apiVersion: networking.gke.io/v1 kind: ManagedCertificate metadata: name: dag-cert spec: domains: - dag.${domain} --- apiVersion: networking.k8s.io/v1 kind: Ingress metadata: name: dag annotations: kubernetes.io/ingress.allow-http: "false" kubernetes.io/ingress.class: 'gce' kubernetes.io/ingress.global-static-ip-name: "dag-ip" networking.gke.io/managed-certificates: dag-cert networking.gke.io/v1beta1.FrontendConfig: "ncr-default" spec: defaultBackend: service: name: oci-registry-explorer port: number: 8080 --- apiVersion: networking.gke.io/v1beta1 kind: FrontendConfig metadata: name: ncr-default spec: sslPolicy: ncr-default