Note: This bug is displayed in read-only format because the product is no longer active in Red Hat Bugzilla.

Bug 2092703

Summary: Incorrect mount propagation information in container status
Product: OpenShift Container Platform Reporter: Harshal Patil <harpatil>
Component: NodeAssignee: Harshal Patil <harpatil>
Node sub component: CRI-O QA Contact: Sunil Choudhary <schoudha>
Status: CLOSED ERRATA Docs Contact:
Severity: medium    
Priority: medium    
Version: 4.11   
Target Milestone: ---   
Target Release: 4.11.0   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2022-08-10 11:15:49 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 2100369    

Description Harshal Patil 2022-06-02 06:10:46 UTC
BZ to track the fix of this upstream issue - https://github.com/cri-o/cri-o/issues/5916

Comment 5 Sunil Choudhary 2022-07-04 12:22:02 UTC
Verified on 4.11.0-0.nightly-2022-06-30-005428

% oc get clusterversion
NAME      VERSION                              AVAILABLE   PROGRESSING   SINCE   STATUS
version   4.11.0-0.nightly-2022-06-30-005428   True        False         114m    Cluster version is 4.11.0-0.nightly-2022-06-30-005428

% oc get nodes
NAME                                         STATUS   ROLES    AGE    VERSION
ip-10-0-150-114.us-east-2.compute.internal   Ready    master   130m   v1.24.0+9ddc8b1
ip-10-0-157-5.us-east-2.compute.internal     Ready    worker   124m   v1.24.0+9ddc8b1
ip-10-0-185-137.us-east-2.compute.internal   Ready    master   131m   v1.24.0+9ddc8b1
ip-10-0-188-77.us-east-2.compute.internal    Ready    worker   123m   v1.24.0+9ddc8b1
ip-10-0-196-207.us-east-2.compute.internal   Ready    master   131m   v1.24.0+9ddc8b1
ip-10-0-221-48.us-east-2.compute.internal    Ready    worker   124m   v1.24.0+9ddc8b1

% cat podp.yaml 
apiVersion: v1
kind: Pod
metadata:
  name: proapagate-pod
spec:
  volumes:
  - name: host
    hostPath:
      path: /
  containers:
    - name: propagate-pod
      image: nginx
      securityContext:
        privileged: true
      volumeMounts:
       - name: host
         mountPath: /host
         mountPropagation: HostToContainer

% oc create -f podp.yaml 
…
pod/proapagate-pod created


% oc get pods -o wide
NAME             READY   STATUS    RESTARTS   AGE   IP            NODE                                       NOMINATED NODE   READINESS GATES
proapagate-pod   1/1     Running   0          7s    10.128.2.27   ip-10-0-157-5.us-east-2.compute.internal   <none>           <none>


% oc debug node/ip-10-0-157-5.us-east-2.compute.internal
…
Starting pod/ip-10-0-157-5us-east-2computeinternal-debug ...
…


sh-4.4# crictl ps | grep propa
175b10ae97bb9       docker.io/library/nginx@sha256:10f14ffa93f8dedf1057897b745e5ac72ac5655c299dade0aa434c71557697ea                                               42 seconds ago      Running             propagate-pod                           0                   104b64a5a409b       proapagate-pod


sh-4.4# crictl inspect 175b10ae97bb9 | grep -A 5 -B 5 PROPAGATION_HOST_TO_CONTAINER
    },
    "mounts": [
      {
        "containerPath": "/host",
        "hostPath": "/",
        "propagation": "PROPAGATION_HOST_TO_CONTAINER",
        "readonly": false,
        "selinuxRelabel": false
      },
      {
        "containerPath": "/etc/hosts",

Comment 7 errata-xmlrpc 2022-08-10 11:15:49 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Important: OpenShift Container Platform 4.11.0 bug fix and security update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2022:5069