Skip to content

Instantly share code, notes, and snippets.

View SgtCoDFish's full-sized avatar
👨‍💻
TLS all day every day

Ashley Davis SgtCoDFish

👨‍💻
TLS all day every day
View GitHub Profile
@SgtCoDFish
SgtCoDFish / bundles_in_resources.md
Created December 14, 2022 15:59
Trust bundles in resources discussion

Comes under "How to pass trust stores in resource YAML when specifying external services?" as discussed in the cert-manager biweekly meeting

Problem Statement

We often refer to external services in our CRDs. How do users configure the TLS trust bundle to use for those services?

Example modified from cert-manager ACMEDNS docs:

apiVersion: cert-manager.io/v1
## Prep
```bash
git clone git@github.com:cert-manager/cert-manager.git
cd cert-manager
```
## Scenario
Pretend you've made a change to cert-manager and you want to test it locally with unit/integration/e2e tests.

Keybase proof

I hereby claim:

  • I am sgtcodfish on github.
  • I am sgtcodfish (https://keybase.io/sgtcodfish) on keybase.
  • I have a public key ASAxCv6_hOo_Jh8LRFe7C_xTakKCKoEQPM_fo270VSmDOAo

To claim this, I am signing this object: