Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- [root@dbaasjump002 deploy]# kubectl get all -n possu2
- NAME READY STATUS RESTARTS AGE
- pod/pgo-deploy-lp5td 0/1 Completed 0 63m
- pod/postgres-operator-6d8c847594-skhwd 4/4 Running 0 62m
- NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S) AGE
- service/postgres-operator ClusterIP 10.255.17.139 <none> 8443/TCP,4171/TCP,4150/TCP 63m
- NAME READY UP-TO-DATE AVAILABLE AGE
- deployment.apps/postgres-operator 1/1 1 1 62m
- NAME DESIRED CURRENT READY AGE
- replicaset.apps/postgres-operator-6d8c847594 1 1 1 62m
- NAME COMPLETIONS DURATION AGE
- job.batch/pgo-deploy 1/1 56s 63m
- Logs (or some of the latest rows) from operator "kubectl logs postgres-operator-6d8c847594-skhwd operator -n possu2":
- time="2021-12-01T07:24:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource pods in the Core API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:370" version=0.2.0
- time="2021-12-01T07:24:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource jobs in the Batch API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:382" version=0.2.0
- time="2021-12-01T07:24:56Z" level=error msg="Namespace Controller: error syncing Namespace 'possu2': Controller Manager: cannot start controller group for namespace possu2 because it does not have the required privs, will attempt to start on the next ns refresh interval" func="github.com/percona/percona-postgresql-operator/internal/controller/namespace.(*Controller).processNextWorkItem()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/namespace/namespacecontroller.go:151" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: serviceaccounts is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot create resource \"serviceaccounts\" in API group \"\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileServiceAccounts()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:132" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: serviceaccounts is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot create resource \"serviceaccounts\" in API group \"\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileServiceAccounts()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:132" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: serviceaccounts is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot create resource \"serviceaccounts\" in API group \"\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileServiceAccounts()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:132" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: serviceaccounts is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot create resource \"serviceaccounts\" in API group \"\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileServiceAccounts()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:132" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: roles.rbac.authorization.k8s.io \"pgo-pg-role\" is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot get resource \"roles\" in API group \"rbac.authorization.k8s.io\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileRoles()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:95" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: roles.rbac.authorization.k8s.io \"pgo-target-role\" is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot get resource \"roles\" in API group \"rbac.authorization.k8s.io\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileRoles()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:95" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: roles.rbac.authorization.k8s.io \"pgo-backrest-role\" is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot get resource \"roles\" in API group \"rbac.authorization.k8s.io\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileRoles()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:95" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: rolebindings.rbac.authorization.k8s.io \"pgo-backrest-role-binding\" is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot get resource \"rolebindings\" in API group \"rbac.authorization.k8s.io\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileRoleBindings()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:112" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: rolebindings.rbac.authorization.k8s.io \"pgo-pg-role-binding\" is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot get resource \"rolebindings\" in API group \"rbac.authorization.k8s.io\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileRoleBindings()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:112" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="operator is unable to reconcile RBAC resource: rolebindings.rbac.authorization.k8s.io \"pgo-target-role-binding\" is forbidden: User \"system:serviceaccount:possu2:postgres-operator\" cannot get resource \"rolebindings\" in API group \"rbac.authorization.k8s.io\" in the namespace \"possu2\"" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).reconcileRoleBindings()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/rbac.go:112" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource pgtasks in the pg.percona.com API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:357" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource pgclusters in the pg.percona.com API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:357" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource pgreplicas in the pg.percona.com API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:357" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource pgpolicies in the pg.percona.com API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:357" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource pods in the Core API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:370" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="Controller Manager: Controller Group for namespace possu2 does not have the required list privileges for resource jobs in the Batch API" func="github.com/percona/percona-postgresql-operator/internal/controller/manager.(*ControllerManager).hasListerPrivs()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/manager/controllermanager.go:382" version=0.2.0
- time="2021-12-01T07:25:56Z" level=error msg="Namespace Controller: error syncing Namespace 'possu2': Controller Manager: cannot start controller group for namespace possu2 because it does not have the required privs, will attempt to start on the next ns refresh interval" func="github.com/percona/percona-postgresql-operator/internal/controller/namespace.(*Controller).processNextWorkItem()" file="/go/src/github.com/percona/percona-postgresql-operator/internal/controller/namespace/namespacecontroller.go:151" version=0.2.0
- Detailed information about cluster:
- [root@dbaasjump002 deploy]# kubectl describe PerconaPGCluster cluster1 -n possu2
- Name: cluster1
- Namespace: possu2
- Labels: crunchy-pgha-scope=cluster1
- deployment-name=cluster1
- name=cluster1
- pg-cluster=cluster1
- pgo-version=1.0.0
- pgouser=admin
- Annotations: current-primary: cluster1
- API Version: pg.percona.com/v1
- Kind: PerconaPGCluster
- Metadata:
- Creation Timestamp: 2021-12-01T06:24:02Z
- Generation: 1
- Managed Fields:
- API Version: pg.percona.com/v1
- Fields Type: FieldsV1
- fieldsV1:
- f:metadata:
- f:annotations:
- .:
- f:current-primary:
- f:kubectl.kubernetes.io/last-applied-configuration:
- f:labels:
- .:
- f:crunchy-pgha-scope:
- f:deployment-name:
- f:name:
- f:pg-cluster:
- f:pgo-version:
- f:pgouser:
- f:spec:
- .:
- f:backup:
- .:
- f:backrestRepoImage:
- f:image:
- f:resources:
- .:
- f:requests:
- .:
- f:memory:
- f:schedule:
- f:volumeSpec:
- .:
- f:accessmode:
- f:size:
- f:storageclass:
- f:storagetype:
- f:database:
- f:disableAutofail:
- f:namespace:
- f:pause:
- f:pgBadger:
- .:
- f:enabled:
- f:image:
- f:port:
- f:pgBouncer:
- .:
- f:expose:
- .:
- f:serviceType:
- f:image:
- f:resources:
- .:
- f:limits:
- .:
- f:cpu:
- f:memory:
- f:requests:
- .:
- f:cpu:
- f:memory:
- f:size:
- f:pgPrimary:
- .:
- f:expose:
- .:
- f:serviceType:
- f:image:
- f:resources:
- .:
- f:requests:
- .:
- f:memory:
- f:tolerations:
- f:volumeSpec:
- .:
- f:accessmode:
- f:size:
- f:storageclass:
- f:storagetype:
- f:pgReplicas:
- .:
- f:hotStandby:
- .:
- f:enableSyncStandby:
- f:expose:
- .:
- f:serviceType:
- f:resources:
- .:
- f:requests:
- .:
- f:memory:
- f:size:
- f:volumeSpec:
- .:
- f:accessmode:
- f:size:
- f:storageclass:
- f:storagetype:
- f:pmm:
- .:
- f:enabled:
- f:image:
- f:pmmSecret:
- f:resources:
- .:
- f:requests:
- .:
- f:cpu:
- f:memory:
- f:serverHost:
- f:serverUser:
- f:port:
- f:standby:
- f:tlsOnly:
- f:user:
- f:userLabels:
- .:
- f:pgo-version:
- Manager: kubectl-client-side-apply
- Operation: Update
- Time: 2021-12-01T06:24:02Z
- Resource Version: 3438312
- UID: 11785a67-e02d-4ae2-add0-a0105cc821c0
- Spec:
- Backup:
- Backrest Repo Image: percona/percona-postgresql-operator:1.0.0-ppg13-pgbackrest-repo
- Image: percona/percona-postgresql-operator:1.0.0-ppg13-pgbackrest
- Resources:
- Requests:
- Memory: 48Mi
- Schedule:
- Keep: 3
- Name: sat-night-backup
- Schedule: 0 0 * * 6
- Storage: local
- Type: full
- Volume Spec:
- Accessmode: ReadWriteOnce
- Size: 1G
- Storageclass:
- Storagetype: dynamic
- Database: pgdb
- Disable Autofail: false
- Namespace: possu2
- Pause: false
- Pg Badger:
- Enabled: false
- Image: percona/percona-postgresql-operator:1.0.0-ppg13-pgbadger
- Port: 10000
- Pg Bouncer:
- Expose:
- Service Type: ClusterIP
- Image: percona/percona-postgresql-operator:1.0.0-ppg13-pgbouncer
- Resources:
- Limits:
- Cpu: 2
- Memory: 512Mi
- Requests:
- Cpu: 1
- Memory: 128Mi
- Size: 1
- Pg Primary:
- Expose:
- Service Type: ClusterIP
- Image: percona/percona-postgresql-operator:1.0.0-ppg13-postgres-ha
- Resources:
- Requests:
- Memory: 128Mi
- Tolerations:
- Volume Spec:
- Accessmode: ReadWriteOnce
- Size: 1G
- Storageclass:
- Storagetype: dynamic
- Pg Replicas:
- Hot Standby:
- Enable Sync Standby: false
- Expose:
- Service Type: ClusterIP
- Resources:
- Requests:
- Memory: 128Mi
- Size: 2
- Volume Spec:
- Accessmode: ReadWriteOnce
- Size: 1G
- Storageclass:
- Storagetype: dynamic
- Pmm:
- Enabled: false
- Image: percona/pmm-client:2.15.1
- Pmm Secret: cluster1-pmm-secret
- Resources:
- Requests:
- Cpu: 500m
- Memory: 200M
- Server Host: monitoring-service
- Server User: admin
- Port: 5432
- Standby: false
- Tls Only: false
- User: pguser
- User Labels:
- Pgo - Version: 1.0.0
- Events: <none>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement