Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-45361

HCP installation on kubevirt disconnected method fails with self-signed cert on repo

XMLWordPrintable

    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Description of problem:

      HCP cluster using kubevirt on IBM Fusion HCI in disconnected environment with local artifactory (Arifactory is using self-signed cert).
      
      previous setup works well with valid certificate but not with self-signed certificates on repo.
      Currently all pods on local-cluster are up and running but vm’s generated as worker nodes are not able to pull images from local repository due to not trusted certificate issue  (attatched hcp_disconnected_selfsigned-out.txt). Per my findings, ca-bundle.crt secret is is present on kubevirt vm deployed by hcp in /etc/pki/ca-trust/source/anchors/ openshift-config-user-ca-bundle.crt  but podman cannot pull images from internal artifactory due self-signed certificate.    

      Version-Release number of selected component (if applicable):

          

      How reproducible:

      N/A    

      Steps to Reproduce:

          1. install HCP cluster on OCP using ovirt
          2.
          3.
          

      Actual results:

        Nodepool nodes unable to install.

      Expected results:

       Nodepool node should get installed   

      Additional info:

          

              kmajcher@redhat.com Krzysztof Majcher
              rhn-support-chdeshpa Chinmay Deshpande
              None
              None
              Liangquan Li Liangquan Li
              None
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: