software/components/certs-ca/certificate.yaml (20 lines of code) (raw):
# Create SelfSigned issuer for creating root certificates
apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
name: selfsigned-cluster-issuer
spec:
selfSigned: {}
---
# Create Root CA certificate
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: root-ca
namespace: cert-manager
spec:
isCA: true
secretName: root-ca-secret
commonName: "root-ca"
issuerRef:
name: selfsigned-cluster-issuer
kind: ClusterIssuer
group: cert-manager.io
# comma separated list of namespaces or regular expressions