Snippet how opa is started (it is a container spec for a kubernetes pod):
- name: opa
image: reg-dhc.app.corpintra.net/caas/opa:0.10.1
imagePullPolicy: Always
args:
- run
- --server
- --addr=https://127.0.0.1:8181
- --tls-cert-file=/etc/kubernetes/ssl/policy-controller/opa-cert.pem
- --tls-private-key-file=/etc/kubernetes/ssl/policy-controller/opa-key.key
- /policy
- /etc/kubernetes/ssl/policy-controller/policy-controller.authorization.rego
- -l=info
- -w