cluster: partial cert bump

Done:

 1. etcd peer CA & certs
 2. etcd client CA & certs
 3. kube CA (currently all components set to accept both new and old CA,
    new CA called ca-kube-new)
 4. kube apiserver
 5. kubelet & kube-proxy
 6. prodvider intermediate

TODO:

 1. kubernetes controller-manager & kubernetes scheduler
 2. kubefront CA
 3. admitomatic?
 4. undo bundle on kube CA components to fully transition away from old
    CA

Change-Id: If529eeaed9a6a2063bed23c9d81c57b36b9a0115
Reviewed-on: https://gerrit.hackerspace.pl/c/hscloud/+/1487
Reviewed-by: q3k <q3k@hackerspace.pl>
diff --git a/cluster/certs/etcd-kube.cert b/cluster/certs/etcd-kube.cert
index 3a53955..51536dd 100644
--- a/cluster/certs/etcd-kube.cert
+++ b/cluster/certs/etcd-kube.cert
@@ -1,29 +1,10 @@
 -----BEGIN CERTIFICATE-----
-MIIFAjCCA+qgAwIBAgIUPiRm3vsuHgT1ok7LMRH/WV0ODgMwDQYJKoZIhvcNAQEL
-BQAweDELMAkGA1UEBhMCUEwxFDASBgNVBAgTC01hem93aWVja2llMQ8wDQYDVQQH
-EwZXYXJzYXcxGzAZBgNVBAoTEldhcnNhdyBIYWNrZXJzcGFjZTETMBEGA1UECxMK
-Y2x1c3RlcmNmZzEQMA4GA1UEAxMHZXRjZCBjYTAeFw0yMjA0MDQxNjQ4MDBaFw0y
-MzA0MDQxNjQ4MDBaMGoxCzAJBgNVBAYTAlBMMRQwEgYDVQQIEwtNYXpvd2llY2tp
-ZTEPMA0GA1UEBxMGV2Fyc2F3MSUwIwYDVQQLExxrdWJlIGV0Y2QgY2xpZW50IGNl
-cnRpZmljYXRlMQ0wCwYDVQQDEwRrdWJlMIICIjANBgkqhkiG9w0BAQEFAAOCAg8A
-MIICCgKCAgEAw5jdxQxtELgpg+M1jib4VklzIJ4ULrKH59xKxs6qK0iGJClc8EFv
-VEBiuNpqXQ6Vygb8vbGzlplo02ivmhPVIFZ4ymk46kxG+w0scNcm/wMAzL1RiJT2
-nD71eMzYhVzomF5cQRGoJvqNpQg88jbTFluqHNFYTkv1HAnS+OMu7sbIm9iGgNfI
-oBrn/JpV97Rf1x4CaQ3tNdlrDxihQcMI4xoG2deIJdxFI6z9Rh7s4nXjBaAz9i8c
-RJ9v4uaMRq6kv3mBEfkiVe2Ql7jHTHwMqS/CsemkSl6IAG7IOQLB9U8xKsFuFPiY
-X11Xghcoi0MbjH4QwocwvzDxPuttxNfWOr8uy70tCHWJWOajZWKtjj6+z9J4baTp
-jUu24y786qNkR8OVhjVwW+ETlf1I4/dUJN8iP4Zv4ibseJz9EhJZ41jY6+73bZwR
-ao0lKig9Z69538r1wFs/1zOJP9YSJnuGA+rIYgdsu1fsq3eUWqJdlEAwpyx1TxfU
-JvFgx9ni0YfCUhmSb0B8b5Jt1TU0Lk1arZJ3NE1qC8gdbY4V+8MEKKfyq5uIlzaL
-rOQokUo5panfRGxxAFfeY5QZb4jpXmx1W31hb2V1NY73fy2o/4JhEZcpfmjdhoDC
-gBwlKP2Xf6AFo/wtLdZFQhAVmDg5Vy8vcU381QSS08DRysptAZAhIYcCAwEAAaOB
-kTCBjjAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUF
-BwMCMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFB3FpZrvkz7oq25DKwzCMiKCCsgM
-MB8GA1UdIwQYMBaAFPFZuGZNPsPnQu6Bo9RGfzlTdfkPMA8GA1UdEQQIMAaCBGt1
-YmUwDQYJKoZIhvcNAQELBQADggEBAGL1VaX+qSkanrUnanef3ltzRWr7FKZo8q8S
-R3WxIuFaQuc671hwgIunmYctiRVdquEH1gLbDcOvYYfJN+82wsTVnn6CRt6ztEQZ
-JkqcQKLqiv5jcV13CD+PT4L2veS3FdCP1qRvuge2z93qykBUrYQn01GFcyLZYZVW
-4AQiFx8vubmUDVkBdAD4/5GCzp2lCbYuOrDtIlG92Ld1XH3ztj7+2THKDM284rrV
-6CaL+InA2V3+yvICUAiWGg3clTvUenT4OBAJwaEMWEGvyXG33JZw7oKpCwF3GKEZ
-3SSF5bLX9Gh/pucTlpvT7rVKjUOM9Nn5wrHB7mfPh6pjvfMTwj0=
+MIIBUjCCAQSgAwIBAgIQRE+Tc2d5YSlAzwPaujQDBTAFBgMrZXAwEjEQMA4GA1UE
+AxMHZXRjZCBjYTAgFw0yMzAzMzExMjAyMDNaGA85OTk5MTIzMTIzNTk1OVowJzEl
+MCMGA1UEAxMca3ViZSBldGNkIGNsaWVudCBjZXJ0aWZpY2F0ZTAqMAUGAytlcAMh
+AMsx7ryDXP08V8siYwx7PeuS9D0tX1AJgW80G6b32PEQo1kwVzAOBgNVHQ8BAf8E
+BAMCBaAwEwYDVR0lBAwwCgYIKwYBBQUHAwIwHwYDVR0jBBgwFoAU3dBtWFp/vCwW
+CpS+401mNlsqW9YwDwYDVR0RBAgwBoIEa3ViZTAFBgMrZXADQQAexyz0ABBh27G7
+apRypwl5PTyF0ojfnC2WAhuKhva8gGAQRSEP8IYktBV2SBspH8D23LmGE7K9fikM
+feYRVTUI
 -----END CERTIFICATE-----