From a6871c6d76f20139496bef00d8567b5c244a3edf Mon Sep 17 00:00:00 2001 From: resamaraschi Date: Tue, 11 Feb 2020 14:24:02 +0100 Subject: [PATCH] Brings some missing information --- content/rke/latest/en/installation/certs/_index.md | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/content/rke/latest/en/installation/certs/_index.md b/content/rke/latest/en/installation/certs/_index.md index 1907a0a68eb..13bb27681fe 100644 --- a/content/rke/latest/en/installation/certs/_index.md +++ b/content/rke/latest/en/installation/certs/_index.md @@ -36,11 +36,13 @@ The following certificates must exist in the certificate directory. | Kube Scheduler | kube-scheduler.pem | kube-scheduler-key.pem | | Kube Proxy | kube-proxy.pem | kube-proxy-key.pem | | Kube Admin | kube-admin.pem | kube-admin-key.pem | +| Kube Node | kube-node.pem | kube-node-key.pem | | Apiserver Proxy Client | kube-apiserver-proxy-client.pem | kube-apiserver-proxy-client-key.pem | | Etcd Nodes | kube-etcd-x-x-x-x.pem | kube-etcd-x-x-x-x-key.pem | -| Kube Api Request Header CA | kube-apiserver-requestheader-ca.pem | kube-apiserver-requestheader-ca-key.pem | +| Kube Api Request Header CA | kube-apiserver-requestheader-ca.pem* | kube-apiserver-requestheader-ca-key.pem** | | Service Account Token | - | kube-service-account-token-key.pem | - +* Is the same as kube-ca.pem +** Is the same as kube-ca-key ## Generating Certificate Signing Requests (CSRs) and Keys If you want to create and sign the certificates by a real Certificate Authority (CA), you can use RKE to generate a set of Certificate Signing Requests (CSRs) and keys. Using the `rke cert generate-csr` command, you can generate the CSRs and keys.