Bug 1986081 - [4.8.0] ClusterDeployment controller watches all Secrets from all namespaces
Summary: [4.8.0] ClusterDeployment controller watches all Secrets from all namespaces
Alias: None
Product: Red Hat Advanced Cluster Management for Kubernetes
Classification: Red Hat
Component: Infrastructure Operator
Version: rhacm-2.3
Hardware: Unspecified
OS: Unspecified
Target Milestone: ---
: rhacm-2.3.3
Assignee: Michael Filanov
QA Contact: bjacot
Depends On: 1984736
TreeView+ depends on / blocked
Reported: 2021-07-26 16:08 UTC by Michael Filanov
Modified: 2021-10-20 03:56 UTC (History)
9 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of: 1984736
Last Closed: 2021-10-20 03:55:36 UTC
Target Upstream Version:
ming: rhacm-2.3.z+

Attachments (Terms of Use)

System ID Private Priority Status Summary Last Updated
Github open-cluster-management backlog issues 16469 0 None None None 2021-10-14 18:31:38 UTC
Github openshift assisted-service pull 2301 0 None None None 2021-08-01 10:02:23 UTC
Red Hat Bugzilla 1956551 1 low CLOSED assisted-service pod consuming high memory utilization 2021-09-27 11:58:40 UTC
Red Hat Bugzilla 1984736 1 urgent CLOSED [master] ClusterDeployment controller watches all Secrets from all namespaces 2021-10-18 17:40:57 UTC
Red Hat Product Errata RHSA-2021:3925 0 None None None 2021-10-20 03:56:05 UTC

Comment 7 ximhan 2021-08-20 07:26:57 UTC
OpenShift engineering has decided to NOT ship 4.8.6 on 8/23 due to the following issue.
All the fixes part will be now included in 4.8.7 on 8/30.

Comment 11 Mike Ng 2021-09-03 15:53:40 UTC
G2Bsync 912079337 comment 
 CrystalChun Thu, 02 Sep 2021 21:43:18 UTC 
 G2Bsync Dupe issue https://github.com/open-cluster-management/backlog/issues/14619
Changes should go into 2.3.2 https://github.com/open-cluster-management/backlog/issues/15524
Awaiting verification from AI team that this issue is correct.

Comment 12 Mike Ng 2021-09-24 16:24:49 UTC
G2Bsync 925890290 comment 
 CrystalChun Thu, 23 Sep 2021 14:52:48 UTC 
 G2Bsync Will be included in 2.3.3 https://github.com/open-cluster-management/backlog/issues/16469

Comment 14 Michael Filanov 2021-10-13 11:24:07 UTC
Hey sure, 

1. Deploy assisted service 
2. check CPU/Memeory
3. create 1K secrets that are not related to assisted-service, cluster deployment etc. 
4. check CPU/Memeory again, it should not increase

Comment 15 Yona First 2021-10-14 17:10:19 UTC
Verified on: 

Hub cluster OCP version: 4.8.0
RHACM downstream snapshot: 2.3.3-DOWNSTREAM-2021-10-12-15-26-20 

CPU/memory used by assisted-service did not increase after creating 1000 secrets in different namespace.

Output before generating 1000 secrets: 

# kubectl top pods -n rhacm

NAME                              CPU(cores)   MEMORY(bytes) 
assisted-service-fc9d58d94-q6z7x  4m           204Mi 

Output after generating 1000 secrets:

assisted-service-fc9d58d94-q6z7x  4m           204Mi

Comment 20 errata-xmlrpc 2021-10-20 03:55:36 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Important: Red Hat Advanced Cluster Management 2.3.3 bug fix, security, and image updates), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.


Note You need to log in before you can comment on or make changes to this bug.