
Fechado
Publicado
My on-premises Kubernetes cluster is in a bad state: nodes keep throwing authentication errors and RBAC denials. We authenticate everything with TLS certificates, and right now the kubelets, the API server, and even local kubectl clients can’t complete handshake or are blocked by mismatched roles. Production workloads are stalling, so I need someone to jump in right away, isolate what broke, and bring the control plane back to a clean bill of health. You’ll have SSH access to a staging bastion (no direct exposure of master IPs), the current kubeconfig, and the existing certificate bundle. I can also provide recent logs from the API server and kubelet journald outputs. Please be ready to: • Trace failed certificate validations and expired or mismatched CN/O fields. • Audit and correct the role bindings that should allow kubelets to register and kubectl to execute cluster-admin tasks. • Patch or regenerate any certificate/key pairs if required, then restart affected components safely. • Prove the fix by showing successful node joins, a clean API server auth log, and normal kubectl get nodes output. When you’re done, I’d like a concise post-mortem that explains root cause and the commands or manifests you used, so the team can document the lesson learned. If you’ve untangled TLS and RBAC problems before, and you can start immediately, I’m ready to get you connected.
ID do Projeto: 40124479
35 propostas
Projeto remoto
Ativo há 22 dias
Defina seu orçamento e seu prazo
Seja pago pelo seu trabalho
Descreva sua proposta
É grátis para se inscrever e fazer ofertas em trabalhos
35 freelancers estão ofertando em média £17 GBP/hora for esse trabalho

⭐⭐⭐⭐YES, it's aligned with my expertise⭐⭐⭐⭐ I am highly proficient to work on this project . I am Passionate PHP/Full stack developer having rich experience with all the latest technologies with so many successful Tasks. I have some queries to give you accurate time and price Please I have a history of successful projects and happy employers. If requested, I can provide references. Waiting for your response. Thanks!! Parminder
£14 GBP em 40 dias
7,5
7,5

Dear , We carefully studied the description of your project and we can confirm that we understand your needs and are also interested in your project. Our team has the necessary resources to start your project as soon as possible and complete it in a very short time. We are 25 years in this business and our technical specialists have strong experience in Linux, Docker, API, Kubernetes, DevOps, Containerization and other technologies relevant to your project. Please, review our profile https://www.freelancer.com/u/tangramua where you can find detailed information about our company, our portfolio, and the client's recent reviews. Please contact us via Freelancer Chat to discuss your project in details. Best regards, Sales department Tangram Canada Inc.
£22 GBP em 5 dias
7,4
7,4

Hello, I’m Muhammad Awais. I’ll jump in to trace TLS certificate validation, CN/O field mismatches, and RBAC denials that keep kubelets from registering and kubectl from running as cluster-admin. My plan is to reproduce the failure with your kubeconfig and cert bundle, read API server and kubelet logs, and map out where TLS handshakes fail and which RBAC bindings are blocking. I will audit and correct roles and bindings, patch or regenerate certificates if needed, and restart affected components safely on the staging bastion before any production changes. Then I’ll verify node joins, clean API server auth logs, and normal kubectl get nodes, followed by a concise post-mortem outlining root cause, fixes, and the exact commands and manifests used. Can you share exact CN/O fields, expiration dates, and any recent certificate expirations for the API server, kubelets, and client certs to pinpoint TLS handshakes? Can you provide the current RBAC state (ClusterRoles, Roles, ClusterRoleBindings, RoleBindings) and list of subjects that need cluster-admin access today? Are there any intermediates like webhook auth or TLS inspection proxies that could affect certificate validation or handshake? What is the preferred process for certificate rotation and patching across the cluster, and how should downtime be handled? What is the expected post-mortem format and timeline, and what metrics should I include to confirm a clean bill of health? Best regards,
£18 GBP em 30 dias
7,0
7,0

Having untangled numerous complex issues in the past, I am confident I have the expertise to resolve your Kubernetes cluster problems. My experience as a Software Engineer specializing in DevOps will come in handy with this project. I have a unique set of skills including API and deep understanding of firmware development, C/C++ programming, and microcontroller-based projects; all integral parts of the task at hand. I am no stranger to high-pressure situations and understand the urgency needed to get your cluster back up and running. With my sharp analytical skills, tracing failed certificate validations, correcting role bindings, patching or regenerating certificate/key pairs shouldn't be an issue. Additionally, my proficiency in Linux will ensure that any restarts done are safe and seamless.
£15 GBP em 40 dias
4,8
4,8

I have excellent knowledge and experience in kubernetes and also RBAC (as you have issue there). also, TLS I have deep theory knowledge and its working knowledge but have little experience in troubleshooting via checking each critical master node components like api server, ETCD, kubelet, etc. So RBAC i will be super fast but TLS I may take some time to have a clear picture of which certificate goes where and which handshake is failing and is private and public keys are paired correctly. Let me know if this is good enough for you as I believe you have time crunch. Thank you, Krushit Sheth
£15 GBP em 40 dias
4,5
4,5

Hello, I’ve reviewed your on-prem Kubernetes cluster issue and I’m ready to jump in immediately to isolate TLS handshake failures and RBAC denials, restore the control plane, and deliver a concise post-mortem. I’ll trace failed certificate validations, identify expired or mismatched CN/O fields, audit and correct kubelet bootstrap RBAC, and ensure kubectl can perform cluster-admin tasks. If needed I’ll patch or rotate certificates and restart affected components safely, then verify by successful node joins, clean API server auth logs, and normal kubectl get nodes output. Plan: - Collect and analyse API server and kubelet TLS logs to find CN/O mismatches and expirations. - Audit RBAC bindings for kubelets registration and cluster-admin access. - Patch or rotate certificates as required; restart API server, kubelet, and related components with minimal disruption. - Validate with node joins and kubectl get nodes; provide a brief post-mortem with steps and manifests. Next steps: I can start immediately. Best regards,
£11 GBP em 28 dias
4,2
4,2

As an experienced AWS-certified professional with a particular focus on backend development and DevOps engineering, I am equipped with the right skill set to quickly and effectively resolve your Kubernetes RBAC errors. My extensive experience in building, managing, and scaling containerized applications on Kubernetes platforms like AWS EKS will prove invaluable in tackling the problems your cluster is currently facing. I'm also adept at troubleshooting and patching issues to ensure smooth operations. Securing infrastructures is a top priority for me as well and I have a strong understanding of the compliance requirements for sensitive data. This aligns perfectly with your need to authenticate everything with TLS certificates. My knowledge about achieving compliance with frameworks like HIPAA, PCI-DSS, GDPR, and ISO standards will ensure that not only do we address your current RBAC issues but we do so in a secure manner. Lastly, my commitment to clear communication is evident from my dedication to providing a concise post-mortem that documents the root cause of each issue and the steps taken to address it. By collaborating with me, you’ll benefit from both my technical expertise and my ability to effectively communicate complex concepts—allowing your team to document each lesson learned in detail. Let’s jump in together and bring your Kubernetes cluster back to a clean bill of health! (891 Characters)
£15 GBP em 40 dias
4,3
4,3

Hi there, I’m Sean, an AI & Full-Stack Developer with 7 years of experience, specializing in Kubernetes management, role-based access control (RBAC), and secure authentication. In a recent project, I successfully resolved complex RBAC issues for a production cluster, restoring connectivity and functionality across multiple nodes. I can do this project perfectly; my expertise in debugging TLS certificate problems and auditing role bindings aligns well with your needs. I’ll quickly isolate the cause of the authentication errors and rectify any mismatched roles or expired certificates to ensure smooth node registration and API server operation. I typically deliver this scope in 10 days, including thorough testing and post-mortem documentation. You can expect rigorous logging and adherence to security practices as I implement these fixes. What specific timeline are you hoping to see for the issues to be resolved? Best regards,
£36 GBP em 10 dias
3,6
3,6

Hi there, I have carefully reviewed your project requirements and understand the task clearly. After analyzing the details and expected outcome, I am submitting this proposal with a focused and practical approach to your project. I will identify and resolve the authentication errors and RBAC denials in your Kubernetes cluster. By tracing failed certificate validations and correcting role bindings, I will ensure that kubelets can register and kubectl can execute cluster-admin tasks smoothly. If necessary, I will patch or regenerate certificate/key pairs and restart affected components securely. The fix will be validated by demonstrating successful node joins, a clean API server auth log, and normal kubectl get nodes output. Additionally, I will provide a concise post-mortem report detailing the root cause and the commands or manifests used for documentation purposes. Let's discuss in detail through chat.
£18 GBP em 77 dias
1,6
1,6

Hi, I can help with this task. Ready to start immediately.
£10 GBP em 1 dia
1,8
1,8

Hello, Being part of a highly experienced and professional team with 11 years in the field, and solid expertise in Web Development, Software Design, Blockchain and Node.js, we are perfectly equipped to tackle your Kubernetes cluster issues. Our knowledge of Docker enables us to effectively trace failed certificate validations and expired or mismatched CN/O fields- a crucial troubleshooting component necessary to approach such problems. Not only do we have the skills to audit and correct the RBAC errors affecting your kubelets and kubectl, but our ability to patch/regenerate certificate/key pairs along with safely restarting affected components will prove invaluable in restoring your cluster's health. Our team structure, comprising of Business Developers, Project Managers, QA Experts& more ensures detailed documenting of the processes undertaken aided by our amazing communication skills. Moreover, providing thorough post-mortems that explain the root cause and document artifact commands used is a part of our quality work ethic; a document that not only ends a project but enlightens the teams involved on resolutions taken. Throughout the project's duration I guarantee regular updates keeping you informed on progress. Consider this an opportunity for long-term partnership experience where under my purview, your requirements will be met with precision and dedication. Let us fix those errant nodes together! Thanks!
£36 GBP em 32 dias
0,0
0,0

Hello, With an expansive skill set ranging from cybersecurity, digital forensics, to cloud computing, I am equipped to handle the complexities of your on-premises Kubernetes cluster. I've developed a sharp eye for identifying and resolving TLS and RBAC issues that may cause inconsistencies in your system's functioning. Moreover, I have a deep understanding of containerization through Docker and orchestration with Kubernetes. This experience enables me to adeptly navigate Kubernetes manifests and commands to diagnose and fix problems. Security is at the heart of my approach. As an ethical hacker, I use my knowledge acquired testing systems to strengthen their vulnerabilities against potential attacks. My expertise in certificate management aligns well with your anticipated need for regenerating any certificates/key pairs if required. Additionally, a comprehensive post-mortem report comes standard with my services. This documentation will outline the manifest commands used and offer insight into the root cause, providing your team with valuable lessons learned. Time is money and in critical situations like these, responding quickly is essential. You can count on me to provide fast, quality service. My clients choose me because I provide reliable, secure, and confidential work that is delivered in a timely fashion - exactly what you need right now. Thanks!
£36 GBP em 17 dias
0,0
0,0

Hi , I am a senior web developer with 12 years of experience who is good at Docker, API, Containerization, Linux, Kubernetes and DevOps. I 've checked your job description in detail and understood what you want. I would like to have a brief chat with you to discuss your project and start work. Best regards, Charonda
£36 GBP em 19 dias
0,0
0,0

Hi there, I’m Robert, a Senior Full-Stack & AI Engineer with over 10 years of experience architecting and delivering SaaS platforms, automation systems, and intelligent applications, with strengths in Kubernetes management, Docker expertise, and DevOps methodologies. I’ve successfully resolved complex issues similar to yours, including troubleshooting Kubernetes RBAC and TLS certificate problems to restore production stability. I understand the urgency of getting your Kubernetes cluster back to a healthy state. My deep technical background aligns perfectly with your needs, and I can quickly identify the root causes of authentication errors, audit role bindings, and implement necessary patches or regenerations of certificate/key pairs. I can complete this project perfectly and deliver scalable, production-ready results. I am committed to maintaining clean architecture, structured documentation, CI/CD automation, and OWASP-based security practices throughout the process. Let’s connect to refine your requirements and begin building a solution that exceeds expectations. What specific timeline are you envisioning for the resolution of these issues?
£13 GBP em 10 dias
0,0
0,0

Hello Shahid, I am interested in fixing the Kubernetes RBAC errors on your on-premises cluster. I understand the urgency of the situation and the impact it has on your production workloads. With my expertise in API and Docker, I am confident in resolving the authentication errors and RBAC denials efficiently. I will trace and correct any failed certificate validations, audit and adjust role bindings, and patch or regenerate certificate/key pairs as needed. I will ensure successful node joins and provide a detailed post-mortem for documentation purposes. Please review my portfolio for examples of similar projects. I look forward to discussing this further with you. Best regards, Warda Haider - MY WORK STATS: ✨ https://www.freelancer.com/u/XanvraTECH
£13 GBP em 40 dias
0,0
0,0

Hello Shahid, I am Vishal Maharaj, with 20 years of experience in API, Docker, Kubernetes, and Linux. I have carefully reviewed your project requirements regarding fixing Kubernetes RBAC errors. To address the issues, I will start by tracing failed certificate validations and correcting role bindings for kubelets and kubectl. I will then audit and rectify any expired or mismatched CN/O fields, patch or regenerate certificate/key pairs if necessary, and safely restart affected components. I will ensure successful node joins, a clean API server auth log, and normal kubectl functionality as part of the solution. Please initiate a chat so we can discuss the project further. Cheers, Vishal Maharaj
£15 GBP em 40 dias
0,0
0,0

Hi Shahid, Loved your description – wrestling with a misbehaving Kubernetes cluster that's causing authentication errors and RBAC issues sounds like a tough nut to crack. If you're tired of stalled production workloads and frustrating certificate validation errors, we've got you covered. I specialize in troubleshooting and fixing complex Kubernetes configurations: tracing certificate issues, auditing role bindings, and regenerating certificate/key pairs. My expertise also includes troubleshooting and optimizing RBAC policies for secure cluster access. What it's like working with us: We break complex tasks into manageable milestones, assign a dedicated contact for updates, and deliver on time or your money back. As a top-rated agency with 5-star reviews on Kubernetes and cloud management projects, I'm confident in our ability to get your cluster back online quickly. Happy to hop on a quick call to discuss your specific pain points and provide some free advice. What's the most pressing concern for your team right now? Chris | Lead Developer | Novatech
£12 GBP em 14 dias
0,0
0,0

⭐⭐⭐ Hello, I hope you're doing well ⭐⭐⭐ I have strong hands-on experience stabilizing broken Kubernetes control planes, specifically TLS authentication failures and RBAC lockouts in on-prem clusters. I understand production is stalled and the priority is restoring clean API server authentication and kubelet registration without causing further disruption. I will trace certificate validation failures by inspecting CN, O, expiry, and SAN fields across kubeconfigs, kubelet certs, and API server trust chains. I will audit ClusterRoles and RoleBindings required for kubelet bootstrap, node authorizer, and kubectl cluster-admin access, and correct any mismatches. If required, I will safely regenerate or rotate certificates, patch kubeconfigs, and restart affected components in the correct order. I will validate recovery by confirming successful node joins, clean API server auth logs, and 정상 kubectl get nodes output. After recovery, I will provide a concise post-mortem documenting root cause, commands executed, and manifests changed for future prevention. I am comfortable working through bastion access and can start immediately. Look forward to work with you for the long term.
£13 GBP em 40 dias
0,0
0,0

As a seasoned DevOps engineer with extensive experience in troubleshooting complex system issues and managing containerized environments using Docker, I am the right fit for your project. I’ve successfully solved numerous problems related to authentication and security, including issues identical to what you're facing currently. I understand the criticality of resolving them promptly in order to have your production workloads running smoothly and rapidly. In past projects, I've worked extensively with Kubernetes, RBAC errors, and TLS certificate issues, so your current architectural stack-up is an area of particular expertise for me. The value I bring is two-fold; not only can I swiftly address your immediate concerns and restore the health of your Kubernetes cluster but also leave you with a well-documented system that is less susceptible to similar problems in the future. It’s time to get things back on track and resume your production workloads without any further disruptions. Let's connect immediately so we can make sure those Kubernetes nodes are not throwing anymore errors!
£13 GBP em 40 dias
0,0
0,0

I saw your project and am confident I can deliver on this. I'm currently working on a similar project and understand the urgency of fixing Kubernetes RBAC errors. By tracing failed certificate validations, correcting role bindings, and patching certificates, I ensure a smooth operation. Restoring normalcy to your Kubernetes cluster is my top priority, guaranteeing successful node joins and a clean API server log. Let's bring your production workloads back on track swiftly and efficiently. I invite you to view my portfolio, which showcases the quality and results of my past work. I look forward to hearing from you. Regards, Travis
£10 GBP em 40 dias
0,0
0,0

Blackburn, United Kingdom
Método de pagamento verificado
Membro desde out. 20, 2021
£10-15 GBP / hora
£10-20 GBP
£20-250 GBP
$10-30 USD
£10-15 GBP / hora
$250-750 USD
€1500-3000 EUR
$1500-3000 USD
£20-250 GBP
₹1250-2500 INR / hora
mín. €36 EUR / hora
mín. $50 USD / hora
$30-250 USD
$25-50 USD / hora
$2-8 USD / hora
₹100-400 INR / hora
$2-8 USD / hora
₹600-2000 INR
$8-15 USD / hora
$250-750 AUD
$750-1500 AUD
₹12500-37500 INR
$250-750 USD
₹1500-12500 INR
$30-250 USD