treasuremap/manifests/function/k8scontrol-oidc/oidc-apiserver-extra-args.yaml

17 lines
492 B
YAML

apiVersion: controlplane.cluster.x-k8s.io/v1alpha4
kind: KubeadmControlPlane
metadata:
name: cluster-controlplane
spec:
kubeadmConfigSpec:
clusterConfiguration:
apiServer:
certSANs:
- dex.function.local
extraArgs:
oidc-ca-file: /etc/kubernetes/certs/dex-cert
oidc-client-id: function-kubernetes
oidc-groups-claim: groups
oidc-issuer-url: https://dex.function.local:32556/dex
oidc-username-claim: email