Skip to content

Commit 50fc574

Browse files
committed
Allow certificate rotation during cluster upgrade
1 parent 2dec8eb commit 50fc574

File tree

1 file changed

+2
-2
lines changed
  • kubetest2-tf/data/k8s-ansible/roles/update-k8s-patch/tasks

1 file changed

+2
-2
lines changed

kubetest2-tf/data/k8s-ansible/roles/update-k8s-patch/tasks/main.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,14 +10,14 @@
1010
when: node_type == "master"
1111

1212
- name: Perform kubeadm upgrade on the first control-plane node
13-
shell: kubeadm upgrade apply v{{ kubernetes_major_minor }}.{{ kubernetes_patch }} --certificate-renewal=false -y
13+
shell: kubeadm upgrade apply v{{ kubernetes_major_minor }}.{{ kubernetes_patch }}
1414
when: groups['masters']|length > 1 and inventory_hostname == groups['masters'][0]
1515

1616
- name: Update the kubelet and the kubectl utilities
1717
shell: sudo yum install -y kubelet-'{{ kubernetes_major_minor }}.{{ kubernetes_patch }}-*' kubectl-'{{ kubernetes_major_minor }}.{{ kubernetes_patch }}-*' --disableexcludes=kubernetes
1818

1919
- name: Perform kubeadm upgrade on the rest of the nodes
20-
shell: kubeadm upgrade node --certificate-renewal=false
20+
shell: kubeadm upgrade node
2121
when: inventory_hostname != groups['masters'][0] and (node_type == "master" or node_type == "worker")
2222

2323
- name: Reload the systemd processes

0 commit comments

Comments
 (0)