Uploaded image for project: 'OpenShift Service Mesh'
  1. OpenShift Service Mesh
  2. OSSM-568

Integration with (external) cert-manager

XMLWordPrintable

    • Icon: Epic Epic
    • Resolution: Done
    • Icon: Critical Critical
    • OSSM 2.4.0
    • None
    • Maistra
    • None
    • Integration with cert-manager
    • False
    • False
    • doc_ack
    • Documentation (Ref Guide, User Guide, etc.), Release Notes
    • Done
    • 0% To Do, 0% In Progress, 100% Done
    • undefined

      How to integrate cert-manager with OSSM:

      • Customer want to use cert-manager as an issuer
      • they wont use the self-signed certificates that the mesh uses by default
      • We need a own certificate provider that generates certificate
        so cu configured in this way
        certificateAuthority:
          type: Custom
          custom:
            address: cert-manager-istio-csr.cert-manager.svc:443
        
      • However, istiod still uses a self-signed certificated for the communication from gateway – virtual-service.
      • They want istio itself also request a certificate from cert-manager.
        However, the customer achieved the integration but wants to here from engineer side best and possible way.....
      • IBM P/Z platforms are not supported by the Cert-Manager Operator.

              jewertow@redhat.com Jacek Ewertowski
              rhn-support-evadla Eswar Vadla (Inactive)
              Gwynne Monahan, Praneeth Bajjuri
              Votes:
              2 Vote for this issue
              Watchers:
              28 Start watching this issue

                Created:
                Updated:
                Resolved: