Uploaded image for project: 'Red Hat Advanced Cluster Management'
  1. Red Hat Advanced Cluster Management
  2. ACM-10158

ACM 2.9 permission error after the restore process

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Major Major
    • ACM 2.9.3
    • ACM 2.9.0
    • Business Continuity
    • None
    • Critical
    • No

      Description of problem:

      Issue: When restoring managed clusters data and auto-import-account MSA are used to connect to the clusters, the list of MSA used by the restore operation should only include tokens created by an MSA with the auto-import-account name
      If not, other MSA secrets can be picked up to be used by the auto-import-secret and those tokens don't have authority to run the import operation

       

      related to https://issues.redhat.com/browse/ACM-10093

      Version-Release number of selected component (if applicable):

      How reproducible:

      Steps to Reproduce:

      1. Create a backup with MSA enabled and have a spoke cluster 
      2. Restore the data and activation data
      3. The spoke cluster should connect wit the new hub

      Actual results:

      Expected results:

      Additional info:

              vbirsan@redhat.com Valentina Birsan
              vbirsan@redhat.com Valentina Birsan
              Thuy Nguyen Thuy Nguyen
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: