Set kubelet certificate rotation to 1 month

Use the experimental-cluster-signing-duration parameter to set the
kubelet certificate to expire after 1 month. Kubelet certificate
rotation is enabled by default.

Closes-Bug: 1834685
Change-Id: Ie5b91a86c1a1b536e51719dad99be0cc89d65722
Signed-off-by: David Sullivan <david.sullivan@windriver.com>
This commit is contained in:
David Sullivan 2019-07-29 22:45:51 -04:00
parent c4578ca90e
commit 1cf4bd2085
1 changed files with 1 additions and 0 deletions

View File

@ -23,6 +23,7 @@ controllerManager:
node-monitor-period: "2s"
node-monitor-grace-period: "20s"
pod-eviction-timeout: "30s"
experimental-cluster-signing-duration: "730h"
etcd:
external:
endpoints: