Managed Cluster `klusterlet-addon-workmgr` pod Fails after Upgrade or Certificate Change

Solution In Progress - Updated -

Issue

  • After upgrading Advanced Cluster Management for Kubernetes to version 2.2.x, one or more of the Managed Clusters shows offline or shows issues with its klusterlet-addon-workmgr pod being in a CrashLoop.

  • Furthermore when checking the clusterdeployment object for the Managed Cluster(s) from the Hub Cluster via oc get clusterdeployment -n $MANAGED_CLUSTER_NAME -oyaml, we see an error such as:

  - lastProbeTime: "2021-04-01T19:53:32Z"
    lastTransitionTime: "2021-04-01T19:53:32Z"
    message: 'Get "https://api.mydomain:6443/api?timeout=32s": x509:
      certificate signed by unknown authority'
    reason: ErrorConnectingToCluster
    status: "True"
    type: Unreachable

Environment

  • Red Hat Advanced Cluster Management 2.2

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content