Using a custom certificate authority
Another use case would be to use the CA keypair of another cluster if you are creating many short lived clusters and don’t want to create a unique CA for each one.
- Second, we create a
Secret
of typeKeypair
with the nameca
and provide our own values.
Using a previous kops
cluster CA
The files are located as follows:
s3://state-store/<cluster-name>/pki/private/ca/<id>.key