aks-engine/examples/keyvaultcerts
Jack Francis acf7eaa977
chore: deprecate orchestratorType (#4038)
2020-11-17 11:35:22 -08:00
..
README.md docs: CLI operations (#3837) 2020-09-25 12:18:49 -07:00
kubernetes.json chore: deprecate orchestratorType (#4038) 2020-11-17 11:35:22 -08:00

README.md

AKS Engine - Key vault certificate deployment

Overview

AKS Engine enables you to create a customized Kubernetes cluster on Microsoft Azure with certs installed from key vault during deployment.

The example shows you how to configure installing a cert from keyvault. These certs are assumed to be in the secrets portion of your keyvault:

  1. kubernetes.json - deploying and using Kubernetes

On windows machines certificates will be installed under the machine in the specified store. On linux machines the certificates will be installed in the folder /var/lib/waagent/. There will be two files

  1. {thumbprint}.prv - this will be the private key pem formatted
  2. {thumbprint}.crt - this will be the full cert chain pem formatted