Uploaded image for project: 'OpenShift Logging'
  1. OpenShift Logging
  2. LOG-4371

fix for fluentd sts cloudwatch multiple roles

XMLWordPrintable

    • False
    • None
    • False
    • NEW
    • NEW
    • Log Collection - Sprint 239, Log Collection - Sprint 240, Log Collection - Sprint 241

      Description of problem:

      Clone of the fix for 5.6 and 5.7

      After updating the openshift logging operator from channel stable-5.5, the operator is mounting all secrets with AWS role ARN to the same collector-sts-token volume which makes it non-unique.

      How reproducible:

      Customer is using fluentd & forwarding logs from namespaces to CloudWatch from an STS enabled cluster (not using ES)

      Steps to Reproduce:

      1. deploy STS enabled cluster
      2.  install CLO 5.8
      3. successfully deploy ClusterLogForwarding from CloudWatch using fluentd 

      Actual results:

      Multiple roles are no longer authenticated 

      Expected results:

      Work the same as in the 5.5 version, allowing multiple roles to authenticate

            cahartma@redhat.com Casey Hartman
            rhn-support-ncarmich Noreen Carmichael
            Anping Li Anping Li
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: