bitnami/sealed-secrets

--insecure-skip-tls-verify works only for K8s API connections

Open

#596 opened on May 28, 2021

 (0 comments) (1 reaction) (0 assignees)Go (771 forks)auto 404
backlogbuggood first issue

Repository metrics

Stars
 (9,222 stars)
PR merge metrics
 (PR metrics pending)

Description

I am fetching a cert from the sealed secrets like this:

 kubeseal --raw --insecure-skip-tls-verify=true --from-file=foo.secret --cert https://sealed-secrets.my-ingress.com/v1/cert.pem --namespace team-a --name team-a-foo

The ingresses certificate is self signed. I expected --insecure-skip-tls-verify to ignore tls verification, but looking at the code of sealed-secrets, this flag is never used inside this project and is probably only passed down to K8s Go client.

I believe it should be an easy fix though - should this flag be used for both use cases? If yes, I can try to submit a quick fix.

Contributor guide