From 063e6e5929aff80358c8c67ae5d3aeee7681133c Mon Sep 17 00:00:00 2001 From: kkb0318 Date: Sun, 2 Jun 2024 23:07:55 +0900 Subject: [PATCH] fix readme --- README.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index 91dc4fb..73567cd 100644 --- a/README.md +++ b/README.md @@ -102,6 +102,10 @@ Then, modify the kube-apiserver settings to include the following parameters: --service-account-issuer=https://s3-.amazonaws.com/ ``` +> [!NOTE] +> Add this setting as the first element. +> When this flag is specified multiple times, the first is used to generate tokens and all are used to determine which issuers are accepted. + - Service Account Key File The public key generated previously can be read by the API server. Add the path for this parameter flag: @@ -111,7 +115,6 @@ The public key generated previously can be read by the API server. Add the path ``` > [!NOTE] -> Add this setting as the first element. If specified multiple times, tokens signed by any of the specified keys are considered valid by the Kubernetes API server. > If you do not mount /path/to directory, you need to add the volumes field to this path. - Service Account Signing Key File