Skip to content

Store static cluster config as secret and enforce TLS - #533

Open
thokra-nav wants to merge 1 commit into
mainfrom
static_tls_secret
Open

thokra-nav wants to merge 1 commit into
mainfrom
static_tls_secret

Conversation

@thokra-nav

Copy link
Copy Markdown
Contributor

Move KUBERNETES_CLUSTERS_STATIC from deployment env to Kubernetes Secret, and update feature docs to reflect secret storage and CA/hostname
requirements for API server certs.

Remove insecure TLS override for static cluster clients so certificate validation is now enforced by default.

Move `KUBERNETES_CLUSTERS_STATIC` from deployment env to Kubernetes
Secret, and update feature docs to reflect secret storage and
CA/hostname
requirements for API server certs.

Remove insecure TLS override for static cluster clients so certificate
validation is now enforced by default.
@thokra-nav
thokra-nav requested a review from a team as a code owner September 30, 2026 13:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant