Skip to content

Implement Let's Encrypt Certificates for Secure Ingress #34

@runatyr1

Description

@runatyr1

Implement Let's Encrypt Certificates for Secure Ingress

Objective

Replace self-signed certificates with automated Let's Encrypt certificate management for secure external access to services.

Requirements

  • Cert-manager installation
  • Let's Encrypt staging and production environments
  • DNS configuration for domain validation
  • Automatic certificate renewal

Specifications

  • Use cert-manager v1.14.x
  • Configure with HTTP01 challenge
  • Set up both staging and production ClusterIssuers
  • 90-day certificate validity with automatic renewal

Acceptance Criteria

  • 1. Cert-manager successfully installed and running
  • 2. ClusterIssuer configured and ready for Let's Encrypt
  • 3. Test certificate successfully issued from staging environment
  • 4. Production certificate successfully issued and active
  • 5. Ingress updated and serving traffic with new certificate
  • 6. Certificate auto-renewal verified

Notes

  • Initial testing should use Let's Encrypt staging environment
  • Domain must be accessible from internet for HTTP01 challenge
  • Consider rate limits for production environment

Metadata

Metadata

Assignees

No one assigned

    Labels

    HetznerHetzner cloud provider

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions