certificate overhaul

This commit is contained in:
2023-03-25 15:06:58 -05:00
parent c7fef651b2
commit 42e154c6ab
18 changed files with 406 additions and 166 deletions

19
k8s/admission.yaml Normal file
View File

@@ -0,0 +1,19 @@
---
apiVersion: admissionregistration.k8s.io/v1beta1
kind: ValidatingWebhookConfiguration
metadata:
name: deployment-validation
webhooks:
- name: deployment-validation.default.svc
clientConfig:
service:
name: admission-server
namespace: default
path: "/validate/deployments"
caBundle: "${CA_BUNDLE}"
rules:
- operations: ["CREATE","DELETE"]
apiGroups: ["apps"]
apiVersions: ["v1"]
resources: ["deployments"]
failurePolicy: Ignore