Open kristeey opened 3 weeks ago
Hey,
I'm trying to install the azure defender extension in the azure arc enabled cluster( the cluster is from AWS EKS) , I get the error while installing it:
Error:
60m (x3 over 60m) Warning Failed Pod/microsoft-defender-collectors-sf9bk Error: failed to create containerd task: failed to create shim task: OCI runtime create failed: runc create failed: unable to start container process: error during container init: write /proc/self/attr/keycreate: invalid argument: unknown
More events from the namespace mdc:
60m Normal Pulled Pod/microsoft-defender-publisher-gzsbg Container image "mcr.microsoft.com/azuredefender/stable/security-publisher:1.0.102" already present on machine
60m (x3 over 60m) Normal Pulled Pod/microsoft-defender-collectors-sf9bk Container image "mcr.microsoft.com/azuredefender/stable/low-level-collector:2.0.40" already present on machine
60m (x3 over 60m) Normal Created Pod/microsoft-defender-collectors-sf9bk Created container pod-collector
60m (x3 over 60m) Normal Started Pod/microsoft-defender-collectors-sf9bk Started container pod-collector
60m (x3 over 60m) Warning Failed Pod/microsoft-defender-collectors-sf9bk Error: failed to create containerd task: failed to create shim task: OCI runtime create failed: runc create failed: unable to start container process: error during container init: write /proc/self/attr/keycreate: invalid argument: unknown
60m (x3 over 60m) Normal Created Pod/microsoft-defender-collectors-sf9bk Created container low-level-collector
60m (x3 over 60m) Normal Pulled Pod/microsoft-defender-collectors-s84bg Container image "mcr.microsoft.com/azuredefender/stable/pod-collector:1.0.98" already present on machine
60m (x3 over 60m) Warning Failed Pod/microsoft-defender-collectors-s84bg Error: failed to create containerd task: failed to create shim task: OCI runtime create failed: runc create failed: unable to start container process: error during container init: write /proc/self/attr/keycreate: invalid argument: unknown
60m (x3 over 60m) Normal Created Pod/microsoft-defender-collectors-s84bg Created container low-level-collector
60m (x3 over 60m) Normal Pulled Pod/microsoft-defender-collectors-s84bg Container image "mcr.microsoft.com/azuredefender/stable/low-level-collector:2.0.40" already present on machine
● Container microsoft-defender-low-level-collector
Kubernetes Version: v1.29.0-eks-a5ec690 Amazon EKS Cluster.
Describe the bug
microsoft-defender-low-level-collector
crashloops and restarts sporadically after auto-upgrading cluster to 1.29.2.Expected behavior no crashloop and unespected restarts due to goroutine panic.
Screenshots Crash Info ● Container
microsoft-defender-low-level-collector
● Restarts 380 ● Status WAITING ● Reason CrashLoopBackOff Previous Container ● Status TERMINATED ● Reason Error ● Started at2024-04-25T11:44:58Z
● Finished at2024-04-25T11:46:38Z
Logs from
microsoft-defender-low-level-collector
containerEnvironment (please complete the following information):