parameters: | |
salt: | |
minion: | |
cert: | |
k8s_server: | |
host: ${_param:salt_minion_ca_host} | |
authority: ${_param:salt_minion_ca_authority} | |
common_name: kubernetes-server | |
key_file: /etc/kubernetes/ssl/kubernetes-server.key | |
cert_file: /etc/kubernetes/ssl/kubernetes-server.crt | |
all_file: /etc/haproxy/ssl/kubernetes.pem | |
signing_policy: cert_server | |
alternative_names: IP:${_param:cluster_vip_address},IP:${_param:cluster_node01_address},IP:${_param:cluster_node02_address},IP:${_param:cluster_node03_address},IP:${_param:kubernetes_internal_api_address} | |
user: root | |
group: haproxy | |
mode: 640 |