Description of problem: Backport fix for bz1415800 to Openshift Container Platform 3.4 Version-Release number of selected component (if applicable): OSCP3.4 Requesting backport of the change to 3.4 in the installer so the installer waits to obtain a lock when updating iptables rules ensuring that rules are properly created I have not found any existing bugzilla to get this change backported into 3.4
https://github.com/openshift/openshift-ansible/pull/3996
Verified with version openshift-ansible-3.4.80-1.git.0.4eee9b7.el7.noarch. During installation, run a while loop of iptables command on hosts, installer will be slow down at "TASK [os_firewall : Add iptables allow rules]" step, once stop the while loop, installer continue with normal speed. [root@master ~]# while true; do iptables -nL; done ... [root@ansible ~]# ansible-playbook -i hosts -v /usr/share/ansible/openshift-ansible/playbooks/byo/config.yml ... TASK [os_firewall : Add iptables allow rules] ********************************** ... (slow down here during the "while loop" alive) ...
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2017:1244