Outdated certificate files not in use in OpenShift 3.11 runtime
Resolution
Some files under /etc/origin/master directory will not be updated with redeploy CA and certificate process.
These files will not be updated as they are no longer in use.
- frontproxy-ca.crt
- Renamed to front-proxy-ca.crt
- openshift-aggregator.crt
- Renamed to aggregator-front-proxy.crt
- named_certificates/docker-registry.pem
- Installation time only, will not be updated. On redeploy certificate, registry.crt will be used instead.
- bootstrap.kubeconfig
- Used for first boot, will not be updated.
SBR
Product(s)
This solution is part of Red Hat’s fast-track publication program, providing a huge library of solutions that Red Hat engineers have created while supporting our customers. To give you the knowledge you need the instant it becomes available, these articles may be presented in a raw and unedited form.