# services/vault/ingress.yaml apiVersion: networking.k8s.io/v1 kind: Ingress metadata: name: vault namespace: vault annotations: kubernetes.io/ingress.class: traefik traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.tls: "true" spec: ingressClassName: traefik tls: - hosts: [secret.bstein.dev] secretName: vault-server-tls rules: - host: secret.bstein.dev http: paths: - path: / pathType: Prefix backend: service: name: oauth2-proxy-vault port: number: 80