[RHOCP 4] istio-proxy container unable to start due to "failed to fetch token from file: open /var/run/secrets/kubernetes.io/serviceaccount/token: no such file or directory"

Solution Verified - Updated -

Issue

  • Application part of OpenShift Service Mesh has issue with istio-proxy container, istio-proxy container fails to start.

  • istio-proxy container startup fails with below error

    2023-11-28T03:38:36.819279Z warn    failed to fetch token from file: open /var/run/secrets/kubernetes.io/serviceaccount/token: no such file or directory
    2023-11-28T03:38:36.820159Z warn    sds failed to warm certificate: failed to generate workload certificate: create certificate: rpc error: code = Unauthenticated desc = request authenticate failure
    2023-11-28T03:38:39.339634Z error   failed scraping envoy metrics: error scraping http://localhost:15090/stats/prometheus: Get "http://localhost:15090/stats/prometheus": dial tcp [::1]:15090: connect: connection refused
    2023-11-28T03:38:41.787205Z warn    failed to fetch token from file: open /var/run/secrets/kubernetes.io/serviceaccount/token: no such file or directory
    2023-11-28T03:38:41.788095Z warn    sds failed to warm certificate: failed to generate workload certificate: create certificate: rpc error: code = Unauthenticated desc = request authenticate failure
    2023-11-28T03:38:48.214044Z warn    failed to fetch token from file: open /var/run/secrets/kubernetes.io/serviceaccount/token: no such file or directory
    2023-11-28T03:38:48.214074Z info    xdsproxy    connected to upstream XDS server: istiod-basic.istio-system.svc:15012
    2023-11-28T03:38:48.214911Z warn    xdsproxy    upstream [7] terminated with unexpected error rpc error: code = Unauthenticated desc = authentication failure
    2023-11-28T03:38:48.215277Z warning envoy config    StreamAggregatedResources gRPC config stream to xds-grpc closed: 16, authentication failure
    

Environment

  • Red Hat OpenShift Container Platform (RHOCP)
    • 4
  • Red Hat OpenShift Service Mesh (OSSM)
    • 2

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content