Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-55778

CCOCTL removes any role assigned to the managed identities

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Not a Bug
    • Icon: Normal Normal
    • None
    • 4.16.z
    • None
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Description of problem:

      In the OpenShift installed in Azure cluster, the ccoctl deleting additional role added on a additional feature in minor update. Issue is that today it deletes any role assignment it doesn't know breaking the additional functionalities until we re-add the roles.

       

      But It should delete/update role assignment that is managed by ccoctl and leave the additional role assignments.

      https://github.com/openshift/cloud-credential-operator/blob/d66761c098427c1a700d984c78d03f785d233d83/pkg/cmd/provisioning/azure/create_managed_identities.go#L285

       

      Expected Result:

      During the upgrade to minor openshift version ccoctl must be run to update the managed identities. 

       

              jstuever@redhat.com Jeremiah Stuever
              rhn-support-rkale Rutuja Kale
              None
              None
              Jianping Shu Jianping Shu
              None
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: