Skip to content

Conversation

@paigecalvert
Copy link
Contributor

@paigecalvert paigecalvert commented Oct 31, 2024

@paigecalvert paigecalvert requested a review from a team as a code owner October 31, 2024 22:59
@replicated-ci replicated-ci added type::docs Improvements or additions to documentation type::feature labels Oct 31, 2024
@netlify
Copy link

netlify bot commented Oct 31, 2024

Deploy Preview for replicated-docs ready!

Name Link
🔨 Latest commit b5162ca
🔍 Latest deploy log https://app.netlify.com/sites/replicated-docs/deploys/6724f55c01cf6600084f456e
😎 Deploy Preview https://deploy-preview-2798--replicated-docs.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site configuration.

@netlify
Copy link

netlify bot commented Oct 31, 2024

Deploy Preview for replicated-docs-upgrade ready!

Name Link
🔨 Latest commit b5162ca
🔍 Latest deploy log https://app.netlify.com/sites/replicated-docs-upgrade/deploys/6724f55c2add3a00082e47e7
😎 Deploy Preview https://deploy-preview-2798--replicated-docs-upgrade.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site configuration.

<tr>
<td>`--private-ca`</td>
<td>
<p>The path to the trusted certificate authority (CA) certificates used by a Man-In-The-Middle (MITM) proxy that intercepts traffic and issues its own certificates. Using the `--private-ca` flag ensures that the CA is trusted by the installation. KOTS writes the CA bundle provided with the `--private-ca` flag to a ConfigMap in the cluster.</p>
Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

^ Based on https://app.shortcut.com/replicated/story/111792/support-installing-behind-a-mitm-proxy-that-issues-its-own-certificates, it looks like this flag accepts a CA bundle, then that gets written to a ConfigMap. (I assume KOTS is doing the writing)

@paigecalvert paigecalvert requested a review from ajp-io October 31, 2024 23:09
Copy link
Member

@ajp-io ajp-io left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

made a few minor updates. we've discussed as a team that private-ca isn't just for MITM proxies, so I reworded there a bit. i also asked in Slack if the network interface stuff sounded right, but I'm good with it for now.

@paigecalvert
Copy link
Contributor Author

@ajp-io thanks! I made the update to the private-ca example to include the proxy flags.

@paigecalvert
Copy link
Contributor Author

@ajp-io also saw that Salah confirmed the wording for the network interface flag, so going to merge this

@paigecalvert paigecalvert merged commit 9a316de into main Nov 1, 2024
5 checks passed
@paigecalvert paigecalvert deleted the 115177 branch November 1, 2024 15:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

type::docs Improvements or additions to documentation type::feature

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants