cert-manager: Allow to change leader election namespace for GKE Autopilot support (#8424)
More information: - kubernetes-sigs/kubespray#8393 - jetstack/cert-manager#4102 - jetstack/cert-manager#3717pull/8433/head
parent
01dcbc18ac
commit
ccd3180a69
|
@ -152,6 +152,7 @@ cert_manager_enabled: false
|
|||
# -----BEGIN CERTIFICATE-----
|
||||
# [REPLACE with your CA certificate]
|
||||
# -----END CERTIFICATE-----
|
||||
# cert_manager_leader_election_namespace: kube-system
|
||||
|
||||
# MetalLB deployment
|
||||
metallb_enabled: false
|
||||
|
|
|
@ -4,3 +4,7 @@ cert_manager_user: 1001
|
|||
cert_manager_tolerations: []
|
||||
cert_manager_affinity: {}
|
||||
cert_manager_nodeselector: {}
|
||||
|
||||
## Change leader election namespace when deploying on GKE Autopilot that forbid the changes on kube-system namespace.
|
||||
## See https://github.com/jetstack/cert-manager/issues/3717
|
||||
cert_manager_leader_election_namespace: kube-system
|
||||
|
|
|
@ -866,7 +866,7 @@ spec:
|
|||
imagePullPolicy: {{ k8s_image_pull_policy }}
|
||||
args:
|
||||
- --v=2
|
||||
- --leader-election-namespace=kube-system
|
||||
- --leader-election-namespace={{ cert_manager_leader_election_namespace }}
|
||||
env:
|
||||
- name: POD_NAMESPACE
|
||||
valueFrom:
|
||||
|
@ -940,7 +940,7 @@ spec:
|
|||
args:
|
||||
- --v=2
|
||||
- --cluster-resource-namespace=$(POD_NAMESPACE)
|
||||
- --leader-election-namespace=kube-system
|
||||
- --leader-election-namespace={{ cert_manager_leader_election_namespace }}
|
||||
ports:
|
||||
- containerPort: 9402
|
||||
protocol: TCP
|
||||
|
|
Loading…
Reference in New Issue