Irbe Krumina
Irbe Krumina
Thanks for opening the issue! Agree that would be good to if cert-manager could help with renewing revoked certs. > Cert-manager should consider using OCSP (and maybe also CRL) to...
We do already have one mechanism how to configure some pod spec values (for Ingress solvers only at the moment) via [`issuer.spec.acme.solvers.http01.ingress.podTemplate.spec`](https://cert-manager.io/docs/reference/api-docs/#acme.cert-manager.io/v1.ACMEChallengeSolverHTTP01IngressPodTemplate). Do we specifically want to make this a...
> Maybe this isn't the right approach, but - Isn't that already the case? The options from [buildDefaultPod](https://github.com/cert-manager/cert-manager/blob/master/pkg/issuer/acme/http/pod.go#L158) all come from extraArgs, I think. I _think_ that the existing flags...
> I've looked a bit harder, and I think I agree - setting via the issuer spec is a cleaner and more intuitive approach. I'll have a look at reworking...
Thanks for opening the issue and the good problem description. > Describe alternatives you've considered We could probably use another IngressController without any IngressClass set in its configuration, allowing it...
> Same here. It's definitely a regression bug to revert to the annotation. Stupid question, why not set both? (Annotation + ingressClassName) There are some (rather lengtly) discussions that shows...
Hi @lonelyCZ Thanks for your interest in working on this as GSoC project, glad to hear you've used cert-manager already! > I would like to apply this feature as my...
> If there have been a cert-manager environment only lacking external dependencies, we should only deploy external dependencies, so should we separate cert-manger from externally dependent installations. For example, providing...
Hi @lonelyCZ > Yes, I consider their pros and cons as follows Good work on considering those, I think you can even include that in the proposal as I think...
Thanks @lonelyCZ Good luck with the proposal! To add, the actual GSoC work includes working on a design doc and discussing it with the cert-manager team, so the actual implementation...