Go to file
James Munnelly e0e4f9b5ea Only construct ACME client once Issuer resource is Ready
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-10-11 10:52:50 +01:00
.github
cmd Support out of tree issuers in ingress-shim 2019-09-27 13:54:39 +01:00
deploy Bump version strings for v0.11.0 2019-10-09 11:35:35 +01:00
design Adds changed annotations to 0.11 release notes 2019-10-10 13:18:28 +01:00
docs Merge pull request #2192 from JoshVanL/fix-uninstall-link 2019-10-10 18:46:38 +01:00
hack Fix up migration output and its docs 2019-10-08 17:17:54 +01:00
logo Add logo in svg format 2019-07-08 16:01:11 +01:00
pkg Only construct ACME client once Issuer resource is Ready 2019-10-11 10:52:50 +01:00
test Fix e2e jobs on Kubernetes 1.14 and below 2019-10-10 18:36:19 +01:00
third_party Update hack scripts for vendorless build and tidy up invocations 2019-09-26 12:56:15 +01:00
.bazelrc Move print-workspace-status.sh into hack/build 2019-09-27 12:07:08 +01:00
.gitignore Add IP Address in CSR 2019-01-25 18:38:12 +01:00
BUILD.bazel Remove hack from gazelle ignore list 2019-09-27 12:07:08 +01:00
CODE_OF_CONDUCT.md
CONTRIBUTING.md Add details on DCO sign-off 2018-08-13 16:09:02 +01:00
go.mod Bump controller-tools to set x-kubernetes-preserve-unknown-fields correctly 2019-10-02 19:44:14 +01:00
go.sum Bump controller-tools to set x-kubernetes-preserve-unknown-fields correctly 2019-10-02 19:44:14 +01:00
LICENSE
LICENSES Bump controller-tools to set x-kubernetes-preserve-unknown-fields correctly 2019-10-02 19:44:14 +01:00
Makefile Update Makefile and add update-all.sh script 2019-10-02 12:50:32 +01:00
OWNERS Adds joshvanl to OWNERS 2019-07-17 11:21:10 +01:00
README.md Update high level overview diagram 2019-07-22 12:47:49 +01:00
WORKSPACE Run govet using nogo 2019-09-27 12:07:08 +01:00

Build Status Go Report Card

cert-manager

cert-manager is a Kubernetes add-on to automate the management and issuance of TLS certificates from various issuing sources.

It will ensure certificates are valid and up to date periodically, and attempt to renew certificates at an appropriate time before expiry.

It is loosely based upon the work of kube-lego and has borrowed some wisdom from other similar projects e.g. kube-cert-manager.

cert-manager high level overview diagram

Current status

As this project is pre-1.0, we do not currently offer strong guarantees around our API stability.

Notably, we may choose to make breaking changes to our API specification (i.e. the Issuer, ClusterIssuer and Certificate resources) in new minor releases.

These will always be clearly documented in the upgrade section of the documentation

Documentation

Documentation for cert-manager can be found at docs.cert-manager.io. Please make sure to select the correct version of the documentation to view on the bottom left of the page.

For the common use-case of automatically issuing TLS certificates to Ingress resources, aka a kube-lego replacement, see the cert-manager nginx ingress quick start guide.

See Getting started within the documentation for installation instructions.

Troubleshooting

If you encounter any issues whilst using cert-manager, we have a number of places you can use to try and get help.

The quickest way to ask a question is to first post on our Slack channel (#cert-manager) on the Kubernetes Slack. There are a lot of community members in this channel, and you can often get an answer to your question straight away!

You can also try searching for an existing issue. Properly searching for an existing issue will help reduce the number of duplicates, and help you find the answer you are looking for quicker.

Please also make sure to read through the relevant pages in the documentation before opening an issue. You can also search the documentation using the search box on the top left of the page.

If you believe you have encountered a bug, and cannot find an existing issue similar to your own, you may open a new issue. Please be sure to include as much information as possible about your environment.

Community

There is a Google Group used for project wide announcements and development coordination. Anybody can join the group by visiting here and clicking "Join Group". A Google account is required to join the group.

Once you have become a member, you should receive an invite to the weekly development meeting, hosted on Wednesdays at 4pm UTC on Zoom.us.

Anyone is welcome to join these calls, even if just to ask questions.

Meeting notes are recorded in Google docs.

Contributing

We welcome pull requests with open arms! There's a lot of work to do here, and we're especially concerned with ensuring the longevity and reliability of the project.

Please take a look at our issue tracker if you are unsure where to start with getting involved!

We also use the #cert-manager channel on kubernetes.slack.com for chat relating to the project.

Developer documentation is available in the official documentation.

Changelog

The list of releases is the best place to look for information on changes between releases.

Logo design by Zoe Paterson