@@ -154,16 +154,48 @@ runc_bin_directory: "/usr/local/sbin"
154
154
155
155
# Common name for "etcd" certificate authority certificates.
156
156
ca_etcd_csr_cn : " etcd"
157
+ ca_etcd_csr_key_algo : " ecdsa"
158
+ ca_etcd_csr_key_size : " 384"
157
159
158
160
# Common name for "kube-apiserver" certificate authority certificate.
159
161
ca_k8s_apiserver_csr_cn : " kubernetes"
162
+ ca_k8s_apiserver_csr_key_algo : " ecdsa"
163
+ ca_k8s_apiserver_csr_key_size : " 384"
160
164
161
165
# Common names for "etcd" server, peer and client certificates.
162
- etcd_server_csr_cn : " etcd"
163
- etcd_peer_csr_cn : " etcd"
164
- etcd_client_csr_cn_prefix : " etcd"
166
+ etcd_server_csr_cn : " etcd-server"
167
+ etcd_server_csr_key_algo : " ecdsa"
168
+ etcd_server_csr_key_size : " 384"
169
+
170
+ etcd_peer_csr_cn : " etcd-peer"
171
+ etcd_peer_csr_key_algo : " ecdsa"
172
+ etcd_peer_csr_key_size : " 384"
173
+
174
+ etcd_client_csr_cn_prefix : " etcd-client"
175
+ etcd_client_csr_key_algo : " ecdsa"
176
+ etcd_client_csr_key_size : " 384"
165
177
166
178
# Common names for kube-apiserver, admin and kube-controller-manager certificates.
167
- k8s_apiserver_csr_cn : " kubernetes"
168
- k8s_admin_csr_cn : " admin"
169
- k8s_controller_manager_sa_csr_cn : " service-accounts"
179
+ k8s_apiserver_csr_cn : " k8s-apiserver"
180
+ k8s_apiserver_csr_key_algo : " ecdsa"
181
+ k8s_apiserver_csr_key_size : " 384"
182
+
183
+ k8s_admin_csr_cn : " k8s-admin"
184
+ k8s_admin_csr_key_algo : " ecdsa"
185
+ k8s_admin_csr_key_size : " 384"
186
+
187
+ k8s_worker_csr_key_algo : " ecdsa"
188
+ k8s_worker_csr_key_size : " 384"
189
+
190
+ k8s_controller_manager_csr_key_algo : " ecdsa"
191
+ k8s_controller_manager_csr_key_size : " 384"
192
+
193
+ k8s_scheduler_csr_key_algo : " ecdsa"
194
+ k8s_scheduler_csr_key_size : " 384"
195
+
196
+ k8s_controller_manager_sa_csr_cn : " k8s-service-accounts"
197
+ k8s_controller_manager_sa_csr_key_algo : " ecdsa"
198
+ k8s_controller_manager_sa_csr_key_size : " 384"
199
+
200
+ k8s_kube_proxy_csr_key_algo : " ecdsa"
201
+ k8s_kube_proxy_csr_key_size : " 384"
0 commit comments