machine-config operator degraded in FIPS enabled SNO cluster when performance profile configured with realTimeKernel

Solution Verified - Updated -

Issue

  • The machine-config operator degraded in the FIPS enabled OpenShift SNO cluster when performance profile configured.
$ oc describe co machine-config 
 Status:
  Conditions:
    Last Transition Time:  2022-05-27T09:29:26Z
    Message:               Cluster version is 4.10.10
    Status:                False
    Type:                  Progressing
    Last Transition Time:  2022-05-30T01:42:26Z
    Message:               One or more machine config pools are degraded, please see `oc get mcp` for further details and resolve before upgrading
    Reason:                DegradedPool
    Status:                False
    Type:                  Upgradeable
    Last Transition Time:  2022-05-30T01:52:25Z
    Message:               Failed to resync 4.10.10 because: timed out waiting for the condition during syncRequiredMachineConfigPools: error pool master is not ready, retrying. Status: (pool degraded: true total: 1, ready 0, updated: 0, unavailable: 0)
    Reason:                RequiredPoolsFailed
    Status:                True
    Type:                  Degraded
    Last Transition Time:  2022-05-27T09:29:25Z
    Message:               Cluster has deployed [{operator 4.10.10}]
    Status:                True
    Type:                  Available
  Extension:
    Master:  pool is degraded because nodes fail with "1 nodes are reporting degraded status on sync": "Node sno.example.com is reporting: \"can't reconcile config rendered-master-5869a93d1958f6b0cfc5b26aa5386701 with rendered-master-80f9323606b459ae6f9aa50598c8cfb9: detected change to FIPS flag; refusing to modify FIPS on a running cluster: unreconcilable\""
    Worker:  all 0 nodes are at latest configuration rendered-worker-1d9284d2f0e0aa4ce81fc4edec1b4874

Environment

  • Red Hat OpenShift Container Platform (OCP)
    • 4.10

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content