Uploaded image for project: 'OpenShift Logging'
  1. OpenShift Logging
  2. LOG-3131

vector: kube API server certificate validation failure due to hostname mismatch

    XMLWordPrintable

Details

    • False
    • None
    • False
    • NEW
    • VERIFIED
    • Hide

      Can be reproduced in customer lab setting, see attached file.

      Not yet reproducible outside that setting.

      Show
      Can be reproduced in customer lab setting, see attached file. Not yet reproducible outside that setting.
    • Log Collection - Sprint 225, Log Collection - Sprint 226, Log Collection - Sprint 227, Log Collection - Sprint 228

    Description

      Using the kafka output in a lab environment, the customer is seeing TLS 'hostname mismatch' errors when vector tries to connect to a kafka broker.

      From the attached information (logforwarderissue.tgz) it does appear that the certificates are valid, however we are unable to reproduce the failure in a stand-alone setting.

      Need to determine if this is a

      1. vector bug - upgrade or provide upstream fix to vector
      2. problem with how the CLF configures vector - fix the config generator
      3. problem with customer certificates - explain what is wrong and how to correct

       

      Attachments

        Activity

          People

            syedriko_sub@redhat.com Sergey Yedrikov
            rhn-engineering-aconway Alan Conway
            Anping Li Anping Li
            Votes:
            0 Vote for this issue
            Watchers:
            7 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: