This message was deleted.
# rke2
a
This message was deleted.
c
is this a Rancher-provisioned cluster?
w
yes. Rancher provisioned, custom.
using rancher 2.7.9 and i actually have two clusters within this rancher installation, both with identical problems
c
then you need to initiate rotation from rancher. there are rancher-managed certs that rke2's internal rotation do not handle, because it is not responsible for creating them
also 2.7.9 is like, way old. October 2023?
w
yes, it was set up last year as part of a proof of concept production system and runs a second production cluster. they've got a conference coming up (as is often the case) and need to minimize risks.
okay, i've initiated cert rotation from within rancher. thanks.
that was really useful, thanks. i'm adding it to our docs. i'll try to schedule some time with these two groups to upgrade rancher and k8s after the conference.