Files
home-ops/docs/sealed-secrets.md
2021-06-01 04:42:07 -05:00

743 B

Sealed Secrets

!!! note "Work in progress" This document is a work in progress.

Install the CLI tool

brew install kubeseal

Install the cluster components

---
apiVersion: helm.toolkit.fluxcd.io/v2beta1
kind: HelmRelease
metadata:
  name: sealed-secrets
  namespace: kube-system
spec:
  interval: 5m
  chart:
    spec:
      chart: sealed-secrets
      version: 1.13.2
      sourceRef:
        kind: HelmRepository
        name: sealed-secrets-charts
        namespace: flux-system
      interval: 5m
  values:
    ingress:
      enabled: false

Fetch the Sealed Secrets public certificate

kubeseal \
    --controller-name sealed-secrets \
    --fetch-cert > ./sealed-secrets-public-cert.pem