Uploaded image for project: 'AMQ Streams'
  1. AMQ Streams
  2. ENTMQST-1043

Issue with certificate replace triggered by annotation

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Major Major
    • 1.2.0.GA
    • None
    • None
    • None
    • 1
    • Hide
      1. Start Kafka cluster
      2. oc annotate secret my-cluster-cluster-ca strimzi.io/force-replace=true
      3. Zookeper pods restarted successfully
      4. Kafka pods crashlooping with error:
      2019-06-04 12:47:57,814 INFO Awaiting socket connections on s0.0.0.0:9091. (kafka.network.Acceptor) [main]
      2019-06-04 12:47:57,960 ERROR [KafkaServer id=0] Fatal error during KafkaServer startup. Prepare to shutdown (kafka.server.KafkaServer) [main]
      org.apache.kafka.common.KafkaException: org.apache.kafka.common.KafkaException: org.apache.kafka.common.KafkaException: Failed to load SSL keystore /tmp/kafka/cluster.keystore.p12 of type PKCS12
      	at org.apache.kafka.common.network.SslChannelBuilder.configure(SslChannelBuilder.java:73)
      	at org.apache.kafka.common.network.ChannelBuilders.create(ChannelBuilders.java:146)
      	at org.apache.kafka.common.network.ChannelBuilders.serverChannelBuilder(ChannelBuilders.java:85)
      	at kafka.network.Processor.<init>(SocketServer.scala:694)
      	at kafka.network.SocketServer.newProcessor(SocketServer.scala:344)
      	at kafka.network.SocketServer.$anonfun$addDataPlaneProcessors$1(SocketServer.scala:253)
      	at scala.collection.immutable.Range.foreach$mVc$sp(Range.scala:158)
      	at kafka.network.SocketServer.addDataPlaneProcessors(SocketServer.scala:252)
      	at kafka.network.SocketServer.$anonfun$createDataPlaneAcceptorsAndProcessors$1(SocketServer.scala:216)
      	at kafka.network.SocketServer.$anonfun$createDataPlaneAcceptorsAndProcessors$1$adapted(SocketServer.scala:214)
      	at scala.collection.mutable.ResizableArray.foreach(ResizableArray.scala:62)
      	at scala.collection.mutable.ResizableArray.foreach$(ResizableArray.scala:55)
      	at scala.collection.mutable.ArrayBuffer.foreach(ArrayBuffer.scala:49)
      	at kafka.network.SocketServer.createDataPlaneAcceptorsAndProcessors(SocketServer.scala:214)
      	at kafka.network.SocketServer.startup(SocketServer.scala:114)
      	at kafka.server.KafkaServer.startup(KafkaServer.scala:253)
      	at kafka.server.KafkaServerStartable.startup(KafkaServerStartable.scala:38)
      	at kafka.Kafka$.main(Kafka.scala:75)
      	at kafka.Kafka.main(Kafka.scala)
      Caused by: org.apache.kafka.common.KafkaException: org.apache.kafka.common.KafkaException: Failed to load SSL keystore /tmp/kafka/cluster.keystore.p12 of type PKCS12
      	at org.apache.kafka.common.security.ssl.SslFactory.configure(SslFactory.java:143)
      	at org.apache.kafka.common.network.SslChannelBuilder.configure(SslChannelBuilder.java:71)
      	... 18 more
      Caused by: org.apache.kafka.common.KafkaException: Failed to load SSL keystore /tmp/kafka/cluster.keystore.p12 of type PKCS12
      	at org.apache.kafka.common.security.ssl.SslFactory$SecurityStore.load(SslFactory.java:347)
      	at org.apache.kafka.common.security.ssl.SslFactory.createSSLContext(SslFactory.java:230)
      	at org.apache.kafka.common.security.ssl.SslFactory.configure(SslFactory.java:141)
      	... 19 more
      Caused by: java.io.IOException: Short read of DER length
      	at sun.security.util.DerInputStream.getLength(DerInputStream.java:582)
      	at sun.security.util.DerValue.init(DerValue.java:391)
      	at sun.security.util.DerValue.<init>(DerValue.java:332)
      	at sun.security.util.DerValue.<init>(DerValue.java:345)
      	at sun.security.pkcs12.PKCS12KeyStore.engineLoad(PKCS12KeyStore.java:1938)
      	at java.security.KeyStore.load(KeyStore.java:1445)
      	at org.apache.kafka.common.security.ssl.SslFactory$SecurityStore.load(SslFactory.java:340)
      	... 21 more
      
      
      Show
      Start Kafka cluster oc annotate secret my-cluster-cluster-ca strimzi.io/force-replace=true Zookeper pods restarted successfully Kafka pods crashlooping with error: 2019-06-04 12:47:57,814 INFO Awaiting socket connections on s0.0.0.0:9091. (kafka.network.Acceptor) [main] 2019-06-04 12:47:57,960 ERROR [KafkaServer id=0] Fatal error during KafkaServer startup. Prepare to shutdown (kafka.server.KafkaServer) [main] org.apache.kafka.common.KafkaException: org.apache.kafka.common.KafkaException: org.apache.kafka.common.KafkaException: Failed to load SSL keystore /tmp/kafka/cluster.keystore.p12 of type PKCS12 at org.apache.kafka.common.network.SslChannelBuilder.configure(SslChannelBuilder.java:73) at org.apache.kafka.common.network.ChannelBuilders.create(ChannelBuilders.java:146) at org.apache.kafka.common.network.ChannelBuilders.serverChannelBuilder(ChannelBuilders.java:85) at kafka.network.Processor.<init>(SocketServer.scala:694) at kafka.network.SocketServer.newProcessor(SocketServer.scala:344) at kafka.network.SocketServer.$anonfun$addDataPlaneProcessors$1(SocketServer.scala:253) at scala.collection.immutable.Range.foreach$mVc$sp(Range.scala:158) at kafka.network.SocketServer.addDataPlaneProcessors(SocketServer.scala:252) at kafka.network.SocketServer.$anonfun$createDataPlaneAcceptorsAndProcessors$1(SocketServer.scala:216) at kafka.network.SocketServer.$anonfun$createDataPlaneAcceptorsAndProcessors$1$adapted(SocketServer.scala:214) at scala.collection.mutable.ResizableArray.foreach(ResizableArray.scala:62) at scala.collection.mutable.ResizableArray.foreach$(ResizableArray.scala:55) at scala.collection.mutable.ArrayBuffer.foreach(ArrayBuffer.scala:49) at kafka.network.SocketServer.createDataPlaneAcceptorsAndProcessors(SocketServer.scala:214) at kafka.network.SocketServer.startup(SocketServer.scala:114) at kafka.server.KafkaServer.startup(KafkaServer.scala:253) at kafka.server.KafkaServerStartable.startup(KafkaServerStartable.scala:38) at kafka.Kafka$.main(Kafka.scala:75) at kafka.Kafka.main(Kafka.scala) Caused by: org.apache.kafka.common.KafkaException: org.apache.kafka.common.KafkaException: Failed to load SSL keystore /tmp/kafka/cluster.keystore.p12 of type PKCS12 at org.apache.kafka.common.security.ssl.SslFactory.configure(SslFactory.java:143) at org.apache.kafka.common.network.SslChannelBuilder.configure(SslChannelBuilder.java:71) ... 18 more Caused by: org.apache.kafka.common.KafkaException: Failed to load SSL keystore /tmp/kafka/cluster.keystore.p12 of type PKCS12 at org.apache.kafka.common.security.ssl.SslFactory$SecurityStore.load(SslFactory.java:347) at org.apache.kafka.common.security.ssl.SslFactory.createSSLContext(SslFactory.java:230) at org.apache.kafka.common.security.ssl.SslFactory.configure(SslFactory.java:141) ... 19 more Caused by: java.io.IOException: Short read of DER length at sun.security.util.DerInputStream.getLength(DerInputStream.java:582) at sun.security.util.DerValue.init(DerValue.java:391) at sun.security.util.DerValue.<init>(DerValue.java:332) at sun.security.util.DerValue.<init>(DerValue.java:345) at sun.security.pkcs12.PKCS12KeyStore.engineLoad(PKCS12KeyStore.java:1938) at java.security.KeyStore.load(KeyStore.java:1445) at org.apache.kafka.common.security.ssl.SslFactory$SecurityStore.load(SslFactory.java:340) ... 21 more
    • 2019.7

            Unassigned Unassigned
            asorokht Andriy Sorokhtey (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: