Skip to content

Conversation

openshift-cherrypick-robot

This is an automated cherry-pick of #1834

/assign saifshaikh48

With this commit, WICD controller reacts to changes in the trusted CA bundle
that involve a certificate removal. Certificates that are removed from the
trusted CA bundle are in turn removed from each Windows node's local trust
store and each node rebooted. With this, no outgoing traffic from the node will
try to use removed certificates (unless re-added to the trust bundle later).
This is also the case when  when nodes are deconfigured -- all certificates
imported to the node by the operator are removed by WICD cleanup. This could
be during upgrade or when BYOH instances are decomissioned from the cluster.

Also, this commit allows WICD controller to generate a warning event informing
the user of potentially stale certificates left on their Windows nodes in the
case that the file containing all certs imported by the operator is corrupted.
This commit tests that proxy certificates are removed from Windows instances'
local trust stores when cluster-wide proxy config changes/is removed and
when BYOH nodes are removed from the cluster.
@openshift-ci-robot
Copy link

openshift-ci-robot commented Oct 18, 2023

@openshift-cherrypick-robot: An error was encountered cloning bug for cherrypick for bug WINC-688 on the Jira server at https://issues.redhat.com/. No known errors were detected, please see the full error message for details.

Full error message. request failed. Please analyze the request body for more details. Status code: 400: {"errorMessages":["Number value expected as the Sprint id."],"errors":{"customfield_12318341":"Operation value must be a string"}}

Please contact an administrator to resolve this issue, then request a bug refresh with /jira refresh.

In response to this:

This is an automated cherry-pick of #1834

/assign saifshaikh48

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

@sebsoto
Copy link
Contributor

sebsoto commented Oct 18, 2023

/approve

@openshift-ci
Copy link
Contributor

openshift-ci bot commented Oct 18, 2023

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: openshift-cherrypick-robot, sebsoto

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@openshift-ci openshift-ci bot added the approved Indicates a PR has been approved by an approver from all required OWNERS files. label Oct 18, 2023
@mansikulkarni96
Copy link
Member

/lgtm

@openshift-ci openshift-ci bot added the lgtm Indicates that a PR is ready to be merged. label Oct 18, 2023
@openshift-ci-robot
Copy link

/retest-required

Remaining retests: 0 against base HEAD eabefc4 and 2 for PR HEAD 5c0870b in total

@openshift-ci-robot
Copy link

/retest-required

Remaining retests: 0 against base HEAD 914ec53 and 1 for PR HEAD 5c0870b in total

@saifshaikh48
Copy link
Contributor

/test platform-none-vsphere-e2e-operator

retesting, cluster install failure

@mansikulkarni96
Copy link
Member

/retest-required

@aravindhp
Copy link
Contributor

/retest-required

ci/prow/platform-none-vsphere-e2e-operator — Pod got deleted unexpectedly

@mansikulkarni96
Copy link
Member

/retest-required
pod pending timeout.

@aravindhp
Copy link
Contributor

/retest-required

@aravindhp
Copy link
Contributor

/refresh

@aravindhp
Copy link
Contributor

/retest-required

@openshift-ci-robot
Copy link

/retest-required

Remaining retests: 0 against base HEAD e15babf and 0 for PR HEAD 5c0870b in total

@openshift-ci-robot
Copy link

/hold

Revision 5c0870b was retested 3 times: holding

@openshift-ci openshift-ci bot added the do-not-merge/hold Indicates that a PR should not merge because someone has issued a /hold command. label Oct 24, 2023
@mansikulkarni96
Copy link
Member

/retest-required

@openshift-ci
Copy link
Contributor

openshift-ci bot commented Oct 24, 2023

@openshift-cherrypick-robot: all tests passed!

Full PR test history. Your PR dashboard.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository. I understand the commands that are listed here.

@jrvaldes
Copy link
Contributor

/hold cancel

All tests passed.

@openshift-ci openshift-ci bot removed the do-not-merge/hold Indicates that a PR should not merge because someone has issued a /hold command. label Oct 24, 2023
@openshift-ci openshift-ci bot merged commit e18f4e4 into openshift:release-4.14 Oct 24, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
approved Indicates a PR has been approved by an approver from all required OWNERS files. lgtm Indicates that a PR is ready to be merged.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

7 participants