Description of problem:
Golang provides GetCertificate functions to allow us to dynamically select new tls information for our server. We should do this to avoid unnecessary restarts.
Version-Release number of selected component (if applicable):
Looks like this will address bug 1684547, bug 1678847's restarts as well?
This was implemented and should work in new clusters. Moving to QE.
Confirmed with latest OCP,the function has finished:
Client Version: v4.0.22
Server Version: v1.12.4+c6be29d
I0403 07:03:14.214986 1 certrotationcontroller.go:365] Starting CertRotation
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.