Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

✨ (go/v4): feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) #4400

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

camilamacedo86
Copy link
Member

@camilamacedo86 camilamacedo86 commented Dec 1, 2024

feat/fix: enhance cert-manager integration for metrics endpoints

This commit is a follow-up to PR #4243, which introduced support for using cert-manager certificates for securing the metrics endpoint and ServiceMonitor. Related to #3871 and #4003

Key enhancements:

  • Added support for configuring certificate integration via a Kustomize patch.
  • Introduced configurable flags for greater flexibility in customization.
  • Use Certwatcher to allow certificate rotation

This configuration provides an option for users to be production-ready.

These improvements enhance usability and adaptability while maintaining compatibility with the initial implementation. As the feature has not yet been released, this update ensures a polished and user-friendly integration for upcoming releases.

@k8s-ci-robot
Copy link
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: camilamacedo86

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@k8s-ci-robot k8s-ci-robot added cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. approved Indicates a PR has been approved by an approver from all required OWNERS files. size/L Denotes a PR that changes 100-499 lines, ignoring generated files. labels Dec 1, 2024
@camilamacedo86 camilamacedo86 changed the title Follow up of: #4243 - Ensure that production configuration to protect… feat: Add Kustomize patch and flags for metrics certificates configuration Dec 1, 2024
@camilamacedo86 camilamacedo86 changed the title feat: Add Kustomize patch and flags for metrics certificates configuration ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) Dec 1, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from 167e3cf to 5e02482 Compare December 1, 2024 17:14
@k8s-ci-robot k8s-ci-robot added size/XL Denotes a PR that changes 500-999 lines, ignoring generated files. and removed size/L Denotes a PR that changes 100-499 lines, ignoring generated files. labels Dec 1, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from 5e02482 to a53d785 Compare December 1, 2024 17:20
@camilamacedo86 camilamacedo86 changed the title ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) WIP: ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) Dec 1, 2024
@k8s-ci-robot k8s-ci-robot added the do-not-merge/work-in-progress Indicates that a PR should not merge because it is a work in progress. label Dec 1, 2024
@camilamacedo86 camilamacedo86 added release-blocker and removed do-not-merge/work-in-progress Indicates that a PR should not merge because it is a work in progress. labels Dec 1, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch 3 times, most recently from 2f012e8 to fe0b824 Compare December 1, 2024 17:52
@k8s-ci-robot k8s-ci-robot added size/XXL Denotes a PR that changes 1000+ lines, ignoring generated files. and removed size/XL Denotes a PR that changes 500-999 lines, ignoring generated files. labels Dec 1, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch 2 times, most recently from 6114658 to 7bcaf26 Compare December 1, 2024 18:51
@k8s-ci-robot k8s-ci-robot added size/XL Denotes a PR that changes 500-999 lines, ignoring generated files. and removed size/XXL Denotes a PR that changes 1000+ lines, ignoring generated files. labels Dec 1, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from 7bcaf26 to 323eb3e Compare December 1, 2024 19:06
@k8s-ci-robot k8s-ci-robot added the do-not-merge/work-in-progress Indicates that a PR should not merge because it is a work in progress. label Dec 1, 2024
@camilamacedo86 camilamacedo86 changed the title WIP: ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) Dec 1, 2024
@k8s-ci-robot k8s-ci-robot removed the do-not-merge/work-in-progress Indicates that a PR should not merge because it is a work in progress. label Dec 1, 2024
@camilamacedo86 camilamacedo86 added the priority/backlog Higher priority than priority/awaiting-more-evidence. label Dec 1, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch 8 times, most recently from 02212a9 to 3f9defb Compare December 13, 2024 09:52
@camilamacedo86 camilamacedo86 changed the title WIP ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) Dec 13, 2024
@k8s-ci-robot k8s-ci-robot removed the do-not-merge/work-in-progress Indicates that a PR should not merge because it is a work in progress. label Dec 13, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from 3f9defb to 2cd96ce Compare December 13, 2024 09:59
Copy link
Contributor

@damsien damsien left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Small typo in the comment

docs/book/src/reference/metrics.md Outdated Show resolved Hide resolved
@camilamacedo86 camilamacedo86 changed the title ✨ feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) ✨ (go/v4): feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) Dec 13, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from 2cd96ce to 8531ea8 Compare December 14, 2024 09:12
@camilamacedo86
Copy link
Member Author

HI @damsien

All done! thx.

@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from 8531ea8 to 3c08851 Compare December 14, 2024 09:26
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from 3c08851 to 89e7ab3 Compare December 14, 2024 17:31
@camilamacedo86 camilamacedo86 changed the title ✨ (go/v4): feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) (WIP)✨ (go/v4): feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) Dec 14, 2024
@k8s-ci-robot k8s-ci-robot added the do-not-merge/work-in-progress Indicates that a PR should not merge because it is a work in progress. label Dec 14, 2024
@camilamacedo86 camilamacedo86 changed the title (WIP)✨ (go/v4): feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) ✨ (go/v4): feat/fix: enhance cert-manager integration for metrics endpoints (follow-up to PR #4243) Dec 14, 2024
@k8s-ci-robot k8s-ci-robot removed the do-not-merge/work-in-progress Indicates that a PR should not merge because it is a work in progress. label Dec 14, 2024
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch 3 times, most recently from 027f148 to b6ffce9 Compare December 14, 2024 19:40
…low-up to PR kubernetes-sigs#4243)

This commit is a follow-up to PR kubernetes-sigs#4243, which introduced support for using cert-manager certificates for securing the metrics endpoint and ServiceMonitor. Related to kubernetes-sigs#3871 and kubernetes-sigs#4003

Key enhancements:
- Added support for configuring certificate integration via a Kustomize patch.
- Introduced configurable flags for greater flexibility in customization.
- Use Certwatcher to allow certificate rotation

This configuration provides an option for users to be production-ready
@camilamacedo86 camilamacedo86 force-pushed the protect-metrics-production branch from b6ffce9 to 732a5ee Compare December 14, 2024 20:58
@k8s-ci-robot k8s-ci-robot added the needs-rebase Indicates a PR cannot be merged because it has merge conflicts with HEAD. label Dec 15, 2024
@k8s-ci-robot
Copy link
Contributor

PR needs rebase.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
approved Indicates a PR has been approved by an approver from all required OWNERS files. cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. needs-rebase Indicates a PR cannot be merged because it has merge conflicts with HEAD. priority/important-soon Must be staffed and worked on either currently, or very soon, ideally in time for the next release. release-blocker size/XXL Denotes a PR that changes 1000+ lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants