Browse Source

fix load balancer DNS name index evaluation in openssl.conf

Looks like OpenSSL still properly handles it, even with duplicated
"DNS.X" items.
pull/1034/head
Vladimir Rutsky 7 years ago
parent
commit
a1ec6f401c
1 changed files with 1 additions and 1 deletions
  1. 2
      roles/kubernetes/secrets/templates/openssl.conf.j2

2
roles/kubernetes/secrets/templates/openssl.conf.j2

@ -16,7 +16,7 @@ DNS.5 = localhost
DNS.{{ 5 + loop.index }} = {{ host }} DNS.{{ 5 + loop.index }} = {{ host }}
{% endfor %} {% endfor %}
{% if loadbalancer_apiserver is defined and apiserver_loadbalancer_domain_name is defined %} {% if loadbalancer_apiserver is defined and apiserver_loadbalancer_domain_name is defined %}
{% set idx = groups['kube-master'] | length | int + 5 %}
{% set idx = groups['kube-master'] | length | int + 5 + 1 %}
DNS.{{ idx | string }} = {{ apiserver_loadbalancer_domain_name }} DNS.{{ idx | string }} = {{ apiserver_loadbalancer_domain_name }}
{% endif %} {% endif %}
{% for host in groups['kube-master'] %} {% for host in groups['kube-master'] %}

Loading…
Cancel
Save