From 3b8fccd8cf0fc31cf8385ed323895a50d6c6d2ab Mon Sep 17 00:00:00 2001 From: Martyn Ranyard Date: Mon, 30 Oct 2023 10:29:45 +0100 Subject: [PATCH] Allow binding to low port then Signed-off-by: Martyn Ranyard --- .../cert-manager-webhook-dnsimple/args.yaml | 7 +++---- .../kustomization.yaml | 4 ---- .../cert-manager-webhook-dnsimple/port.yaml | 15 --------------- 3 files changed, 3 insertions(+), 23 deletions(-) delete mode 100644 apps-kustomized/cert-manager-webhook-dnsimple/port.yaml diff --git a/apps-kustomized/cert-manager-webhook-dnsimple/args.yaml b/apps-kustomized/cert-manager-webhook-dnsimple/args.yaml index 0b5d2c3..1c818cc 100644 --- a/apps-kustomized/cert-manager-webhook-dnsimple/args.yaml +++ b/apps-kustomized/cert-manager-webhook-dnsimple/args.yaml @@ -7,7 +7,6 @@ spec: spec: containers: - name: cert-manager-webhook-dnsimple - args: - - --tls-cert-file=/tls/tls.crt - - --tls-private-key-file=/tls/tls.key - - --secure-port 8443 + sysctls: + - name: "net.ipv4.ip_unprivileged_port_start" + value: "0" diff --git a/apps-kustomized/cert-manager-webhook-dnsimple/kustomization.yaml b/apps-kustomized/cert-manager-webhook-dnsimple/kustomization.yaml index e9b0712..d54713f 100644 --- a/apps-kustomized/cert-manager-webhook-dnsimple/kustomization.yaml +++ b/apps-kustomized/cert-manager-webhook-dnsimple/kustomization.yaml @@ -20,10 +20,6 @@ patches: target: kind: Deployment name: dnsimple-cert-manager-webhook-dnsimple -- path: port.yaml - target: - kind: Deployment - name: dnsimple-cert-manager-webhook-dnsimple - patch: |- - op: replace path: /apiVersion diff --git a/apps-kustomized/cert-manager-webhook-dnsimple/port.yaml b/apps-kustomized/cert-manager-webhook-dnsimple/port.yaml deleted file mode 100644 index 71e0a63..0000000 --- a/apps-kustomized/cert-manager-webhook-dnsimple/port.yaml +++ /dev/null @@ -1,15 +0,0 @@ -apiVersion: apps/v1 -kind: Deployment -metadata: - name: not-important -spec: - template: - spec: - containers: - - name: cert-manager-webhook-dnsimple - ports: - - port: 443 - $patch: delete - - name: https - containerPort: 8443 - protocol: TCP