Files
yucca/kubernetes/apps/prod/htz-fsn1/infra/namespace-envoy-system.yaml
T

15 lines
666 B
YAML

---
# envoy-system on father — needed by the cherry-picked envoy.yaml (the full
# components/infra, whose network/namespace.yaml normally owns this, stays off
# until launch). Content matches the component copy, so enabling components/infra
# later is a clean handover (same field manager, no fight); REMOVE this file at
# that point alongside envoy.yaml. The cert-manager namespace is NOT declared
# here — the talos TF stack creates it (secrets.tf) to bootstrap the
# cloudflare-api-token Secret, and declaring it twice would race TF.
apiVersion: v1
kind: Namespace
metadata:
name: envoy-system
annotations:
kustomize.toolkit.fluxcd.io/prune: disabled