blob: 8bcfddc2c86b69c1241f38d75f4a413af3dd2b19 [file] [log] [blame]
Tadas Sutkaitis8d037242024-02-08 02:48:21 +02001# Copyright (c) 2024 VEXXHOST, Inc.
Mohammed Naser38179092023-01-28 19:37:25 +00002#
3# Licensed under the Apache License, Version 2.0 (the "License"); you may
4# not use this file except in compliance with the License. You may obtain
5# a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
11# WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
12# License for the specific language governing permissions and limitations
13# under the License.
14
15cluster_issuer_name: "{{ atmosphere_ingress_cluster_issuer }}"
16cluster_issuer_type: acme
17
vexxhost-botd65a2912024-05-24 16:41:56 +020018cluster_issuer_acme_private_ca: false
19
Mohammed Naser38179092023-01-28 19:37:25 +000020cluster_issuer_acme_server: https://acme-v02.api.letsencrypt.org/directory
21# cluster_issuer_acme_email:
22cluster_issuer_acme_private_key_secret_name: cert-manager-issuer-account-key
23
24cluster_issuer_acme_solver: http01
25
26cluster_issuer_acme_http01_ingress_class: "{{ atmosphere_ingress_class_name }}"
27
vexxhost-bot4d0ff6b2024-05-20 11:57:18 +010028cluster_issuer_acme_cloudflare_secret_name: cloudflare-api-token
29cluster_issuer_acme_cloudflare_email: "{{ cluster_issuer_acme_email }}"
Mohammed Naserf3152222024-07-19 00:40:24 -040030# cluster_issuer_acme_cloudflare_api_token: <CLOUDFLARE_API_TOKEN>
vexxhost-bot4d0ff6b2024-05-20 11:57:18 +010031
Mohammed Naser64c690f2024-06-01 16:58:07 -040032cluster_issuer_venafi_secret_name: cert-manager-venafi-credentials
Mohammed Naserbdb2d412024-06-02 20:39:07 -040033# cluster_issuer_venafi_ca:
Mohammed Naser64c690f2024-06-01 16:58:07 -040034# cluster_issuer_venafi_access_token:
35# cluster_issuer_venafi_username:
36# cluster_issuer_venafi_password:
37# cluster_issuer_venafi_zone:
38# cluster_issuer_venafi_tpp_url:
39# cluster_issuer_venafi_tpp_ca_bundle:
40
Mohammed Naser38179092023-01-28 19:37:25 +000041cluster_issuer_acme_rfc2136_secret_name: cert-manager-issuer-tsig-secret-key
42# cluster_issuer_acme_rfc2136_nameserver: <NAMESERVER>:<PORT>
43# cluster_issuer_acme_rfc2136_tsig_algorithm: <ALGORITHM>
44# cluster_issuer_acme_rfc2136_tsig_key_name: <KEY_NAME>
45# cluster_issuer_acme_rfc2136_tsig_secret_key: <SECRET_KEY>
46
47cluster_issuer_acme_route53_secret_name: cert-manager-issuer-route53-credentials
48# cluster_issuer_acme_route53_region: <REGION>
49# cluster_issuer_acme_route53_hosted_zone_id: <HOSTED_ZONE_ID>
50# cluster_issuer_acme_route53_access_key_id: <AWS_ACCESS_KEY_ID>
51# cluster_issuer_acme_route53_secret_access_key: <AWS_SECRET_ACCESS_KEY>
52
Tadas Sutkaitis8d037242024-02-08 02:48:21 +020053cluster_issuer_acme_godaddy_helm_release_name: cert-manager-webhook-godaddy
Mohammed Nasere4436b42024-04-15 17:57:11 -040054cluster_issuer_acme_godaddy_helm_chart_path: "../../charts/godaddy-webhook/"
55cluster_issuer_acme_godaddy_helm_chart_ref: /usr/local/src/godaddy-webhook
Tadas Sutkaitis8d037242024-02-08 02:48:21 +020056cluster_issuer_acme_godaddy_helm_release_namespace: cert-manager
57cluster_issuer_acme_godaddy_helm_values: {}
58
59cluster_issuer_acme_godaddy_group_name: godaddy.cert-manager.atmosphere.dev
60cluster_issuer_acme_godaddy_secret_name: godaddy-api-key
61cluster_issuer_acme_godaddy_role_name: webhook-godaddy:secret-reader
62cluster_issuer_acme_godaddy_role_binding_name: "{{ cluster_issuer_acme_godaddy_role_name }}"
63cluster_issuer_acme_godaddy_service_account_name: "{{ cluster_issuer_acme_godaddy_helm_release_name }}"
64cluster_issuer_acme_godaddy_is_production: true
65cluster_issuer_acme_godaddy_ttl: 600
66# cluster_issuer_acme_godaddy_api_key: <GODADDY_API_KEY>
67# cluster_issuer_acme_godaddy_secret_key: <GODADDY_SECRET_KEY>
68
Mohammed Naser7c211b72023-02-21 16:39:19 +000069cluster_issuer_acme_infoblox_helm_release_name: cert-manager-webhook-infoblox-wapi
Mohammed Naser574d6502023-03-21 23:34:48 +000070cluster_issuer_acme_infoblox_helm_chart_path: "../../charts/cert-manager-webhook-infoblox-wapi/"
Mohammed Naser7c211b72023-02-21 16:39:19 +000071cluster_issuer_acme_infoblox_helm_chart_ref: /usr/local/src/cert-manager-webhook-infoblox-wapi
72cluster_issuer_acme_infoblox_helm_release_namespace: cert-manager
73cluster_issuer_acme_infoblox_helm_values: {}
74
75cluster_issuer_acme_infoblox_group_name: infoblox.cert-manager.atmosphere.dev
76cluster_issuer_acme_infoblox_secret_name: cert-manager-issuer-infoblox-credentials
77cluster_issuer_acme_infoblox_role_name: webhook-infoblox-wapi:secret-reader
78cluster_issuer_acme_infoblox_role_binding_name: "{{ cluster_issuer_acme_infoblox_role_name }}"
79cluster_issuer_acme_infoblox_service_account_name: "{{ cluster_issuer_acme_infoblox_helm_release_name }}"
80# cluster_issuer_acme_infoblox_view: <VIEW>
81# cluster_issuer_acme_infoblox_host: <HOST>
82# cluster_issuer_acme_infoblox_username: <USERNAME>
83# cluster_issuer_acme_infoblox_password: <PASSWORD>
84
Mohammed Naser38179092023-01-28 19:37:25 +000085cluster_issuer_ca_secret_name: cert-manager-issuer-ca
86# cluster_issuer_ca_certificate: |
87# -----BEGIN CERTIFICATE-----
88# MIIDBjCCAe4CCQDQ3Z0Z2Z0Z0jANBgkqhkiG9w0BAQsFADCBhTELMAkGA1UEBhMC
89# VVMxEzARBgNVBAgTCkNhbGlmb3JuaWExFjAUBgNVBAcTDVNhbiBGcmFuY2lzY28x
90# ...
91# -----END CERTIFICATE-----
92# cluster_issuer_ca_private_key: |
93# -----BEGIN RSA PRIVATE KEY-----
94# MIIEpAIBAAKCAQEAw3Z0Z2Z0Z0jANBgkqhkiG9w0BAQsFADCBhTELMAkGA1UEBhMC
95# VVMxEzARBgNVBAgTCkNhbGlmb3JuaWExFjAUBgNVBAcTDVNhbiBGcmFuY2lzY28x
96# ...
97# -----END RSA PRIVATE KEY-----
98
99cluster_issuer_self_signed_certificate_name: self-signed-ca
100cluster_issuer_self_signed_secret_name: cert-manager-selfsigned-ca
vexxhost-bot1ba9adb2024-09-09 15:04:46 -0400101
102cluster_issuer_acme_azuredns_secret_name: cert-manager-issuer-azuredns-credentials
103cluster_issuer_acme_azuredns_environment: AzurePublicCloud
104# cluster_issuer_acme_azuredns_client_id:
105# cluster_issuer_acme_azuredns_client_secret:
106# cluster_issuer_acme_azuredns_subscription_id:
107# cluster_issuer_acme_azuredns_tenant_id:
108# cluster_issuer_acme_azuredns_resourcegroup_name:
109# cluster_issuer_acme_azuredns_hostedzone_name: