Question: so that looks ok to me I'm wrong here. oh wait How are you validating it at the backend pod? looks like both paths should terminate on the backend.

Asked By
mauilion
Asked At
2018-05-11 17:45:43

Found 15 possible answers.

User Answered At Possible Answer
SLACK 2018-05-11 17:47:51 @aledbf commented on @hjimenez ’s file Untitled https://kubernetes.slack.com/files/U8ZK2R31N/FANAL5D99/-.txt : ok, it seems you are using annotations @aledbf commented on @hjimenez ’s file Untitled https://kubernetes.slack.com/files/U8ZK2R31N/FANAL5D99/-.txt : just in case the rewrites are case insensitive @aledbf commented on @hjimenez ’s file Untitled https://kubernetes.slack.com/files/U8ZK2R31N/FANAL5D99/-.txt : please post the real ingress @aledbf commented on @hjimenez ’s file Untitled https://kubernetes.slack.com/files/U8ZK2R31N/FANAL5D99/-.txt : and annotation snippet @aledbf commented on @hjimenez ’s file Untitled https://kubernetes.slack.com/files/U8ZK2R31N/FANAL5D99/-.txt : and rewrites
cbushko 2018-05-11 17:48:48 Does anyone have a basic setup/template/best practice for their cluster configuration that they like? I've been looking at: https://github.com/kubernetes/examples/tree/master/guestbook and KHs: https://github.com/kelseyhightower/helloworld-infrastructure-production
hjimenez 2018-05-11 17:55:19 @hjimenez uploaded a file: Untitled https://kubernetes.slack.com/files/U8ZK2R31N/FAPF5F58X/-.txt and commented: Heres the template I am using @aledbf
chancez 2018-05-11 17:56:18 weird issue..getting error: You must be logged in to the server (Unauthorized) when using kubectl logs though im an admin, my creds haven't changed, the clusterrolebinding exists, and everything else works, but logs...
SLACK 2018-05-11 17:57:19 @aledbf commented on @hjimenez ’s file Untitled https://kubernetes.slack.com/files/U8ZK2R31N/FAPF5F58X/-.txt : ok, what are you trying to achieve exactly?
chancez 2018-05-11 17:57:40 weirder is it's "you must be logged in" yet with verbose output, i see it's getting a response immediately before using the logs endpoint, (logs queries the pod then queryes the og sub rsource) only thing different is this namespace is newer... and....logs work on another namespace
mauilion 2018-05-11 18:00:57 smells dexy kind of
chancez 2018-05-11 18:02:29 dex isn't used in authz the token alone is enough to give identity and validate it.
mauilion 2018-05-11 18:02:50 https://github.com/kubernetes/kubernetes/blob/c3afbe845c18d37ee13714bca14bafb5af42b9de/pkg/kubectl/cmd/util/helpers.go#L200 maybe rbac? it's def api returning unauthorized
chancez 2018-05-11 18:03:20 im an admin
mauilion 2018-05-11 18:03:22 is your admin rolebinding namespaces?
chancez 2018-05-11 18:03:24 i can query in other namespaces. i can do everything in all namespaces, and only this namespace has an issue and its only an issue with one thing and it's logs.
mauilion 2018-05-11 18:03:50 are an admin or a cluster-admin?
chancez 2018-05-11 18:03:53 later
mauilion 2018-05-11 18:04:04 and is the binding a clusterrolebinding or a rolebinding?

Related Questions