Skip to content

Commit 3099e0f

Browse files
committed
[force] Use latest secret version when reading dns secret
Signed-off-by: Nicu Reut <nicu.reut@digitalasset.com>
1 parent e72c5b8 commit 3099e0f

File tree

2 files changed

+2
-2
lines changed

2 files changed

+2
-2
lines changed

cluster/expected/infra/expected.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -616,7 +616,7 @@
616616
},
617617
{
618618
"custom": true,
619-
"id": "projects/da-cn-devnet/secrets/dns01-sa-key-secret/versions/1",
619+
"id": "projects/da-cn-devnet/secrets/dns01-sa-key-secret/versions/latest",
620620
"inputs": {},
621621
"name": "dns01-sa-key-secret",
622622
"provider": "",

cluster/pulumi/infra/src/network.ts

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -180,7 +180,7 @@ function clusterCertificate(
180180

181181
gcp.secretmanager.SecretVersion.get(
182182
'dns01-sa-key-secret',
183-
`projects/${GCP_PROJECT}/secrets/${gcpSecretName}/versions/1`
183+
`projects/${GCP_PROJECT}/secrets/${gcpSecretName}/versions/latest`
184184
).secretData.apply(dns01SaKeySecret => {
185185
new k8s.core.v1.Secret(
186186
'clouddns-dns01-solver-svc-acct',

0 commit comments

Comments
 (0)