disable basicauth for acme challenges 🍇
This commit is contained in:
parent
f66674a69a
commit
84f3e623b5
2 changed files with 10 additions and 1 deletions
|
@ -1,4 +1,5 @@
|
||||||
controller:
|
controller:
|
||||||
|
enableSnippets: true
|
||||||
hostNetwork: true
|
hostNetwork: true
|
||||||
setAsDefaultIngress: true
|
setAsDefaultIngress: true
|
||||||
service:
|
service:
|
||||||
|
|
|
@ -9,6 +9,10 @@ metadata:
|
||||||
cert-manager.io/cluster-issuer: letsencrypt-prod
|
cert-manager.io/cluster-issuer: letsencrypt-prod
|
||||||
acme.cert-manager.io/http01-edit-in-place: "true"
|
acme.cert-manager.io/http01-edit-in-place: "true"
|
||||||
ingress.kubernetes.io/ssl-redirect: "false"
|
ingress.kubernetes.io/ssl-redirect: "false"
|
||||||
|
nginx.org/server-snippets: |
|
||||||
|
location ^~ /.well-known/acme-challenge/ {
|
||||||
|
auth_basic off;
|
||||||
|
}
|
||||||
nginx.org/basic-auth-secret: prometheus-basic-auth-secret
|
nginx.org/basic-auth-secret: prometheus-basic-auth-secret
|
||||||
#nginx.org/ssl-services: "prometheus-server"
|
#nginx.org/ssl-services: "prometheus-server"
|
||||||
spec:
|
spec:
|
||||||
|
@ -38,6 +42,10 @@ metadata:
|
||||||
cert-manager.io/cluster-issuer: letsencrypt-prod
|
cert-manager.io/cluster-issuer: letsencrypt-prod
|
||||||
acme.cert-manager.io/http01-edit-in-place: "true"
|
acme.cert-manager.io/http01-edit-in-place: "true"
|
||||||
ingress.kubernetes.io/ssl-redirect: "false"
|
ingress.kubernetes.io/ssl-redirect: "false"
|
||||||
|
nginx.org/server-snippets: |
|
||||||
|
location ^~ /.well-known/acme-challenge/ {
|
||||||
|
auth_basic off;
|
||||||
|
}
|
||||||
nginx.org/basic-auth-secret: prometheus-basic-auth-secret
|
nginx.org/basic-auth-secret: prometheus-basic-auth-secret
|
||||||
#nginx.org/ssl-services: "prometheus-server"
|
#nginx.org/ssl-services: "prometheus-server"
|
||||||
spec:
|
spec:
|
||||||
|
|
Loading…
Reference in a new issue