<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Certificate Operations on SILO</title>
    <link>https://silo.pgsty.com/operations/cert-manager/</link>
    <description>Recent content in Certificate Operations on SILO</description>
    <generator>Hugo</generator>
    <language>en</language>
    
    
    
      <lastBuildDate>Wed, 16 Sep 2026 18:29:21 +0800</lastBuildDate>
    
    
      <atom:link href="https://silo.pgsty.com/operations/cert-manager/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
        <title>cert-manager for Operator</title>
        <link>https://silo.pgsty.com/operations/cert-manager/cert-manager-operator/</link>
        <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
        
        <guid>https://silo.pgsty.com/operations/cert-manager/cert-manager-operator/</guid>
        <description>&lt;p&gt;&lt;a id=&#34;cert-manager-for-operator&#34;&gt;&lt;/a&gt;&#xA;&lt;a id=&#34;minio-certmanager-operator&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;MinIO Operator manages TLS certificate issuing for the services hosted in the &lt;code&gt;minio-operator&lt;/code&gt; namespace.&lt;/p&gt;&#xA;&lt;p&gt;This page describes how to manage the Operator’s TLS certificates with &lt;a href=&#34;https://silo.pgsty.com/operations/network-encryption/cert-manager/#minio-certmanager&#34;&gt;cert-manager&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;h2 id=&#34;prerequisites&#34;&gt;Prerequisites&#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;A &lt;a href=&#34;https://kubernetes.io/releases/&#34;&gt;supported version of Kubernetes&lt;/a&gt;.&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://kustomize.io/&#34;&gt;kustomize&lt;/a&gt; installed&lt;/li&gt;&#xA;&lt;li&gt;&lt;code&gt;kubectl&lt;/code&gt; access to your &lt;code&gt;k8s&lt;/code&gt; cluster&lt;/li&gt;&#xA;&lt;li&gt;Completed the steps to &lt;a href=&#34;https://silo.pgsty.com/operations/network-encryption/cert-manager/#minio-setup-certmanager&#34;&gt;set up cert-manager&lt;/a&gt;&lt;/li&gt;&#xA;&lt;li&gt;The MinIO Operator must not yet be installed.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;create-a-ca-issuer-for-the-minio-operator-namespace&#34;&gt;1) Create a CA Issuer for the &lt;code&gt;minio-operator&lt;/code&gt; namespace&#xA;&lt;/h2&gt;&#xA;&lt;p&gt;This guide &lt;strong&gt;disables&lt;/strong&gt; the automatic generation of certificates in MinIO Operator and issues certificates using cert-manager instead.&lt;/p&gt;</description>
      </item>
    <item>
        <title>cert-manager for Tenants</title>
        <link>https://silo.pgsty.com/operations/cert-manager/cert-manager-tenants/</link>
        <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
        
        <guid>https://silo.pgsty.com/operations/cert-manager/cert-manager-tenants/</guid>
        <description>&lt;p&gt;&lt;a id=&#34;cert-manager-for-tenants&#34;&gt;&lt;/a&gt;&#xA;&lt;a id=&#34;minio-certmanager-tenants&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;The following procedures create and apply the resources necessary to use cert-manager for the TLS certificates within a tenant.&lt;/p&gt;&#xA;&lt;div class=&#34;td-callout td-callout--note&#34; role=&#34;note&#34;&gt;&#xA;  &lt;div class=&#34;td-callout__title&#34;&gt;&lt;i class=&#34;td-callout__icon fa-solid fa-circle-info&#34; aria-hidden=&#34;true&#34;&gt;&lt;/i&gt;&lt;span class=&#34;td-callout__label&#34;&gt;Note&lt;/span&gt;&lt;/div&gt;&#xA;  &lt;div class=&#34;td-callout__body&#34;&gt;&#xA;&lt;p&gt;&lt;strong&gt;Note&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;The procedures use &lt;code&gt;tenant-1&lt;/code&gt; as the name of the tenant.&lt;/p&gt;&#xA;&lt;p&gt;Replace the string &lt;code&gt;tenant-1&lt;/code&gt; throughout the procedures to reflect the name of your tenant.&lt;/p&gt;&#xA;  &lt;/div&gt;&#xA;&lt;/div&gt;&lt;h2 id=&#34;prerequisites&#34;&gt;Prerequisites&#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://kustomize.io/&#34;&gt;kustomize&lt;/a&gt; installed&lt;/li&gt;&#xA;&lt;li&gt;&lt;code&gt;kubectl&lt;/code&gt; access to your &lt;code&gt;k8s&lt;/code&gt; cluster&lt;/li&gt;&#xA;&lt;li&gt;Completed the steps to &lt;a href=&#34;https://silo.pgsty.com/operations/network-encryption/cert-manager/#minio-setup-certmanager&#34;&gt;set up cert-manager&lt;/a&gt;&lt;/li&gt;&#xA;&lt;li&gt;The MinIO Operator installed and &lt;a href=&#34;https://silo.pgsty.com/operations/cert-manager/cert-manager-operator/#minio-certmanager-operator&#34;&gt;set up for cert-manager&lt;/a&gt;.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;create-the-tenant-namespace-ca-issuer&#34;&gt;1) Create the tenant namespace CA Issuer&#xA;&lt;/h2&gt;&#xA;&lt;p&gt;Before deploying a new tenant, create a Certificate Authority and Issuer for the tenant’s namespace.&lt;/p&gt;</description>
      </item>
    
  </channel>
</rss>
