Open chanchiwai-ray opened 1 week ago
The error status seems can be recovered automatically. We can try to add one resolve step to it.
But we need to discuss the solution how to unseal the vault. Since the vault
snap is required and the unseal keys are unknown for COU. The possible solution could be
cou upgrade
will be blocked. This should be a pre-check step.
juju resolve
and vault operator unseal
to unseal vault. cou plan
sealed
status is the expected status of vault.Information about seal/unseal:
vault status
When COU refresh vault from 1.7/stable to 1.8/stable during Jammy/Yoga -> Jammy/Zed upgrade, the vault charm goes into error state with
Connection Refused
error:When manually running
juju resolved --all
, the vault is able to recover itself but it's sealed, and required the operator to unseal it before COU can upgrade the cloud again. It appears that it only happens during charm refreshEnvironment: deployed with stsstack-bundle using
./generate-bundle.sh --name cou -r yoga -s jammy --ceph --run