From 1c94d0bd64e50ad5c2c3107a2d799217069147da Mon Sep 17 00:00:00 2001 From: Andrew Lytvynov Date: Thu, 10 May 2018 14:02:06 -0700 Subject: [PATCH] Reuse existing CA cert path for kubelet certs --- cluster/gce/gci/configure-helper.sh | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/cluster/gce/gci/configure-helper.sh b/cluster/gce/gci/configure-helper.sh index 31cbc34b75c..94dac50ef26 100644 --- a/cluster/gce/gci/configure-helper.sh +++ b/cluster/gce/gci/configure-helper.sh @@ -1592,8 +1592,8 @@ function start-kube-apiserver { if [[ "${ENABLE_APISERVER_LOGS_HANDLER:-}" == "false" ]]; then params+=" --enable-logs-handler=false" fi - if [[ -n "${APISERVER_KUBELET_CA:-}" ]]; then - params+=" --kubelet-certificate-authority=${APISERVER_KUBELET_CA}" + if [[ "${APISERVER_SET_KUBELET_CA:-false}" == "true" ]]; then + params+=" --kubelet-certificate-authority=${CA_CERT_BUNDLE_PATH}" fi local admission_controller_config_mount=""