Skip to content

[DOCS-11451] Update AKS instructions for new certificate rotation format #30377

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 2 commits into
base: master
Choose a base branch
from

Conversation

JacksonDavenport
Copy link
Contributor

What does this PR do? What is the motivation?

Update the instructions with respect to the changes in AKS certificates once kubelet serving certificate rotation is enabled.

As once this is enabled you do not need to provide any unique kubelet configuration anymore, the Datadog Agent can connect with the default configurations. As the default certificate is no longer self signed and the endpoint supports the IP Address in the Subject Alternative Name (SAN).

This feature is gradually being rolled out to nodes, with 2 regions in June and more in the next few days. So there isn't an exact node image version to point to. Which is why we recommend to check the node labels to validate which configuration to use.

Additionally when upgrading your cluster you will encounter issues when using the old configuration. Which is why those disclaimers and the relative logs are shown.

Minor note: fixed an issue in the old Operator config as it didn't need the valueFrom in the config.

Can see below for more details:

Merge instructions

Merge readiness:

  • Ready for merge

For Datadog employees:

Your branch name MUST follow the <name>/<description> convention and include the forward slash (/). Without this format, your pull request will not pass CI, the GitLab pipeline will not run, and you won't get a branch preview. Getting a branch preview makes it easier for us to check any issues with your PR, such as broken links.

If your branch doesn't follow this format, rename it or create a new branch and PR.

[6/5/2025] Merge queue has been disabled on the documentation repo. If you have write access to the repo, the PR has been reviewed by a Documentation team member, and all of the required checks have passed, you can use the Squash and Merge button to merge the PR. If you don't have write access, or you need help, reach out in the #documentation channel in Slack.

Additional notes

Can probably close

@JacksonDavenport JacksonDavenport requested a review from a team as a code owner July 9, 2025 20:58
Copy link
Contributor

github-actions bot commented Jul 9, 2025

📝 Documentation Team Review Required

This pull request requires approval from the @DataDog/documentation team before it can be merged.

Please ensure your changes follow our documentation guidelines and wait for a team member to review and approve your changes.

Copy link
Contributor

github-actions bot commented Jul 9, 2025

Preview links (active after the build_preview check completes)

Modified Files

@buraizu buraizu added the editorial review Waiting on a more in-depth review label Jul 9, 2025
@buraizu buraizu changed the title Update AKS instructions for new certificate rotation format [DOCS-11451] Update AKS instructions for new certificate rotation format Jul 9, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
editorial review Waiting on a more in-depth review
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants