diff --git a/website/docs/quick-start/authz-server.md b/website/docs/quick-start/authz-server.md index e6a044a..5382917 100644 --- a/website/docs/quick-start/authz-server.md +++ b/website/docs/quick-start/authz-server.md @@ -56,9 +56,34 @@ Notice that in the configuration, we define an `extensionProviders` section that [...] ``` +### Deploy cert-manager + +The Kyverno Authz Server comes with a validation webhook and needs a certificate to let the api server call into it. + +Let's deploy `cert-manager` to manage the certificate we need. + +```bash +# install cert-manager +helm install cert-manager \ + --namespace cert-manager --create-namespace \ + --wait \ + --repo https://charts.jetstack.io cert-manager \ + --set crds.enabled=true + +# create a self-signed cluster issuer +kubectl apply -f - <