Replies: 3 comments 4 replies
-
Hey @cer! Which certificates do you expect will be rotated? The proxy (leaf) certificates, or the issuer certificate? Only the leaf certificates get automatically renewed every 24h. Issuer (and root) certificates:
|
Beta Was this translation helpful? Give feedback.
-
@mateiidavid Thanks for replying. I'm expecting the proxy certs to be rotated. But as far as I can tell, after 24 hours the proxies can no longer communicate with one another or the control plane. The Issuer and Root certs are created with |
Beta Was this translation helpful? Give feedback.
-
I am experiencing this issue as well. I followed all the steps here: https://linkerd.io/2.13/tasks/automatically-rotating-control-plane-tls-credentials/. My dev cluster fails after 24 hours with Cert Expired errors on all the linkerd proxies. |
Beta Was this translation helpful? Give feedback.
-
I have a Kind-based cluster running on my MacBook.
After 24 hours, the cluster stops working.
It appears that the mutualTLS certificates are not being rotated.
Suggestions?
customer-service-primary
default/customer-service-mysql-0:
Beta Was this translation helpful? Give feedback.
All reactions