mirror of
https://github.com/rancher/rancher-docs.git
synced 2026-09-26 21:18:04 +00:00
Merge pull request #3993 from rancher/master-to-staging
Master to staging
This commit is contained in:
@@ -19,3 +19,22 @@ Certificates can be rotated for the following services:
|
|||||||
- kube-scheduler
|
- kube-scheduler
|
||||||
- kube-controller-manager
|
- kube-controller-manager
|
||||||
|
|
||||||
|
|
||||||
|
### Certificate Rotation
|
||||||
|
|
||||||
|
Rancher launched Kubernetes clusters have the ability to rotate the auto-generated certificates through the UI.
|
||||||
|
|
||||||
|
1. In the **Global** view, navigate to the cluster that you want to rotate certificates.
|
||||||
|
|
||||||
|
2. Select **⋮ > Rotate Certificates**.
|
||||||
|
|
||||||
|
3. Select which certificates that you want to rotate.
|
||||||
|
|
||||||
|
* Rotate all Service certificates (keep the same CA)
|
||||||
|
* Rotate an individual service and choose one of the services from the drop-down menu
|
||||||
|
|
||||||
|
4. Click **Save**.
|
||||||
|
|
||||||
|
**Results:** The selected certificates will be rotated and the related services will be restarted to start using the new certificate.
|
||||||
|
|
||||||
|
> **Note:** Even though the RKE CLI can use custom certificates for the Kubernetes cluster components, Rancher currently doesn't allow the ability to upload these in Rancher launched Kubernetes clusters.
|
||||||
|
|||||||
+4
-1
@@ -13,7 +13,10 @@ This page covers how to install the Cloud Provider Interface (CPI) and Cloud Sto
|
|||||||
|
|
||||||
# Prerequisites
|
# Prerequisites
|
||||||
|
|
||||||
The vSphere version must be 7.0u1 or higher.
|
The vSphere versions supported:
|
||||||
|
|
||||||
|
* 6.7u3
|
||||||
|
* 7.0u1 or higher.
|
||||||
|
|
||||||
The Kubernetes version must be 1.19 or higher.
|
The Kubernetes version must be 1.19 or higher.
|
||||||
|
|
||||||
|
|||||||
@@ -19,3 +19,22 @@ Certificates can be rotated for the following services:
|
|||||||
|
|
||||||
> **Note:** For users who didn't rotate their webhook certificates, and they have expired after one year, please see this [page]({{<baseurl>}}/rancher/v2.6/en/troubleshooting/expired-webhook-certificates/) for help.
|
> **Note:** For users who didn't rotate their webhook certificates, and they have expired after one year, please see this [page]({{<baseurl>}}/rancher/v2.6/en/troubleshooting/expired-webhook-certificates/) for help.
|
||||||
|
|
||||||
|
|
||||||
|
### Certificate Rotation
|
||||||
|
|
||||||
|
Rancher launched Kubernetes clusters have the ability to rotate the auto-generated certificates through the UI.
|
||||||
|
|
||||||
|
1. In the **Global** view, navigate to the cluster that you want to rotate certificates.
|
||||||
|
|
||||||
|
2. Select **⋮ > Rotate Certificates**.
|
||||||
|
|
||||||
|
3. Select which certificates that you want to rotate.
|
||||||
|
|
||||||
|
* Rotate all Service certificates (keep the same CA)
|
||||||
|
* Rotate an individual service and choose one of the services from the drop-down menu
|
||||||
|
|
||||||
|
4. Click **Save**.
|
||||||
|
|
||||||
|
**Results:** The selected certificates will be rotated and the related services will be restarted to start using the new certificate.
|
||||||
|
|
||||||
|
> **Note:** Even though the RKE CLI can use custom certificates for the Kubernetes cluster components, Rancher currently doesn't allow the ability to upload these in Rancher launched Kubernetes clusters.
|
||||||
|
|||||||
+4
-1
@@ -10,7 +10,10 @@ This page covers how to install the Cloud Provider Interface (CPI) and Cloud Sto
|
|||||||
|
|
||||||
# Prerequisites
|
# Prerequisites
|
||||||
|
|
||||||
The vSphere version must be 7.0u1 or higher.
|
The vSphere versions supported:
|
||||||
|
|
||||||
|
* 6.7u3
|
||||||
|
* 7.0u1 or higher.
|
||||||
|
|
||||||
The Kubernetes version must be 1.19 or higher.
|
The Kubernetes version must be 1.19 or higher.
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user