Is your feature request related to a problem? Please describe.
The documentation states, that it requires a user with permissions based on the vApp Author Role with additional rights from CSE. Since we did not use CSE to create the cluster we assumed, having a user with the vApp Author Role would be enough. Unfortunately the vApp Author user results in the following error in K8s:
Warning FailedAttachVolume 2s (x7 over 37s) attachdetach-controller AttachVolume.Attach failed for volume "pvc-25afded9-68ef-44d9-9ab2-7c461629e170" : rpc error: code = Unknown desc = unable to find VM for node [rosed-k8s-0001]: [unable to find vApp [RosedDev] by name: [[ENF] entity not found]]
The named disk gets created fine but it is unable to find the vApp/VM. When changing the user Role to Organization Administrator, this process works fine.
Describe the solution you'd like
Documentation of the necessary rights a role needs to use the CSI in a K8s cluster which was not created using VMware tools.
Is your feature request related to a problem? Please describe.
The documentation states, that it requires a user with permissions based on the vApp Author Role with additional rights from CSE. Since we did not use CSE to create the cluster we assumed, having a user with the vApp Author Role would be enough. Unfortunately the vApp Author user results in the following error in K8s:
Warning FailedAttachVolume 2s (x7 over 37s) attachdetach-controller AttachVolume.Attach failed for volume "pvc-25afded9-68ef-44d9-9ab2-7c461629e170" : rpc error: code = Unknown desc = unable to find VM for node [rosed-k8s-0001]: [unable to find vApp [RosedDev] by name: [[ENF] entity not found]]
The named disk gets created fine but it is unable to find the vApp/VM. When changing the user Role to Organization Administrator, this process works fine.
Describe the solution you'd like
Documentation of the necessary rights a role needs to use the CSI in a K8s cluster which was not created using VMware tools.
Describe alternatives you've considered
No response
Additional context
No response