Add customer-specified certificates for kubernetes
We need the ability to update the Kubernetes ApiServer RootCA at
ansible-bootstrap-time. This includes the ability of being able to
specify the apiServerCertSANs such that user can specify additional
DNS:<FQDN> and/or IP Records for the auto-generated
apiServerCertificate.
This change adds support for specifying the kubernetes certificates and
apiserver certificate SANs in ansible.
Reviewed: https:/ /review. opendev. org/671561 /git.openstack. org/cgit/ starlingx/ ansible- playbooks/ commit/ ?id=cbe96fb0da4 35aa9fa5b750ca4 e9629f8bd9cabf
Committed: https:/
Submitter: Zuul
Branch: master
commit cbe96fb0da435aa 9fa5b750ca4e962 9f8bd9cabf
Author: David Sullivan <email address hidden>
Date: Tue Jul 16 16:21:56 2019 -0400
Add customer-specified certificates for kubernetes
We need the ability to update the Kubernetes ApiServer RootCA at bootstrap- time. This includes the ability of being able to rtificate.
ansible-
specify the apiServerCertSANs such that user can specify additional
DNS:<FQDN> and/or IP Records for the auto-generated
apiServerCe
This change adds support for specifying the kubernetes certificates and
apiserver certificate SANs in ansible.
Depends-On: https:/ /review. opendev. org/#/c/ 671559/ 3dfdae8c63a9449 57d424e4158
Closes-Bug: 1837079
Change-Id: I5528c8ddcdd320
Signed-off-by: David Sullivan <email address hidden>