-
Bug
-
Resolution: Done-Errata
-
Critical
-
4.16
-
Critical
-
No
-
2
-
Proposed
-
False
-
-
Release Note Not Required
-
In Progress
Description of problem:
After migration works complete, “pod-identity-webhook” deployment is not in the namespace "openshift-cloud-credential-operator".
Version-Release number of selected component (if applicable):
4.16
How reproducible:
Always
Steps to Reproduce:
1.Prepare an Azure OpenShift cluster. 2.Migration to Azure AD workload Identity using procedure https://github.com/openshift/cloud-credential-operator/blob/master/docs/azure_workload_identity.md#steps-to-in-place-migrate-an-openshift-cluster-to-azure-ad-workload-identity. 3.
Actual results:
Azure pod identity webhook is not being created. [hmx@fedora CCO]$ oc get po -n openshift-cloud-credential-operator NAME READY STATUS RESTARTS AGE cloud-credential-operator-78b94ffb4-587rh 2/2 Running 0 3h7m
Expected results:
Additional info:
Tested migration to Azure AD workload Identity on following Azure cluster type: 1. Default public Azure cluster. 2. Single-node cluster. 3. Azure private cluster. 4. Disconnected Azure cluster. This issue exists in all of the above cluster types.
- blocks
-
CCO-456 Support migration to Azure Managed Identity
- Release Pending
- links to
-
RHEA-2024:0041 OpenShift Container Platform 4.16.z bug fix update