kubespray/roles/kubernetes
Max Gautier b3f6d05131
Move control plane certs renewal "spread out" into the systemd timer (#10596)
* Use RandomizedDelaySec to spread out control certificates renewal plane

If the number of control plane node is superior to 6, using (index * 10
minutes) will fail (03:60:00 is not a valid timestamp).

Compared to just fixing the jinja expression (to use a modulo for
example), this should avoid having two control planes certificates
update node being triggered at the same time.

* Make k8s-certs-renew.timer Persistent

If the control plane happens to be offline during the scheduled
certificates renewal (node failure or anything like that), we still want
the renewal to happen.
2023-11-08 12:35:20 +01:00
..
client Resolve ansible-lint name errors (#10253) 2023-07-26 07:36:22 -07:00
control-plane Move control plane certs renewal "spread out" into the systemd timer (#10596) 2023-11-08 12:35:20 +01:00
kubeadm Refactor "multi" handlers to use listen (#10542) 2023-11-08 12:28:30 +01:00
node Refactor "multi" handlers to use listen (#10542) 2023-11-08 12:28:30 +01:00
node-label/tasks project: fix var-spacing ansible rule (#10266) 2023-07-04 20:36:54 -07:00
preinstall Refactor "multi" handlers to use listen (#10542) 2023-11-08 12:28:30 +01:00
tokens Resolve ansible-lint name errors (#10253) 2023-07-26 07:36:22 -07:00