ORBOS and K8S certificates #588
-
Hi there! I've got a question regarding the certificates. To what extent is ORBOS involved in managing K8S certificates for the api-server and etcd? Specifically:
Informations about our clusters Thank you in advance! |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment 3 replies
-
Hi There Welcome to our community and thank you for using ORBOS as your platform driver. Does ORBOS interact with the K8S certificates?ORBOS does only interact with the K8s certificates through native kubeadm processes. Does ORBOS manage the renewal of the certificates?Somewhat indirect it does. As we rely on kubeadm, the certificates are rotated whenever you upgrade your K8s Version. See the outlined process of kubeadm here Does ORBOS configure a different lifespan for the certificates? (We have seen a lifespan of 6 months instead of the usual 12)No, ORBOS uses the default of 12 months for the certificates. If further questions arise, feel free to engage with us. |
Beta Was this translation helpful? Give feedback.
Hi There
Welcome to our community and thank you for using ORBOS as your platform driver.
These are great questions and you can find our answers below, hope this helps.
Does ORBOS interact with the K8S certificates?
ORBOS does only interact with the K8s certificates through native kubeadm processes.
See the next question for a more detailed answer to this.
Does ORBOS manage the renewal of the certificates?
Somewhat indirect it does. As we rely on kubeadm, the certificates are rotated whenever you upgrade your K8s Version.
See the outlined process of kubeadm here
Does ORBOS configure a different lifespan for the certificates? (We have seen a lifespan of 6 months instead of the usual 12)
No, O…