Project

General

Profile

Actions

Bug #22779

open

Salt installer sets AWS credentials in /root/.aws that avoids a-d-c to work properly

Added by Lucas Di Pentima 7 days ago. Updated 3 days ago.

Status:
New
Priority:
Normal
Assigned To:
Category:
Deployment
Target version:
Story points:
-

Description

Presumably when deploying a multi node cluster in AWS with Route53 and LetsEncrypt, there're related credentials that get stashed in /root/.aws/ so that the installer can use DNS based auth to request TLS certs.
When this happens, the dispatcher service cannot launch new compute nodes, probably because of the recent change in AWS SDK version that we're using in Golang code.
When these credentials are removed and a-d-c restarted, everything goes back to normal.

See https://docs.aws.amazon.com/sdkref/latest/guide/settings-reference.html#EVarSettings for potential options to try.


Subtasks 1 (1 open0 closed)

Task #22803: ReviewNewTom CleggActions
Actions #2

Updated by Lucas Di Pentima 3 days ago

  • Assigned To set to Lucas Di Pentima
  • Description updated (diff)
Actions #3

Updated by Peter Amstutz 3 days ago

  • Subtask #22803 added
Actions

Also available in: Atom PDF