cockroachdb / cockroachdb/k8s

request-cert no longer works as of Kubernetes 1.22

Open
#36 5 comments 0 reactions 0 assignees View on GitHub
Dominant language
Go
Stars
25
Forks
25
PR merge metrics
No merged PRs in 30d

Description

[As of Kubernetes 1.22, `certificates.k8s.io/v1beta1` is no longer being served](https://kubernetes.io/docs/reference/using-api/deprecation-guide/#certificatesigningrequest-v122).

The request-cert container/binary [uses the `v1beta1` API](https://github.com/cockroachdb/k8s/blob/master/request-cert/k8s_certificates.go#L25) and will fail to create a CSR in newer Kubernetes clusters:
```
failed to get certificate: CertificateSigningRequest.Create(%s) failed: the server could not find the requested resource
```

To mitigate this issue, we'll have to upgrade to `certificates.k8s.io/v1` and drop support for Kubernetes < 1.19.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.