Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-19082

When another pod mounts shared PV, the original one looses access

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Not a Bug
    • Icon: Undefined Undefined
    • None
    • 4.11.z
    • Storage
    • None
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • Important
    • No
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Description of problem:

      
      A CEPH RWX PV is shared between deployment and statefull set (same namespace). A
      Both applications share the volume, and the volume has correct permissions.
      
      The Statefull set application is running with "runAsUser=1000", where the other was running with default openshift uid set from namespace range.
      
      Until couple of weeks back the solution worked just fine.
      When the issue started, customer saw behavior, when one of the application's pods were deleted/recreated - then the other application lost access to the volume with error "Permission Denied".
      
      We checked the linux permissions, and the directory/mount is set to "drwxrwsr-x" and owned by "root:1000".
      All files into the volume are "rwx" to user, group and other. 
      
      This behavior is visible on DEV and PROD environment.
      Currently, not easy manual workaround is in place.
      
      

      Version-Release number of selected component (if applicable):

      OpenShift 4.11.39
      

      How reproducible:

      - currently working on reproducer
      

      Steps to Reproduce:

      1.
      2.
      3.
      

      Actual results:

      
      

      Expected results:

      
      

      Additional info:

      
      

              Unassigned Unassigned
              rhn-support-vwalek Vladislav Walek
              None
              None
              Wei Duan Wei Duan
              None
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: