[kubelet-start] Starting the kubelet [kubelet-start] Waiting for the kubelet to perform the TLS Bootstrap... [kubelet-check] Initial timeout of 40s passed. error execution phase kubelet-start: error uploading crisocket: Unauthorized To see the stack trace of this error execute with --v=5 or higher You have new mail in /var/spool/mail/root

kubectl -n kube-system get cm kubeadm-config -o yaml

E0316 01:41:30.000976 6406 memcache.go:238] couldn't get current server API group list: Get "https://192.168.14.132:6443/api?timeout=32s": x509: certificate signed by unknown authority (possibly because of "crypto/rsa: verification error" while trying to verify candidate authority certificate "kubernetes")

 

解决

 

kubeadm token create --print-join-command
kubeadm join 192.168.14.132:6443 --token he0cw5.p09lz85dheuhbjxx --discovery-token-ca-cert-hash sha256:87d9cddfc308f2dc932dd9cd672cf006c39fde9762d885323714da116df12036


sudo kubeadm reset --cri-socket /var/run/cri-dockerd.sock

sudo systemctl enable docker

sudo systemctl enable kubelet

sudo systemctl daemon-reload

sudo systemctl restart docker

sudo netstat -lnp | grep 1025

sudo rm -rf /etc/kubernetes/kubelet.conf /etc/kubernetes/pki/ca.crt

kubeadm join 192.168.14.132:6443 --token he0cw5.p09lz85dheuhbjxx --discovery-token-ca-cert-hash sha256:87d9cddfc308f2dc932dd9cd672cf006c39fde9762d885323714da116df12036 --cri-socket /var/run/cri-dockerd.sock

sudo kubeadm reset --cri-socket /var/run/cri-dockerd.sock
W0316 01:53:14.632625 12342 preflight.go:56] [reset] WARNING: Changes made to this host by 'kubeadm init' or 'kubeadm join' will be reverted.
[reset] Are you sure you want to proceed? [y/N]: y
[preflight] Running pre-flight checks
W0316 01:53:20.623554 12342 removeetcdmember.go:106] [reset] No kubeadm config, using etcd pod spec to get data directory
[reset] Deleted contents of the etcd data directory: /var/lib/etcd
[reset] Stopping the kubelet service
[reset] Unmounting mounted directories in "/var/lib/kubelet