uset haproxy owner on cert only if haproxy is defines

We need to avoid setting owner group to haproxy on instalations without
haproxy enabled.

Change-Id: I7455819144bba8ce085bf99a61e8bbbfb99668f2
diff --git a/kubernetes/master/controller.sls b/kubernetes/master/controller.sls
index 9e79926..3ecab62 100644
--- a/kubernetes/master/controller.sls
+++ b/kubernetes/master/controller.sls
@@ -186,7 +186,11 @@
   file.managed:
     - source: salt://{{ master.get('cert_source','_certs/kubernetes') }}/{{ filename }}
     - user: root
+    {%- if pillar.get('haproxy', {}).get('proxy', {}).get('enabled') %}
     - group: haproxy
+    {%- else %}
+    - group: root
+    {%- endif %}
     - mode: 640
     - watch_in:
       - service: master_services