- Issued:
- 2017-01-24
- Updated:
- 2017-01-24
RHBA-2017:0189 - Bug Fix Advisory
Synopsis
Red Hat OpenShift Container Platform atomic-openshift-utils bug fix update
Type/Severity
Bug Fix Advisory
Red Hat Lightspeed patch analysis
Identify and remediate systems affected by this advisory.
Topic
Updated atomic-openshift-utils and openshift-ansible packages that fix several bugs are now available for OpenShift Container Platform 3.3 and 3.2.
Description
Red Hat OpenShift Container Platform is the company's cloud computing Platform-as-a-Service (PaaS) solution designed for on-premise or private cloud deployments.
The atomic-openshift-utils and openshift-ansible packages contain the installation utility and Ansible requirements for installing and upgrading OpenShift Container Platform 3.
This update fixes the following bugs:
- The dnsmasq configuration previously included the strict-order option, which meant that dnsmasq would iterate through the host's nameservers in order. This meant that if the first nameserver had failed, a lengthy timeout was observed while dnsmasq waits before moving on to the next nameserver. This bug fix removes the strict-order option, and as a result dnsmasq now prefers nameservers that it knows to be responsive over those which are unresponsive, ensuring faster name resolution. If you wish add this or any other option, use the advanced installer's `openshift_node_dnsmasq_additional_config_file` Ansible variable, which allows you to provide the path to a dnsmasq configuration file that will be deployed on all nodes. (BZ#1400130, BZ#1400139)
- The NetworkManager dispatcher script previously did not correctly update the /etc/resolv.conf file after a host was rebooted. This bug fix updates the script to ensure that /etc/resolv.conf is updated on reboot, ensuring proper use of dnsmasq. (BZ#1401427, BZ#1401428)
- The logging-deployer template had two fields defined incorrectly. This bug fix resolves those errors, and logging upgrades now work properly for OpenShift Container Platform 3.3. (BZ#1409475)
All OpenShift Container Platform 3.3 and 3.2 users are advised to upgrade to these updated packages.
Solution
Before applying this update, make sure all previously released errata relevant to your system have been applied.
To apply this update, run the following on all hosts where you intend to initiate Ansible-based installation or upgrade procedures:
# yum update atomic-openshift-utils
This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/articles/11258.
Affected Products
- Red Hat OpenShift Container Platform 3.3 x86_64
Fixes
- BZ - 1400130 - [3.3] dnsmasq should not set strict-order
- BZ - 1400139 - [3.2] dnsmasq should not set strict-order
- BZ - 1401427 - [3.3]The nameservers in /etc/resolv.conf are generated to non-node's ip by NetworkManager after rebooting nodes
- BZ - 1401428 - [3.2]The nameservers in /etc/resolv.conf are generated to non-node's ip by NetworkManager after rebooting nodes
- BZ - 1409475 - [3.3] Rolebindings fail to update while upgrading EFK
CVEs
(none)
References
(none)
Red Hat OpenShift Container Platform 3.3
| SRPM | |
|---|---|
| openshift-ansible-3.3.58-1.git.0.fb27109.el7.src.rpm | SHA-256: 3bb469d7f790355d6481a7bbe9162bc84765470bee529c86f6e8bca974bb3707 |
| x86_64 | |
| atomic-openshift-utils-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: 8cd0c82ff8bd73127e31d8ef4791fb1639fc48b612380291eb7356f45ff3352b |
| openshift-ansible-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: d43f87cb2a1a18b5fe8f6020cc40cf7b9cbacd1253f51e49810fd907efe44668 |
| openshift-ansible-callback-plugins-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: 0abee2bed876ea896b3b8799480c3df704baf7e601b81c6aea1c94d4a8a008a4 |
| openshift-ansible-docs-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: 27900119d345103f2d57b952d8707b7f546cf5f5d2f6295ffd0b070ab643490d |
| openshift-ansible-filter-plugins-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: 760eff90e94df3f4dee036a6d321790a8530f3548d937ede304dcd2f9217b0b8 |
| openshift-ansible-lookup-plugins-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: c384746b8d0677b715ac97d13d00086fe5b536a608e0b91308a02d62b4c7d2a1 |
| openshift-ansible-playbooks-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: 2d829add94fada497097d3982f30b995c293f597a9f4fafcf216f5354ff96816 |
| openshift-ansible-roles-3.3.58-1.git.0.fb27109.el7.noarch.rpm | SHA-256: c47629660342d209c01214362e8687b4a001ff93aee543e77586574edb6a02f4 |
Red Hat OpenShift Container Platform 3.2
| SRPM | |
|---|---|
| openshift-ansible-3.2.46-1.git.0.a8a05d9.el7.src.rpm | SHA-256: 58e3254c8ae9433f62920891979344f6bef3110eab12ad43f586646f58fff94c |
| x86_64 | |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.