Existing steps were referring to 1.6.1, since the control plane components are already 1.7.2, it would be better to move worker components to 1.7.2 as well.
It is cleared out at reboot.
It appears that only the file-name part of --tls-cert-file /
--tls-private-key-file is used and that the path is taken from
--cert-dir (which defaults to /var/run/kubernetes) so to make the path
stick we also add a --cert-dir