diff --git a/infrastructure/cert-manager/external-secret.yaml b/infrastructure/cert-manager/external-secret.yaml index d21dbb6..48682e3 100644 --- a/infrastructure/cert-manager/external-secret.yaml +++ b/infrastructure/cert-manager/external-secret.yaml @@ -2,17 +2,17 @@ apiVersion: external-secrets.io/v1beta1 kind: ExternalSecret metadata: name: cloudflare-api-token-secret - namespace: cert-manager # Hier braucht es Cert-Manager + namespace: cert-manager spec: refreshInterval: "1h" secretStoreRef: name: vault-backend kind: ClusterSecretStore target: - name: cloudflare-api-token-secret # Name des K8s Secrets + name: cloudflare-api-token-secret creationPolicy: Owner data: - - secretKey: api-token # Key im K8s Secret + - secretKey: api-token remoteRef: - key: secret/infrastructure/opnsense # Pfad im Vault - property: dns_api_token # Key im Vault + key: secret/infrastructure/cloudflare + property: api_token