diff --git a/roles/download/tasks/main.yml b/roles/download/tasks/main.yml
index af1bc41246b133f0ab7b16495bae991dc8b403d0..d83470bedd8fc1a1f8caaa6459eacb4dd7aed276 100644
--- a/roles/download/tasks/main.yml
+++ b/roles/download/tasks/main.yml
@@ -1,4 +1,7 @@
 ---
+- name: certs | create system kube-cert groups
+  group: name={{ kube_cert_group }} state=present system=yes
+
 - name: Create system kube user
   user:
     name=kube