- Issued:
- 2017-06-29
- Updated:
- 2017-06-29
RHBA-2017:1666 - Bug Fix Advisory
Synopsis
OpenShift Container Platform atomic-openshift-utils bug fix and enhancement
Type/Severity
Bug Fix Advisory
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
Updated atomic-openshift-utils and openshift-ansible packages that fix several bugs and add enhancements are now available for OpenShift Container Platform 3.5, 3.4, 3.3, and 3.2.
Description
Red Hat OpenShift Container Platform is the company's cloud computing Platform-as-a-Service (PaaS) solution designed for on-premise or private cloud deployments.
The atomic-openshift-utils and openshift-ansible packages contain the installation utility and Ansible requirements for installing and upgrading OpenShift Container Platform 3.
Space precludes documenting all of the bug fixes and enhancements in this advisory. See the following Release Notes documentation, which will be updated shortly for this release, for details about these changes:
https://docs.openshift.com/container-platform/3.5/release_notes/ocp_3_5_release_notes.html
https://docs.openshift.com/container-platform/3.4/release_notes/ocp_3_4_release_notes.html
https://docs.openshift.com/container-platform/3.3/release_notes/ocp_3_3_release_notes.html
https://docs.openshift.com/enterprise/3.2/release_notes/ose_3_2_release_notes.html
Solution
Before applying this update, make sure all previously released errata relevant to your system have been applied.
To apply this update, run the following on all hosts where you intend to initiate Ansible-based installation or upgrade procedures:
# yum update atomic-openshift-utils
This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at:
Affected Products
- Red Hat OpenShift Container Platform 3.5 x86_64
- Red Hat OpenShift Container Platform 3.4 x86_64
- Red Hat OpenShift Container Platform 3.3 x86_64
Fixes
- BZ - 1436343 - [3.4] protect package versions upon upgrade
- BZ - 1436348 - [3.3] protect package versions upon upgrade
- BZ - 1440167 - Control Plane Upgrade Fails if Nodes Do Not Have Access To Latest Excluder
- BZ - 1440296 - [3.4] The etcd db file should be backed during upgrade
- BZ - 1440299 - [3.3] The etcd db file should be backed during upgrade
- BZ - 1440303 - [3.2] The etcd db file should be backed during upgrade
- BZ - 1457914 - [3.4] upgrade get applied to all nodes if openshift_upgrade_nodes_label fits no label
- BZ - 1460233 - [3.4] Docker MTU is wrong when SDN is adjusted to smaller MTU
- BZ - 1460235 - [3.5] Docker MTU is wrong when SDN is adjusted to smaller MTU
- BZ - 1460969 - [3.5] Redeploy CA will try to restart services when certs are expired, causing failure.
- BZ - 1460970 - [3.4] Redeploy CA will try to restart services when certs are expired, causing failure.
- BZ - 1460971 - [3.3] Redeploy CA will try to restart services when certs are expired, causing failure.
- BZ - 1460972 - [3.2] Redeploy CA will try to restart services when certs are expired, causing failure.
- BZ - 1462276 - [3.5] Ansible playbook fails due the incorrect openshift-master.kubeconfig
- BZ - 1462280 - [3.4] Ansible playbook fails due the incorrect openshift-master.kubeconfig
- BZ - 1462282 - [3.3] Ansible playbook fails due the incorrect openshift-master.kubeconfig
- BZ - 1462283 - [3.2] Ansible playbook fails due the incorrect openshift-master.kubeconfig
- BZ - 1462721 - [3.5] Liveness Probe Port for custom routers wrong after openshift upgrades
- BZ - 1462995 - [3.5] upgrade get applied to all nodes if openshift_upgrade_nodes_label fits no label
- BZ - 1463139 - [3.4]Failed to detect new openshift version due to miss cleaning yum repo during upgrade
- BZ - 1463772 - [3.5] The installer should allow for redeploy of etcd CA only.
- BZ - 1463773 - [3.4] The installer should allow for redeploy of etcd CA only.
- BZ - 1463774 - [3.3] The installer should allow for redeploy of etcd CA only.
- BZ - 1463775 - [3.2] The installer should allow for redeploy of etcd CA only.
- BZ - 1464543 - [3.5] openshift_cert_expiry Can not parse certs with DER encoded Serial Numbers
- BZ - 1464544 - [3.4] openshift_cert_expiry Can not parse certs with DER encoded Serial Numbers
- BZ - 1464545 - [3.3] openshift_cert_expiry Can not parse certs with DER encoded Serial Numbers
- BZ - 1464546 - [3.2] openshift_cert_expiry Can not parse certs with DER encoded Serial Numbers
- BZ - 1465263 - [3.5] openshift_master_cert_expire_days is undefined in 3.5 installer
CVEs
(none)
References
(none)
Red Hat OpenShift Container Platform 3.5
SRPM | |
---|---|
openshift-ansible-3.5.91-1.git.0.28b3ddb.el7.src.rpm | SHA-256: 2c50d6330368dc5aa893405df7459876459604e99f8bf5279cd475072e848fdd |
x86_64 | |
atomic-openshift-utils-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: 2fbcd8ce5722a85f60b3e0db5ce78c4c1f292961256efc2dfcfc4b188445c506 |
openshift-ansible-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: 92af007bf51c04c25a7a4becfc813925b0f2204f2c98928d61b362bb96d55145 |
openshift-ansible-callback-plugins-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: 99f0f04ed9078f16697818a6366f894c4e1084a251843d80549de2c3eb7c55be |
openshift-ansible-docs-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: 56b2075a9454c35b2b2cdf125f10ef640977a523d6775177f04dd6414c20e08d |
openshift-ansible-filter-plugins-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: 2faf6f7a18a7e2b002dcb1744464935dc9c93ed7b7074c11fd56deda6c6363c5 |
openshift-ansible-lookup-plugins-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: 1e6365d05e60055ee31810819eb2ca41cb0cafe01fe5c8a606d18109d4e4c8da |
openshift-ansible-playbooks-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: c41d6f5391513716edcb1119da54adbe55f9f23efae8c48d0d69024cd5f3eeda |
openshift-ansible-roles-3.5.91-1.git.0.28b3ddb.el7.noarch.rpm | SHA-256: b5ff3e5c48455015d4cb09a74773d082970cc7e2c515aab993286fd6ad9094cc |
Red Hat OpenShift Container Platform 3.4
SRPM | |
---|---|
openshift-ansible-3.4.110-1.git.0.7d78794.el7.src.rpm | SHA-256: a1a0d614dc2f6482a0a01c9e6eba63da7c16135d804eaee9cd8d3cf4c621bdf4 |
x86_64 | |
atomic-openshift-utils-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: 4a4351ea2f70a913316882130a38f5b19516b908eabaefaff4bf6a75410f3b3d |
openshift-ansible-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: 4ae0072039b3839bfac305832c0e588d0283a70846d8c6064b10db27f3ef159a |
openshift-ansible-callback-plugins-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: f19afe25e4a47d23299bc51d1972cb4af7679918d5168d7b76ccc7b93d0da300 |
openshift-ansible-docs-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: b990be2a8b1dc448812c66b49d31d0ad4cf360b65b8af60e9722befe40b1e55d |
openshift-ansible-filter-plugins-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: 8fc695aba96fd6590fe6eca654aa3c2166079f37401358e1de8cf97ed1d88c94 |
openshift-ansible-lookup-plugins-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: 8362d4a5da036fa90e1c9c59b6c8c231046a20b2b98e719dda4746c6c8c05528 |
openshift-ansible-playbooks-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: 06346b83f84267dd774031a578b7fda52e90c2bd55b81278333f77321c69b532 |
openshift-ansible-roles-3.4.110-1.git.0.7d78794.el7.noarch.rpm | SHA-256: b54621040631e375d3e3ec47547f272487aced2de448b4d2ba2947a3f77bb9bc |
Red Hat OpenShift Container Platform 3.3
SRPM | |
---|---|
openshift-ansible-3.3.103-1.git.0.0707f63.el7.src.rpm | SHA-256: 4106be8d50117e35eea3c9e39fa143fb23c86f9567ab8d4c6d02700a28a2b706 |
x86_64 | |
atomic-openshift-utils-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: 30a398ccc9fa6edbd778bdef8e7500e48d9a1a7bf5c001913fd77fcf9e7f614f |
openshift-ansible-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: 71858bdc98f90ce9d2b20d9e4539fa3640cfadd700582a833734e63951b2b631 |
openshift-ansible-callback-plugins-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: 76a9b8eadc7115d47b9a34f52e4156286e4ff717c7a60dd5db0b208d9737b5e9 |
openshift-ansible-docs-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: e1927db4a7df7d8633df6e9a48f3561280830b6a4eb0db59e95e6f0ba2019a0c |
openshift-ansible-filter-plugins-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: 2c06cc16e1295c39f176d8fc6b52e7ce312ece5ed762c0e41757c7e5c648df84 |
openshift-ansible-lookup-plugins-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: 066a555d9a417ef96756f6ac866ad4dec3eee7f2a602e378ae05fc8096fe57e5 |
openshift-ansible-playbooks-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: 04e856d14f35fa2ae04f60ba08d86145c3e1a4b1b8eb4b255b12340fd5a8fcd8 |
openshift-ansible-roles-3.3.103-1.git.0.0707f63.el7.noarch.rpm | SHA-256: 0df92742e9285dc91243f1a0ed8777e677e62aa31e7ade04bd5002079f49de9d |
Red Hat OpenShift Container Platform 3.2
SRPM | |
---|---|
openshift-ansible-3.2.62-1.git.0.8f5e45b.el7.src.rpm | SHA-256: 76e7ba6591a46460b163f68763670996f30bc07d56001af4fdd0b30dc71b4993 |
x86_64 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.