-
Bug
-
Resolution: Done-Errata
-
Undefined
-
4.14.z, 4.15.z, 4.17.z, 4.16.z, 4.18.z, 4.19.0
-
Quality / Stability / Reliability
-
False
-
-
None
-
Important
-
None
-
Done
-
Enhancement
-
Previously, the self-signed loopback certificate for the Kubernetes API Server expired after one year. With this release, the expiration date of the certificate is extended to three years.
-
None
-
None
-
None
-
None
This is a clone of issue OCPBUGS-56082. The following is the description of the original issue:
—
This is a clone of issue OCPBUGS-54208. The following is the description of the original issue:
—
Description of problem:
In order to avoid self-signed loopback certificate in every apiserver from expiring we should cherrypick https://github.com/kubernetes/kubernetes/pull/130047 and backport it to 4.16.z
Version-Release number of selected component (if applicable):
How reproducible:
Steps to Reproduce:
1. 2. 3.
Actual results:
Expected results:
Additional info:
- blocks
-
OCPBUGS-57196 [release-4.17]Backport UPSTREAM: 130047: adjusting loopback certificate validity in kube-apiserver
-
- Closed
-
- clones
-
OCPBUGS-56082 [release-4.19]Backport UPSTREAM: 130047: adjusting loopback certificate validity in kube-apiserver
-
- Closed
-
- is blocked by
-
OCPBUGS-56082 [release-4.19]Backport UPSTREAM: 130047: adjusting loopback certificate validity in kube-apiserver
-
- Closed
-
- is cloned by
-
OCPBUGS-57196 [release-4.17]Backport UPSTREAM: 130047: adjusting loopback certificate validity in kube-apiserver
-
- Closed
-
- links to
-
RHBA-2025:9269 OpenShift Container Platform 4.18.18 bug fix update