tls:
termination: edge
certificate: |-
-----BEGIN CERTIFICATE-----
URL
-----END CERTIFICATE-----
key: |-
-----BEGIN PRIVATE KEY-----
KEY
-----END PRIVATE KEY-----
caCertificate: |-
-----BEGIN CERTIFICATE-----
OV TLS CA
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
USERTrust RSA
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
Sectigo Public Server Root
-----END CERTIFICATE-----
insecureEdgeTerminationPolicy: Redirect
As outlined in GitHub Discussions #329 there is a new CA Certificate chain provided by the cert provider via OCIO (July 2025).
It would be handy to place this chain order in the Private Cloud Tech Docs here: https://developer.gov.bc.ca/docs/default/component/platform-developer-docs/docs/build-deploy-and-maintain-apps/deploy-an-application/#3-configuring-ssltls-certificates