-
Notifications
You must be signed in to change notification settings - Fork 31
Add missing install flags #2798
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
✅ Deploy Preview for replicated-docs ready!
To edit notification comments on pull requests, go to your Netlify site configuration. |
✅ Deploy Preview for replicated-docs-upgrade ready!
To edit notification comments on pull requests, go to your Netlify site configuration. |
| <tr> | ||
| <td>`--private-ca`</td> | ||
| <td> | ||
| <p>The path to the trusted certificate authority (CA) certificates used by a Man-In-The-Middle (MITM) proxy that intercepts traffic and issues its own certificates. Using the `--private-ca` flag ensures that the CA is trusted by the installation. KOTS writes the CA bundle provided with the `--private-ca` flag to a ConfigMap in the cluster.</p> |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
^ Based on https://app.shortcut.com/replicated/story/111792/support-installing-behind-a-mitm-proxy-that-issues-its-own-certificates, it looks like this flag accepts a CA bundle, then that gets written to a ConfigMap. (I assume KOTS is doing the writing)
ajp-io
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
made a few minor updates. we've discussed as a team that private-ca isn't just for MITM proxies, so I reworded there a bit. i also asked in Slack if the network interface stuff sounded right, but I'm good with it for now.
|
@ajp-io thanks! I made the update to the private-ca example to include the proxy flags. |
|
@ajp-io also saw that Salah confirmed the wording for the network interface flag, so going to merge this |
https://deploy-preview-2798--replicated-docs.netlify.app/reference/embedded-cluster-install