Skip to content

Commit 8924ee8

Browse files
committed
wip working setup for 4.19 - valid tls config
1 parent 50cae72 commit 8924ee8

File tree

5 files changed

+17
-9
lines changed

5 files changed

+17
-9
lines changed

openshift/catalogd/kustomize/overlays/openshift/olmv1-ns/metrics/catalogd_servicemonitor.yaml

Lines changed: 4 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -15,11 +15,10 @@ spec:
1515
port: metrics
1616
scheme: https
1717
tlsConfig:
18-
insecureSkipVerify: true
19-
# caFile: /etc/prometheus/configmaps/serving-certs-ca-bundle/service-ca.crt
20-
# certFile: /etc/prometheus/secrets/metrics-client-certs/tls.crt
21-
# keyFile: /etc/prometheus/secrets/metrics-client-certs/tls.key
22-
# serverName: catalogd-service.openshift-catalogd.svc
18+
caFile: /etc/prometheus/configmaps/serving-certs-ca-bundle/service-ca.crt
19+
certFile: /etc/prometheus/secrets/metrics-client-certs/tls.crt
20+
keyFile: /etc/prometheus/secrets/metrics-client-certs/tls.key
21+
serverName: catalogd-service.openshift-catalogd.svc
2322
namespaceSelector:
2423
matchNames:
2524
- openshift-catalogd

openshift/catalogd/manifests/11-rolebinding-openshift-config-catalogd-manager-rolebinding.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,5 +13,5 @@ roleRef:
1313
name: catalogd-manager-role
1414
subjects:
1515
- kind: ServiceAccount
16-
name: controller-manager
16+
name: catalogd-controller-manager
1717
namespace: openshift-catalogd

openshift/catalogd/manifests/17-servicemonitor-openshift-catalogd-catalogd-metrics-monitor.yml

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,10 @@ spec:
1616
port: metrics
1717
scheme: https
1818
tlsConfig:
19-
insecureSkipVerify: true
19+
caFile: /etc/prometheus/configmaps/serving-certs-ca-bundle/service-ca.crt
20+
certFile: /etc/prometheus/secrets/metrics-client-certs/tls.crt
21+
keyFile: /etc/prometheus/secrets/metrics-client-certs/tls.key
22+
serverName: catalogd-service.openshift-catalogd.svc
2023
namespaceSelector:
2124
matchNames:
2225
- openshift-catalogd

openshift/operator-controller/kustomize/overlays/openshift/olmv1-ns/metrics/operator_controller_servicemonitor.yaml

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,10 @@ spec:
1414
port: https
1515
scheme: https
1616
tlsConfig:
17-
insecureSkipVerify: true
17+
caFile: /etc/prometheus/configmaps/serving-certs-ca-bundle/service-ca.crt
18+
certFile: /etc/prometheus/secrets/metrics-client-certs/tls.crt
19+
keyFile: /etc/prometheus/secrets/metrics-client-certs/tls.key
20+
serverName: operator-controller-service.openshift-operator-controller.svc
1821
namespaceSelector:
1922
matchNames:
2023
- openshift-operator-controller

openshift/operator-controller/manifests/23-servicemonitor-openshift-operator-controller-operator-controller-metrics-monitor.yml

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,10 @@ spec:
1515
port: https
1616
scheme: https
1717
tlsConfig:
18-
insecureSkipVerify: true
18+
caFile: /etc/prometheus/configmaps/serving-certs-ca-bundle/service-ca.crt
19+
certFile: /etc/prometheus/secrets/metrics-client-certs/tls.crt
20+
keyFile: /etc/prometheus/secrets/metrics-client-certs/tls.key
21+
serverName: operator-controller-service.openshift-operator-controller.svc
1922
namespaceSelector:
2023
matchNames:
2124
- openshift-operator-controller

0 commit comments

Comments
 (0)