Uploaded image for project: 'AMQ Streams'
  1. AMQ Streams
  2. ENTMQST-964

Network policy issue on OpenShift 3.11

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Major Major
    • 1.1.1.GA, 1.2.0.GA
    • None
    • None
    • None
    • 0
    • Release Notes
    • +
    • 2019.6, 2019.7

      Our current handling of network policies is that we on OpenShift 3.11 and higher, we cover the access to Zookeeper 2181 port is allowed from all namespaces from pods with label strimzi.io/kind=cluster-operator. However, it turns out that while the Kubernetes API in OCP 3.11 supports this, the network policy SDN plugin does not and that makes the whole thing not working.

      To work around this, we should just allow the access tot he 2181 port on OpenShift 3.11 from everywhere. The same should be done on earlier versions. On OpenShfit 4.0 and Kubernetes 1.11+ the network policy should be done as it is right now.

            Unassigned Unassigned
            scholzj JAkub Scholz
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: