mirror of https://github.com/kubernetes/kops.git
Apply suggestions from code review
Co-authored-by: John Gardiner Myers <jgmyers@proofpoint.com>
This commit is contained in:
parent
e7070e334d
commit
466dcd001e
|
|
@ -179,6 +179,7 @@ func (s *Server) issueCert(name string, pubKey string, id *fi.VerifyResult, vali
|
|||
issueReq.Subject = pkix.Name{
|
||||
CommonName: id.NodeName,
|
||||
}
|
||||
issueReq.AlternateNames = []string{id.NodeName}
|
||||
issueReq.Type = "server"
|
||||
case "kube-proxy":
|
||||
issueReq.Subject = pkix.Name{
|
||||
|
|
|
|||
|
|
@ -233,8 +233,8 @@ func (b *KubeletBuilder) buildSystemdEnvironmentFile(kubeletConfig *kops.Kubelet
|
|||
}
|
||||
|
||||
if b.UseKopsControllerForNodeBootstrap() {
|
||||
flags += " --tls-cert-file " + b.PathSrvKubernetes() + "/kubelet-server.crt"
|
||||
flags += " --tls-private-key-file " + b.PathSrvKubernetes() + "/kubelet-server.key"
|
||||
flags += " --tls-cert-file=" + b.PathSrvKubernetes() + "/kubelet-server.crt"
|
||||
flags += " --tls-private-key-file=" + b.PathSrvKubernetes() + "/kubelet-server.key"
|
||||
}
|
||||
|
||||
sysconfig := "DAEMON_ARGS=\"" + flags + "\"\n"
|
||||
|
|
@ -587,6 +587,7 @@ func (b *KubeletBuilder) buildKubeletServingCertificate(c *fi.ModelBuilderContex
|
|||
Subject: nodetasks.PKIXName{
|
||||
CommonName: nodeName,
|
||||
},
|
||||
AlternateNames: []string{nodeName},
|
||||
}
|
||||
c.AddTask(issueCert)
|
||||
return issueCert.AddFileTasks(c, dir, name, "", nil)
|
||||
|
|
|
|||
Loading…
Reference in New Issue