Difference between revisions of "Initializing the Kubernetes cluster"

From Collective Computational Unit
Jump to navigation Jump to search
m (DEX with LDAP)
m (Authentication systems)
Line 9: Line 9:
 
with customized install scripts in kubernetes/init/dex/
 
with customized install scripts in kubernetes/init/dex/
  
# Create secrets for TLS connections, use certs for ccu.uni-konstanz.de (for now exposed, later switch to internal services):
+
# Create secrets for TLS connections, use certs for ccu.uni-konstanz.de
 
## Modify ca-cm.yml to contain correct ca.
 
## Modify ca-cm.yml to contain correct ca.
 
## Run upload_ccu_tls.sh
 
## Run upload_ccu_tls.sh

Revision as of 17:48, 30 May 2019


Authentication systems

DEX with LDAP

Set up according to this tutorial with customized install scripts in kubernetes/init/dex/

  1. Create secrets for TLS connections, use certs for ccu.uni-konstanz.de
    1. Modify ca-cm.yml to contain correct ca.
    2. Run upload_ccu_tls.sh
  2. Spin up login application service.
    1. Modify loginapp-cm.yml: server config
    2. Modify loginapp-ing-srv.yml: service data, mapping of ports to outside world
    3. Modify loginapp-deploy.yml: ID secret for TLS
    4. Run start-login-service.sh
  3. Spin up dex
    1. Modify dex-cm.yml: server data and LDAP configuration
    2. Modify dex-ing-srv.yml: service data, mapping of ports to outside world
    3. Modify dex-deploy.yml: ID secret for TLS
    4. Run start-dex-service.sh