diff --git a/charts/openvasd/README.md b/charts/openvasd/README.md index f642502f15..ba3be83156 100644 --- a/charts/openvasd/README.md +++ b/charts/openvasd/README.md @@ -6,12 +6,12 @@ This Helm chart is tested with k3s and Traefik. Note that other options may requ ## mTLS (Enabled by Default) -To use mTLS, store the server certificate and key as a secret named 'server-private-key', containing key.pem and certs.pem. For example, deploying `openvasd` into the 'openvasd' namespace with a generated certificate: +To use mTLS, store the server certificate and key as a secret named 'ingress-certificate', containing key.pem and certs.pem. For example, deploying `openvasd` into the 'openvasd' namespace with a generated certificate: ```bash cd ../../rust/examples/tls/Self-Signed\ mTLS\ Method sh server_certificates.sh -kubectl create secret generic server-private-key \ +kubectl create secret generic ingress-certificate \ --from-file=key.pem=./server.rsa \ --from-file=certs.pem=./server.pem \ --namespace openvasd diff --git a/charts/openvasd/templates/deployment.yaml b/charts/openvasd/templates/deployment.yaml index 030bf51652..e7bcdfd85d 100644 --- a/charts/openvasd/templates/deployment.yaml +++ b/charts/openvasd/templates/deployment.yaml @@ -43,9 +43,9 @@ spec: - name: ospd-logs emptyDir: {} {{- if eq .Values.openvasd.tls.certificates.deploy_server true }} - - name: server-private-key + - name: ingress-certificate secret: - secretName: server-private-key + secretName: ingress-certificate {{ end }} {{- if eq .Values.openvasd.tls.certificates.deploy_client true }} - name: client-certs @@ -160,7 +160,7 @@ spec: mountPath: /run/ospd/ {{- if eq .Values.openvasd.tls.certificates.deploy_server true }} - mountPath: "/etc/openvasd/tls/" - name: server-private-key + name: ingress-certificate readOnly: true {{ end }} {{- if eq .Values.openvasd.tls.certificates.deploy_client true }} diff --git a/rust/examples/tls/Self-Signed mTLS Method/Makefile b/rust/examples/tls/Self-Signed mTLS Method/Makefile index 7db6ec47c0..02276dcd0e 100644 --- a/rust/examples/tls/Self-Signed mTLS Method/Makefile +++ b/rust/examples/tls/Self-Signed mTLS Method/Makefile @@ -11,7 +11,7 @@ namespace: kubectl create namespace openvasd | true deploy: namespace server client - kubectl create secret generic server-private-key \ + kubectl create secret generic ingress-certificate \ --from-file=key.pem=./server.rsa \ --from-file=certs.pem=./server.pem \ --namespace openvasd