Certificates are managed by the `cert-manager` pod installed via the [Kubernetes Integration]( page. This will handle automatic renewals. All of this only works if all DNS entries named in the certificate point to the ingress IP.
### DNS
DNS is hosted in route53, and is managed via terraform in the [gitlab-com-infra repository](
### Resources
Switch contexts to the `gs-production-gke` cluster in the `gs-production` namespace.
