You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Describe the Bug:
Following VPC Resource Controller upgrade from v1.1.4 to v1.1.5, SecurityGroupPolicy objects created before the upgrade are returning as not found by the annotation webhook:
Webhook couldn't find SGP definition: GroupVersionResource or GroupKind didn't match. Will allow regular pods creation.
Those objects are present when kubectl get SecurityGroupPolicy -A is run.
Observed Behavior:
Newly created pods are not annotated with the correct branch ENI.
Expected Behavior:
Pods should be annotated based on the SecurityGroupPolicy that they match.
How to reproduce it (as minimally and precisely as possible):
It is not clear how to reproduce this, though the setup seems to require:
VPC RC v1.1.4 and SecurityGroupPolicy objects to exist
VPC RC upgrade
Additional Context:
Environment: EKS 1.24
Kubernetes version (use kubectl version): v1.24
CNI Version - v1.12.6
OS (Linux/Windows): Linux
The text was updated successfully, but these errors were encountered:
If we upgrade EKS control plane from 1.24 to 1.25, the vpc resource controller will also be upgraded from v1.1.4 to v1.1.5 automatically? Or does AWS sometime upgrade the vpc resource to newer version as needed?
@hitsub2 sorry for a late response. When you update your control plane, the service in control plane will be updated to the latest version. If you don't update, EKS will keep services updated as needed.
Describe the Bug:
Following VPC Resource Controller upgrade from v1.1.4 to v1.1.5, SecurityGroupPolicy objects created before the upgrade are returning as not found by the annotation webhook:
Those objects are present when
kubectl get SecurityGroupPolicy -A
is run.Observed Behavior:
Newly created pods are not annotated with the correct branch ENI.
Expected Behavior:
Pods should be annotated based on the SecurityGroupPolicy that they match.
How to reproduce it (as minimally and precisely as possible):
It is not clear how to reproduce this, though the setup seems to require:
Additional Context:
Environment: EKS 1.24
kubectl version
): v1.24The text was updated successfully, but these errors were encountered: