diff --git a/roles/kubernetes/master/templates/kubeadm-config.v1beta2.yaml.j2 b/roles/kubernetes/master/templates/kubeadm-config.v1beta2.yaml.j2
index c99a6e7e293377c33c4f7d17845c09d7abed0502..0201f0efc5e7b5a02fbf74c4eeced554d469d9d9 100644
--- a/roles/kubernetes/master/templates/kubeadm-config.v1beta2.yaml.j2
+++ b/roles/kubernetes/master/templates/kubeadm-config.v1beta2.yaml.j2
@@ -128,16 +128,16 @@ apiServer:
     token-auth-file: {{ kube_token_dir }}/known_tokens.csv
 {% endif %}
 {% if kube_oidc_auth|default(false) and kube_oidc_url is defined and kube_oidc_client_id is defined %}
-    oidc-issuer-url: {{ kube_oidc_url }}
-    oidc-client-id: {{ kube_oidc_client_id }}
+    oidc-issuer-url: "{{ kube_oidc_url }}"
+    oidc-client-id: "{{ kube_oidc_client_id }}"
 {%   if kube_oidc_ca_file is defined %}
-    oidc-ca-file: {{ kube_oidc_ca_file }}
+    oidc-ca-file: "{{ kube_oidc_ca_file }}"
 {%   endif %}
 {%   if kube_oidc_username_claim is defined %}
-    oidc-username-claim: {{ kube_oidc_username_claim }}
+    oidc-username-claim: "{{ kube_oidc_username_claim }}"
 {%   endif %}
 {%   if kube_oidc_groups_claim is defined %}
-    oidc-groups-claim: {{ kube_oidc_groups_claim }}
+    oidc-groups-claim: "{{ kube_oidc_groups_claim }}"
 {%   endif %}
 {%   if kube_oidc_username_prefix is defined %}
     oidc-username-prefix: "{{ kube_oidc_username_prefix }}"