Understanding the default ingress certificate
You can replace the default ingress certificate with a certificate from a public CA so that external clients connect securely to your applications.
The default ingress certificate in Red Hat OpenShift Container Platform is a wildcard certificate that the Ingress Operator issues from an internal CA for the web console, CLI, and applications under the .apps subdomain.