Hello everyone,
I installed rook 1.14.9 and I am using it for creating bucket on an external red hat ceph cluster.
Using rook I can create buckets and it create users ad baucket owners.
It is able to create bucket but non bucket access end the provisioner pod logs the following:
-----------------------------------------------------
2024/07/31 10:35:31 DEBUG: Response s3/CreateBucket Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 200 OK
Content-Length: 0
Connection: Keep-Alive
Date: Wed, 31 Jul 2024 10:35:31 GMT
X-Amz-Request-Id: tx000002162683281c49ba3-0066aa1372-4d61a-podto1
-----------------------------------------------------
I0731 10:35:31.620147 1 s3-handlers.go:108] "successfully created bucket" name="sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607"
I0731 10:35:31.620165 1 provisioner.go:114] "Successfully created Backend Bucket" bucketName="sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607"
I0731 10:37:02.731214 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
2024/07/31 10:37:03 DEBUG: Request s3/GetBucketPolicy Details:
---[ REQUEST POST-SIGN ]-----------------------------
GET /sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607?policy= HTTP/1.1
Host: 10.138.151.74
User-Agent: aws-sdk-go/1.53.2 (go1.22.2; linux; amd64)
Authorization: AWS4-HMAC-SHA256 Credential=SB7D8G8GC0MXUEXNPPUK/20240731/us-east-1/s3/aws4_request, SignedHeaders=host;x-amz-content-sha256;x-amz-date, Signature=38ae6a7ded670938473e7f6cdba4971f9a2f3c5be9a27030feb5c7dc3e8d90bb
X-Amz-Content-Sha256: e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
X-Amz-Date: 20240731T103703Z
Accept-Encoding: gzip
-----------------------------------------------------
2024/07/31 10:37:03 DEBUG: Response s3/GetBucketPolicy Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 404 Not Found
Content-Length: 316
Accept-Ranges: bytes
Connection: Keep-Alive
Content-Type: application/xml
Date: Wed, 31 Jul 2024 10:37:03 GMT
X-Amz-Request-Id: tx0000065265c665e60977a-0066aa13cf-4d61a-podto1
-----------------------------------------------------
2024/07/31 10:37:03 DEBUG: Request s3/PutBucketPolicy Details:
---[ REQUEST POST-SIGN ]-----------------------------
PUT /sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607?policy= HTTP/1.1
Host: 10.138.151.74
User-Agent: aws-sdk-go/1.53.2 (go1.22.2; linux; amd64)
Content-Length: 1057
Authorization: AWS4-HMAC-SHA256 Credential=SB7D8G8GC0MXUEXNPPUK/20240731/us-east-1/s3/aws4_request, SignedHeaders=content-length;content-md5;host;x-amz-confirm-remove-self-bucket-access;x-amz-content-sha256;x-amz-date, Signature=80d6f75a51c52ba140ed852254245e3f27f72c589b1ef4645c61e8faab061345
Content-Md5: CltLYjVe3q8ySDBOWBcyLQ==
X-Amz-Confirm-Remove-Self-Bucket-Access: false
X-Amz-Content-Sha256: 118a90cc1d37e38e8171f44de7b96caac1a6e70de68186f964bbf390fa0de3e1
X-Amz-Date: 20240731T103703Z
Accept-Encoding: gzip
-----------------------------------------------------
2024/07/31 10:37:04 DEBUG: Response s3/PutBucketPolicy Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 500 Internal Server Error
Content-Length: 259
Accept-Ranges: bytes
Connection: Keep-Alive
Content-Type: application/xml
Date: Wed, 31 Jul 2024 10:37:04 GMT
X-Amz-Request-Id: tx000009dcc7cef410d1922-0066aa13cf-4d61a-podto1
-----------------------------------------------------
2024/07/31 10:37:04 DEBUG: Request s3/PutBucketPolicy Details:
---[ REQUEST POST-SIGN ]-----------------------------
PUT /sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607?policy= HTTP/1.1
Host: 10.138.151.74
User-Agent: aws-sdk-go/1.53.2 (go1.22.2; linux; amd64)
Content-Length: 1057
Authorization: AWS4-HMAC-SHA256 Credential=SB7D8G8GC0MXUEXNPPUK/20240731/us-east-1/s3/aws4_request, SignedHeaders=content-length;content-md5;host;x-amz-confirm-remove-self-bucket-access;x-amz-content-sha256;x-amz-date, Signature=f822332eb0bf111b422e1a4d04894ba4b0bf1b4fccbb5ba6fd6cf68f7571f942
Content-Md5: CltLYjVe3q8ySDBOWBcyLQ==
X-Amz-Confirm-Remove-Self-Bucket-Access: false
X-Amz-Content-Sha256: 118a90cc1d37e38e8171f44de7b96caac1a6e70de68186f964bbf390fa0de3e1
X-Amz-Date: 20240731T103704Z
Accept-Encoding: gzip
-----------------------------------------------------
2024/07/31 10:37:05 DEBUG: Response s3/PutBucketPolicy Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 500 Internal Server Error
Content-Length: 259
Accept-Ranges: bytes
Connection: Keep-Alive
Content-Type: application/xml
Date: Wed, 31 Jul 2024 10:37:05 GMT
X-Amz-Request-Id: tx0000016060d7176a14f8c-0066aa13d0-4d61a-podto1
-----------------------------------------------------
2024/07/31 10:37:06 DEBUG: Request s3/PutBucketPolicy Details:
---[ REQUEST POST-SIGN ]-----------------------------
PUT /sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607?policy= HTTP/1.1
Host: 10.138.151.74
User-Agent: aws-sdk-go/1.53.2 (go1.22.2; linux; amd64)
Content-Length: 1057
Authorization: AWS4-HMAC-SHA256 Credential=SB7D8G8GC0MXUEXNPPUK/20240731/us-east-1/s3/aws4_request, SignedHeaders=content-length;content-md5;host;x-amz-confirm-remove-self-bucket-access;x-amz-content-sha256;x-amz-date, Signature=81dd8a282475826fa3c250371e3e5df3a193b592585d374a53b79298881bd9e4
Content-Md5: CltLYjVe3q8ySDBOWBcyLQ==
X-Amz-Confirm-Remove-Self-Bucket-Access: false
X-Amz-Content-Sha256: 118a90cc1d37e38e8171f44de7b96caac1a6e70de68186f964bbf390fa0de3e1
X-Amz-Date: 20240731T103706Z
Accept-Encoding: gzip
-----------------------------------------------------
2024/07/31 10:37:07 DEBUG: Response s3/PutBucketPolicy Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 500 Internal Server Error
Content-Length: 259
Accept-Ranges: bytes
Connection: Keep-Alive
Content-Type: application/xml
Date: Wed, 31 Jul 2024 10:37:07 GMT
X-Amz-Request-Id: tx000008724208a8d1a9db2-0066aa13d2-4d61a-podto1
-----------------------------------------------------
2024/07/31 10:37:07 DEBUG: Request s3/PutBucketPolicy Details:
---[ REQUEST POST-SIGN ]-----------------------------
PUT /sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607?policy= HTTP/1.1
Host: 10.138.151.74
User-Agent: aws-sdk-go/1.53.2 (go1.22.2; linux; amd64)
Content-Length: 1057
Authorization: AWS4-HMAC-SHA256 Credential=SB7D8G8GC0MXUEXNPPUK/20240731/us-east-1/s3/aws4_request, SignedHeaders=content-length;content-md5;host;x-amz-confirm-remove-self-bucket-access;x-amz-content-sha256;x-amz-date, Signature=64b994497739a3945d988092432a70bee53f53fa363fb36d588d9a32f1c28ca1
Content-Md5: CltLYjVe3q8ySDBOWBcyLQ==
X-Amz-Confirm-Remove-Self-Bucket-Access: false
X-Amz-Content-Sha256: 118a90cc1d37e38e8171f44de7b96caac1a6e70de68186f964bbf390fa0de3e1
X-Amz-Date: 20240731T103707Z
Accept-Encoding: gzip
-----------------------------------------------------
2024/07/31 10:37:08 DEBUG: Response s3/PutBucketPolicy Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 500 Internal Server Error
Content-Length: 259
Accept-Ranges: bytes
Connection: Keep-Alive
Content-Type: application/xml
Date: Wed, 31 Jul 2024 10:37:08 GMT
X-Amz-Request-Id: tx0000058c150ae942bff93-0066aa13d3-4d61a-podto1
-----------------------------------------------------
2024/07/31 10:37:08 DEBUG: Request s3/PutBucketPolicy Details:
---[ REQUEST POST-SIGN ]-----------------------------
PUT /sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607?policy= HTTP/1.1
Host: 10.138.151.74
User-Agent: aws-sdk-go/1.53.2 (go1.22.2; linux; amd64)
Content-Length: 1057
Authorization: AWS4-HMAC-SHA256 Credential=SB7D8G8GC0MXUEXNPPUK/20240731/us-east-1/s3/aws4_request, SignedHeaders=content-length;content-md5;host;x-amz-confirm-remove-self-bucket-access;x-amz-content-sha256;x-amz-date, Signature=36622bba9560e603dfe3a6fdb9bb03a90aa02b8b0db74a72030e07a8ba3fd6b0
Content-Md5: CltLYjVe3q8ySDBOWBcyLQ==
X-Amz-Confirm-Remove-Self-Bucket-Access: false
X-Amz-Content-Sha256: 118a90cc1d37e38e8171f44de7b96caac1a6e70de68186f964bbf390fa0de3e1
X-Amz-Date: 20240731T103708Z
Accept-Encoding: gzip
-----------------------------------------------------
2024/07/31 10:37:09 DEBUG: Response s3/PutBucketPolicy Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 500 Internal Server Error
Content-Length: 259
Accept-Ranges: bytes
Connection: Keep-Alive
Content-Type: application/xml
Date: Wed, 31 Jul 2024 10:37:09 GMT
X-Amz-Request-Id: tx00000ac095068fed9b701-0066aa13d4-4d61a-podto1
-----------------------------------------------------
2024/07/31 10:37:10 DEBUG: Request s3/PutBucketPolicy Details:
---[ REQUEST POST-SIGN ]-----------------------------
PUT /sample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607?policy= HTTP/1.1
Host: 10.138.151.74
User-Agent: aws-sdk-go/1.53.2 (go1.22.2; linux; amd64)
Content-Length: 1057
Authorization: AWS4-HMAC-SHA256 Credential=SB7D8G8GC0MXUEXNPPUK/20240731/us-east-1/s3/aws4_request, SignedHeaders=content-length;content-md5;host;x-amz-confirm-remove-self-bucket-access;x-amz-content-sha256;x-amz-date, Signature=e4c5044a495378380e6e8c4412f2f5f6b8bd6f46215fc0af80fa17fe8bb1eb3d
Content-Md5: CltLYjVe3q8ySDBOWBcyLQ==
X-Amz-Confirm-Remove-Self-Bucket-Access: false
X-Amz-Content-Sha256: 118a90cc1d37e38e8171f44de7b96caac1a6e70de68186f964bbf390fa0de3e1
X-Amz-Date: 20240731T103710Z
Accept-Encoding: gzip
-----------------------------------------------------
E0731 10:37:11.589550 1 provisioner.go:195] "failed to set policy" err=<
UnknownError:
status code: 500, request id: tx00000de414095a2ece1d3-0066aa13d6-4d61a-podto1, host id:
>
2024/07/31 10:37:11 DEBUG: Response s3/PutBucketPolicy Details:
---[ RESPONSE ]--------------------------------------
HTTP/1.1 500 Internal Server Error
Content-Length: 259
Accept-Ranges: bytes
Connection: Keep-Alive
Content-Type: application/xml
Date: Wed, 31 Jul 2024 10:37:11 GMT
X-Amz-Request-Id: tx00000de414095a2ece1d3-0066aa13d6-4d61a-podto1
-----------------------------------------------------
I0731 10:37:11.697850 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:11.720676 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx00000894829b61c3688f7-0066aa13d7-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:37:11.928437 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:11.950251 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx0000052445de843d279b0-0066aa13d7-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:37:12.360641 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:12.381438 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx000006fd93370fa1d6ca2-0066aa13d8-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:37:13.190415 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:13.210749 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx00000d0df143807d7e6ec-0066aa13d9-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:37:14.818629 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:14.840060 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx000000c00d75c6672e433-0066aa13da-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:37:18.051093 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:18.074755 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx000000b835c838c5055f8-0066aa13de-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:37:24.484216 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:24.509425 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx0000045d8d8daa7a7cce6-0066aa13e4-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:37:37.318664 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:37:37.345982 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx00000b8c5377a546883a0-0066aa13f1-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:38:02.953940 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:38:02.975583 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx000005f379bac7abdada0-0066aa140a-4d61a-podto1 4d61a-podto1-podto-ceph"
I0731 10:38:32.984581 1 provisioner.go:154] Granting user accessPolicy to bucket userNameba-e49f0997-fe64-4148-a17a-957f90cbed79bucketNamesample-bccb8bdb2ea-80de-4ea6-82a5-a2e215107607
E0731 10:38:34.277159 1 provisioner.go:170] "failed to create user" err="BucketNotEmpty tx00000e84261621b090cb3-0066aa1428-4d61a-podto1 4d61a-podto1-podto-ceph"
Please, any help ?
Ignazio