Apply suggestions from code review

Co-authored-by: John Gardiner Myers <jgmyers@proofpoint.com>
This commit is contained in:
Ole Markus With 2020-10-09 08:06:14 +02:00 committed by Ole Markus With
parent e7070e334d
commit 466dcd001e
2 changed files with 4 additions and 2 deletions

View File

@ -179,6 +179,7 @@ func (s *Server) issueCert(name string, pubKey string, id *fi.VerifyResult, vali
issueReq.Subject = pkix.Name{
CommonName: id.NodeName,
}
issueReq.AlternateNames = []string{id.NodeName}
issueReq.Type = "server"
case "kube-proxy":
issueReq.Subject = pkix.Name{

View File

@ -233,8 +233,8 @@ func (b *KubeletBuilder) buildSystemdEnvironmentFile(kubeletConfig *kops.Kubelet
}
if b.UseKopsControllerForNodeBootstrap() {
flags += " --tls-cert-file " + b.PathSrvKubernetes() + "/kubelet-server.crt"
flags += " --tls-private-key-file " + b.PathSrvKubernetes() + "/kubelet-server.key"
flags += " --tls-cert-file=" + b.PathSrvKubernetes() + "/kubelet-server.crt"
flags += " --tls-private-key-file=" + b.PathSrvKubernetes() + "/kubelet-server.key"
}
sysconfig := "DAEMON_ARGS=\"" + flags + "\"\n"
@ -587,6 +587,7 @@ func (b *KubeletBuilder) buildKubeletServingCertificate(c *fi.ModelBuilderContex
Subject: nodetasks.PKIXName{
CommonName: nodeName,
},
AlternateNames: []string{nodeName},
}
c.AddTask(issueCert)
return issueCert.AddFileTasks(c, dir, name, "", nil)