Azure / AKS

Azure Kubernetes Service
https://azure.github.io/AKS/
1.97k stars 309 forks source link

[BUG] Microsoft defender publisher ds crashloopbackoff - Failed to register a new certificate with TLS12 #4660

Closed andrewkreuzer closed 1 week ago

andrewkreuzer commented 1 week ago

Describe the bug After the last node image upgrade AKSAzureLinux-V2gen2-202410.27.0 the Microsoft defender pods have begun crash looping due to failures trying to register a new certificate.

level=error msg="Failed to register a new certificate with TLS12, error: Post \"https://2afcbb8f-59c4-48eb-a785-c450244fcc84.oms.opinsights.azure.com/AgentService.svc/LinuxAgentTopologyRequest\": http: ContentLength=1860 with Body length 0" time="2024-11-17T15:20:04Z" level=error msg="error encountered during client initializationPost \"https://2afcbb8f-59c4-48eb-a785-c450244fcc84.oms.opinsights.azure.com/AgentService.svc/LinuxAgentTopologyRequest\": http: ContentLength=1860 with Body length 0"
panic: Error encountered during client initialization Post "https://2afcbb8f-59c4-48eb-a785-c450244fcc84.oms.opinsights.azure.com/AgentService.svc/LinuxAgentTopologyRequest": http: ContentLength=1860 with Body length 0

To Reproduce Steps to reproduce the behavior:

  1. Let auto image upgrade deploy version AKSAzureLinux-V2gen2-202410.27.0 node images

Environment: