vault: route ingress via oauth2-proxy

This commit is contained in:
Brad Stein 2025-12-09 22:35:15 -03:00
parent d2ee171a70
commit 6093297b5d

View File

@ -7,10 +7,7 @@ metadata:
annotations: annotations:
kubernetes.io/ingress.class: traefik kubernetes.io/ingress.class: traefik
traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.entrypoints: websecure
traefik.ingress.kubernetes.io/router.middlewares: vault-login-redirect@kubernetescrd
traefik.ingress.kubernetes.io/router.tls: "true" traefik.ingress.kubernetes.io/router.tls: "true"
traefik.ingress.kubernetes.io/service.serversscheme: https
traefik.ingress.kubernetes.io/service.serverstransport: vault-to-https@kubernetescrd
spec: spec:
ingressClassName: traefik ingressClassName: traefik
tls: tls:
@ -24,6 +21,6 @@ spec:
pathType: Prefix pathType: Prefix
backend: backend:
service: service:
name: vault name: oauth2-proxy-vault
port: port:
number: 8200 number: 80