如何让私有Azure AKS集群信任自签名根证书?
问题:AKS集群全局信任自签名根证书的需求
- 运行私有AKS集群,集群内服务需访问公司内网中的其他服务
- 公司拥有自签名根证书,目标服务
example.company.internal的证书由该根证书签发 - 公司所有Windows电脑通过策略将根证书加入信任存储,访问目标服务无问题;但在集群内执行命令
curl https://example.company.internal/时,出现如下SSL证书错误:
curl: (60) SSL certificate problem: self signed certificate in certificate chain
More details here: https://curl.se/docs/sslcerts.htmlcurl failed to verify the legitimacy of the server and therefore could not establish a secure connection to it. To learn more about this situation and how to fix it, please visit the web page mentioned above.
- 尚未找到让整个集群信任该自签名根证书的方法,恳请相关指导
解决方案更新
最终采用BenCaldwell提供的解决方案实现集群全局信任自签名根证书。
内容的提问来源于stack exchange,提问作者Ackdari
相关产品推荐
相关产品推荐

