journalctl -f -u k3s
一直在不停的输出
Sep 19 10:50:50 xxx.com k3s[20682]: E0919 10:50:50.932898 20682 authentication.go:53] Unable to authenticate the request due to an error: x509: certificate has expired or is not yet valid
Sep 19 10:50:50 xxx.com k3s[20682]: E0919 10:50:50.936055 20682 authentication.go:53] Unable to authenticate the request due to an error: x509: certificate has expired or is not yet valid
Sep 19 10:50:50 xxx.com k3s[20682]: E0919 10:50:50.941111 20682 authentication.go:53] Unable to authenticate the request due to an error: x509: certificate has expired or is not yet valid
但是查看证书,都没有过期 for i in ls /var/lib/rancher/k3s/server/tls/*.crt; do echo $i; openssl x509 -enddate -noout -in $i; done
/var/lib/rancher/k3s/server/tls/client-admin.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/client-auth-proxy.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/client-ca.crt
notAfter=Sep 15 05:25:39 2030 GMT
/var/lib/rancher/k3s/server/tls/client-cloud-controller.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/client-controller.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/client-k3s-controller.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/client-kube-apiserver.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/client-kube-proxy.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/client-scheduler.crt
notAfter=Sep 18 09:40:31 2022 GMT
/var/lib/rancher/k3s/server/tls/request-header-ca.crt
notAfter=Sep 15 05:25:39 2030 GMT
/var/lib/rancher/k3s/server/tls/server-ca.crt
notAfter=Sep 15 05:25:39 2030 GMT
/var/lib/rancher/k3s/server/tls/serving-kube-apiserver.crt
notAfter=Sep 18 09:40:31 2022 GMT
应该怎么排查