Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Announcement: Try the Ask AI chatbot for answers to your technical questions about Juniper products and solutions.

close
header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
Juniper Paragon Automation User Guide
Table of Contents Expand all
list Table of Contents
file_download PDF
{ "lLangCode": "en", "lName": "English", "lCountryCode": "us", "transcode": "en_US" }
English
keyboard_arrow_right

show paragon certificate expiry-date certificate-type

date_range 14-Nov-24

Syntax

content_copy zoom_out_map
show paragon certificate expiry-date certificate-type (ingress-cert|kubernetes-cert)

Description

Display the expiry dates for the Kubernetes ingress and RKE2 certificates.

Options

Table 1:

ingress-cert

Displays the Kubernetes ingress certificate and, if available, the custom user ingress certificate.

kubernetes-cert

Displays whether the cluster node is a server or agent node and displays the respective Kubernetes certificates.

Required Privilege Level

view

Output Fields

When you enter this command, you are provided feedback on the status and output of your request.

Sample Output

show paragon certificate expiry-date certificate-type ingress-cert

content_copy zoom_out_map
user@node> show paragon certificate expiry-date certificate-type ingress-cert
The kubernetes ingress certificates are as follows:
 cfssl-common-cert      2034-04-06T18:29:25Z
ingress-default-cert    2024-07-07T18:12:14Z
ingress-default-cert    2024-07-07T18:11:51Z
Secret 'ingress-user-cert' does not exist in namespace 'traefik'. Hence, there are no customer owned certificates!

show paragon certificate expiry-date certificate-type kubernetes-cert

content_copy zoom_out_map
user@node> show paragon certificate expiry-date certificate-type kubernetes-cert
The host_name where certificates are checked is: node
We have both server and agent paths available in the host
The certificates list is:
 /var/lib/rancher/rke2/server/tls/client-admin.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-auth-proxy.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-ca.crt
notAfter=Apr 30 06:57:10 2034 GMT
/var/lib/rancher/rke2/server/tls/client-ca.nochain.crt
notAfter=Apr 30 06:57:10 2034 GMT
/var/lib/rancher/rke2/server/tls/client-controller.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-kube-apiserver.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-kube-proxy.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-rke2-cloud-controller.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-rke2-controller.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-scheduler.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/client-supervisor.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/server/tls/request-header-ca.crt
notAfter=Apr 30 06:57:10 2034 GMT
/var/lib/rancher/rke2/server/tls/server-ca.crt
notAfter=Apr 30 06:57:10 2034 GMT
/var/lib/rancher/rke2/server/tls/server-ca.nochain.crt
notAfter=Apr 30 06:57:10 2034 GMT
/var/lib/rancher/rke2/server/tls/serving-kube-apiserver.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/agent/client-ca.crt
notAfter=Apr 30 06:57:10 2034 GMT
/var/lib/rancher/rke2/agent/client-kubelet.crt
notAfter=May  2 06:57:11 2025 GMT
/var/lib/rancher/rke2/agent/client-kube-proxy.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/agent/client-rke2-controller.crt
notAfter=May  2 06:57:10 2025 GMT
/var/lib/rancher/rke2/agent/server-ca.crt
notAfter=Apr 30 06:57:10 2034 GMT
/var/lib/rancher/rke2/agent/serving-kubelet.crt
notAfter=May  2 06:57:11 2025 GMT

Release Information

Command introduced in Juniper Paragon Automation Release 2.0.0.

footer-navigation