Skip to content

Recommended way to configure/run in multi-replica setting #44

@ahmetb

Description

@ahmetb

I'm looking at using this awesome library in my admission webhook after a long search.

I'm curious if the library has any builtin mechanisms to coordinate first-time cert provisioning or renewals when the webhook itself is deployed as a ReplicaSet with >1 instances (and they race each other and end up with different certs or have write-write conflict on webhookconfiguration caBundle field)?

Or is this concern inherently not valid (maybe because Secrets eventually propagate and processes restart etc)?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions