From 4e95788e1772e690e869e2c2e8ebdee7d7e7f915 Mon Sep 17 00:00:00 2001 From: Raj Perera Date: Mon, 19 Jun 2017 13:16:57 -0400 Subject: [PATCH] Make rotate_kubernetes_certs default to false --- roles/kargo-defaults/defaults/main.yaml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/roles/kargo-defaults/defaults/main.yaml b/roles/kargo-defaults/defaults/main.yaml index 91602fdaa..2dfb2cd70 100644 --- a/roles/kargo-defaults/defaults/main.yaml +++ b/roles/kargo-defaults/defaults/main.yaml @@ -121,6 +121,9 @@ enable_network_policy: false authorization_mode: ['AlwaysAllow'] rbac_enabled: "{{ 'RBAC' in authorization_mode }}" +## Set this flag to re-create kubernetes node and master certificates !!WARNING!!: Will overwrite existing certs. +rotate_kubernetes_certs: false + ssl_ca_dirs: "[ {% if ansible_os_family in ['CoreOS', 'Container Linux by CoreOS'] -%} '/usr/share/ca-certificates',