Closed tobybellwood closed 1 year ago
Seems related to this change with service accounts https://kubernetes.io/docs/concepts/configuration/secret/#service-account-token-secrets
It looks like the token is no longer generated automatically and a TokenRequest
is required now. We can still generate a long lived token if we need to, but maybe it is a good time to re-evaluate the deployer token into a short lived token only there for the duration of the build (or tasks) that need it.
remote-controller is not compatible with Kubernetes 1.24 - don't try this at home
mostly for future reference, but remote-controller currently doesn't work in Kubernetes 1.24 - it has an issue with finding (or creating) the token secret for the lagoon-deployer ServiceAccount