Error dialing x509: certificate signed by unknown authority Kubernetes integration

I know there is allot on info about this, but I'm not grokking what needs to be done.
The agents for the integration with kubernetes deploys in the kube-system namespace. i am using the quickstart fyi. What do i need to do to get the cert that was generated in the eck name space to the agents in kube-system?

Error dialing x509: certificate signed by unknown authority 

this is the cert i want yes?

elasticsearch-es-http-ca-internal