0

我已经使用 Docker 安装了 OpenShift3,并使用 ansible 安装程序安装了 Kubernetes。安装后,我想在我的主服务器上创建我的 docker 注册,但我收到以下错误(我读到它是 SSL 但我找不到解决方案):命令(来自示例):

[root@ip-10-0-0-x centos]# export CURL_CA_BUNDLE=`pwd`/openshift.local.config/master/ca.crt
[root@ip-10-0-0-x centos]# sudo chmod a+rwX openshift.local.config/master/admin.kubeconfig
[root@ip-10-0-0-x centos]# sudo chmod +r openshift.local.config/master/openshift-registry.kubeconfig
[root@ip-10-0-0-x centos]# oadm registry --create --credentials=openshift.local.config/master/openshift-registry.kubeconfig --config=openshift.local.config/master/admin.kubeconfig

错误:

error: error getting client: couldn't read version from server: Get https://10.0.0.x:8443/api: x509: cannot validate certificate for 10.0.0.x because it doesn't contain any IP SANs

附加信息

[root@ip-10-0-0-x centos]# kubectl version
Client Version: version.Info{Major:"", Minor:"", GitVersion:"v1.1.0-alpha.0-1605-g44c91b1", GitCommit:"44c91b1", GitTreeState:"not a git tree"}
Server Version: version.Info{Major:"", Minor:"", GitVersion:"v1.1.0-alpha.0-1605-g44c91b1", GitCommit:"44c91b1", GitTreeState:"not a git tree"}

[root@ip-10-0-0-191 centos]# oc get services
NAME         CLUSTER_IP   EXTERNAL_IP   PORT(S)   SELECTOR   AGE
kubernetes   172.30.0.1   <none>        443/TCP   <none>     1d

[root@ip-10-0-0-x centos]# kubernetes apiserver
F0924 12:15:13.674745   75545 server.go:223] No --service-cluster-ip-range specified
4

1 回答 1

1

Ansible 安装程序应该为您生成证书中具有正确 IP 的证书。您的本地 kubeconfig 文件(oadm 用于连接服务器)应该由 Ansible 安装程序生成 - 您能确认是这种情况吗?该文件位于 ~/.kube/config - 它是否指向 Ansible 安装程序使用的系统?您是在为 OpenShift 使用 IaaS、部署到本地机器还是 Vagrant?

于 2015-09-29T07:03:49.743 回答