PR: https://github.com/openshift/openshift-ansible/pull/11496
In build: openshift-ansible-3.10.138-1
Verify this bug with openshift-ansible-3.10.139-1.git.0.02bc5db.el7 1. Run playbooks/openshift-master/redeploy-openshift-ca.yml to redeploy OpenShift CA cert 2. With openshift_redeploy_openshift_ca=true added in inventory file, run playbooks/redeploy-certificates.yml to redeploy the OpenShift certs After redeployment, node certs and node bootstrap.kubeconfig get recreated. Node certs were issued by the new CA, bootstrap.kubeconfig get updated with new CA. All nodes are in Ready status and all pods are running, no pending csr, move this bug to VERIFIED.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2019:0786