cat /etc/kubernetes/kubelet.conf
openssl x509 -in /var/lib/kubelet/pki/kubelet-client-current.pem -noout -text |grep 'Not'openssl x509 -in /var/lib/kubelet/pki/kubelet-client-current.pem -noout -text |grep 'Not'rm -f /var/lib/kubelet/pki/kubelet-client-current.pemsystemctl restart kubeletopenssl x509 -in /var/lib/kubelet/pki/kubelet-client-current.pem -noout -text |grep 'Not' kubectl get csr|grep 'Pending' | awk 'NR>0{print $1}'| xargs kubectl certificate approve