magnum/magnum/drivers/common/templates
Feilong Wang 16344a5a95 Add separated CA cert for etcd and front-proxy
Support creating different for k8s, etcd and front-proxy for
security hardening. We're following some best practices[1][2] but
adjusted based on the current Magnum deployment approach.

[1] https://kubernetes.io/docs/setup/best-practices/certificates/
[2] https://kubernetes.io/docs/tasks/administer-cluster/kubeadm/kubeadm-certs/

Task: 40687
Story: 2008031

Change-Id: I523a4a85867f82d234ba1f3e6fad8b8cd2291182
2021-04-01 17:31:34 +00:00
..
environments Improve floating IP allocation 2019-03-20 18:44:45 +13:00
fragments Update default values for docker nofile and vm.max_map_count 2020-09-01 22:14:53 +00:00
kubernetes Add separated CA cert for etcd and front-proxy 2021-04-01 17:31:34 +00:00
swarm/fragments Use oslo_serialization instead of the json module directly 2019-01-21 16:28:03 -08:00
lb_api.yaml [k8s] Add label 'master_lb_allowed_cidrs' 2020-05-14 21:31:10 +12:00
lb_etcd.yaml [k8s] Add label 'master_lb_allowed_cidrs' 2020-05-14 21:31:10 +12:00
network.yaml Support multi DNS server 2019-04-08 23:08:45 +00:00