Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-15907

ccoctl azure delete leaks role assignments

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Duplicate
    • Icon: Major Major
    • None
    • 4.14.0
    • None
    • No
    • Proposed
    • False
    • Hide

      None

      Show
      None

      Description of problem:

      ccoctl azure delete does not clean up role assignments for managed identities.

      Version-Release number of selected component (if applicable):

      4.14.0

      How reproducible:

      100%

      Steps to Reproduce:

      1. Create Azure workload identity infrastructure using 'ccoctl azure {create-all,create-managed identities}'
      2. Delete Azure workload identity infrastructure using 'ccoctl azure delete'
      3. Observe leaked role assignments either in the OIDC resource group (if not deleted using --delete-oidc-resource-group) or the DNS Zone resource group.
      

      Actual results:

      Role assignments are not deleted by 'ccoctl azure delete'.

      Expected results:

      Role assignments are deleted by 'ccoctl azure delete'.

      Additional info:

       

              jstuever@redhat.com Jeremiah Stuever
              abutcher@redhat.com Andrew Butcher
              Mingxia Huang Mingxia Huang
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: