Skip to content

Commit 8b234f8

Browse files
committed
[ja] kube-etcd certificate requires additional SAN's
1 parent fef3dcc commit 8b234f8

File tree

1 file changed

+8
-8
lines changed

1 file changed

+8
-8
lines changed

content/ja/docs/setup/best-practices/certificates.md

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -62,15 +62,15 @@ CAの秘密鍵をクラスターにコピーしたくない場合、自身で全
6262

6363
必要な証明書:
6464

65-
| デフォルトCN | 親認証局 | 組織       | 種類 | ホスト名 (SAN) |
66-
|-------------------------------|---------------------------|----------------|----------------------------------------|---------------------------------------------|
67-
| kube-etcd | etcd-ca | | server, client | `localhost`, `127.0.0.1` |
65+
| デフォルトCN | 親認証局 | 組織       | 種類 | ホスト名 (SAN) |
66+
|-------------------------------|---------------------------|----------------|----------------------------------------|-----------------------------------------------------|
67+
| kube-etcd | etcd-ca | | server, client | `<hostname>`, `<Host_IP>`, `localhost`, `127.0.0.1` |
6868
| kube-etcd-peer | etcd-ca | | server, client | `<hostname>`, `<Host_IP>`, `localhost`, `127.0.0.1` |
69-
| kube-etcd-healthcheck-client | etcd-ca | | client | |
70-
| kube-apiserver-etcd-client | etcd-ca | system:masters | client | |
71-
| kube-apiserver | kubernetes-ca | | server | `<hostname>`, `<Host_IP>`, `<advertise_IP>`, `[1]` |
72-
| kube-apiserver-kubelet-client | kubernetes-ca | system:masters | client | |
73-
| front-proxy-client | kubernetes-front-proxy-ca | | client | |
69+
| kube-etcd-healthcheck-client | etcd-ca | | client | |
70+
| kube-apiserver-etcd-client | etcd-ca | system:masters | client | |
71+
| kube-apiserver | kubernetes-ca | | server | `<hostname>`, `<Host_IP>`, `<advertise_IP>`, `[1]` |
72+
| kube-apiserver-kubelet-client | kubernetes-ca | system:masters | client | |
73+
| front-proxy-client | kubernetes-front-proxy-ca | | client | |
7474

7575
[1]: クラスターに接続するIPおよびDNS名( [kubeadm](/docs/reference/setup-tools/kubeadm/kubeadm/)を使用する場合と同様、ロードバランサーのIPおよびDNS名、`kubernetes``kubernetes.default``kubernetes.default.svc``kubernetes.default.svc.cluster``kubernetes.default.svc.cluster.local`)
7676

0 commit comments

Comments
 (0)