From b35b83470012dd4a671b437a58c6e2619afad03d Mon Sep 17 00:00:00 2001 From: Jimmy Song Date: Thu, 4 May 2017 10:15:28 +0800 Subject: [PATCH] =?UTF-8?q?=E5=A2=9E=E5=8A=A0=E9=87=8D=E6=96=B0=E6=B7=BB?= =?UTF-8?q?=E5=8A=A0node=E6=97=B6=E8=AE=A4=E8=AF=81=E7=9A=84=E6=B3=A8?= =?UTF-8?q?=E6=84=8F=E9=97=AE=E9=A2=98?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- 06-部署node节点.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/06-部署node节点.md b/06-部署node节点.md index 3433c6e5a..62741028e 100644 --- a/06-部署node节点.md +++ b/06-部署node节点.md @@ -329,6 +329,8 @@ $ ls -l /etc/kubernetes/ssl/kubelet* -rw------- 1 root root 1675 Apr 7 02:07 /etc/kubernetes/ssl/kubelet.key ``` +注意:假如你更新kubernetes的证书,只要没有更新`token.csv`,当重启kubelet后,该node就会自动加入到kuberentes集群中,而不会重新发送`certificaterequest`,也不需要在master节点上执行`kubectl certificate approve`操作。前提是不要删除node节点上的`/etc/kubernetes/ssl/kubelet*`和`/etc/kubernetes/kubelet.kubeconfig`文件。否则kubelet启动时会提示找不到证书而失败。 + ## 配置 kube-proxy **创建 kube-proxy 的service配置文件**