Bug 1903014 - hco-webhook pod in CreateContainerError
Summary: hco-webhook pod in CreateContainerError
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Container Native Virtualization (CNV)
Classification: Red Hat
Component: Installation
Version: 2.6.0
Hardware: Unspecified
OS: Unspecified
unspecified
high
Target Milestone: ---
: 2.6.0
Assignee: Simone Tiraboschi
QA Contact: Inbar Rose
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2020-12-01 06:20 UTC by Tareq Alayan
Modified: 2021-03-10 11:20 UTC (History)
2 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2021-03-10 11:19:48 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2021:0799 0 None None None 2021-03-10 11:20:57 UTC

Description Tareq Alayan 2020-12-01 06:20:54 UTC
Description of problem:
hco-webhook pod in CreateContainerError 

Version-Release number of selected component (if applicable):
registry-proxy.engineering.redhat.com/rh-osbs/iib:28573" # hco-v2.6.0-286

How reproducible:
always

Steps to Reproduce:
1. deploy cnv
2.
3.

Actual results:
[cnv-qe-jenkins@pytest-nightly-kn98r-executor ~]$ oc describe pod hco-webhook-6f4cb6d8c7-sjdpp -nopenshift-cnv  
Name:         hco-webhook-6f4cb6d8c7-sjdpp
Namespace:    openshift-cnv
Priority:     0
Node:         pytest-nightly-kn98r-worker-0-598lb/192.168.1.215
Start Time:   Mon, 30 Nov 2020 17:43:49 +0000
Labels:       name=hyperconverged-cluster-webhook
              pod-template-hash=6f4cb6d8c7
Annotations:  alm-examples:
                [{"apiVersion":"hco.kubevirt.io/v1beta1","kind":"HyperConverged","metadata":{"name":"kubevirt-hyperconverged","namespace":"openshift-cnv"}...
              capabilities: Full Lifecycle
              categories: OpenShift Optional
              certified: true
              containerImage:
                registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b2...
              createdAt: 2020-11-30 04:43:54
              description: Creates and maintains an OpenShift Virtualization Deployment
              k8s.v1.cni.cncf.io/network-status:
                [{
                    "name": "",
                    "interface": "eth0",
                    "ips": [
                        "10.128.2.8"
                    ],
                    "default": true,
                    "dns": {}
                }]
              k8s.v1.cni.cncf.io/networks-status:
                [{
                    "name": "",
                    "interface": "eth0",
                    "ips": [
                        "10.128.2.8"
                    ],
                    "default": true,
                    "dns": {}
                }]
              olm.operatorGroup: kubevirt-hyperconverged-group
              olm.operatorNamespace: openshift-cnv
              olm.targetNamespaces: openshift-cnv
              olmcahash: 9c68a462a8add4ca26b90daf197cd4b4b5bd4d24ddc472b5c81e3b46753ec1d9
              openshift.io/scc: restricted
              operatorframework.io/initialization-resource:
                {"apiVersion":"hco.kubevirt.io/v1beta1","kind":"HyperConverged","metadata":{"name":"kubevirt-hyperconverged","namespace":"openshift-cnv"},...
              operatorframework.io/properties:
                {"properties":[{"type":"olm.gvk","value":{"group":"cdi.kubevirt.io","kind":"CDI","version":"v1alpha1"}},{"type":"olm.gvk","value":{"group"...
              operatorframework.io/suggested-namespace: openshift-cnv
              operators.openshift.io/infrastructure-features: ["Disconnected"]
              operators.operatorframework.io/internal-objects:
                ["v2vvmwares.v2v.kubevirt.io","ovirtproviders.v2v.kubevirt.io","networkaddonsconfigs.networkaddonsoperator.network.kubevirt.io","kubevirts...
              repository: https://github.com/kubevirt/hyperconverged-cluster-operator
              support: Red Hat
Status:       Pending
IP:           10.128.2.8
IPs:
  IP:           10.128.2.8
Controlled By:  ReplicaSet/hco-webhook-6f4cb6d8c7
Containers:
  hyperconverged-cluster-webhook:
    Container ID:  
    Image:         registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b23676e874fc96b8b8
    Image ID:      
    Port:          <none>
    Host Port:     <none>
    Command:
      hyperconverged-cluster-webhook
    State:          Waiting
      Reason:       CreateContainerError
    Ready:          False
    Restart Count:  0
    Liveness:       http-get http://:6060/livez delay=5s timeout=1s period=5s #success=1 #failure=1
    Readiness:      http-get http://:6060/readyz delay=5s timeout=1s period=5s #success=1 #failure=1
    Environment:
      WEBHOOK_MODE:           true
      APP:                    WEBHOOK
      OPERATOR_IMAGE:         registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b23676e874fc96b8b8
      OPERATOR_NAME:          hyperconverged-cluster-webhook
      OPERATOR_NAMESPACE:     openshift-cnv
      POD_NAME:               hco-webhook-6f4cb6d8c7-sjdpp (v1:metadata.name)
      WATCH_NAMESPACE:        
      VIRTCTL_DOWNLOAD_URL:   https://access.redhat.com/downloads/content/473
      VIRTCTL_DOWNLOAD_TEXT:  Red Hat Customer Portal binary download (Linux, MacOSX, and Microsoft Windows)
    Mounts:
      /apiserver.local.config/certificates from apiservice-cert (rw)
      /tmp/k8s-webhook-server/serving-certs from webhook-cert (rw)
      /var/run/secrets/kubernetes.io/serviceaccount from hyperconverged-cluster-operator-token-9tjfw (ro)
Conditions:
  Type              Status
  Initialized       True 
  Ready             False 
  ContainersReady   False 
  PodScheduled      True 
Volumes:
  apiservice-cert:
    Type:        Secret (a volume populated by a Secret)
    SecretName:  hco-webhook-service-cert
    Optional:    false
  webhook-cert:
    Type:        Secret (a volume populated by a Secret)
    SecretName:  hco-webhook-service-cert
    Optional:    false
  hyperconverged-cluster-operator-token-9tjfw:
    Type:        Secret (a volume populated by a Secret)
    SecretName:  hyperconverged-cluster-operator-token-9tjfw
    Optional:    false
QoS Class:       BestEffort
Node-Selectors:  <none>
Tolerations:     node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
                 node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
  Type    Reason  Age                  From     Message
  ----    ------  ----                 ----     -------
  Normal  Pulled  5s (x3395 over 12h)  kubelet  Container image "registry.redhat.io/container-native-virtualization/hyperconverged-cluster-operator@sha256:b4c323a361c96b989a9c9c72ca9053d5b373fdfa10d030b23676e874fc96b8b8" already present on machine


Expected results:

all pods in ready state
Additional info:

Comment 1 Tareq Alayan 2020-12-01 07:28:34 UTC
fixed in registry-proxy.engineering.redhat.com/rh-osbs/container-native-virtualization-hco-bundle-registry:v2.6.0-291

Comment 4 errata-xmlrpc 2021-03-10 11:19:48 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Moderate: OpenShift Virtualization 2.6.0 security and bug fix update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2021:0799


Note You need to log in before you can comment on or make changes to this bug.