mirror of https://github.com/k3s-io/k3s
Merge pull request #1768 from brandond/fix_1764
Configure default signer implementation to use ClientCA instead of ServerCApull/2008/head
commit
538842ffdc
|
@ -133,8 +133,8 @@ func controllerManager(cfg *config.Control, runtime *config.ControlRuntime) erro
|
||||||
"bind-address": localhostIP.String(),
|
"bind-address": localhostIP.String(),
|
||||||
"secure-port": "0",
|
"secure-port": "0",
|
||||||
"use-service-account-credentials": "true",
|
"use-service-account-credentials": "true",
|
||||||
"cluster-signing-cert-file": runtime.ServerCA,
|
"cluster-signing-cert-file": runtime.ClientCA,
|
||||||
"cluster-signing-key-file": runtime.ServerCAKey,
|
"cluster-signing-key-file": runtime.ClientCAKey,
|
||||||
}
|
}
|
||||||
if cfg.NoLeaderElect {
|
if cfg.NoLeaderElect {
|
||||||
argsMap["leader-elect"] = "false"
|
argsMap["leader-elect"] = "false"
|
||||||
|
|
Loading…
Reference in New Issue