Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-45127

VPA Operator failing FIPS check due to kube-rbac-proxy image

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Critical Critical
    • None
    • 4.18.0, 4.19.0
    • Pod Autoscaler
    • None
    • Critical
    • Yes
    • 3
    • PODAUTO - Sprint 263
    • 1
    • Proposed
    • False
    • Hide

      None

      Show
      None
    • Release Note Not Required
    • In Progress

      Description of problem:

      In 4.18 we introduced kube-rbac-proxy into the VPA. We used the upstream image which is not FIPS compliant.

      Version-Release number of selected component (if applicable):

      4.18

      How reproducible:

      100%

      Steps to Reproduce:

          1. Look at https://github.com/openshift/vertical-pod-autoscaler-operator/blob/release-4.18/bundle/manifests/vertical-pod-autoscaler.clusterserviceversion.yaml#L653
          2.
          3.
          

      Actual results:

      gcr.io/kubebuilder/kube-rbac-proxy:v0.15.0

      Expected results:

      registry.redhat.io/openshift4/ose-kube-rbac-proxy-rhel9:v4.18

      Additional info:

          

              joelsmith.redhat Joel Smith
              joelsmith.redhat Joel Smith
              Aditi Sahay Aditi Sahay
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: