aks-hybrid
aks-hybrid copied to clipboard
API server fails to recognize refreshed kubelet certificates
We discovered an issue in upstream Kubernetes which causes the API server to fail to recognize the refreshed kubelet certificates, despite the fact that they were being rotated every 4 days. See kubernetes issue #114588.
There are mitigations in place here issue #285
This work item tracks updating Kubernetes with a permanent solution from upstream.
Closing as a duplicate of issue #285 :)