Certificate Generation Fails Since Host CA Validity Is Less Than The Amount Of TTL With Which Certificate is Attempted To Be Generated In Vault

Problem

Facing issues with node converging to the cluster resulting in complete outage the nodes which are rebooted/stack restarted.

Nodelet log
Copy
Host CA cert expiry info
Copy

Error seen while onboarding node:

While executing prep-node
Copy

Environment

  • Platform9 Managed Kubernetes - v5.6 and Higher.

Solution

This is a know issue, and is resolved in the PMK version in v5.6.9, v5.7.3 and 5.9.1.

Additional Information

If the issue is observed in any of the unsupported PMK versions, please open a support ticket mentioning the related jira PMK-4582.

Type to search, ESC to discard
Type to search, ESC to discard
Type to search, ESC to discard