Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-18386

Cluster Version Operator does not correctly reconcile SCC resources

XMLWordPrintable

    • Critical
    • No
    • 3
    • OTA 241, OTA 242
    • 2
    • Proposed
    • False
    • Hide

      None

      Show
      None
    • Release Note Not Required
    • In Progress

      How reproducible:

      Always

      Steps to Reproduce:

      1. the Kubernetes API introduces a new Pod Template parameter (`ephemeral`)
      2. this parameter is not in the allowed list of the default SCC
      3. customer is not allowed to edit the default SCCs nor we have a  mechanism in  place to update the built in SCCs AFAIK
      4. users of existing clusters cannot use the new parameter without creating manual SCCs and assigning this SCC to service accounts themselves which looks clunky. This is documented in https://access.redhat.com/articles/6967808 

      Actual results:

      Users of existing clusters cannot use ephemeral volumes after an upgrade

      Expected results:

      Users of existing clusters *can* use ephemeral volumes after an upgrade

      Current status

              afri@afri.cz Petr Muller
              rhn-support-ekasprzy Emmanuel Kasprzyk
              Evgeni Vakhonin Evgeni Vakhonin
              Votes:
              0 Vote for this issue
              Watchers:
              14 Start watching this issue

                Created:
                Updated:
                Resolved: