Skip to content
This repository was archived by the owner on Jul 18, 2024. It is now read-only.

Added params to k3s startup that fix the certificate bug in k3s #50

Merged
merged 1 commit into from
Apr 28, 2021
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
11 changes: 10 additions & 1 deletion templates/demo-centos-7/files/roles/orchestrator/tasks/main.yml
Original file line number Diff line number Diff line change
@@ -1,6 +1,15 @@
---
- name: Install K3s w/ rancher script
shell: "curl -sfL https://get.k3s.io | sh -"
shell: |
curl -sfL https://get.k3s.io | sh -s - \
--kube-controller-manager-arg cluster-signing-cert-file= \
--kube-controller-manager-arg cluster-signing-key-file= \
--kube-controller-manager-arg cluster-signing-kube-apiserver-client-cert-file=/var/lib/rancher/k3s/server/tls/client-ca.crt \
--kube-controller-manager-arg cluster-signing-kube-apiserver-client-key-file=/var/lib/rancher/k3s/server/tls/client-ca.key \
--kube-controller-manager-arg cluster-signing-kubelet-client-cert-file=/var/lib/rancher/k3s/server/tls/client-ca.crt \
--kube-controller-manager-arg cluster-signing-kubelet-client-key-file=/var/lib/rancher/k3s/server/tls/client-ca.key \
--kube-controller-manager-arg cluster-signing-kubelet-serving-cert-file=/var/lib/rancher/k3s/server/tls/server-ca.crt \
--kube-controller-manager-arg cluster-signing-kubelet-serving-key-file=/var/lib/rancher/k3s/server/tls/server-ca.key
args:
warn: no
creates: /etc/rancher/k3s/k3s.yaml
Expand Down
11 changes: 10 additions & 1 deletion templates/demo-debian-10/files/roles/orchestrator/tasks/main.yml
Original file line number Diff line number Diff line change
@@ -1,6 +1,15 @@
---
- name: Install K3s w/ rancher script
shell: "curl -sfL https://get.k3s.io | sh -"
shell: |
curl -sfL https://get.k3s.io | sh -s - \
--kube-controller-manager-arg cluster-signing-cert-file= \
--kube-controller-manager-arg cluster-signing-key-file= \
--kube-controller-manager-arg cluster-signing-kube-apiserver-client-cert-file=/var/lib/rancher/k3s/server/tls/client-ca.crt \
--kube-controller-manager-arg cluster-signing-kube-apiserver-client-key-file=/var/lib/rancher/k3s/server/tls/client-ca.key \
--kube-controller-manager-arg cluster-signing-kubelet-client-cert-file=/var/lib/rancher/k3s/server/tls/client-ca.crt \
--kube-controller-manager-arg cluster-signing-kubelet-client-key-file=/var/lib/rancher/k3s/server/tls/client-ca.key \
--kube-controller-manager-arg cluster-signing-kubelet-serving-cert-file=/var/lib/rancher/k3s/server/tls/server-ca.crt \
--kube-controller-manager-arg cluster-signing-kubelet-serving-key-file=/var/lib/rancher/k3s/server/tls/server-ca.key
args:
warn: no
creates: /etc/rancher/k3s/k3s.yaml
Expand Down