- List all certificates of a OCP4 cluster
- List all issuer, subjects and validity of each certs
- TODO parse a cert chain
- TODO Verify when it will expire
- TODO Fire an alert when cert coming expire
- TODO Output all cert infomation in json format
As simple as docker build docker build -t $IMAGE .
- Create a new project, ex: oc new project cert-check
- Grant secret get permission, for demo purpose, ex: oc adm policy add-cluster-role-to-user cluster-admin -z default -n cert-check
- Create a cronjob, ex: oc create cronjob cert-check --image=$IMAGE --schedule="1 * * * *" -n cert-check