.nh .TH KUBERNETES(1) kubernetes User Manuals Eric Paris Jan 2015 .SH NAME .PP kubeadm certs renew super-admin.conf - Renew the certificate embedded in the kubeconfig file for the super-admin .SH SYNOPSIS .PP \fBkubeadm certs renew super-admin.conf\fP [OPTIONS] .SH DESCRIPTION .PP Renew the certificate embedded in the kubeconfig file for the super-admin. .PP Renewals run unconditionally, regardless of certificate expiration date; extra attributes such as SANs will be based on the existing file/certificates, there is no need to resupply them. .PP Renewal by default tries to use the certificate authority in the local PKI managed by kubeadm; as alternative it is possible to use K8s certificate API for certificate renewal, or as a last option, to generate a CSR request. .PP After renewal, in order to make changes effective, is required to restart control-plane components and eventually re-distribute the renewed certificate in case the file is used elsewhere. .SH OPTIONS .PP \fB--cert-dir\fP="/etc/kubernetes/pki" The path where to save the certificates .PP \fB--config\fP="" Path to a kubeadm configuration file. .PP \fB--kubeconfig\fP="/etc/kubernetes/admin.conf" The kubeconfig file to use when talking to the cluster. If the flag is not set, a set of standard locations can be searched for an existing kubeconfig file. .SH OPTIONS INHERITED FROM PARENT COMMANDS .PP \fB--rootfs\fP="" [EXPERIMENTAL] The path to the 'real' host root filesystem. .PP \fB--version\fP=false --version, --version=raw prints version information and quits; --version=vX.Y.Z... sets the reported version .SH SEE ALSO .PP \fBkubeadm-certs-renew(1)\fP, .SH HISTORY .PP January 2015, Originally compiled by Eric Paris (eparis at redhat dot com) based on the kubernetes source material, but hopefully they have been automatically generated since!