How to disable reconciliation for cluster-roles

Solution In Progress - Updated -

Issue

  • In Openshift Container platform 3.7, a clusterrolebinding definition has been added with one annotation i.e openshift.io/reconcile-protect. The parameter of annotation needs to be changed to make the policy configuration persist after restarting systemd-units.
  • On restarting atomic-openshift-master-api and atomic-openshift-master-controllers daemon services the configured roles are always reconciled to the default policy.

Environment

  • Openshift Container Platform
    • 3.7

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In
Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.