Brief Description
-----------------
The cert-manager resource creation fails after swact on wcp_78_79 ipv6 duplex system
Severity
--------
Major
Steps to Reproduce
------------------
1)Create a stepca issuer
[sysadmin@controller-1 ~(keystone_admin)]$ kubectl get clusterissuers.cert-manager.io
NAME READY AGE
stepca-issuer True 78s
2)create a certificate request with the following yaml file
apiVersion: cert-manager.io/v1alpha2
kind: Certificate
metadata:
name: cert-1
spec:
secretName: cert-1
issuerRef:
name: stepca-issuer
kind: ClusterIssuer
organization:
- Windriver
dnsNames:
- cgcs-wildcat-78-79.cumulus.wrs.com
3)certificate is issued by stepca
4)swact the active controller
5)wait for swact operation is succesful, now delete the stepca_issuer
[sysadmin@controller-1 ~(keystone_admin)]$ kubectl delete -f stepca_issuer.yaml
clusterissuer.cert-manager.io "stepca-issuer" deleted
6)Now if the user tries to create it again shows the following error on the system
[sysadmin@controller-1 ~(keystone_admin)]$ kubectl create -f stepca_issuer.yaml
Error from server (InternalError): error when creating "stepca_issuer.yaml": Internal error occurred: failed calling webhook "webhook.cert-manager.io": Post https://cm-cert-manager-webhook.cert-manager.svc:443/mutate?timeout=30s: dial tcp [abcd:207::a15c]:443: connect: network is unreachable
[sysadmin@controller-1 ~(keystone_admin)]$
7)Tried the same operation on r430_3_4 ipv6 system and it seems to be working fine
System Configuration
--------------------
duplex system,wcp_78_79_ipv6
duplex system, wcp_r430_3_4_ipv6
Brief Description
-----------------
The cert-manager resource creation fails after swact on wcp_78_79 ipv6 duplex system
Severity
--------
Major
Steps to Reproduce controller- 1 ~(keystone_admin)]$ kubectl get clusterissuers. cert-manager. io
------------------
1)Create a stepca issuer
[sysadmin@
NAME READY AGE
stepca-issuer True 78s
2)create a certificate request with the following yaml file io/v1alpha2 78-79.cumulus. wrs.com
apiVersion: cert-manager.
kind: Certificate
metadata:
name: cert-1
spec:
secretName: cert-1
issuerRef:
name: stepca-issuer
kind: ClusterIssuer
organization:
- Windriver
dnsNames:
- cgcs-wildcat-
3)certificate is issued by stepca controller- 1 ~(keystone_admin)]$ kubectl delete -f stepca_issuer.yaml cert-manager. io "stepca-issuer" deleted
4)swact the active controller
5)wait for swact operation is succesful, now delete the stepca_issuer
[sysadmin@
clusterissuer.
6)Now if the user tries to create it again shows the following error on the system controller- 1 ~(keystone_admin)]$ kubectl create -f stepca_issuer.yaml issuer. yaml": Internal error occurred: failed calling webhook "webhook. cert-manager. io": Post https:/ /cm-cert- manager- webhook. cert-manager. svc:443/ mutate? timeout= 30s: dial tcp [abcd:207: :a15c]: 443: connect: network is unreachable controller- 1 ~(keystone_admin)]$
[sysadmin@
Error from server (InternalError): error when creating "stepca_
[sysadmin@
7)Tried the same operation on r430_3_4 ipv6 system and it seems to be working fine
System Configuration ------- ------ wcp_78_ 79_ipv6
-------
duplex system,
duplex system, wcp_r430_3_4_ipv6
Branch/Pull Time/Commit ------- ------- --
-------
2020-06-02_20-00-00
Last Pass
---------
Never
Timestamp/Logs 03T19:08: 18.175878694Z
--------------
2020-06-
Test Activity
-------------
Automation
Workaround
----------
swact again and perform the same operation