Uploaded image for project: 'OpenShift Request For Enhancement'
  1. OpenShift Request For Enhancement
  2. RFE-7629

CCOCTL removes any role assigned to the managed identities

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Unresolved
    • Icon: Blocker Blocker
    • None
    • openshift-4.16, openshift-4.17, openshift-4.18, openshift-4.19
    • None
    • Product / Portfolio Work
    • None
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Description of problem:

      In the OpenShift installed in Azure cluster, the ccoctl deleting additional role added on a additional feature in minor update. Issue is that today it deletes any role assignment it doesn't know breaking the additional functionalities until we re-add the roles.

      But It should delete/update role assignment that is managed by ccoctl and leave the additional role assignments.

      https://github.com/openshift/cloud-credential-operator/blob/d66761c098427c1a700d984c78d03f785d233d83/pkg/cmd/provisioning/azure/create_managed_identities.go#L285

      Expected Result:

      During the upgrade to minor openshift version ccoctl must be run to update the managed identities.

              julim Ju Lim
              rhn-support-rkale Rutuja Kale
              None
              Votes:
              1 Vote for this issue
              Watchers:
              10 Start watching this issue

                Created:
                Updated:
                None
                None