diff --git a/upup/models/cloudup/resources/addons/certmanager.io/k8s-1.16.yaml.template b/upup/models/cloudup/resources/addons/certmanager.io/k8s-1.16.yaml.template index be2b73c8c5..61b8e0334d 100644 --- a/upup/models/cloudup/resources/addons/certmanager.io/k8s-1.16.yaml.template +++ b/upup/models/cloudup/resources/addons/certmanager.io/k8s-1.16.yaml.template @@ -23,7 +23,7 @@ metadata: app.kubernetes.io/name: 'cert-manager' app.kubernetes.io/instance: 'cert-manager' # Generated labels - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: group: cert-manager.io names: @@ -223,7 +223,7 @@ metadata: app.kubernetes.io/name: 'cert-manager' app.kubernetes.io/instance: 'cert-manager' # Generated labels - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: group: cert-manager.io names: @@ -596,7 +596,7 @@ metadata: app.kubernetes.io/name: 'cert-manager' app.kubernetes.io/instance: 'cert-manager' # Generated labels - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: group: acme.cert-manager.io names: @@ -1674,7 +1674,7 @@ metadata: app.kubernetes.io/name: 'cert-manager' app.kubernetes.io/instance: "cert-manager" # Generated labels - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: group: cert-manager.io names: @@ -2994,7 +2994,7 @@ metadata: app.kubernetes.io/name: 'cert-manager' app.kubernetes.io/instance: "cert-manager" # Generated labels - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: group: cert-manager.io names: @@ -4314,7 +4314,7 @@ metadata: app.kubernetes.io/name: 'cert-manager' app.kubernetes.io/instance: 'cert-manager' # Generated labels - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: group: acme.cert-manager.io names: @@ -4498,7 +4498,7 @@ metadata: app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cainjector" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" --- # Source: cert-manager/templates/serviceaccount.yaml apiVersion: v1 @@ -4512,7 +4512,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" --- # Source: cert-manager/templates/webhook-serviceaccount.yaml apiVersion: v1 @@ -4526,7 +4526,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" --- # Source: cert-manager/templates/webhook-config.yaml apiVersion: v1 @@ -4539,7 +4539,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" data: --- # Source: cert-manager/templates/cainjector-rbac.yaml @@ -4552,7 +4552,7 @@ metadata: app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cainjector" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["cert-manager.io"] resources: ["certificates"] @@ -4584,7 +4584,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["cert-manager.io"] resources: ["issuers", "issuers/status"] @@ -4610,7 +4610,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["cert-manager.io"] resources: ["clusterissuers", "clusterissuers/status"] @@ -4636,7 +4636,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["cert-manager.io"] resources: ["certificates", "certificates/status", "certificaterequests", "certificaterequests/status"] @@ -4671,7 +4671,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["acme.cert-manager.io"] resources: ["orders", "orders/status"] @@ -4709,7 +4709,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: # Use to update challenge resource status - apiGroups: ["acme.cert-manager.io"] @@ -4769,7 +4769,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["cert-manager.io"] resources: ["certificates", "certificaterequests"] @@ -4806,7 +4806,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rbac.authorization.k8s.io/aggregate-to-view: "true" rbac.authorization.k8s.io/aggregate-to-edit: "true" rbac.authorization.k8s.io/aggregate-to-admin: "true" @@ -4828,7 +4828,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rbac.authorization.k8s.io/aggregate-to-edit: "true" rbac.authorization.k8s.io/aggregate-to-admin: "true" rules: @@ -4853,7 +4853,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cert-manager" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["cert-manager.io"] resources: ["signers"] @@ -4873,7 +4873,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cert-manager" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["certificates.k8s.io"] resources: ["certificatesigningrequests"] @@ -4899,7 +4899,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["authorization.k8s.io"] resources: ["subjectaccessreviews"] @@ -4915,7 +4915,7 @@ metadata: app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cainjector" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -4935,7 +4935,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -4955,7 +4955,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -4975,7 +4975,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -4995,7 +4995,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -5015,7 +5015,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -5035,7 +5035,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -5055,7 +5055,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cert-manager" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -5075,7 +5075,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cert-manager" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -5095,7 +5095,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole @@ -5118,7 +5118,7 @@ metadata: app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cainjector" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: # Used for leader election by the controller # cert-manager-cainjector-leader-election is used by the CertificateBased injector controller @@ -5144,7 +5144,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: ["coordination.k8s.io"] resources: ["leases"] @@ -5165,7 +5165,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" rules: - apiGroups: [""] resources: ["secrets"] @@ -5190,7 +5190,7 @@ metadata: app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cainjector" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: Role @@ -5213,7 +5213,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: Role @@ -5235,7 +5235,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" roleRef: apiGroup: rbac.authorization.k8s.io kind: Role @@ -5257,7 +5257,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: type: ClusterIP ports: @@ -5281,7 +5281,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: type: ClusterIP ports: @@ -5305,7 +5305,7 @@ metadata: app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cainjector" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: replicas: 1 selector: @@ -5320,7 +5320,7 @@ spec: app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "cainjector" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: nodeSelector: null affinity: @@ -5346,7 +5346,7 @@ spec: operator: Exists containers: - name: cert-manager-cainjector - image: "quay.io/jetstack/cert-manager-cainjector:v1.12.2" + image: "quay.io/jetstack/cert-manager-cainjector:v1.12.3" imagePullPolicy: IfNotPresent args: - --v=2 @@ -5373,7 +5373,7 @@ metadata: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: replicas: 1 selector: @@ -5388,7 +5388,7 @@ spec: app.kubernetes.io/name: cert-manager app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "controller" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" annotations: prometheus.io/path: "/metrics" prometheus.io/scrape: 'true' @@ -5426,13 +5426,13 @@ spec: operator: Exists containers: - name: cert-manager-controller - image: "quay.io/jetstack/cert-manager-controller:v1.12.2" + image: "quay.io/jetstack/cert-manager-controller:v1.12.3" imagePullPolicy: IfNotPresent args: - --v=2 - --cluster-resource-namespace=$(POD_NAMESPACE) - --leader-election-namespace=kube-system - - --acme-http01-solver-image=quay.io/jetstack/cert-manager-acmesolver:v1.12.2 + - --acme-http01-solver-image=quay.io/jetstack/cert-manager-acmesolver:v1.12.3 - --max-concurrent-challenges=60 - --enable-certificate-owner-ref=true {{ if .CertManager.DefaultIssuer }} @@ -5469,7 +5469,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: replicas: 1 selector: @@ -5484,7 +5484,7 @@ spec: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" spec: nodeSelector: null affinity: @@ -5510,7 +5510,7 @@ spec: operator: Exists containers: - name: cert-manager-webhook - image: "quay.io/jetstack/cert-manager-webhook:v1.12.2" + image: "quay.io/jetstack/cert-manager-webhook:v1.12.3" imagePullPolicy: IfNotPresent args: - --v=2 @@ -5569,7 +5569,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" annotations: cert-manager.io/inject-ca-from-secret: "kube-system/cert-manager-webhook-ca" webhooks: @@ -5610,7 +5610,7 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/instance: cert-manager app.kubernetes.io/component: "webhook" - app.kubernetes.io/version: "v1.12.2" + app.kubernetes.io/version: "v1.12.3" annotations: cert-manager.io/inject-ca-from-secret: "kube-system/cert-manager-webhook-ca" webhooks: