If I want to create a credential for a user to access a magnum cluster I can do so as described in
https://docs.openstack.org/magnum/latest/user/#id4
Namely by running:
openstack coe ca sign secure-k8s-cluster client.csr > cert.pem

I would like to do this without calling the openstack cli. Where does magnum store its ca key file? I could not find it on the control node under /etc/kubernetes/certs (the ca.crt is there, though no ca.key)

Thank you!
--
Vivian Rook (They/Them)
Site Reliability Engineer