apiVersion: networking.k8s.io/v1 kind: Ingress metadata: name: argocd-server-ingress namespace: argocd annotations: cert-manager.io/cluster-issuer: letsencrypt-prod # <-- Zertifikat holen traefik.ingress.kubernetes.io/router.entrypoints: websecure traefik.ingress.kubernetes.io/router.tls: "true" traefik.ingress.kubernetes.io/service.serversscheme: https # <-- WICHTIG: Backend spricht HTTPS spec: tls: # <-- Zertifikat speichern - hosts: - argocd.k3s.stabify.de secretName: argocd-server-tls rules: - host: argocd.k3s.stabify.de http: paths: - path: / pathType: Prefix backend: service: name: argocd-server port: name: https # <-- Ändere Port Name auf https (Port 443 am Service)