kubectl create secret generic vault-token-clusterissuer \
--namespace="cert-manager-system" \
--from-literal=token="hvs.EqbmHiyE4l1PNr8ZSgRqje98"
apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
name: vault
namespace: vault-system
spec:
vault:
path: "pki-inter/sign/pki-inter"
server: http://vault.vault-system.svc:8200
auth:
tokenSecretRef:
name: vault-token-clusterissuer
key: token