Files
argocd/helm/certificates/ops/templates/cluster-issuer-letsencrypt-dns01.yaml
2026-01-21 01:01:34 +01:00

43 lines
1.2 KiB
YAML

apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
name: letsencrypt-dns01-prod
spec:
acme:
server: https://acme-v02.api.letsencrypt.org/directory
email: gkpoubelle78@gmail.com
privateKeySecretRef:
name: letsencrypt-dns01-prod-key
solvers:
# Configuration DNS-01 pour OVH
- selector:
dnsZones:
- "dev.gkdomaine.fr"
dns01:
ovh:
endpoint: ovh-eu # ovh-eu pour l'Europe, ovh-us pour les USA, ovh-ca pour le Canada
applicationKey: "e598bb73ded17ee6"
applicationSecretRef:
name: ovh-credentials
key: application-secret
consumerKey: "372e273858204d972dbf7c50506d12a1"
# Option 4 : Generic (webhook personnalisé)
# - dns01:
# webhook:
# groupName: acme.example.com
# solverName: my-dns-solver
# config:
# # Configuration spécifique au webhook
# Option 5 : RFC2136 (DNS dynamique standard)
# - dns01:
# rfc2136:
# nameserver: 8.8.8.8
# tsigSecretSecretRef:
# name: rfc2136-credentials
# key: tsig-secret
# tsigKeyName: "keyname"
# tsigAlgorithm: HMACSHA256