diff --git a/roles/kubernetes/master/defaults/main/main.yml b/roles/kubernetes/master/defaults/main/main.yml index 0d861b9acca1fc056696033e20b91b9d26912d81..87d369f8642b4fea8ebfd4691a5abb82d413f5dd 100644 --- a/roles/kubernetes/master/defaults/main/main.yml +++ b/roles/kubernetes/master/defaults/main/main.yml @@ -119,6 +119,7 @@ kube_basic_auth: false kube_token_auth: false kube_oidc_auth: false kube_webhook_token_auth: false +kube_webhook_token_auth_url_skip_tls_verify: false ## Variables for OpenID Connect Configuration https://kubernetes.io/docs/admin/authentication/ ## To use OpenID you have to deploy additional an OpenID Provider (e.g Dex, Keycloak, ...) diff --git a/roles/kubernetes/master/templates/webhook-token-auth-config.yaml.j2 b/roles/kubernetes/master/templates/webhook-token-auth-config.yaml.j2 index 265a91cc3d7d7234b2f468e9aa2d0176c4635abb..4d0c1eccbc55bff8a78cff70407bd6d6bb0609ae 100644 --- a/roles/kubernetes/master/templates/webhook-token-auth-config.yaml.j2 +++ b/roles/kubernetes/master/templates/webhook-token-auth-config.yaml.j2 @@ -3,6 +3,7 @@ clusters: - name: webhook-token-auth-cluster cluster: server: {{ kube_webhook_token_auth_url }} + insecure-skip-tls-verify: {{ kube_webhook_token_auth_url_skip_tls_verify }} # users refers to the API server's webhook configuration. users: