Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-37959

[AWS] <infrastructure_id>-worker-sg, <cluster_id>-master-sg securityGroups and <infrastructure_id>-private-<zone>, <cluster_id>-private-<aws_zone_b> subnet don't exist since 4.16

XMLWordPrintable

    • Moderate
    • None
    • False
    • Hide

      None

      Show
      None

      Description of problem:

      https://docs.openshift.com/container-platform/4.16/machine_management/creating_machinesets/creating-machineset-aws.html#machineset-yaml-aws_creating-machineset-aws
      
      <infrastructure_id>-worker-sg securityGroups and <infrastructure_id>-private-<zone> subnet don't exist since 4.16(CAPI) AWS cluster.
      If use <infrastructure_id>-private-<zone> subnet, the machine created failed with error 'error getting subnet IDs: no subnet IDs were found'.
      If use <infrastructure_id>-worker-sg securityGroups, the machine created failed with error 'error getting security groups IDs: no security group found'.
      The default Machineset values look like below since 4.16: 
      
                securityGroups:
                - filters:
                  - name: tag:Name
                    values:
                    - huliu-aws85a-kkwdm-node
                - filters:
                  - name: tag:Name
                    values:
                    - huliu-aws85a-kkwdm-lb
                subnet:
                  filters:
                  - name: tag:Name
                    values:
                    - huliu-aws85a-kkwdm-subnet-private-us-east-2a
      
      
      <cluster_id>-master-sg securityGroups and <cluster_id>-private-<aws_zone_b> subnet don't exist since 4.16(CAPI) AWS cluster. 
      
      https://docs.openshift.com/container-platform/4.16/machine_management/control_plane_machine_management/cpmso_provider_configurations/cpmso-config-options-aws.html#cpmso-yaml-provider-spec-aws_cpmso-config-options-aws
      
      The default securityGroup of ControlPlaneMachineSet values look like below since 4.16:
      
                  securityGroups:
                  - filters:
                    - name: tag:Name
                      values:
                      - huliu-aws85a-kkwdm-node
                  - filters:
                    - name: tag:Name
                      values:
                      - huliu-aws85a-kkwdm-lb
                  - filters:
                    - name: tag:Name
                      values:
                      - huliu-aws85a-kkwdm-controlplane
      
      https://docs.openshift.com/container-platform/4.16/machine_management/control_plane_machine_management/cpmso_provider_configurations/cpmso-config-options-aws.html#cpmso-yaml-failure-domain-aws_cpmso-config-options-aws
      
      The default failure domain of ControlPlaneMachineSet values look like below since 4.16: 
      
            failureDomains:
              aws:
              - placement:
                  availabilityZone: us-east-2a
                subnet:
                  filters:
                  - name: tag:Name
                    values:
                    - huliu-aws85a-kkwdm-subnet-private-us-east-2a
                  type: Filters
              - placement:
                  availabilityZone: us-east-2b
                subnet:
                  filters:
                  - name: tag:Name
                    values:
                    - huliu-aws85a-kkwdm-subnet-private-us-east-2b
                  type: Filters
              - placement:
                  availabilityZone: us-east-2c
                subnet:
                  filters:
                  - name: tag:Name
                    values:
                    - huliu-aws85a-kkwdm-subnet-private-us-east-2c
                  type: Filters
              platform: AWS

      Version-Release number of selected component (if applicable):

          4.16-4.17

      How reproducible:

          

      Steps to Reproduce:

          1.
          2.
          3.
          

      Actual results:

          

      Expected results:

          

      Additional info:

          

              jrouth@redhat.com Jeana Routh
              huliu@redhat.com Huali Liu
              Huali Liu Huali Liu
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated: