Uploaded image for project: 'Red Hat Advanced Cluster Management'
  1. Red Hat Advanced Cluster Management
  2. ACM-10159

ACM 2.8 permission error after the restore process

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Major Major
    • ACM 2.8.6
    • ACM 2.8.0
    • Business Continuity
    • None
    • Critical

      Description of problem:

      Issue: When restoring managed clusters data and auto-import-account MSA are used to connect to the clusters, the list of MSA used by the restore operation should only include tokens created by an MSA with the auto-import-account name
      If not, other MSA secrets can be picked up to be used by the auto-import-secret and those tokens don't have authority to run the import operation

       

      related to https://issues.redhat.com/browse/ACM-10093

      Version-Release number of selected component (if applicable):

      How reproducible:

      Steps to Reproduce:

      1. Create a backup with MSA enabled and have a spoke cluster 
      2. Restore the data and activation data
      3. The spoke cluster should connect wit the new hub

      Actual results:

      Expected results:

      Additional info:

            vbirsan@redhat.com Valentina Birsan
            vbirsan@redhat.com Valentina Birsan
            Thuy Nguyen Thuy Nguyen
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

              Created:
              Updated:
              Resolved: