diff --git a/README.md b/README.md index 63acc7a..8e85d2f 100644 --- a/README.md +++ b/README.md @@ -196,7 +196,8 @@ definition on other platforms. Once that is setup, you can have a dnscrypt serve in minutes. - Create a static IP on GCE. This will be used for the LoadBalancer. -- Edit `kube/dnscrypt-init-job.yml` and change `example.com` to your desired hostname. +- Edit `kube/dnscrypt-init-job.yml`. Change `example.com` to your desired hostname +and `192.0.2.53` to your static IP. - Edit `kube/dnscrypt-srv.yml` and change `loadBalancerIP` to your static IP. - Run `kubectl create -f kube/dnscrypt-init-job.yml` to setup your keys. - Run `kubectl create -f kube/dnscrypt-deployment.yml` to deploy the dnscrypt server. diff --git a/kube/dnscrypt-deployment.yml b/kube/dnscrypt-deployment.yml index 10cafc9..516b906 100644 --- a/kube/dnscrypt-deployment.yml +++ b/kube/dnscrypt-deployment.yml @@ -16,7 +16,7 @@ spec: spec: containers: - env: - image: jedisct1/unbound-dnscrypt-server + image: jedisct1/dnscrypt-server name: dnscrypt volumeMounts: - name: dnscrypt-keys diff --git a/kube/dnscrypt-init-job.yml b/kube/dnscrypt-init-job.yml index 8adcecc..95d88b8 100644 --- a/kube/dnscrypt-init-job.yml +++ b/kube/dnscrypt-init-job.yml @@ -9,8 +9,8 @@ spec: spec: containers: - name: dnscrypt-init - image: jedisct1/unbound-dnscrypt-server - command: ["/entrypoint.sh", "init", "-N", "example.com", "-E", "192.168.1.1:443"] + image: jedisct1/dnscrypt-server + command: ["/entrypoint.sh", "init", "-A", "-P", "0.0.0.0:9100", "-N", "example.com", "-E", "192.0.2.53:443"] volumeMounts: - name: dnscrypt-keys mountPath: /opt/encrypted-dns/etc/keys