Skip to content

Commit 4ea261a

Browse files
disable master client cert auth
1 parent 039adc3 commit 4ea261a

File tree

1 file changed

+11
-0
lines changed

1 file changed

+11
-0
lines changed

modules/private-k8s-cluster/main.tf

Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -29,6 +29,8 @@ resource "google_container_cluster" "gke_cluster" {
2929
channel = "RAPID"
3030
}
3131

32+
enable_intranode_visibility = true
33+
3234
cluster_autoscaling {
3335
enabled = true
3436
resource_limits {
@@ -61,6 +63,12 @@ resource "google_container_cluster" "gke_cluster" {
6163
}
6264
}
6365

66+
master_auth {
67+
client_certificate_config {
68+
issue_client_certificate = false
69+
}
70+
}
71+
6472
ip_allocation_policy {
6573
cluster_secondary_range_name = var.cluster_secondary_range_name
6674
services_secondary_range_name = var.services_secondary_range_name
@@ -94,6 +102,9 @@ resource "google_container_node_pool" "gke_nodes" {
94102
workload_metadata_config {
95103
mode = "GKE_METADATA_SERVER"
96104
}
105+
labels = {
106+
"env" = "test"
107+
}
97108
}
98109

99110
depends_on = [google_container_cluster.gke_cluster]

0 commit comments

Comments
 (0)