Skip to content

Commit 8633b57

Browse files
authored
fix: add kube-controller-manager cert and CA flags (#70)
1 parent 97b7f20 commit 8633b57

1 file changed

Lines changed: 3 additions & 0 deletions

File tree

defaults/main.yml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -288,6 +288,9 @@ k8s_controller_manager_settings:
288288
"requestheader-client-ca-file": "{{ k8s_ctl_pki_dir }}/ca-k8s-apiserver.pem"
289289
"service-account-private-key-file": "{{ k8s_ctl_pki_dir }}/cert-k8s-controller-manager-sa-key.pem"
290290
"use-service-account-credentials": "true"
291+
"client-ca-file": "{{ k8s_ctl_pki_dir }}/cert-k8s-apiserver.pem"
292+
"tls-cert-file": "{{ k8s_ctl_pki_dir }}/cert-k8s-controller-manager.pem"
293+
"tls-private-key-file": "{{ k8s_ctl_pki_dir }}/cert-k8s-controller-manager-key.pem"
291294

292295
# The directory to store scheduler configuration.
293296
k8s_scheduler_conf_dir: "{{ k8s_ctl_conf_dir }}/kube-scheduler"

0 commit comments

Comments
 (0)