Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Retain external dns secret on component change #1044

Merged
merged 13 commits into from
Mar 4, 2024

Conversation

nilsgstrabo
Copy link
Contributor

@nilsgstrabo nilsgstrabo commented Jan 31, 2024

Moved creation of external DNS TLS secrets and certificates out of the "sync component" code branch.

The certificate is now created explicitly instead of implicitly via Ingress annotations.

The certs and secrets are no longer labelled with the component name, but with the FQDN instead, and garbage collection of a component will therefore no longer delete external DNS certs and secrets. External DNS has its own garbage collection routine.

Tested with a full sync of secrets and certs restored from eu-18, and all secrets were successfully relabelled and no data was lost.

@nilsgstrabo nilsgstrabo self-assigned this Jan 31, 2024
@nilsgstrabo nilsgstrabo marked this pull request as ready for review February 29, 2024 16:55
Copy link
Contributor

@Richard87 Richard87 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Godkjent

@satr satr merged commit 8e7bfcd into master Mar 4, 2024
6 checks passed
@satr satr deleted the retain-external-dns-secret-on-component-change branch March 4, 2024 10:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants