-
Bug
-
Resolution: Done-Errata
-
Normal
-
None
-
4.18
-
None
-
False
-
-
Release Note Not Required
-
In Progress
This is a clone of issue OCPBUGS-43655. The following is the description of the original issue:
—
Description of problem:
When we switched the API servers to use the /livez endpoint, we overlooked updating the audit policy to exclude this endpoint from being logged. As a result, requests to the /livez endpoint are currently being persisted in the audit log files. The issue applies to the other API servers as well (oas and oauth-apiserver)
Version-Release number of selected component (if applicable):
How reproducible:
Just download must-gather and grep for /livez endpoint.
Steps to Reproduce:
Just download must-gather and grep for /livez endpoint.
Actual results:
Requests to the /livez endpoint are being recorded in the audit log files.
Expected results:
Requests to the /livez endpoint are NOT being recorded in the audit log files.
Additional info:
- clones
-
OCPBUGS-43655 API: Audit logs persisting request to /livez
- Verified
- is blocked by
-
OCPBUGS-43655 API: Audit logs persisting request to /livez
- Verified
- links to
-
RHBA-2024:9610 OpenShift Container Platform 4.17.z bug fix update
(2 links to)