diff --git a/infra/tf/tls/acme.tf b/infra/tf/tls/acme.tf index b6161f816e..77b9bc4dcf 100644 --- a/infra/tf/tls/acme.tf +++ b/infra/tf/tls/acme.tf @@ -11,49 +11,3 @@ resource "acme_registration" "main" { email_address = "letsencrypt@rivet.gg" } -# MARK: Certificates -resource "acme_certificate" "rivet_gg" { - account_key_pem = acme_registration.main.account_key_pem - common_name = var.domain_main - subject_alternative_names = flatten([ - "*.${var.domain_main}", - ]) - - recursive_nameservers = ["1.1.1.1:53", "1.0.0.1:53"] - - # LetsEncrypt issues for 90 days, issue a new cert at 75 days - min_days_remaining = 75 - - # This certificate may not have been deployed yet - revoke_certificate_on_destroy = false - - dns_challenge { - provider = "cloudflare" - - config = { - CF_DNS_API_TOKEN = module.secrets.values["cloudflare/terraform/auth_token"] - } - } -} - -resource "acme_certificate" "rivet_game" { - account_key_pem = acme_registration.main.account_key_pem - common_name = var.domain_cdn - subject_alternative_names = ["*.${var.domain_cdn}"] - - recursive_nameservers = ["1.1.1.1:53", "1.0.0.1:53"] - - # LetsEncrypt issues for 90 days, issue a new cert at 75 days - min_days_remaining = 75 - - # This certificate may not have been deployed yet - revoke_certificate_on_destroy = false - - dns_challenge { - provider = "cloudflare" - - config = { - CF_DNS_API_TOKEN = module.secrets.values["cloudflare/terraform/auth_token"] - } - } -}