c12s-kubespray/roles/kubernetes/secrets
Cesarini, Daniele 69636d2453 Adding /O=system:masters to admin certificate
Issue #1125. Make RBAC authorization plugin work out of the box.
"When bootstrapping, superuser credentials should include the system:masters group, for example by creating a client cert with /O=system:masters. This gives those credentials full access to the API and allows an admin to then set up bindings for other users."
2017-03-08 14:42:25 +00:00
..
defaults Rework inventory all by real groups' vars 2017-02-23 09:43:42 +01:00
files Adding /O=system:masters to admin certificate 2017-03-08 14:42:25 +00:00
handlers generate secrets on deployment machine 2016-02-13 06:51:54 +01:00
meta Vault security hardening and role isolation 2017-02-08 21:41:36 +00:00
tasks Merge pull request #1112 from mattymo/skip_vault_if_disabled 2017-03-06 11:27:53 +01:00
templates fix load balancer DNS name index evaluation in openssl.conf 2017-02-16 00:16:13 +03:00