Hello,

if possible i would like to use the FreeIPA ca for Kubernetes. but kubernetes 
has some requirements on the CN and O.

the CN has to match the pattern system:node:$FQDN
and O has to match system:node

also see: 
https://github.com/kelseyhightower/kubernetes-the-hard-way/blob/master/docs/04-certificate-authority.md

is this possible with the FreeIPA CA, or do i need to use another ca for 
Kubernetes?

Kind Regards,

Stephan
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]

Reply via email to