K8S更换证书
# K8S更换证书
kubeadm默认安装的证书有效期只有一年,过期只有整个集群都没有办法正常运行。一直在报错:
Get "https://[10.96.0.1]:443/apis/crd.projectcalico.org/v1/clusterinformations/default": x509: certificate has expired or is not yet valid: current time 2022-06-05T22:31:49-04:00 is after 2022-06-02T11:30:48Z]
需要对证书进行更换
# 检查过期时间
kubeadm certs check-expiration
# 证书备份
备份是一个好习惯
cp -rp /etc/kubernetes /etc/kubernetes.bak
# 重新生成证书
kubeadm certs renew all
# 重启kubelet
systemctl restart kubelet
# 验证更换是否成功
kubeadm certs check-expiration
- 01
- 以 root 身份启动 transmission-daemon12-13
- 02
- Debian系统安装qbittorrent-nox12-09
- 03
- LXC Debain12安装zerotier并实现局域网自动nat转发07-29