Bug 1571955
Summary: | daemon-set-controller bootstrap RBAC policy does not include get permission for controllerrevisions | ||
---|---|---|---|
Product: | OpenShift Container Platform | Reporter: | Jeremy Eder <jeder> |
Component: | Master | Assignee: | David Eads <deads> |
Status: | CLOSED ERRATA | QA Contact: | Wang Haoran <haowang> |
Severity: | high | Docs Contact: | |
Priority: | high | ||
Version: | 3.10.0 | CC: | aos-bugs, jokerman, mfojtik, mmccomas, zkosic |
Target Milestone: | --- | ||
Target Release: | 3.10.0 | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | aos-scalability-310 | ||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2018-07-30 19:13:48 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Comment 2
Michal Fojtik
2018-04-30 09:28:23 UTC
Verified with: openshift v3.10.0-0.31.0 kubernetes v1.10.0+b81c8f8 etcd 3.2.16 oc describe clusterroles system:controller:daemon-set-controller Name: system:controller:daemon-set-controller Created: 3 hours ago Labels: kubernetes.io/bootstrapping=rbac-defaults Annotations: authorization.openshift.io/system-only=true openshift.io/reconcile-protect=false Verbs Non-Resource URLs Resource Names API Groups Resources [get list watch] [] [] [apps extensions] [daemonsets] [update] [] [] [apps extensions] [daemonsets/status] [update] [] [] [apps extensions] [daemonsets/finalizers] [list watch] [] [] [] [nodes] [create delete list patch watch] [] [] [] [pods] [create] [] [] [] [pods/binding] [create delete get list patch update watch] [] [] [apps] [controllerrevisions] [create patch update] [] [] [] [events] Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2018:1816 |