service-ca-operator and cluster-network-operators compete in injecting CA bundles in OpenShift Container Platform 4 when wrongly configured

Solution Unverified - Updated -

Issue

  • service-ca-operator and cluster-network-operators compete in injecting CA bundles in OpenShift Container Platform 4 when wrongly configured.
  • When annotating a ConfigMap with service.beta.openshift.io/inject-cabundle=true and adding the label config.openshift.io/inject-trusted-cabundle=true to the same ConfigMap, the service-ca-operator and the cluster-network-operator are racing each other to apply the desired state which will never be possible.

Environment

  • Red Hat OpenShift Container Platform (OCP) 4

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content