Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add additional DNS01 challenge resolvers #8604

Closed
7 tasks
mrsimonemms opened this issue Mar 4, 2022 · 3 comments
Closed
7 tasks

Add additional DNS01 challenge resolvers #8604

mrsimonemms opened this issue Mar 4, 2022 · 3 comments

Comments

@mrsimonemms
Copy link
Contributor

The current DNS01 challenge resolvers are Google and Azure, with an optional in-cluster (self-signed cert - see #8559).

Required

Recommended

Optional

  • ACME-DNS - may be affected by the documented limitations as would require 3 domains ($DOMAIN, *.$DOMAIN and *.ws.$DOMAIN)
  • Akamai
  • RFC-2136
  • Webhook
@mrsimonemms
Copy link
Contributor Author

Closing as cert-manager is now no longer configured by KOTS /cc @gitpod-io/engineering-self-hosted

@Pothulapati
Copy link
Contributor

@mrsimonemms We don't want to install cert-manager but we still create the Certificate object and there we need the DNS01 challenge right? 🤔

Even #8785 doesn't remove the DNS101 config, right now!

@mrsimonemms mrsimonemms reopened this Mar 14, 2022
@mrsimonemms
Copy link
Contributor Author

mrsimonemms commented Mar 14, 2022

No. I think this is outside of what we want to manage. Setting up an Issuer or ClusterIssuer is tricky so the user's can do it themselves. They can then configure their own Certificate and then we take over from just installing Gitpod

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
No open projects
Development

No branches or pull requests

2 participants