when deploying a cluster template, if I populate the serviceAccount label with my service account so I can use the service discovery feature, the BIG-IP devices don't form a cluster and I see the following error in /var/log/cloud/google/cluster.log:
_.gserviceaccount.com does not have storage.objects.get access to f5-bigip-__/credentials/master."
This is resolved by adding additional storage object roles to my service account however this is not documented.
Description
when deploying a cluster template, if I populate the serviceAccount label with my service account so I can use the service discovery feature, the BIG-IP devices don't form a cluster and I see the following error in /var/log/cloud/google/cluster.log:
_.gserviceaccount.com does not have storage.objects.get access to f5-bigip-__/credentials/master."
This is resolved by adding additional storage object roles to my service account however this is not documented.
Template
https://github.com/F5Networks/f5-google-gdm-templates/tree/master/supported/failover/same-net/via-api/3nic/existing-stack/byol
Severity Level
5