-
Bug
-
Resolution: Done
-
Major
-
ACM 2.9.0
-
None
Description of problem:
Issue: When restoring managed clusters data and auto-import-account MSA are used to connect to the clusters, the list of MSA used by the restore operation should only include tokens created by an MSA with the auto-import-account name
If not, other MSA secrets can be picked up to be used by the auto-import-secret and those tokens don't have authority to run the import operation
related to https://issues.redhat.com/browse/ACM-10093
Version-Release number of selected component (if applicable):
How reproducible:
Steps to Reproduce:
- Create a backup with MSA enabled and have a spoke cluster
- Restore the data and activation data
- The spoke cluster should connect wit the new hub