ansible-role-k8s-cert-manager/templates/0.13/cert-manager-webhook-Deployment.yaml
2020-02-20 09:06:20 +01:00

65 lines
1.7 KiB
YAML

# Source: cert-manager/templates/webhook-deployment.yaml
apiVersion: apps/v1
kind: Deployment
metadata:
name: cert-manager-webhook
namespace: "cert-manager"
labels:
app: webhook
app.kubernetes.io/name: webhook
app.kubernetes.io/instance: cert-manager
app.kubernetes.io/managed-by: Tiller
helm.sh/chart: cert-manager-v0.13.1
spec:
replicas: 1
selector:
matchLabels:
app: webhook
app.kubernetes.io/name: webhook
app.kubernetes.io/instance: cert-manager
app.kubernetes.io/managed-by: Tiller
template:
metadata:
labels:
app: webhook
app.kubernetes.io/name: webhook
app.kubernetes.io/instance: cert-manager
app.kubernetes.io/managed-by: Tiller
helm.sh/chart: cert-manager-v0.13.1
annotations:
spec:
serviceAccountName: cert-manager-webhook
containers:
- name: cert-manager
image: "quay.io/jetstack/cert-manager-webhook:v0.13.1"
imagePullPolicy: IfNotPresent
args:
- --v=2
- --secure-port=10250
- --tls-cert-file=/certs/tls.crt
- --tls-private-key-file=/certs/tls.key
livenessProbe:
httpGet:
path: /livez
port: 6080
scheme: HTTP
readinessProbe:
httpGet:
path: /healthz
port: 6080
scheme: HTTP
env:
- name: POD_NAMESPACE
valueFrom:
fieldRef:
fieldPath: metadata.namespace
resources:
{}
volumeMounts:
- name: certs
mountPath: /certs
volumes:
- name: certs
secret:
secretName: cert-manager-webhook-tls