getting failed to verify certificate: x509: certificate signed by unknown authority for oidc authenticator
Open
external
question
- Dominant language
- Go
- Stars
- 2.1k
- Forks
- 328
- Avg merge
- 1d 4h
- Merged PRs (30d)
- 9
Description
I am running eksa on vsphere. I dont see any parameter specified in the documentation on how to provide root cert to oidc configuration. I am seeing follwing error on the api server
> oidc authenticator: initializing plugin: Get <> tls: failed to verify certificate: x509: certificate signed by unknown authority"
Contributor guide
Research direction
Start with the OIDC configuration documentation and the API server's OIDC authenticator setup to determine whether a root certificate option exists. Done means the supported way to provide the root certificate is documented or the missing configuration is specified, and the API server no longer reports the unknown-authority error.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- go
- Domain
- authentication
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 30/100