Uploaded image for project: 'Cluster Observability Operator'
  1. Cluster Observability Operator
  2. COO-1266

alert and prometheus pods failed to start after create monitoringstack on OCP 4.20 with latest upstream observability-operator-catalog

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Critical Critical
    • None
    • 1.3.0 RC
    • monitoring-stack
    • None
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Install ObO with latest upstream image quay.io/rhobs/observability-operator-catalog:latest, with script install_coo_upsgream.sh
      Create monitoringstack with yaml cluster-role-testing.yml

       

      % oc -n e2e-tests get sts
      NAME                    READY   AGE
      alertmanager-multi-ns   0/2     64m
      prometheus-multi-ns     0/2     64m
      

       

       

      % oc -n e2e-tests get event
      LAST SEEN   TYPE      REASON         OBJECT                                      MESSAGE
      5m27s       Warning   FailedCreate   statefulset/alertmanager-multi-ns           create Pod alertmanager-multi-ns-0 in StatefulSet alertmanager-multi-ns failed error: pods "alertmanager-multi-ns-0" is forbidden: unable to validate against any security context constraint: [provider "anyuid": Forbidden: not usable by user or serviceaccount, provider restricted-v2: .spec.securityContext.fsGroup: Invalid value: []int64{65535}: 65535 is not an allowed group, provider restricted-v2: .initContainers[0].runAsUser: Invalid value: 65535: must be in the ranges: [1000740000, 1000749999], provider restricted-v2: .containers[0].runAsUser: Invalid value: 65535: must be in the ranges: [1000740000, 1000749999], provider restricted-v2: .containers[1].runAsUser: Invalid value: 65535: must be in the ranges: [1000740000, 1000749999], provider "restricted-v3": Forbidden: not usable by user or serviceaccount, provider "restricted": Forbidden: not usable by user or serviceaccount, provider "nested-container": Forbidden: not usable by user or serviceaccount, provider "nonroot-v2": Forbidden: not usable by user or serviceaccount, provider "nonroot": Forbidden: not usable by user or serviceaccount, provider "hostmount-anyuid": Forbidden: not usable by user or serviceaccount, provider "hostmount-anyuid-v2": Forbidden: not usable by user or serviceaccount, provider "machine-api-termination-handler": Forbidden: not usable by user or serviceaccount, provider "hostnetwork-v2": Forbidden: not usable by user or serviceaccount, provider "hostnetwork": Forbidden: not usable by user or serviceaccount, provider "hostaccess": Forbidden: not usable by user or serviceaccount, provider "insights-runtime-extractor-scc": Forbidden: not usable by user or serviceaccount, provider "node-exporter": Forbidden: not usable by user or serviceaccount, provider "privileged": Forbidden: not usable by user or serviceaccount]
      9m15s       Normal    NoPods         poddisruptionbudget/multi-ns-alertmanager   No matching pods found
      9m15s       Normal    NoPods         poddisruptionbudget/multi-ns-prometheus     No matching pods found
      5m27s       Warning   FailedCreate   statefulset/prometheus-multi-ns             create Pod prometheus-multi-ns-0 in StatefulSet prometheus-multi-ns failed error: pods "prometheus-multi-ns-0" is forbidden: unable to validate against any security context constraint: [provider "anyuid": Forbidden: not usable by user or serviceaccount, provider restricted-v2: .spec.securityContext.fsGroup: Invalid value: []int64{65534}: 65534 is not an allowed group, provider restricted-v2: .initContainers[0].runAsUser: Invalid value: 65534: must be in the ranges: [1000740000, 1000749999], provider restricted-v2: .containers[0].runAsUser: Invalid value: 65534: must be in the ranges: [1000740000, 1000749999], provider restricted-v2: .containers[1].runAsUser: Invalid value: 65534: must be in the ranges: [1000740000, 1000749999], provider restricted-v2: .containers[2].runAsUser: Invalid value: 65534: must be in the ranges: [1000740000, 1000749999], provider "restricted-v3": Forbidden: not usable by user or serviceaccount, provider "restricted": Forbidden: not usable by user or serviceaccount, provider "nested-container": Forbidden: not usable by user or serviceaccount, provider "nonroot-v2": Forbidden: not usable by user or serviceaccount, provider "nonroot": Forbidden: not usable by user or serviceaccount, provider "hostmount-anyuid": Forbidden: not usable by user or serviceaccount, provider "hostmount-anyuid-v2": Forbidden: not usable by user or serviceaccount, provider "machine-api-termination-handler": Forbidden: not usable by user or serviceaccount, provider "hostnetwork-v2": Forbidden: not usable by user or serviceaccount, provider "hostnetwork": Forbidden: not usable by user or serviceaccount, provider "hostaccess": Forbidden: not usable by user or serviceaccount, provider "insights-runtime-extractor-scc": Forbidden: not usable by user or serviceaccount, provider "node-exporter": Forbidden: not usable by user or serviceaccount, provider "privileged": Forbidden: not usable by user or serviceaccount] 

        1. install_coo_upsgream.sh
          1 kB
          Hongyan Li
        2. cluster-role-testing.yml
          2 kB
          Hongyan Li

              jfajersk@redhat.com Jan Fajerski
              hongyli@redhat.com Hongyan Li
              None
              None
              None
              None
              None
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: