RKE 创建的K8S集群如何添加K8S用户账户(user account)

RKE 版本:
v1.3.15
Docker 版本: (docker version,docker info)
Client: Docker Engine - Community
Version: 23.0.1
API version: 1.40 (downgraded from 1.42)
Go version: go1.19.5
Git commit: a5ee5b1
Built: Thu Feb 9 19:51:00 2023
OS/Arch: linux/amd64
Context: default

Server: Docker Engine - Community
Engine:
Version: 19.03.15
API version: 1.40 (minimum version 1.12)
Go version: go1.13.15
Git commit: 99e3ed8919
Built: Sat Jan 30 03:16:33 2021
OS/Arch: linux/amd64
Experimental: false
containerd:
Version: 1.6.18
GitCommit: 2456e983eb9e37e47538f59ea18f2043c9a73640
runc:
Version: 1.1.4
GitCommit: v1.1.4-0-g5fd4c4d
docker-init:
Version: 0.18.0
GitCommit: fec3683
操作系统和内核: (cat /etc/os-release, uname -r)
NAME=“CentOS Linux”
VERSION=“7 (Core)”
ID=“centos”
ID_LIKE=“rhel fedora”
VERSION_ID=“7”
PRETTY_NAME=“CentOS Linux 7 (Core)”
ANSI_COLOR=“0;31”
CPE_NAME=“cpe:/o:centos:centos:7”
HOME_URL=“https://www.centos.org/
BUG_REPORT_URL=“https://bugs.centos.org/

CENTOS_MANTISBT_PROJECT=“CentOS-7”
CENTOS_MANTISBT_PROJECT_VERSION=“7”
REDHAT_SUPPORT_PRODUCT=“centos”
REDHAT_SUPPORT_PRODUCT_VERSION=“7”

3.10.0-862.el7.x86_64
主机类型和供应商: (VirtualBox/Bare-metal/AWS/GCE/DO)

cluster.yml 文件:

重现步骤:
参考网上资料使用以下测试步骤在社区版的K8S集群可以生成用户账号,但在RKE搭建的K8S集群找不到目录/etc/kubernetes/下存在ca.crt ca.key这两文件,请问在RKE搭建的K8S集群如何创建用户账号(user account)?

测试步骤
在/etc/kubernetes/pki/目录下创建用户证书文件
cd /etc/kubernetes/pki/
sudo openssl genrsa -out pro.key
sudo openssl rand -writerand /root/.rnd
sudo openssl req -new -key pro.key -out pro.csr -subj “/CN=pro/O=kubeusers”
sudo openssl x509 -req -in pro.csr -CA ca.crt -CAkey ca.key -out pro.crt -days 365 #指定证书过期日期,例子设置是365天
写入到当前master的.config文件
kubectl config set-credentials pro --client-certificate=pro.crt --client-key=pro.key
结果: