aws / aws/eks-anywhere

getting failed to verify certificate: x509: certificate signed by unknown authority for oidc authenticator

Open
#6,724 1 comment 0 reactions 0 assignees View on GitHub
external question
Dominant language
Go
Stars
2.1k
Forks
328
Avg merge
1d 4h
Merged PRs (30d)
9

Description

I am running eksa on vsphere. I dont see any parameter specified in the documentation on how to provide root cert to oidc configuration. I am seeing follwing error on the api server

> oidc authenticator: initializing plugin: Get <> tls: failed to verify certificate: x509: certificate signed by unknown authority"

Contributor guide

Open the contributing guide

Research direction

Start with the OIDC configuration documentation and the API server's OIDC authenticator setup to determine whether a root certificate option exists. Done means the supported way to provide the root certificate is documented or the missing configuration is specified, and the API server no longer reports the unknown-authority error.

Written by the indexing model from the issue text.

Assessment

Tech stack
go
Domain
authentication
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.