promenade/promenade/templates/roles/genesis/etc/genesis
Mark Burnett 1399731096 Use separate CA for kubelet authorization
This increases isolation of actions against the node API.  With the
previous combined CA approach, each node would have a valid key to talk
to each other node.  With this separated approach, only the API servers
will have keys with access to the node APIs.

Change-Id: I2705016eb963ca9d2cc2a344047677f4b2cc3025
2018-08-28 09:38:34 -05:00
..
apiserver/pki Use separate CA for kubelet authorization 2018-08-28 09:38:34 -05:00
armada Make bootstrap armada target its own apiserver 2018-01-04 09:11:54 -05:00
armada-cli/auth Add credentials for the armada script on genesis 2018-01-22 13:22:56 -06:00
controller-manager Use HAProxy for apiserver discovery 2018-02-08 14:30:35 -06:00
etcd/pki Migrate to self hosted using charts 2017-10-17 13:29:46 -05:00
scheduler Use HAProxy for apiserver discovery 2018-02-08 14:30:35 -06:00