Description of problem: common templates are using hardcoded passwords. Since 2.5 they will contain a parameter to generate them, but that relies on the "oc process" functionality. After an offline discussion it has been decided to generate the password on the UI as well. The specific behavior: If the common-templates contains the cloud-init config, e.g. like: #cloud-config user: admin password: <whatever> chpasswd: {expire: False} ssh_pwauth: True than the UI needs to modify it before adding it to the cloud init section. It needs to take everything what is on the line after the "password: " and generate a password. The format needs to be <four random characters>-<four random characters>-<four random characters>. So, something like this: #cloud-config user: admin password: abcd-a41s-2342 chpasswd: {expire: False} ssh_pwauth: True
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (OpenShift Container Platform 4.6 GA Images), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2020:4196