e514f9ecff
Use SAN certificates from k8s LE controller 1.3
51 lines
1.3 KiB
YAML
51 lines
1.3 KiB
YAML
---
|
|
apiVersion: extensions/v1beta1
|
|
kind: Deployment
|
|
metadata:
|
|
name: nginx
|
|
labels:
|
|
app: nginx
|
|
spec: v4
|
|
spec:
|
|
replicas: 2
|
|
template:
|
|
metadata:
|
|
labels:
|
|
app: nginx
|
|
spec:
|
|
containers:
|
|
- image: nginx:1.9.12
|
|
name: nginx
|
|
volumeMounts:
|
|
- name: tazj-in-tls
|
|
mountPath: /etc/nginx/ssl/tazj.in
|
|
- name: nginx-dhparam
|
|
mountPath: /etc/nginx/ssl/dhparam
|
|
- name: nginx-config
|
|
mountPath: /etc/nginx/conf
|
|
- name: nginx-logs
|
|
mountPath: /var/log/nginx
|
|
command:
|
|
- '/usr/sbin/nginx'
|
|
- '-c'
|
|
- '/etc/nginx/conf/main.conf'
|
|
ports:
|
|
- containerPort: 80
|
|
- containerPort: 443
|
|
- image: reactivehub/google-fluentd-catch-all
|
|
name: google-log-agent
|
|
volumeMounts:
|
|
- name: nginx-logs
|
|
mountPath: /var/log/nginx
|
|
volumes:
|
|
- name: tazj-in-tls
|
|
secret:
|
|
secretName: tazj.in-tls
|
|
- name: nginx-dhparam
|
|
secret:
|
|
secretName: nginx-dhparam
|
|
- name: nginx-config
|
|
secret:
|
|
secretName: nginx-config
|
|
- name: nginx-logs
|
|
emptyDir: {}
|