Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependency uprade to 1.25 #67

Merged
merged 6 commits into from
Nov 23, 2022
Merged

Dependency uprade to 1.25 #67

merged 6 commits into from
Nov 23, 2022

Conversation

ambiknai
Copy link
Member

Signed-off-by: Ambika Nair ambiknai@in.ibm.com

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>
@ambiknai
Copy link
Member Author

ambiknai commented Nov 21, 2022

Events:
  Type    Reason          Age   From               Message
  ----    ------          ----  ----               -------
  Normal  Scheduled       17s   default-scheduler  Successfully assigned kube-system/ibm-vpc-block-csi-controller-0 to 10.240.64.35
  Normal  AddedInterface  17s   multus             Add eth0 [172.22.137.141/32] from k8s-pod-network
  Normal  Pulling         17s   kubelet            Pulling image "k8s.gcr.io/sig-storage/csi-snapshotter:v6.1.0"
  Normal  Pulled          16s   kubelet            Successfully pulled image "k8s.gcr.io/sig-storage/csi-snapshotter:v6.1.0" in 816.591928ms
  Normal  Created         16s   kubelet            Created container csi-snapshotter
  Normal  Started         16s   kubelet            Started container csi-snapshotter
  Normal  Pulling         16s   kubelet            Pulling image "k8s.gcr.io/sig-storage/csi-provisioner:v3.3.0"
  Normal  Pulled          15s   kubelet            Successfully pulled image "k8s.gcr.io/sig-storage/csi-provisioner:v3.3.0" in 909.001587ms
  Normal  Created         15s   kubelet            Created container csi-provisioner
  Normal  Started         15s   kubelet            Started container csi-provisioner
  Normal  Pulling         15s   kubelet            Pulling image "k8s.gcr.io/sig-storage/csi-attacher:v4.0.0"
  Normal  Pulled          14s   kubelet            Successfully pulled image "k8s.gcr.io/sig-storage/csi-attacher:v4.0.0" in 1.013998586s
  Normal  Created         13s   kubelet            Created container csi-attacher
  Normal  Pulling         13s   kubelet            Pulling image "k8s.gcr.io/sig-storage/csi-resizer:v1.6.0"
  Normal  Started         13s   kubelet            Started container csi-attacher
  Normal  Pulled          12s   kubelet            Successfully pulled image "k8s.gcr.io/sig-storage/csi-resizer:v1.6.0" in 820.895865ms
  Normal  Created         11s   kubelet            Created container csi-resizer
  Normal  Started         11s   kubelet            Started container csi-resizer
  Normal  Pulled          11s   kubelet            Container image "k8s.gcr.io/sig-storage/livenessprobe:v2.8.0" already present on machine
  Normal  Created         11s   kubelet            Created container liveness-probe
  Normal  Started         10s   kubelet            Started container liveness-probe
  Normal  Pulling         10s   kubelet            Pulling image "ambikanair/ibm-vpc-block-csi-driver:thelatest"
  Normal  Pulled          9s    kubelet            Successfully pulled image "ambikanair/ibm-vpc-block-csi-driver:thelatest" in 1.157464365s
  Normal  Created         9s    kubelet            Created container iks-vpc-block-driver
  Normal  Started         9s    kubelet            Started container iks-vpc-block-driver
  Normal  Pulling         9s    kubelet            Pulling image "ambikanair/armada-storage-secret:latest"
  Normal  Pulled          8s    kubelet            Successfully pulled image "ambikanair/armada-storage-secret:latest" in 992.057015ms
➜  demo 
➜  demo 
➜  demo oc get pods -n kube-system | grep block                       
ibm-vpc-block-csi-controller-0          7/7     Running   0          25s
ibm-vpc-block-csi-node-2xcft            4/4     Running   0          26s
ibm-vpc-block-csi-node-ndlrz            4/4     Running   0          26s
ibm-vpc-block-csi-node-pnpsb            4/4     Running   0          26s
➜  demo oc get pvc
NAME           STATUS   VOLUME                                     CAPACITY   ACCESS MODES   STORAGECLASS              AGE
myvirtualpvc   Bound    pvc-ce66c3b9-4a45-46fd-9bea-28cf54a8bf2f   20Gi       RWX            ibmc-s3fs-cold-regional   86m
➜  demo oc create -f pvc.yaml 
persistentvolumeclaim/csi-block-pvc-custom-one created
➜  demo oc get pvc
NAME                       STATUS   VOLUME                                     CAPACITY   ACCESS MODES   STORAGECLASS                AGE
csi-block-pvc-custom-one   Bound    pvc-19376e0e-c123-4ba1-9530-24eddb8b1cd6   10Gi       RWO            ibmc-vpc-block-5iops-tier   21s
myvirtualpvc               Bound    pvc-ce66c3b9-4a45-46fd-9bea-28cf54a8bf2f   20Gi       RWX            ibmc-s3fs-cold-regional     86m
➜  demo oc create -f pod.yaml 
Warning: would violate PodSecurity "restricted:latest": allowPrivilegeEscalation != false (container "container-name" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container "container-name" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "container-name" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "container-name" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
deployment.apps/testcustom created
➜  demo oc get pods
NAME                         READY   STATUS    RESTARTS   AGE
pod-devtest-two              1/1     Running   0          88m
testcustom-cfd587b66-vls4z   1/1     Running   0          112s
➜  demo oc create -f volumeSnapshot.yaml 
volumesnapshot.snapshot.storage.k8s.io/snapshot-csi-block-6 created
➜  demo oc get volumesnapshots
NAME                   READYTOUSE   SOURCEPVC                  SOURCESNAPSHOTCONTENT   RESTORESIZE   SNAPSHOTCLASS            SNAPSHOTCONTENT                                    CREATIONTIME   AGE
snapshot-csi-block-6   false        csi-block-pvc-custom-one                           1Gi           ibmc-vpcblock-snapshot   snapcontent-578e9fd3-cdd4-4d58-9d4b-7bce3337ebe7   6s             8s
➜  demo oc get volumesnapshots
NAME                   READYTOUSE   SOURCEPVC                  SOURCESNAPSHOTCONTENT   RESTORESIZE   SNAPSHOTCLASS            SNAPSHOTCONTENT                                    CREATIONTIME   AGE
snapshot-csi-block-6   false        csi-block-pvc-custom-one                           1Gi           ibmc-vpcblock-snapshot   snapcontent-578e9fd3-cdd4-4d58-9d4b-7bce3337ebe7   16s            18s
➜  demo oc get volumesnapshots
NAME                   READYTOUSE   SOURCEPVC                  SOURCESNAPSHOTCONTENT   RESTORESIZE   SNAPSHOTCLASS            SNAPSHOTCONTENT                                    CREATIONTIME   AGE
snapshot-csi-block-6   true         csi-block-pvc-custom-one                           1Gi           ibmc-vpcblock-snapshot   snapcontent-578e9fd3-cdd4-4d58-9d4b-7bce3337ebe7   26s            28s
➜  demo oc create -f snapvol.yaml 
persistentvolumeclaim/restore-pvc1 created
➜  demo oc edit pvc csi-block-pvc-custom-one
persistentvolumeclaim/csi-block-pvc-custom-one edited
➜  demo oc get pvc
NAME                       STATUS   VOLUME                                     CAPACITY   ACCESS MODES   STORAGECLASS                AGE
csi-block-pvc-custom-one   Bound    pvc-19376e0e-c123-4ba1-9530-24eddb8b1cd6   10Gi       RWO            ibmc-vpc-block-5iops-tier   3m38s
myvirtualpvc               Bound    pvc-ce66c3b9-4a45-46fd-9bea-28cf54a8bf2f   20Gi       RWX            ibmc-s3fs-cold-regional     90m
restore-pvc1               Bound    pvc-6d0ade67-d414-4023-817d-c4859155ac0b   100Gi      RWO            ibmc-vpc-block-5iops-tier   24s
➜  demo oc create -f podt
error: the path "podt" does not exist
➜  demo oc create -f podtwo.yaml 
Warning: would violate PodSecurity "restricted:latest": allowPrivilegeEscalation != false (container "container-name" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container "container-name" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "container-name" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "container-name" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
deployment.apps/podtwo created
➜  demo oc get pods
NAME                         READY   STATUS              RESTARTS   AGE
pod-devtest-two              1/1     Running             0          89m
podtwo-59f696d697-wwc74      0/1     ContainerCreating   0          11s
testcustom-cfd587b66-vls4z   1/1     Running             0          3m34s
➜  demo oc get pods
NAME                         READY   STATUS              RESTARTS   AGE
pod-devtest-two              1/1     Running             0          89m
podtwo-59f696d697-wwc74      0/1     ContainerCreating   0          15s
testcustom-cfd587b66-vls4z   1/1     Running             0          3m38s
➜  demo oc get pods
NAME                         READY   STATUS              RESTARTS   AGE
pod-devtest-two              1/1     Running             0          89m
podtwo-59f696d697-wwc74      0/1     ContainerCreating   0          18s
testcustom-cfd587b66-vls4z   1/1     Running             0          3m41s
➜  demo 
NAME                       STATUS   VOLUME                                     CAPACITY   ACCESS MODES   STORAGECLASS                AGE
csi-block-pvc-custom-one   Bound    pvc-19376e0e-c123-4ba1-9530-24eddb8b1cd6   20Gi       RWO            ibmc-vpc-block-5iops-tier   7m31s
myvirtualpvc               Bound    pvc-ce66c3b9-4a45-46fd-9bea-28cf54a8bf2f   20Gi       RWX            ibmc-s3fs-cold-regional     94m
restore-pvc1               Bound    pvc-6d0ade67-d414-4023-817d-c4859155ac0b   100Gi      RWO            ibmc-vpc-block-5iops-tier   4m17s
➜  demo oc get pods
NAME                         READY   STATUS    RESTARTS   AGE
pod-devtest-two              1/1     Running   0          93m
podtwo-59f696d697-wwc74      1/1     Running   0          3m53s
testcustom-cfd587b66-vls4z   1/1     Running   0          7m16s
➜  demo 

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>
@ambiknai
Copy link
Member Author

➜  demo oc get pods
NAME                         READY   STATUS    RESTARTS   AGE
pod-devtest-two              1/1     Running   0          93m
podtwo-59f696d697-wwc74      1/1     Running   0          3m53s
testcustom-cfd587b66-vls4z   1/1     Running   0          7m16s
➜  demo oc delete -f pod.yaml 
deployment.apps "testcustom" deleted
➜  demo oc delete -f podtwo.yaml 
deployment.apps "podtwo" deleted
➜  demo oc delete -f pvc.yaml   
persistentvolumeclaim "csi-block-pvc-custom-one" deleted
➜  demo oc delete -f snapvol.yaml 
persistentvolumeclaim "restore-pvc1" deleted
➜  demo oc delete -f volumeSnapshot.yaml 
volumesnapshot.snapshot.storage.k8s.io "snapshot-csi-block-6" deleted
➜  demo oc create -f pvc.yaml 
persistentvolumeclaim/csi-block-pvc-custom-one created
➜  demo oc create -f pod.yaml 
Warning: would violate PodSecurity "restricted:latest": allowPrivilegeEscalation != false (container "container-name" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container "container-name" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "container-name" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "container-name" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
deployment.apps/testcustom created
➜  demo oc get pods
NAME                         READY   STATUS    RESTARTS   AGE
pod-devtest-two              1/1     Running   0          96m
testcustom-cfd587b66-6c44t   1/1     Running   0          38s
➜  demo oc exec -it testcustom-cfd587b66-6c44t   /bin/bash
kubectl exec [POD] [COMMAND] is DEPRECATED and will be removed in a future version. Use kubectl exec [POD] -- [COMMAND] instead.
root@testcustom-cfd587b66-6c44t:/# cd /m
bash: cd: /m: No such file or directory
root@testcustom-cfd587b66-6c44t:/# cd /myvolumepath/
root@testcustom-cfd587b66-6c44t:/myvolumepath# echo "new" > hi.txt
root@testcustom-cfd587b66-6c44t:/myvolumepath# exit
exit
➜  demo oc create -f volumeSnapshot.yaml 
volumesnapshot.snapshot.storage.k8s.io/snapshot-csi-block-6 created
➜  demo oc create -f snapvol.yaml 
persistentvolumeclaim/restore-pvc1 created
➜  demo oc create -f podtwo.yaml 
Warning: would violate PodSecurity "restricted:latest": allowPrivilegeEscalation != false (container "container-name" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container "container-name" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "container-name" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "container-name" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
deployment.apps/podtwo created
➜  demo oc get pods
oc exec -it NAME                         READY   STATUS    RESTARTS   AGE
pod-devtest-two              1/1     Running   0          102m
podtwo-59f696d697-kxt5t      1/1     Running   0          2m27s
testcustom-cfd587b66-6c44t   1/1     Running   0          7m16s
➜  demo oc exec -it podtwo-59f696d697-kxt5t /bin/bash
kubectl exec [POD] [COMMAND] is DEPRECATED and will be removed in a future version. Use kubectl exec [POD] -- [COMMAND] instead.
root@podtwo-59f696d697-kxt5t:/# ls /myvolumepath/
hi.txt	lost+found
root@podtwo-59f696d697-kxt5t:/# exit
exit
➜  demo 

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>
Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>
Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>
Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>
@ambiknai
Copy link
Member Author

@ambiknai ambiknai merged commit 824b22d into master Nov 23, 2022
@ambiknai ambiknai deleted the new125latest branch April 25, 2023 05:57
sameshai pushed a commit that referenced this pull request Sep 8, 2023
* Dependency uprade to 1.25

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>

* ugrade 1.25

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>

* go mod version

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>

* Fix e2d

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>

* Fix e2e

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>

* Fix e2e

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>

Signed-off-by: Ambika Nair <ambiknai@in.ibm.com>
Signed-off-by: Sameer Shaikh <sameer.shaikh@ibm.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants