小编ese*_*les的帖子

kubectl exec失败"无法验证证书,因为它不包含任何IP SAN"

我正在尝试使用kubectl exec进入我的一个容器,但我遇到了这个错误.

$ kubectl exec -it ubuntu -- bash
error: Unable to upgrade connection: {
    "kind": "Status",
    "apiVersion": "v1",
    "metadata": {},
    "status": "Failure",
    "message": "x509: cannot validate certificate for <worker_node_ip> because it doesn't contain any IP SANs",
    "code": 500
}
Run Code Online (Sandbox Code Playgroud)

我已根据本指南https://coreos.com/kubernetes/docs/1.0.6/configure-kubectl.html为我的CA证书和管理密钥等配置了kubectl

更新

我还在API服务器的日志中发现了同样的错误

E1125 17:33:16.308389 1 errors.go:62] apiserver received an error that is not an unversioned.Status: x509: cannot validate certificate for <worker_node_ip> because it doesn't contain any IP SANs
Run Code Online (Sandbox Code Playgroud)

这是否意味着我在我的worker/master节点或本地机器上的kubectl上错误地配置了证书?

ssl kubernetes

8
推荐指数
1
解决办法
8352
查看次数

标签 统计

kubernetes ×1

ssl ×1