查看K8S版本
[root@k8s-master01 pki]# kubectl get node
NAME STATUS ROLES AGE VERSION
k8s-master01 Ready master 71m v1.19.2
k8s-master02 Ready master 65m v1.19.2
k8s-node01 Ready <none> 12m v1.19.2
[root@k8s-master01 pki]#
查看证书有效期
[root@k8s-master01 pki]# for i in $(ls *.crt); do echo "===== $i ====="; openssl x509 -in $i -text -noout | grep -A 3 'Validity' ; done
===== apiserver.crt =====
Validity
Not Before: Aug 10 06:45:12 2021 GMT
Not After : Aug 10 06:45:12 2022 GMT
Subject: CN=kube-apiserver
===== apiserver-kubelet-client.crt =====
Validity
Not Before: Aug 10 06:45:12 2021 GMT
Not After : Aug 10 06:45:12 2022 GMT
Subject: O=system:masters, CN=kube-apiserver-kubelet-client
===== ca.crt =====
Validity
Not Before: Aug 10 06:45:12 2021 GMT
Not After : Aug 8 06:45:12 2031 GMT
Subject: CN=kubernetes
===== front-proxy-ca.crt =====
Validity
Not Before: Aug 10 06:45:12 2021 GMT
Not After : Aug 8 06:45:12 2031 GMT
Subject: CN=front-proxy-ca
===== front-proxy-client.crt =====
Validity
Not Before: Aug 10 06:45:12 2021 GMT
Not After : Aug 10 06:45:13 2022 GMT
Subject: CN=front-proxy-client
[root@k8s-master01 pki]#
[root@k8s-master01 pki]#
[root@k8s-master01 pki]# pwd
/etc/kubernetes/pki