K8S证书有效期修改

查看K8S版本

[root@k8s-master01 pki]# kubectl get node
NAME           STATUS   ROLES    AGE   VERSION
k8s-master01   Ready    master   71m   v1.19.2
k8s-master02   Ready    master   65m   v1.19.2
k8s-node01     Ready    <none>   12m   v1.19.2
[root@k8s-master01 pki]#

查看证书有效期

[root@k8s-master01 pki]# for i in $(ls *.crt); do echo "===== $i ====="; openssl x509 -in $i -text -noout | grep -A 3 'Validity' ; done
===== apiserver.crt =====
        Validity
            Not Before: Aug 10 06:45:12 2021 GMT
            Not After : Aug 10 06:45:12 2022 GMT
        Subject: CN=kube-apiserver
===== apiserver-kubelet-client.crt =====
        Validity
            Not Before: Aug 10 06:45:12 2021 GMT
            Not After : Aug 10 06:45:12 2022 GMT
        Subject: O=system:masters, CN=kube-apiserver-kubelet-client
===== ca.crt =====
        Validity
            Not Before: Aug 10 06:45:12 2021 GMT
            Not After : Aug  8 06:45:12 2031 GMT
        Subject: CN=kubernetes
===== front-proxy-ca.crt =====
        Validity
            Not Before: Aug 10 06:45:12 2021 GMT
            Not After : Aug  8 06:45:12 2031 GMT
        Subject: CN=front-proxy-ca
===== front-proxy-client.crt =====
        Validity
            Not Before: Aug 10 06:45:12 2021 GMT
            Not After : Aug 10 06:45:13 2022 GMT
        Subject: CN=front-proxy-client
[root@k8s-master01 pki]#
[root@k8s-master01 pki]#
[root@k8s-master01 pki]# pwd
/etc/kubernetes/pki
©著作权归作者所有,转载或内容合作请联系作者
平台声明:文章内容(如有图片或视频亦包括在内)由作者上传并发布,文章内容仅代表作者本人观点,简书系信息发布平台,仅提供信息存储服务。

推荐阅读更多精彩内容