2 years ago

#42760

test-img

Neoneuron

Cert-manager and Ingress pods in Crash loop back off (AKS)

I was trying to upgrade the kubernetes version of our cluster from 1.19.7 to 1.22 and some of the worker nodes failed in updating so I restarted the cluster. After restarting the upgrade was successful but Cert-manager-webhook and Cert-manager-cainjector pods went down along with the ingress pods. i.e. they are either in crashloopbackoff state or error state

after checking the logs,

The cert-manager-webhook is throwing this error - "msg"="Failed to generate initial serving certificate, retrying..." "error"="failed verifying CA keypair: tls: failed to find any PEM data in certificate input"  "interval"=1000000000        
"msg"="Generating new ECDSA private key"

 

The cert-manager-cainjector is throwing this error-  cert-manager/controller-runtime/manager "msg"="Failed to get API Group-Resources" "error"="an error on the server (\"\") has prevented the request from succeeding"

 

The nginx-ingress pod is throwing this error - SSL certificate chain completion is disabled (--enable-ssl-chain-completion=false) 

Can anyone please help?

kubernetes

azure-aks

kubernetes-pod

nginx-ingress

cert-manager

0 Answers

Your Answer

Accepted video resources