mirror of
				https://github.com/prometheus-operator/kube-prometheus.git
				synced 2025-10-25 22:21:19 +02:00 
			
		
		
		
	kube-prometheus: change the 3 etcd client cert files back to files that actually exist in this repo
In order to resolve failed test: https://travis-ci.org/coreos/prometheus-operator/jobs/411752894
This commit is contained in:
		
							parent
							
								
									3380c39181
								
							
						
					
					
						commit
						6574cd58aa
					
				| @ -13,13 +13,13 @@ local kp = (import 'kube-prometheus/kube-prometheus.libsonnet') + | |||||||
|       //  * https://github.com/coreos/prometheus-operator/blob/master/Documentation/api.md#endpoint (has tlsConfig) |       //  * https://github.com/coreos/prometheus-operator/blob/master/Documentation/api.md#endpoint (has tlsConfig) | ||||||
|       //  * https://github.com/coreos/prometheus-operator/blob/master/Documentation/api.md#tlsconfig (has: caFile, certFile, keyFile, serverName, & insecureSkipVerify) |       //  * https://github.com/coreos/prometheus-operator/blob/master/Documentation/api.md#tlsconfig (has: caFile, certFile, keyFile, serverName, & insecureSkipVerify) | ||||||
| 
 | 
 | ||||||
|       // Set these three variables to values that are valid to scrape etcd metrics with (check the apiserver container). |       // Set these three variables to the fully qualified directory path on your work machine to the certificate files that are valid to scrape etcd metrics with (check the apiserver container). | ||||||
|       // Most likely these certificates are generated somewhere in an infrastructure repository, so using the jsonnet `importstr` function can |       // Most likely these certificates are generated somewhere in an infrastructure repository, so using the jsonnet `importstr` function can | ||||||
|       // be useful here. (Kube-aws stores these three files inside the credential folder.) |       // be useful here. (Kube-aws stores these three files inside the credential folder.) | ||||||
|       // All the sensitive information on the certificates will end up in a Kubernetes Secret. |       // All the sensitive information on the certificates will end up in a Kubernetes Secret. | ||||||
|       clientCA: importstr '/path-on-your-work-machine/etcd-client-ca.crt', |       clientCA: importstr 'etcd-client-ca.crt', | ||||||
|       clientKey: importstr '/path-on-your-work-machine/etcd-client.key', |       clientKey: importstr 'etcd-client.key', | ||||||
|       clientCert: importstr '/path-on-your-work-machine/etcd-client.crt', |       clientCert: importstr 'etcd-client.crt', | ||||||
| 
 | 
 | ||||||
|       // A valid name (DNS or Subject Alternative Name) that the client (i.e. prometheus) will use to verify the etcd TLS certificate. |       // A valid name (DNS or Subject Alternative Name) that the client (i.e. prometheus) will use to verify the etcd TLS certificate. | ||||||
|       serverName: 'etcd.my-cluster.local', // a real-life e.g. value is "etcd.kube-system.svc.cluster.local" |       serverName: 'etcd.my-cluster.local', // a real-life e.g. value is "etcd.kube-system.svc.cluster.local" | ||||||
|  | |||||||
		Loading…
	
	
			
			x
			
			
		
	
		Reference in New Issue
	
	Block a user