Skip to content

LB seclist rules left behind #165

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
alapidas opened this issue Apr 2, 2018 · 1 comment
Closed

LB seclist rules left behind #165

alapidas opened this issue Apr 2, 2018 · 1 comment
Labels

Comments

@alapidas
Copy link
Contributor

alapidas commented Apr 2, 2018

I created a LoadBalancer type service and then deleted it, and I noticed that the stateless egress rules that were created on the LB subnet seclists got deleted and then reappeared.
Relevant logs:

I0402 18:48:30.998420       1 load_balancer.go:445] Attempting to delete load balancer with name `bdf3d284-36a5-11e8-a5f3-0a580aed15af`
E0402 18:48:31.389177       1 service_controller.go:749] Failed to process service. Retrying in 5s: delete security rules for listener TCP-80: update lb security list rules `ocid1.securitylist.oc1.phx.aaaaaaaalliqo2ohocxb3oawxghkmrsb26gblgr2was5iaw33scn2t4tnw6q` for subnet `ocid1.subnet.oc1.phx.aaaaaaaaufyo6huumzlfbaf2kdrtdwfyulihe6odifkassl3mepjsbcekxdq: Status: 412; Code: NoEtagMatch; OPC Request ID: /AE184863A1217FE084E136D2D4E8E963/CD15FC504BEC4BF482B19C3A8208E2DF; Message: Entity security list with ID ocid1.securitylist.oc1.phx.aaaaaaaalliqo2ohocxb3oawxghkmrsb26gblgr2was5iaw33scn2t4tnw6q has a computed tag of b3356ed2, but is passed a tag of 8e6004d
I0402 18:48:36.389414       1 service_controller.go:736] Service has been deleted default/frontend
I0402 18:48:36.389474       1 load_balancer.go:445] Attempting to delete load balancer with name `bdf3d284-36a5-11e8-a5f3-0a580aed15af`
E0402 18:48:36.924296       1 service_controller.go:749] Failed to process service. Retrying in 10s: delete security rules for listener TCP-80: update security list rules `ocid1.securitylist.oc1.phx.aaaaaaaaxwiklh7rmsnn4wbksnv5x7wvw3wsig6txg2ygls2wx2pnsu6zqqa` for subnet `ocid1.subnet.oc1.phx.aaaaaaaapfxdhtswa4265rvhzeq7nyu4fwtrr7vephrq7q6isvf2kkuprhya: Status: 412; Code: NoEtagMatch; OPC Request ID: /821DB232D4267D07E7AE0F103EC1719D/AFD00B4C385543B9A2B040649CB3B925; Message: Entity security list with ID ocid1.securitylist.oc1.phx.aaaaaaaaxwiklh7rmsnn4wbksnv5x7wvw3wsig6txg2ygls2wx2pnsu6zqqa has a computed tag of 30cd080f, but is passed a tag of 867d998a
I0402 18:48:46.924544       1 service_controller.go:736] Service has been deleted default/frontend
I0402 18:48:46.924621       1 load_balancer.go:445] Attempting to delete load balancer with name `bdf3d284-36a5-11e8-a5f3-0a580aed15af`
E0402 18:48:47.456545       1 service_controller.go:749] Failed to process service. Retrying in 20s: delete security rules for listener TCP-80: update security list rules `ocid1.securitylist.oc1.phx.aaaaaaaaxwiklh7rmsnn4wbksnv5x7wvw3wsig6txg2ygls2wx2pnsu6zqqa` for subnet `ocid1.subnet.oc1.phx.aaaaaaaapfxdhtswa4265rvhzeq7nyu4fwtrr7vephrq7q6isvf2kkuprhya: Status: 412; Code: NoEtagMatch; OPC Request ID: /E7764B2F9BB41FD6BF99F114072E721E/7394E983625444BDB6A167508B6C4D3C; Message: Entity security list with ID ocid1.securitylist.oc1.phx.aaaaaaaaxwiklh7rmsnn4wbksnv5x7wvw3wsig6txg2ygls2wx2pnsu6zqqa has a computed tag of 30cd080f, but is passed a tag of 37a6395d
I0402 18:49:07.456762       1 service_controller.go:736] Service has been deleted default/frontend
I0402 18:49:07.456825       1 load_balancer.go:445] Attempting to delete load balancer with name `bdf3d284-36a5-11e8-a5f3-0a580aed15af`
I0402 18:49:07.832354       1 load_balancer.go:503] Deleting load balancer `bdf3d284-36a5-11e8-a5f3-0a580aed15af` (OCID: `ocid1.loadbalancer.oc1.phx.aaaaaaaathjy26a3fsy4rgs4tdw55ft64upphluhcoa3c2t65negep2w3wzq`)
I0402 18:49:38.416139       1 load_balancer.go:515] Deleted load balancer `bdf3d284-36a5-11e8-a5f3-0a580aed15af` (OCID: `ocid1.loadbalancer.oc1.phx.aaaaaaaathjy26a3fsy4rgs4tdw55ft64upphluhcoa3c2t65negep2w3wzq`)
I0402 18:49:52.205899       1 load_balancer.go:409] Attempting to update load balancer 'bdf3d284-36a5-11e8-a5f3-0a580aed15af'
I0402 18:49:52.305883       1 load_balancer.go:173] Attempting to create a load balancer with name 'bdf3d284-36a5-11e8-a5f3-0a580aed15af'
I0402 18:50:27.165252       1 load_balancer.go:180] Created load balancer 'bdf3d284-36a5-11e8-a5f3-0a580aed15af' with OCID 'ocid1.loadbalancer.oc1.phx.aaaaaaaapzkll7gsmpbuqgvr5iboiy3qdd5ht4otbhb2273eu5yotwmv3rsq'
I0402 18:50:27.165380       1 load_balancer.go:287] Applying "create" action on backend set `TCP-80` for lb `ocid1.loadbalancer.oc1.phx.aaaaaaaapzkll7gsmpbuqgvr5iboiy3qdd5ht4otbhb2273eu5yotwmv3rsq`
E0402 18:50:27.493305       1 service_controller.go:656] External error while updating load balancer: error updating BackendSet: update lb security list rules `ocid1.securitylist.oc1.phx.aaaaaaaalliqo2ohocxb3oawxghkmrsb26gblgr2was5iaw33scn2t4tnw6q` for subnet `ocid1.subnet.oc1.phx.aaaaaaaaufyo6huumzlfbaf2kdrtdwfyulihe6odifkassl3mepjsbcekxdq: Status: 412; Code: NoEtagMatch; OPC Request ID: /C3DB578CDF99CC77382CA9CD6DDA93F0/BC71E5FE9F364FFAA9333E55C3E21288; Message: Entity security list with ID ocid1.securitylist.oc1.phx.aaaaaaaalliqo2ohocxb3oawxghkmrsb26gblgr2was5iaw33scn2t4tnw6q has a computed tag of 549d654c, but is passed a tag of aa4df6c7.
I0402 18:52:07.493520       1 load_balancer.go:409] Attempting to update load balancer 'bdf3d284-36a5-11e8-a5f3-0a580aed15af'
I0402 18:52:07.715104       1 load_balancer.go:287] Applying "create" action on backend set `TCP-80` for lb `ocid1.loadbalancer.oc1.phx.aaaaaaaapzkll7gsmpbuqgvr5iboiy3qdd5ht4otbhb2273eu5yotwmv3rsq`
E0402 18:52:08.788106       1 service_controller.go:656] External error while updating load balancer: error updating BackendSet: update security list rules `ocid1.securitylist.oc1.phx.aaaaaaaaxwiklh7rmsnn4wbksnv5x7wvw3wsig6txg2ygls2wx2pnsu6zqqa` for subnet `ocid1.subnet.oc1.phx.aaaaaaaaaixl2hprqjsgjrumwkjifxifgjizlemmmvccm5xl5rsh3hurd66q: Status: 412; Code: NoEtagMatch; OPC Request ID: /BC82BA52D8965BF0A3C0AD723080C6A8/A17130D749594197AEC15DC94BD37202; Message: Entity security list with ID ocid1.securitylist.oc1.phx.aaaaaaaaxwiklh7rmsnn4wbksnv5x7wvw3wsig6txg2ygls2wx2pnsu6zqqa has a computed tag of 9740d8fb, but is passed a tag of ecf16a76.
I0402 18:53:48.788278       1 load_balancer.go:409] Attempting to update load balancer 'bdf3d284-36a5-11e8-a5f3-0a580aed15af'
I0402 18:53:48.934804       1 load_balancer.go:287] Applying "create" action on backend set `TCP-80` for lb `ocid1.loadbalancer.oc1.phx.aaaaaaaapzkll7gsmpbuqgvr5iboiy3qdd5ht4otbhb2273eu5yotwmv3rsq`
I0402 18:54:13.640078       1 load_balancer.go:355] Applying "create" action on listener `TCP-80` for lb `ocid1.loadbalancer.oc1.phx.aaaaaaaapzkll7gsmpbuqgvr5iboiy3qdd5ht4otbhb2273eu5yotwmv3rsq`
E0402 18:54:14.563170       1 service_controller.go:656] External error while updating load balancer: error updating Listener: update lb security list rules `ocid1.securitylist.oc1.phx.aaaaaaaalliqo2ohocxb3oawxghkmrsb26gblgr2was5iaw33scn2t4tnw6q` for subnet `ocid1.subnet.oc1.phx.aaaaaaaaufyo6huumzlfbaf2kdrtdwfyulihe6odifkassl3mepjsbcekxdq: Status: 412; Code: NoEtagMatch; OPC Request ID: /7A7C56AC886B8986C024759171CCB754/9F554205E4764C6F913AF8CDE4F5FE2E; Message: Entity security list with ID ocid1.securitylist.oc1.phx.aaaaaaaalliqo2ohocxb3oawxghkmrsb26gblgr2was5iaw33scn2t4tnw6q has a computed tag of d90a5103, but is passed a tag of 2ebae27e.









I0402 18:55:54.563399       1 load_balancer.go:409] Attempting to update load balancer 'bdf3d284-36a5-11e8-a5f3-0a580aed15af'
I0402 18:55:55.125695       1 load_balancer.go:287] Applying "update" action on backend set `TCP-80` for lb `ocid1.loadbalancer.oc1.phx.aaaaaaaapzkll7gsmpbuqgvr5iboiy3qdd5ht4otbhb2273eu5yotwmv3rsq`
I0402 18:56:09.912107       1 load_balancer.go:355] Applying "create" action on listener `TCP-80` for lb `ocid1.loadbalancer.oc1.phx.aaaaaaaapzkll7gsmpbuqgvr5iboiy3qdd5ht4otbhb2273eu5yotwmv3rsq`
I0402 18:56:26.210940       1 load_balancer.go:217] Successfully ensured load balancer "bdf3d284-36a5-11e8-a5f3-0a580aed15af"
@prydie
Copy link
Contributor

prydie commented Apr 4, 2018

This was resolved in v0.3.0.

@prydie prydie closed this as completed Apr 4, 2018
l-technicore pushed a commit to l-technicore/oci-cloud-controller-manager that referenced this issue Jun 14, 2022
…m dockersca to internal

* commit '55f2bb00f937ca811bf654dd64e0b3ebb1330608':
  dockersca
  remove dockerfile from vendor folder
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants