Set kubelet certificate rotation to 1 month
Use the experimental-cluster-signing-duration parameter to set the kubelet certificate to expire after 1 month. Kubelet certificate rotation is enabled by default. Closes-Bug: 1834685 Change-Id: Ie5b91a86c1a1b536e51719dad99be0cc89d65722 Signed-off-by: David Sullivan <david.sullivan@windriver.com>
This commit is contained in:
parent
c4578ca90e
commit
1cf4bd2085
|
@ -23,6 +23,7 @@ controllerManager:
|
|||
node-monitor-period: "2s"
|
||||
node-monitor-grace-period: "20s"
|
||||
pod-eviction-timeout: "30s"
|
||||
experimental-cluster-signing-duration: "730h"
|
||||
etcd:
|
||||
external:
|
||||
endpoints:
|
||||
|
|
Loading…
Reference in New Issue