Adds CertificateSigningRequest venafi annotations to experimental API

Signed-off-by: joshvanl <vleeuwenjoshua@gmail.com>
This commit is contained in:
joshvanl
2021-07-19 15:50:23 +01:00
parent 88e85d0725
commit dcc3ad44b4
+18
View File
@@ -26,7 +26,10 @@ const (
// CertificateSigningRequestIsCAAnnotationKey is the annotation key used to
// request whether the certificate should be marked as CA.
CertificateSigningRequestIsCAAnnotationKey = "experimental.cert-manager.io/request-is-ca"
)
// SelfSigned Issuer specific Annotations
const (
// CertificateSigningRequestPrivateKeyAnnotationKey is the annotation key
// used to reference a Secret resource containing the private key used to
// sign the request.
@@ -34,3 +37,18 @@ const (
// issuer type to self-sign certificates.
CertificateSigningRequestPrivateKeyAnnotationKey = "experimental.cert-manager.io/private-key-secret-name"
)
// Venafi Issuer specific Annotations
const (
// CertificateSigningRequestVenafiCustomFieldsAnnotationKey is the annotation
// that passes on JSON encoded custom fields to the Venafi issuer.
// This will only work with Venafi TPP v19.3 and higher.
// The value is an array with objects containing the name and value keys for
// example: `[{"name": "custom-field", "value": "custom-value"}]`
CertificateSigningRequestVenafiCustomFieldsAnnotationKey = "venafi.experimental.cert-manager.io/custom-fields"
// CertificateSigningRequestVenafiPickupIDAnnotationKey is the annotation key
// used to record the Venafi Pickup ID of a certificate signing request that
// has been submitted to the Venafi API for collection later.
CertificateSigningRequestVenafiPickupIDAnnotationKey = "venafi.experimental.cert-manager.io/pickup-id"
)