Description of problem: hco-webhook pod in CreateContainerError Version-Release number of selected component (if applicable): registry-proxy.engineering.redhat.com/rh-osbs/iib:28573" # hco-v2.6.0-286 How reproducible: always Steps to Reproduce: 1. deploy cnv 2. 3. Actual results: [cnv-qe-jenkins@pytest-nightly-kn98r-executor ~]$ oc describe pod hco-webhook-6f4cb6d8c7-sjdpp -nopenshift-cnv Name: hco-webhook-6f4cb6d8c7-sjdpp Namespace: openshift-cnv Priority: 0 Node: pytest-nightly-kn98r-worker-0-598lb/192.168.1.215 Start Time: Mon, 30 Nov 2020 17:43:49 +0000 Labels: name=hyperconverged-cluster-webhook pod-template-hash=6f4cb6d8c7 Annotations: alm-examples: [{"apiVersion":"hco.kubevirt.io/v1beta1","kind":"HyperConverged","metadata":{"name":"kubevirt-hyperconverged","namespace":"openshift-cnv"}... capabilities: Full Lifecycle categories: OpenShift Optional certified: true containerImage: registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b2... createdAt: 2020-11-30 04:43:54 description: Creates and maintains an OpenShift Virtualization Deployment k8s.v1.cni.cncf.io/network-status: [{ "name": "", "interface": "eth0", "ips": [ "10.128.2.8" ], "default": true, "dns": {} }] k8s.v1.cni.cncf.io/networks-status: [{ "name": "", "interface": "eth0", "ips": [ "10.128.2.8" ], "default": true, "dns": {} }] olm.operatorGroup: kubevirt-hyperconverged-group olm.operatorNamespace: openshift-cnv olm.targetNamespaces: openshift-cnv olmcahash: 9c68a462a8add4ca26b90daf197cd4b4b5bd4d24ddc472b5c81e3b46753ec1d9 openshift.io/scc: restricted operatorframework.io/initialization-resource: {"apiVersion":"hco.kubevirt.io/v1beta1","kind":"HyperConverged","metadata":{"name":"kubevirt-hyperconverged","namespace":"openshift-cnv"},... operatorframework.io/properties: {"properties":[{"type":"olm.gvk","value":{"group":"cdi.kubevirt.io","kind":"CDI","version":"v1alpha1"}},{"type":"olm.gvk","value":{"group"... operatorframework.io/suggested-namespace: openshift-cnv operators.openshift.io/infrastructure-features: ["Disconnected"] operators.operatorframework.io/internal-objects: ["v2vvmwares.v2v.kubevirt.io","ovirtproviders.v2v.kubevirt.io","networkaddonsconfigs.networkaddonsoperator.network.kubevirt.io","kubevirts... repository: https://github.com/kubevirt/hyperconverged-cluster-operator support: Red Hat Status: Pending IP: 10.128.2.8 IPs: IP: 10.128.2.8 Controlled By: ReplicaSet/hco-webhook-6f4cb6d8c7 Containers: hyperconverged-cluster-webhook: Container ID: Image: registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b23676e874fc96b8b8 Image ID: Port: <none> Host Port: <none> Command: hyperconverged-cluster-webhook State: Waiting Reason: CreateContainerError Ready: False Restart Count: 0 Liveness: http-get http://:6060/livez delay=5s timeout=1s period=5s #success=1 #failure=1 Readiness: http-get http://:6060/readyz delay=5s timeout=1s period=5s #success=1 #failure=1 Environment: WEBHOOK_MODE: true APP: WEBHOOK OPERATOR_IMAGE: registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b23676e874fc96b8b8 OPERATOR_NAME: hyperconverged-cluster-webhook OPERATOR_NAMESPACE: openshift-cnv POD_NAME: hco-webhook-6f4cb6d8c7-sjdpp (v1:metadata.name) WATCH_NAMESPACE: VIRTCTL_DOWNLOAD_URL: https://access.redhat.com/downloads/content/473 VIRTCTL_DOWNLOAD_TEXT: Red Hat Customer Portal binary download (Linux, MacOSX, and Microsoft Windows) Mounts: /apiserver.local.config/certificates from apiservice-cert (rw) /tmp/k8s-webhook-server/serving-certs from webhook-cert (rw) /var/run/secrets/kubernetes.io/serviceaccount from hyperconverged-cluster-operator-token-9tjfw (ro) Conditions: Type Status Initialized True Ready False ContainersReady False PodScheduled True Volumes: apiservice-cert: Type: Secret (a volume populated by a Secret) SecretName: hco-webhook-service-cert Optional: false webhook-cert: Type: Secret (a volume populated by a Secret) SecretName: hco-webhook-service-cert Optional: false hyperconverged-cluster-operator-token-9tjfw: Type: Secret (a volume populated by a Secret) SecretName: hyperconverged-cluster-operator-token-9tjfw Optional: false QoS Class: BestEffort Node-Selectors: <none> Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Pulled 5s (x3395 over 12h) kubelet Container image "registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b23676e874fc96b8b8" already present on machine Expected results: all pods in ready state Additional info:
fixed in registry-proxy.engineering.redhat.com/rh-osbs/container-native-virtualization-hco-bundle-registry:v2.6.0-291
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Moderate: OpenShift Virtualization 2.6.0 security and bug fix update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2021:0799