cluster: partial cert bump

Done:

 1. etcd peer CA & certs
 2. etcd client CA & certs
 3. kube CA (currently all components set to accept both new and old CA,
    new CA called ca-kube-new)
 4. kube apiserver
 5. kubelet & kube-proxy
 6. prodvider intermediate

TODO:

 1. kubernetes controller-manager & kubernetes scheduler
 2. kubefront CA
 3. admitomatic?
 4. undo bundle on kube CA components to fully transition away from old
    CA

Change-Id: If529eeaed9a6a2063bed23c9d81c57b36b9a0115
Reviewed-on: https://gerrit.hackerspace.pl/c/hscloud/+/1487
Reviewed-by: q3k <q3k@hackerspace.pl>
diff --git a/cluster/certs/kube-kubelet-bc01n02.hswaw.net.cert b/cluster/certs/kube-kubelet-bc01n02.hswaw.net.cert
index 633139a..d75686f 100644
--- a/cluster/certs/kube-kubelet-bc01n02.hswaw.net.cert
+++ b/cluster/certs/kube-kubelet-bc01n02.hswaw.net.cert
@@ -1,31 +1,12 @@
 -----BEGIN CERTIFICATE-----
-MIIFVjCCBD6gAwIBAgIUHF4mcNjnQkCZS8UIhlQjOTTWqeUwDQYJKoZIhvcNAQEL
-BQAwgYMxCzAJBgNVBAYTAlBMMRQwEgYDVQQIEwtNYXpvd2llY2tpZTEPMA0GA1UE
-BxMGV2Fyc2F3MRswGQYDVQQKExJXYXJzYXcgSGFja2Vyc3BhY2UxEzARBgNVBAsT
-CmNsdXN0ZXJjZmcxGzAZBgNVBAMTEmt1YmVybmV0ZXMgbWFpbiBDQTAeFw0yMjA0
-MDQxNzQxMDBaFw0yMzA0MDQxNzQxMDBaMIGFMQswCQYDVQQGEwJQTDEUMBIGA1UE
-CBMLTWF6b3dpZWNraWUxDzANBgNVBAcTBldhcnNhdzEVMBMGA1UEChMMc3lzdGVt
-Om5vZGVzMRAwDgYDVQQLEwdLdWJlbGV0MSYwJAYDVQQDEx1zeXN0ZW06bm9kZTpi
-YzAxbjAyLmhzd2F3Lm5ldDCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIB
-ALGiO5ptrZhlirWp39sHiO7qw0/MXuNsluwdXV0DlOsnnTUF3LcyANpZukJQNEq/
-IBZmvnYTyRIvLCJWXXr3jTjqCpIU+I3xRFu39190aohcqGbu2Qkj3weqYQiwCM7l
-0qh4YUTEVoiYMAShgXl5+MDvcJYw3jpfm0P9VUukVznzlhMsesV0TZlgHF04FHeM
-hTwtzgDBsNkCpJP+2Wba1IVegjIU9m7ayKjurjQaSxlDUL1MTTTrU7bNVwyvIpHh
-0jBCCtWrFVZF6eZFrpipGl7rmNC5weIVz9m/4D39DX049m0nsqUj2vjZFM7zT/sl
-Z+Ne+4L6pv4+Fwm3TzFXXxIxdZzCgTbqmgqd57Esr1s928tckrYOCC8paZ/oNW8i
-ndXFkolN1umc5CBb7TVNtXQ42mrZ7Hw66sF8gmF3l+xWNXWj04BmbTkfPULYd53+
-CD7/Pslvo0kOeaEA8UVjdIS8siAdhgCP5T3kUubaneQvRDuRHjzbmi//bUDkxFQ8
-CkkP6oDcjPfnJZ4KkZdfDflGdLRnY5ODzPYCd2xiy5+fFCS+pgtks3Q2SoYkkfV1
-ACl7JmpVhX+4hRi7/QkrwnLkNC+3zwouWCKy+DrVCOBjtJYFOStdCwh41zJB5lC6
-GJzRDqOv3q3hGo7+a6gVMU60DHsgTFbTKJ1TUh0V+D1nAgMBAAGjgb0wgbowDgYD
-VR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAMBgNV
-HRMBAf8EAjAAMB0GA1UdDgQWBBSnIgfLJiK7R+k9wfSCeKuqjpkYNjAfBgNVHSME
-GDAWgBSYMl0OTzMe+wnpiSQTFkJqgNGZ0DA7BgNVHREENDAyghFiYzAxbjAyLmhz
-d2F3Lm5ldIYdc3lzdGVtOm5vZGU6YmMwMW4wMi5oc3dhdy5uZXQwDQYJKoZIhvcN
-AQELBQADggEBAKYVhMH1A5Ot+3imo3aantVWGz+mcfMWv00eYddZJpXm6XlWryrS
-9r7XQFHLhEJXBzxFv4Mqf0kEPKtZvONMY8+X3WU6NDwOua0RJOnF8umlC//jEkoM
-h0q4fMiYGnp/eoaXMz/gD9RapCciQCQHpl8NcY+Lg1i8oTd8/fsOmeCwnSpwBKmn
-ZJh7rylZarsOEByLDAykqP273wFTB1SIXdsfHqI3SubwfMdFTuE8OB12+1+j/VwV
-uzwXwK7bGYfFnnZSb9wXj2tY5+KRj7vRpRV/OS1OtOJntaDBDg7ecb3lmj3UUhOH
-tmrDyp/sioHFnnp//czj1mFSQXtxid+uo94=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 -----END CERTIFICATE-----