promenade/promenade/templates/roles/genesis/etc
Mark Burnett 1399731096 Use separate CA for kubelet authorization
This increases isolation of actions against the node API.  With the
previous combined CA approach, each node would have a valid key to talk
to each other node.  With this separated approach, only the API servers
will have keys with access to the node APIs.

Change-Id: I2705016eb963ca9d2cc2a344047677f4b2cc3025
2018-08-28 09:38:34 -05:00
..
genesis Use separate CA for kubelet authorization 2018-08-28 09:38:34 -05:00
kubernetes/manifests Use separate CA for kubelet authorization 2018-08-28 09:38:34 -05:00