b8788421d5
This allows `kube_apiserver_insecure_port` to be set to 0 (disabled). Rework of #1937 with kubeadm support Also, fixed an issue in `kubeadm-migrate-certs` where the old apiserver cert was copied as the kubeadm key
12 lines
399 B
YAML
12 lines
399 B
YAML
---
|
|
- name: Copy old certs to the kubeadm expected path
|
|
copy:
|
|
src: "{{ kube_cert_dir }}/{{ item.src }}"
|
|
dest: "{{ kube_cert_dir }}/{{ item.dest }}"
|
|
remote_src: yes
|
|
with_items:
|
|
- {src: apiserver.pem, dest: apiserver.crt}
|
|
- {src: apiserver-key.pem, dest: apiserver.key}
|
|
- {src: ca.pem, dest: ca.crt}
|
|
- {src: ca-key.pem, dest: ca.key}
|
|
register: kubeadm_copy_old_certs
|