# HTTPS-only ingress with TLS configuration apiVersion: networking.k8s.io/v1 kind: Ingress metadata: name: eveai-staging-ingress namespace: eveai-staging labels: app: eveai environment: staging annotations: kubernetes.io/ingress.class: nginx nginx.ingress.kubernetes.io/ssl-redirect: "true" nginx.ingress.kubernetes.io/force-ssl-redirect: "true" nginx.ingress.kubernetes.io/proxy-body-size: "10m" nginx.ingress.kubernetes.io/proxy-read-timeout: "300" cert-manager.io/cluster-issuer: letsencrypt-staging nginx.ingress.kubernetes.io/use-regex: "true" nginx.ingress.kubernetes.io/rewrite-target: "/$2" spec: ingressClassName: nginx tls: - hosts: - evie-staging.askeveai.com secretName: evie-staging-tls rules: - host: evie-staging.askeveai.com http: paths: - path: /verify pathType: Prefix backend: service: name: verify-service port: number: 80 # Application services (strip prefix) are now defined in dedicated ingress files