Setup wildcard domain using cert-manager

Hi all

On the website https://istio.io/docs/tasks/traffic-management/ingress/ingress-certmgr/#getting-a-let-s-encrypt-certificate-issued-using-cert-manager, it describes, how to setup ClusterIssuer using cert-manager.

My question is, can I use DNS wildcard like:

apiVersion: cert-manager.io/v1alpha2
kind: Certificate
metadata:
  name: ingress-cert
  namespace: istio-system
spec:
  secretName: ingress-cert
  issuerRef:
    name: letsencrypt-staging
    kind: ClusterIssuer
  commonName: *.service.example.io
  dnsNames:
  - *.service.example.io
  acme:
    config:
    - http01:
        ingressClass: istio
      domains:
      - *.service.example.io

to setup a ClusterIssuer for istio-ingress?

HINT:
My DNS A record is:

A *.service.example.io 123.123.123.123

Thanks

Yes you can, we use wild card certs from let’s encrypt in similar way.

1 Like