-
Notifications
You must be signed in to change notification settings - Fork 884
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
添加集群成功,但是cluster状态一直是False #3771
Comments
首先请确认下member集群上创建的sa的token可以用于正常访问member集群,如果可以的话对比下member集群上sa的token是否和Karmada控制面一致。 |
你的kubeconfig 里面有没有 insecure-skip-tls-verify: true 参数? |
@whitewindmills member集群上有两个secret里都有token,控制面的token跟sa的token不一致,但是跟另一个token一致 |
@chaunceyjiang 没改这个参数,是false |
@donkeywon 你不需要关心除karmada-dev以外的secret,目前看似乎member集群上karmada-dev这个sa token可能存在问题,你能进一步确认吗?你可以使用podman或者curl请求member集群的apiserver,使用karmada-dev这个sa token。例如使用curl:
如果请求返回 |
@whitewindmills 确实是401 |
请问你的成员集群是怎么来的?用的什么命令?然后有没有手动指定kubeconfig地址? |
@chaosi-zju 测试环境有两个k8s集群,都是按照同一个步骤部署的,kubeconfig都在$HOME/.kube/config下面,你说的命令是指什么命令? |
我以为你是自己用kind命令,调 |
@chaosi-zju 这个不会的,我本地用的kind,测试环境是提前部署好的已经投入使用的k8s集群 |
@whitewindmills 我在本地的kind集群使用上面的curl方法测试是通的 |
我想获取两个信息:
|
|
@donkeywon 你参考下。
|
|
@whitewindmills 看了下可能是我们测试环境的部署参数有点问题,看到个issue是这么说的kubernetes/kubernetes#72026 (comment) |
是的, |
@whitewindmills: Closing this issue. In response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository. |
Please provide an in-depth description of the question you have:
现象是join集群后,member集群的状态一直是False,controller manager报Unauthorized
What do you think about this question?:
猜测是证书相关的问题,没有排查思路,如果需要额外提供其他信息我可以贴上来
Environment:
The text was updated successfully, but these errors were encountered: