Bug 2048902
Summary: | [KMS] Deployment of cluster wide encryption enabled cluster using kube auth fails when using vault namespaces | |||
---|---|---|---|---|
Product: | [Red Hat Storage] Red Hat OpenShift Data Foundation | Reporter: | Rachael <rgeorge> | |
Component: | rook | Assignee: | Sébastien Han <shan> | |
Status: | CLOSED ERRATA | QA Contact: | Rachael <rgeorge> | |
Severity: | high | Docs Contact: | ||
Priority: | unspecified | |||
Version: | 4.10 | CC: | madam, mmuench, muagarwa, nberry, ocs-bugs, odf-bz-bot, shan, tnielsen | |
Target Milestone: | --- | Keywords: | Reopened | |
Target Release: | ODF 4.12.0 | |||
Hardware: | Unspecified | |||
OS: | Unspecified | |||
Whiteboard: | ||||
Fixed In Version: | Doc Type: | No Doc Update | ||
Doc Text: | Story Points: | --- | ||
Clone Of: | ||||
: | 2110866 (view as bug list) | Environment: | ||
Last Closed: | 2023-01-31 00:19:18 UTC | Type: | Bug | |
Regression: | --- | Mount Type: | --- | |
Documentation: | --- | CRM: | ||
Verified Versions: | Category: | --- | ||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
Cloudforms Team: | --- | Target Upstream Version: | ||
Embargoed: | ||||
Bug Depends On: | 2089755 | |||
Bug Blocks: | 2110868, 2131648, 2051913, 2110866, 2124827 |
Description
Rachael
2022-02-01 06:24:22 UTC
As per Eran's comment offline, I'm closing this. Testing the Vault Namespace is irrelevant for the cluster-wide encryption scenario. Thanks. Based on the email conversation with Eran and others, moving this to 4.11 This was reported before this fix went in https://bugzilla.redhat.com/show_bug.cgi?id=2052937. I believe it's the same root cause, can you try this again with the latest 4.10? It should work. Thanks. Since the documentation and UI for 4.10 do not support vault namespaces, can the target release be kept for ODF 4.11? The kubernetes auth method can then be tested and verified using vault namespaces in 4.11 and the UI changes done for the same can be reverted. (In reply to Rachael from comment #8) > Since the documentation and UI for 4.10 do not support vault namespaces, can > the target release be kept for ODF 4.11? Yes, it's a bit late for 4.10 changes. > The kubernetes auth method can then be tested and verified using vault > namespaces in 4.11 and the UI changes done for the same can be reverted. Sounds good to me. This can be moved to VERIFIED now I suppose, right? Thanks! Should this be ON_QA since we're just waiting for 4.11? Thanks Neha, do you need everything from me at the moment? Let me know, thanks. Please test with the latest 4.11 build Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Red Hat OpenShift Data Foundation 4.12.0 enhancement and bug fix update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2023:0551 The needinfo request[s] on this closed bug have been removed as they have been unresolved for 120 days |