Skip to content

Instantly share code, notes, and snippets.

@asychev
Created September 9, 2020 13:22
Show Gist options
  • Save asychev/7e857eea33db6bbd96ae211cfa9250b4 to your computer and use it in GitHub Desktop.
Save asychev/7e857eea33db6bbd96ae211cfa9250b4 to your computer and use it in GitHub Desktop.
terraform kubernetes provider kubernetes_pod_security_policy/allowed_host_paths bug
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: 2020/09/09 15:14:36 [INFO] Updating PodSecurityPolicy "psp.restricted": [{"path":"/spec/allowedHostPaths","value":[{"path_prefix":"/var/run/sds","read_only":true}],"op":"replace"}]
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: 2020/09/09 15:14:36 [DEBUG] Kubernetes API Request Details:
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: ---[ REQUEST ]---------------------------------------
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: PATCH /apis/policy/v1beta1/podsecuritypolicies/psp.restricted HTTP/1.1
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Host: [REDACTED]
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: User-Agent: HashiCorp/1.0 Terraform/0.12.29
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Content-Length: 108
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Accept: application/json, */*k
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Content-Type: application/json-patch+json
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Accept-Encoding: gzip
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4:
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: [
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: {
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "path": "/spec/allowedHostPaths",
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "value": [
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: {
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "path_prefix": "/var/run/sds",
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "read_only": true
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: }
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: ],
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "op": "replace"
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: }
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: ]
2020-09-09T15:14:36.096+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: -----------------------------------------------------
2020-09-09T15:14:36.302+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: 2020/09/09 15:14:36 [DEBUG] Kubernetes API Response Details:
2020-09-09T15:14:36.302+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: ---[ RESPONSE ]--------------------------------------
2020-09-09T15:14:36.302+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: HTTP/2.0 422 Unprocessable Entity
2020-09-09T15:14:36.302+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Content-Length: 429
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Audit-Id: [REDACTED]
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Content-Type: application/json
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: Date: Wed, 09 Sep 2020 13:14:36 GMT
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4:
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: {
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "kind": "Status",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "apiVersion": "v1",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "metadata": {},
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "status": "Failure",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "message": "PodSecurityPolicy.extensions \"psp.restricted\" is invalid: spec.allowedHostPaths[0]: Required value: is required",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "reason": "Invalid",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "details": {
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "name": "psp.restricted",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "group": "extensions",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "kind": "PodSecurityPolicy",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "causes": [
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: {
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "reason": "FieldValueRequired",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "message": "Required value: is required",
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "field": "spec.allowedHostPaths[0]"
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: }
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: ]
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: },
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: "code": 422
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: }
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4:
2020-09-09T15:14:36.303+0200 [DEBUG] plugin.terraform-provider-kubernetes_v1.11.4_x4: -----------------------------------------------------
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment