square-laptop-45713
01/10/2023, 6:53 PMSecret
s used for encryption and mounts those as volumes. At some point during an update, the `Secret`s are no longer in the k8s cluster but Pulumi believes they are. These missing `Secret`s are preventing pods from starting and the pods are stuck in the creation state (ContainerCreating
or CreateContainerConfigError
). I’ve attempted refreshing multiple times and Pulumi still believes these `Secret`s are there and are never updated in the state. I did find these entries in the job run logs from a job I ran to Preview stack changes a few hours ago (we’re using GH Actions):
-- kubernetes:core/v1:Secret ***/***-dev-***-jobservice delete original
+- kubernetes:core/v1:Secret ***/***-dev-***-jobservice replace [diff: ~data]
++ kubernetes:core/v1:Secret ***/***-dev-***-jobservice create replacement [diff: ~data]
kubernetes:core/v1:Secret ***/***-dev-***-trivy
-- kubernetes:core/v1:Secret ***/***-dev-***-registry delete original
+- kubernetes:core/v1:Secret ***/***-dev-***-registry replace [diff: ~data]
++ kubernetes:core/v1:Secret ***/***-dev-***-registry create replacement [diff: ~data]
kubernetes:core/v1:ConfigMap ***/***-dev-***-core
-- kubernetes:core/v1:Secret ***/***-dev-***-core delete original
+- kubernetes:core/v1:Secret ***/***-dev-***-core replace [diff: ~data]
++ kubernetes:core/v1:Secret ***/***-dev-***-core create replacement [diff: ~data]
the -dev-***-trivy
is the only Secret
that remains in the cluster~ kubernetes:core/v1:Secret ***/***-dev-***-jobservice refreshing (0s)
kubernetes:core/v1:Secret ***/***-dev-***-jobservice (0.00s)
~ kubernetes:core/v1:ConfigMap monitoring/prometheus-server refreshing (0s)
kubernetes:core/v1:ConfigMap monitoring/prometheus-server (0.00s)
~ kubernetes:core/v1:Secret ***/***-dev-***-core refreshing (0s)
kubernetes:core/v1:Secret ***/***-dev-***-core (0.00s)
~ kubernetes:core/v1:Secret ***/***-dev-***-registry refreshing (0s)
kubernetes:core/v1:Secret ***/***-dev-***-registry (0.00s)
@ Refreshing....
kubernetes:core/v1:ConfigMap ***/***-dev-***-registry (8s)
kubernetes:core/v1:Secret ***/***-dev-***-trivy (9s)
kubernetes:core/v1:ConfigMap ***/***-dev-***-jobservice-env (9s)
billowy-army-68599
01/10/2023, 7:49 PMsquare-laptop-45713
01/10/2023, 7:50 PMbillowy-army-68599
01/10/2023, 7:52 PMsquare-laptop-45713
01/10/2023, 7:58 PMkubectl apply
billowy-army-68599
01/10/2023, 8:03 PMhelm.Release
or helm.Chart
?square-laptop-45713
01/10/2023, 8:07 PMhelm.Chart
helm.Release
is delegating to the helm binaryhelm.Chart
to a helm.Release
in my IaC it will redeploy everything?