Kubernetes 证书管理器letsencrypt发出无效证书
随后,我使用NGINX-Ingrss控制器和带有letsencrypt的证书管理器提供了一个基本应用程序 我可以访问该网站,但SSL证书已损坏,上面写着由:(STAGING)Artificial aprict R3颁发的Kubernetes 证书管理器letsencrypt发出无效证书,kubernetes,cert-manager,Kubernetes,Cert Manager,随后,我使用NGINX-Ingrss控制器和带有letsencrypt的证书管理器提供了一个基本应用程序 我可以访问该网站,但SSL证书已损坏,上面写着由:(STAGING)Artificial aprict R3颁发的 这是我的clustersuiser: apiVersion: cert-manager.io/v1alpha2 kind: ClusterIssuer metadata: name: letsencrypt-issuer namespace: cert-manager
这是我的clustersuiser
:
apiVersion: cert-manager.io/v1alpha2
kind: ClusterIssuer
metadata:
name: letsencrypt-issuer
namespace: cert-manager
spec:
acme:
server: https://acme-staging-v02.api.letsencrypt.org/directory
email: my-email@example.com
privateKeySecretRef:
name: letsencrypt-issuer
solvers:
- http01:
ingress:
class: nginx
和入口
:
apiVersion: networking.k8s.io/v1
kind: Ingress
metadata:
name: my-app-ingress-dev
namespace: my-app
annotations:
cert-manager.io/cluster-issuer: letsencrypt-issuer
spec:
tls:
- secretName: echo-tls
hosts:
- my-app.example.com
rules:
- host: my-app.example.com
http:
paths:
- path: /
pathType: Prefix
backend:
service:
name: my-app-dev
port:
number: 80
LetsEncrypt暂存用于测试,不会颁发浏览器信任的证书。改为使用生产URLhttps://acme-v02.api.letsencrypt.org/directory