diff --git a/dmz/internalproxy/templates/freshrss.yaml b/dmz/internalproxy/templates/freshrss.yaml new file mode 100644 index 0000000..3ee965a --- /dev/null +++ b/dmz/internalproxy/templates/freshrss.yaml @@ -0,0 +1,61 @@ + +apiVersion: v1 +kind: Service +metadata: + name: freshrss +spec: + ports: + - name: app + port: 8085 + protocol: TCP + targetPort: 8085 + clusterIP: None + type: ClusterIP + +--- + +apiVersion: v1 +kind: Endpoints +metadata: + name: freshrss +subsets: + - addresses: + - ip: 192.168.21.200 + ports: + - name: app + port: 8085 + protocol: TCP + +--- + +apiVersion: traefik.io/v1alpha1 +kind: IngressRoute +metadata: + name: freshrss-ingress +spec: + entryPoints: + - websecure + routes: + - match: Host(`freshrss.durp.info`) && PathPrefix(`/`) + kind: Rule + services: + - name: freshrss + port: 8085 + scheme: https + tls: + secretName: freshrss-tls + +--- + +apiVersion: cert-manager.io/v1 +kind: Certificate +metadata: + name: freshrss-tls +spec: + secretName: freshrss-tls + issuerRef: + name: vault-issuer + kind: ClusterIssuer + commonName: "freshrss.durp.info" + dnsNames: + - "freshrss.durp.info"