|
|
@ -8,7 +8,7 @@ |
|
|
|
# Issue admin certs to kube-master hosts |
|
|
|
- include: ../../../vault/tasks/shared/issue_cert.yml |
|
|
|
vars: |
|
|
|
issue_cert_common_name: "admin:{{ item.rsplit('/', 1)[1].rsplit('.', 1)[0] }}" |
|
|
|
issue_cert_common_name: "admin" |
|
|
|
issue_cert_copy_ca: "{{ item == kube_admin_certs_needed|first }}" |
|
|
|
issue_cert_file_group: "{{ kube_cert_group }}" |
|
|
|
issue_cert_file_owner: kube |
|
|
@ -80,7 +80,7 @@ |
|
|
|
# Issue proxy certs to k8s-cluster nodes |
|
|
|
- include: ../../../vault/tasks/shared/issue_cert.yml |
|
|
|
vars: |
|
|
|
issue_cert_common_name: "system:kube-proxy:{{ item.rsplit('/', 1)[1].rsplit('.', 1)[0] }}" |
|
|
|
issue_cert_common_name: "system:kube-proxy" |
|
|
|
issue_cert_copy_ca: "{{ item == kube_proxy_certs_needed|first }}" |
|
|
|
issue_cert_file_group: "{{ kube_cert_group }}" |
|
|
|
issue_cert_file_owner: kube |
|
|
|