k8s证书过期问题处理
openssl x509 -in /etc/kubernetes/pki/apiserver.crt -noout -dates
kubeadm certs renew all
systemctl restart kubele
openssl x509 -in /etc/kubernetes/pki/apiserver.crt -noout -text | grep "Not After"
cp /etc/kubernetes/admin.conf ~/.kube/config
| base64 -d > ca.crt
| base64 -d > client.crt
| base64 -d > client.key
openssl pkcs12 -export -out cert.pfx -inkey client.key -in client.crt -certfile ca.crt