sighupio/permission-manager

x509: cannot validate certificate for 10.255.0.1 because it doesn't contain any IP SANs

menkeyi opened this issue · 1 comments

[root@master01 kubernetes]# kubectl describe pod -n permission-manager
Warning FailedCreatePodSandBox 20s kubelet Failed to create pod sandbox: rpc error: code = Unknown desc = [failed to set up sandbox container "e3bad963c494ae17bcb007fa366cd47ca6a03026fec11cedc7a2bb17311f334d" network for pod "permission-manager-7cd5f4f6b8-5rzx4": networkPlugin cni failed to set up pod "permission-manager-7cd5f4f6b8-5rzx4_permission-manager" network: error getting ClusterInformation: Get https://[10.255.0.1]:443/apis/crd.projectcalico.org/v1/clusterinformations/default: x509: cannot validate certificate for 10.255.0.1 because it doesn't contain any IP SANs, failed to clean up sandbox container "e3bad963c494ae17bcb007fa366cd47ca6a03026fec11cedc7a2bb17311f334d" network for pod "permission-manager-7cd5f4f6b8-5rzx4": networkPlugin cni failed to teardown pod "permission-manager-7cd5f4f6b8-5rzx4_permission-manager" network: error getting ClusterInformation: Get https://[10.255.0.1]:443/apis/crd.projectcalico.org/v1/clusterinformations/default: x509: cannot validate certificate for 10.255.0.1 because it doesn't contain any IP SANs]

How to deal with it ?

Hi @menkeyi
This doesn't seem to be a problem with Permission Manager, but with your cluster's CNI (calico) or with your worker node.