From e9a04eae24b7615a0fed34a50dbf0e2270be363c Mon Sep 17 00:00:00 2001 From: Zhiwei Yin Date: Tue, 2 Apr 2024 21:39:34 +0800 Subject: [PATCH] update ocm-proxyserver yaml to remove klusterlet cert (#657) Signed-off-by: Zhiwei Yin --- .../server-foundation/templates/ocm-proxyserver.yaml | 9 --------- 1 file changed, 9 deletions(-) diff --git a/pkg/templates/charts/toggle/server-foundation/templates/ocm-proxyserver.yaml b/pkg/templates/charts/toggle/server-foundation/templates/ocm-proxyserver.yaml index d7921399d..c287c20aa 100644 --- a/pkg/templates/charts/toggle/server-foundation/templates/ocm-proxyserver.yaml +++ b/pkg/templates/charts/toggle/server-foundation/templates/ocm-proxyserver.yaml @@ -41,9 +41,6 @@ spec: - --secure-port=6443 - --tls-cert-file=/var/run/apiservice/tls.crt - --tls-private-key-file=/var/run/apiservice/tls.key - - --agent-cafile=/var/run/klusterlet/ca.crt - - --agent-certfile=/var/run/klusterlet/tls.crt - - --agent-keyfile=/var/run/klusterlet/tls.key - --proxy-service-cafile=/var/run/clusterproxy/service-ca.crt - --proxy-service-name=cluster-proxy-addon-user - --proxy-service-port=9092 @@ -87,8 +84,6 @@ spec: privileged: false readOnlyRootFilesystem: true volumeMounts: - - mountPath: /var/run/klusterlet - name: klusterlet-certs - mountPath: /var/run/apiservice name: apiservice-certs - mountPath: /var/run/clusterproxy @@ -128,10 +123,6 @@ spec: {{- end }} serviceAccountName: ocm-foundation-sa volumes: - - name: klusterlet-certs - secret: - defaultMode: 420 - secretName: ocm-klusterlet-self-signed-secrets - name: apiservice-certs secret: defaultMode: 420