Red Hat OpenShift Container Platform Installer Provisioned Installation on Nutanix AOS (AHV)
Note: Red Hat OpenShift Container Platform IPI version 4.11 has been tested for specific compatibility on Nutanix AOS 5.20.4 and 6.1.1 with Prism Central 2022.4.
If your Prism Central instance is using the default self-signed SSL certificate, the certificate must be replaced with one signed by a publicly trusted CA. The installation program requires a valid public CA-signed certificate to access to the Prism Central API. For more information about replacing the self-signed certificate, see the Nutanix AOS Security Guide.
Prism Central certificates created using Let's Encrypt may need to be added to your system trust before you install an OpenShift Container Platform cluster. If you do not already have access to the Prism Central CA certificate bundle, it can often be exported from your browser after visiting the Prism Central URL.
If your Prism Central certificate is not chained to a trusted public CA, the CA certificate must be added to the
additionalTrustBundle section of
install-config.yaml after it is created. Follow the process documented in OpenShift documentation to add the certificate. It is not required to configure the documented
proxy sections, only to add the certificate. Additionally, after installation manfiests are created, the proxy spec in the cluster proxy manifest must be updated to specify that the
user-ca-bundle CA bundle is trusted. For example, in
apiVersion: config.openshift.io/v1 kind: Proxy metadata: creationTimestamp: null name: cluster spec: trustedCA: name: "user-ca-bundle"
During an IPI installation, Prism Central's Image Service directly downloads the Red Hat Enterprise Linux CoreOS (RHCOS) image that is required to install the cluster. The Image Service must have access to download the RHCOS image from
- Review the OpenShift documentation for further steps on preparing your environment for installation.
- Review the OpenShift documentation to complete the installation.
- Follow the post install instructions to complete cluster configuration.