From 6a32dfad5b4513e4fc627e5d87b64faaff19777e Mon Sep 17 00:00:00 2001 From: "Jeffrey C. Ollie" <jeff@ocjtech.us> Date: Tue, 15 Aug 2023 15:26:33 -0500 Subject: [PATCH] disable kubelet preStart for testing --- flake.nix | 21 +++++++++++---------- 1 file changed, 11 insertions(+), 10 deletions(-) diff --git a/flake.nix b/flake.nix index 4346248..79869bd 100644 --- a/flake.nix +++ b/flake.nix @@ -761,16 +761,17 @@ preStart = if (cfg.hosts.${name}.role == "master") then - '' - mkdir -p /etc/kubernetes/pki - cd /etc/kubernetes/pki - if [ ! -f apiserver-etcd-client.crt ] - then - cat ${apiserver-etcd-client-csr-json} | ${pkgs.cfssl}/bin/cfssl gencert -ca=${cfg.etcd.certPath} -ca-key=${cfg.etcd.keyPath} -config=${ca-config-json} -profile=client - | ${pkgs.cfssl}/bin/cfssljson -bare apiserver-etcd-client - mv apiserver-etcd-client.pem apiserver-etcd-client.crt - mv apiserver-etcd-client-key.pem apiserver-etcd-client.key - fi - '' + "" + # '' + # mkdir -p /etc/kubernetes/pki + # cd /etc/kubernetes/pki + # if [ ! -f apiserver-etcd-client.crt ] + # then + # cat ${apiserver-etcd-client-csr-json} | ${pkgs.cfssl}/bin/cfssl gencert -ca=${cfg.etcd.certPath} -ca-key=${cfg.etcd.keyPath} -config=${ca-config-json} -profile=client - | ${pkgs.cfssl}/bin/cfssljson -bare apiserver-etcd-client + # mv apiserver-etcd-client.pem apiserver-etcd-client.crt + # mv apiserver-etcd-client-key.pem apiserver-etcd-client.key + # fi + # '' else ""; serviceConfig = {