Re: [openstack-dev] [magnum] K8S apiserver key sync

2018-05-20 Thread Sergey Filatov
://github.com/openstack/magnum/blob/2329cb7fb4d197e49d6c07d37b2f7ec14a11c880/magnum/conductor/handlers/common/cert_manager.py#L59-L64> ..Sergey Filatov > On 20 Apr 2018, at 20:57, Sergey Filatov <s.s.filato...@gmail.com> wrote: > > Hello, > > I looked into k8s drivers

[openstack-dev] [magnum] K8S apiserver key sync

2018-04-20 Thread Sergey Filatov
Hello, I looked into k8s drivers for magnum I see that each api-server on master node generates it’s own service-account-key-file. This causes issues with service-accounts authenticating on api-server. (In case api-server endpoint moves). As far as I understand we should have either all