Kyverno ClusterPolicy clones tls-secret from kyverno namespace to all namespaces with synchronize=true. Renewal pipeline now updates the source secret via kubectl, verifies cert validity, and sends Slack notification. |
||
|---|---|---|
| .. | ||
| dependency-init-containers.tf | ||
| main.tf | ||
| registry-credentials.tf | ||
| resource-governance.tf | ||
| security-policies.tf | ||
| tls-secret-sync.tf | ||