Skip to content
Discussion options

You must be logged in to vote

Solved. It's the same solution as in #9457. I had a "controlplane.yaml" file by another name, specifically, individual files for each of my three worker nodes. All of them had the same ca cert and key.

Given all that:

  1. I did notice that the admin cert from talosctl gen does have only a 24 hour lifespan. What are the implications of that. Will talosctl commands that hit the cluster stop working a day from now?

  2. I ran talosctl kubeconfig and that seems to have made a cert (in .kube/config) that has a year lifetime. That looks good. I ran it for each of the control plane nodes and it prompted me auth "admin@k1-a54" already exists [(r)ename/(o)verwrite]: . I chose "overwrite". That seemed a…

Replies: 2 comments 2 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
2 replies
@smira
Comment options

@cmusser
Comment options

Answer selected by cmusser
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants