||||||
# Endpoint OVH API (ovh-eu, ovh-ca, kimsufi-eu, etc.)
|
|
||||||
ovhEndpointName: ovh-eu
|
|
||||||
# Ce solver s'applique uniquement aux domaines internes
|
|
||||||
selector:
|
selector:
|
||||||
dnsZones:
|
dnsZones:
|
||||||
- "dev.gkdomaine.fr"
|
- "dev.gkdomaine.fr"
|
||||||
- "rct.gkdomaine.fr"
|
- "rct.gkdomaine.fr"
|
||||||
- "prd.gkdomaine.fr"
|
- "prd.gkdomaine.fr"
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user