promenade/promenade/templates/roles/common/etc/kubernetes
Mark Burnett 1399731096 Use separate CA for kubelet authorization
This increases isolation of actions against the node API.  With the
previous combined CA approach, each node would have a valid key to talk
to each other node.  With this separated approach, only the API servers
will have keys with access to the node APIs.

Change-Id: I2705016eb963ca9d2cc2a344047677f4b2cc3025
2018-08-28 09:38:34 -05:00
..
admin Use HAProxy for apiserver discovery 2018-02-08 14:30:35 -06:00
manifests Use HAProxy for apiserver discovery 2018-02-08 14:30:35 -06:00
pki Use separate CA for kubelet authorization 2018-08-28 09:38:34 -05:00
kubeconfig Use HAProxy for apiserver discovery 2018-02-08 14:30:35 -06:00