* Autogen jwtIssuer Unset a default for jwtIssuer and global.spire.jwtIssuer. When unset, generate it to the default of oidc-discovery.$trustDomain so in many cases the user doesn't need to set it at all. Signed-off-by: Kevin Fox <[email protected]> * Autogen tornjak's apiServerURL Unset the default tornjak apiServerURL. When unset, default to https://tornjak-backend.$trustDomain so in many cases users don't have to set it. Signed-off-by: Kevin Fox <[email protected]> * Do more autodetection Signed-off-by: Kevin Fox <[email protected]> * Apply suggestions from code review Co-authored-by: Faisal Memon <[email protected]> Signed-off-by: kfox1111 <[email protected]> * Fix docs Signed-off-by: Kevin Fox <[email protected]> --------- Signed-off-by: Kevin Fox <[email protected]> Signed-off-by: kfox1111 <[email protected]> Co-authored-by: Mariusz Sabath <[email protected]> Co-authored-by: Faisal Memon <[email protected]>
23 lines
421 B
YAML
23 lines
421 B
YAML
global:
|
|
spire:
|
|
clusterName: production
|
|
trustDomain: production.other
|
|
|
|
spire-server:
|
|
ca_subject:
|
|
country: US
|
|
organization: Production
|
|
common_name: production.other
|
|
|
|
# ingress:
|
|
# host: spire-server
|
|
# federation:
|
|
# ingress:
|
|
# host: spire-server-federation
|
|
# tlsSecret: tls-cert
|
|
|
|
# spiffe-oidc-discovery-provider:
|
|
# ingress:
|
|
# host: oidc-discovery
|
|
# tlsSecret: tls-cert
|