--- # Certificate for janet.ctz.fyi apiVersion: cert-manager.io/v1 kind: Certificate metadata: name: janet-ctz-fyi-tls namespace: autojanet spec: secretName: janet-ctz-fyi-tls dnsNames: - janet.ctz.fyi issuerRef: kind: ClusterIssuer name: letsencrypt-prod --- # IngressRoute: janet.ctz.fyi → intake service apiVersion: traefik.io/v1alpha1 kind: IngressRoute metadata: name: intake namespace: autojanet annotations: external-dns.alpha.kubernetes.io/hostname: janet.ctz.fyi external-dns/internal: "true" spec: entryPoints: - websecure routes: - match: Host(`janet.ctz.fyi`) kind: Rule services: - name: intake port: 80 tls: secretName: janet-ctz-fyi-tls