mirror of
https://github.com/external-secrets/external-secrets.git
synced 2024-12-14 11:57:59 +00:00
242a6ee1ef
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com> Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
24 lines
565 B
YAML
24 lines
565 B
YAML
{% raw %}
|
|
apiVersion: external-secrets.io/v1beta1
|
|
kind: ExternalSecret
|
|
metadata:
|
|
name: tls-client-credentials
|
|
spec:
|
|
refreshInterval: 1h
|
|
secretStoreRef:
|
|
kind: SecretStore
|
|
name: azure-store
|
|
target:
|
|
template:
|
|
type: kubernetes.io/tls
|
|
engineVersion: v2
|
|
data:
|
|
tls.crt: "{{ .tls | b64dec | pkcs12cert }}"
|
|
tls.key: "{{ .tls | b64dec | pkcs12key }}"
|
|
data:
|
|
- secretKey: tls
|
|
remoteRef:
|
|
# Azure Key Vault certificates must be fetched as secret/cert-name
|
|
key: secret/tls-client-credentials
|
|
|
|
{% endraw %}
|