You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This exporter does not reload the x509_not_after{} when the mounted certificate has been changed
As you know, the certificate for kubelet ,in the k8s cluster, would be rotated by kubelet automatically.
So kubelet.conf consists of /var/lib/kubelet/pki/kubelet-client-current.pem which is symbolic link of /var/lib/kubelet/pki/kubelet-client-YYYY-MM-DD-hh-mm-ss.pem file.
I did mount the /var/lib/kubelet/pki/kubelet-client-current.pem on the exporter as hostpath, but the exporter doesn't change the x509_after{} metric when the pem file has been changed.
This exporter does not reload the x509_not_after{} when the mounted certificate has been changed
As you know, the certificate for kubelet ,in the k8s cluster, would be rotated by kubelet automatically.
So kubelet.conf consists of /var/lib/kubelet/pki/kubelet-client-current.pem which is symbolic link of /var/lib/kubelet/pki/kubelet-client-YYYY-MM-DD-hh-mm-ss.pem file.
I did mount the /var/lib/kubelet/pki/kubelet-client-current.pem on the exporter as hostpath, but the exporter doesn't change the x509_after{} metric when the pem file has been changed.
https://github.com/kubeflow/kubeflow/pull/6581/files
Please check above link...
I love this x509-certificate-exporter and I hope this issue would be fixed.
Thanks
The text was updated successfully, but these errors were encountered: