cluster: partial cert bump

Done:

 1. etcd peer CA & certs
 2. etcd client CA & certs
 3. kube CA (currently all components set to accept both new and old CA,
    new CA called ca-kube-new)
 4. kube apiserver
 5. kubelet & kube-proxy
 6. prodvider intermediate

TODO:

 1. kubernetes controller-manager & kubernetes scheduler
 2. kubefront CA
 3. admitomatic?
 4. undo bundle on kube CA components to fully transition away from old
    CA

Change-Id: If529eeaed9a6a2063bed23c9d81c57b36b9a0115
Reviewed-on: https://gerrit.hackerspace.pl/c/hscloud/+/1487
Reviewed-by: q3k <q3k@hackerspace.pl>
diff --git a/cluster/certs/etcdpeer-dcr01s22.hswaw.net.cert b/cluster/certs/etcdpeer-dcr01s22.hswaw.net.cert
index 421de7d..57f00b3 100644
--- a/cluster/certs/etcdpeer-dcr01s22.hswaw.net.cert
+++ b/cluster/certs/etcdpeer-dcr01s22.hswaw.net.cert
@@ -1,30 +1,10 @@
 -----BEGIN CERTIFICATE-----
-MIIFITCCBAmgAwIBAgIUcBO3XRpETW4fzQbhEJ3RSZdIXr0wDQYJKoZIhvcNAQEL
-BQAwfTELMAkGA1UEBhMCUEwxFDASBgNVBAgTC01hem93aWVja2llMQ8wDQYDVQQH
-EwZXYXJzYXcxGzAZBgNVBAoTEldhcnNhdyBIYWNrZXJzcGFjZTETMBEGA1UECxMK
-Y2x1c3RlcmNmZzEVMBMGA1UEAxMMZXRjZCBwZWVyIGNhMB4XDTIyMTAwMjEzMjUw
-MFoXDTIzMTAwMjEzMjUwMFowdjELMAkGA1UEBhMCUEwxFDASBgNVBAgTC01hem93
-aWVja2llMQ8wDQYDVQQHEwZXYXJzYXcxIzAhBgNVBAsTGm5vZGUgZXRjZCBwZWVy
-IGNlcnRpZmljYXRlMRswGQYDVQQDExJkY3IwMXMyMi5oc3dhdy5uZXQwggIiMA0G
-CSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQC8CX6AHfDOCXrNacddsGApq2PZMQ5w
-UpDZQvS5ZacFvnP0zXyktcNYuqrwwnUCsMBdceG0WLiUuvmQNdx7+c/OtHJzS6Yn
-RG+TV3K6gYzcm2KlcD7R7THZuPxkwM3EhlGiwdzfgWXpqve2v3zIOQ21fRi+qJdQ
-8ZtVz74CD0rLNBgST+EHraLdeeAxmiYJFZ1Ge/Eh06Pa6ZyCI6Rfp9w2VDhBhhMF
-gVFl6J/7s56DnO6B/ecz0K1ZQlUxgZKzEIxdnv5380QikN8OApHAXxFmkOi+jTsq
-igzzJ0l9ZxuVFVDdTFQI3L4wjFF0hqcfmOV7n8rpDhp7DMqomPFNyQHliwRkBhG8
-In2N+nAPPwEKKWR7tnzk599B88msYpuv9PBpLxnlxWc8DFkn2bOJwLXB3HajmSb6
-r+a0Cs3nJhCfuynBJhusXbiwAGLJ5WRFKi3MDeFLffovO0jZ92y+PzoJb5RlIGE2
-2vhV8zZAI4WU1QOjgX86o/FIRVUz1WqXE80ZIyoB+wnAgBCTwLSaA5IgPpEMaKH/
-ierbL7L/2hnrUGMMUNRGH99VJoTDsoufZTvPmwrWD7uK0s+91o/fWPc1IOaCJBeE
-SUS2dwjHdqWwQRvkQyAbiXh8CRMs+aOoLA7Mwdg6s2fJbRE/U11Bs/5BTl9AWvqj
-2GFIxKbDMZ3vVQIDAQABo4GfMIGcMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAU
-BggrBgEFBQcDAQYIKwYBBQUHAwIwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQU1Yhk
-16mTklzv3gvOdw38WrodcA0wHwYDVR0jBBgwFoAULXuar2iqGaTMKoi++HbkvSen
-JA4wHQYDVR0RBBYwFIISZGNyMDFzMjIuaHN3YXcubmV0MA0GCSqGSIb3DQEBCwUA
-A4IBAQB1XV1J9f2CToNo3i9IRGY6nAaE5J4xigAUyqto1Og1zs/aG6M5APeMnATM
-qZ9cf7aiCnEgFmUY/kzTeKhu/GrdDzBqrl9GA5A6UE7VuHA2rOsMdY0/5TRkdHYz
-pOjopDgzg5qfFz/aq4rD4nmRNhBET7OxxoFmMecUKBbSCOZ0znf6J+qE6sa59mdi
-fbVjYJO4JULaqMoe5JpE6Cs3+OZu6qdUNIQMaZxV1DLIa9YLtZtyQCBUh3COwV7s
-dgBx6lshnHfuXMn9v0eOkicMlv3KQXHtG0VBNJVmOkft4zUUYD4ItCCf9B8LlNGV
-p+nfyiIyV9UR9mBIlUhX9QOfb5tr
+MIIBbTCCAR+gAwIBAgIQXs801vVV/83F/ts4i9tl4zAFBgMrZXAwFzEVMBMGA1UE
+AxMMZXRjZCBwZWVyIGNhMCAXDTIzMDMzMTExMjcyMloYDzk5OTkxMjMxMjM1OTU5
+WjAlMSMwIQYDVQQDExpub2RlIGV0Y2QgcGVlciBjZXJ0aWZpY2F0ZTAqMAUGAytl
+cAMhAOrYrTCVdYQayhGlNnmXNvZrm6fnV8Z3MeA2eHO2hjz8o3EwbzAOBgNVHQ8B
+Af8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMB8GA1UdIwQY
+MBaAFAvAwatZ4EdIvITkO10WOdubny75MB0GA1UdEQQWMBSCEmRjcjAxczIyLmhz
+d2F3Lm5ldDAFBgMrZXADQQBSy98ou7deo8+/GoBM+fTx4j5haNg1A7vFUxybRYg6
+D+RrVHNVXpBgsURyOzIYBkHR4y5hrMX8TG5XQ0gmkGUI
 -----END CERTIFICATE-----