https://rancher.com/ logo
Title
c

cuddly-hairdresser-95880

04/05/2023, 3:13 PM
Hi, I'm trying to provision a rke2 cluster with rancher 2.7.1(Air gapped).I have installed a new instance for testing because I have a known issue on my current rancher server in 2.6.8. The VM are well provisioned on my vcenter and boot correctly but nothing happens. I have installed the prerequisites (rke2 common and selinux), maybe I missed something. However if I run the rke2 server command, everything seems to be ok (container, pods...) but my rancher still display error. Do I missed something? Is anyone has already installed a rke2 cluster throw rancher in a Air gapped environment ?
a

adorable-train-88202

04/06/2023, 12:59 AM
What does it log?
c

cuddly-hairdresser-95880

04/06/2023, 6:41 AM
Apr 06 08:40:34 linux rancher-system-agent[1916]: time="2023-04-06T08:40:34+02:00" level=error msg="error while appending ca cert to pool for probe kube-controller-manager"
Apr 06 08:40:34 linux rancher-system-agent[1916]: time="2023-04-06T08:40:34+02:00" level=error msg="error loading x509 client cert/key for probe kube-apiserver (/var/lib/rancher/rke2/server/tls/client-kube-apiserver.crt//var/lib/rancher/rke2/server/tls/client-kube-apiserver.key): open /var/lib/rancher/rke2/server/tls/client-kube-apiserver.crt: no such file or directory"
Apr 06 08:40:34 linux rancher-system-agent[1916]: time="2023-04-06T08:40:34+02:00" level=error msg="error loading CA cert for probe (kube-scheduler) /var/lib/rancher/rke2/server/tls/kube-scheduler/kube-scheduler.crt: open /var/lib/rancher/rke2/server/tls/kube-scheduler/kube-scheduler.crt: no such file or directory"
Apr 06 08:40:34 linux rancher-system-agent[1916]: time="2023-04-06T08:40:34+02:00" level=error msg="error loading CA cert for probe (kube-apiserver) /var/lib/rancher/rke2/server/tls/server-ca.crt: open /var/lib/rancher/rke2/server/tls/server-ca.crt: no such file or directory"
Apr 06 08:40:34 linux rancher-system-agent[1916]: time="2023-04-06T08:40:34+02:00" level=error msg="error while appending ca cert to pool for probe kube-scheduler"
Apr 06 08:40:34 linux rancher-system-agent[1916]: time="2023-04-06T08:40:34+02:00" level=error msg="error while appending ca cert to pool for probe kube-apiserver"
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error encountered during parsing of last run time: parsing time \"\" as \"Mon Jan _2 15:04:05 MST 2006\": cannot parse \"\" as \"Mon\""
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error loading CA cert for probe (kube-scheduler) /var/lib/rancher/rke2/server/tls/kube-scheduler/kube-scheduler.crt: open /var/lib/rancher/rke2/server/tls/kube-scheduler/kube-scheduler.crt: no such file or directory"
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error while appending ca cert to pool for probe kube-scheduler"
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error loading x509 client cert/key for probe kube-apiserver (/var/lib/rancher/rke2/server/tls/client-kube-apiserver.crt//var/lib/rancher/rke2/server/tls/client-kube-apiserver.key): open /var/lib/rancher/rke2/server/tls/client-kube-apiserver.crt: no such file or directory"
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error loading CA cert for probe (kube-apiserver) /var/lib/rancher/rke2/server/tls/server-ca.crt: open /var/lib/rancher/rke2/server/tls/server-ca.crt: no such file or directory"
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error while appending ca cert to pool for probe kube-apiserver"
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error loading CA cert for probe (kube-controller-manager) /var/lib/rancher/rke2/server/tls/kube-controller-manager/kube-controller-manager.crt: open /var/lib/rancher/rke2/server/tls/kube-controller-manager/kube-controller-manager.crt: no such file or directory"
Apr 06 08:40:39 linux rancher-system-agent[1916]: time="2023-04-06T08:40:39+02:00" level=error msg="error while appending ca cert to pool for probe kube-controller-manager"
Apr 06 08:42:52 linux rancher-system-agent[1916]: time="2023-04-06T08:42:52+02:00" level=info msg="Using private registry config file at /etc/rancher/agent/registries.yaml"
Apr 06 08:42:52 linux rancher-system-agent[1916]: time="2023-04-06T08:42:52+02:00" level=info msg="Pulling image xxx/rancher/system-agent-installer-rke2:v1.24.2-rke2r1"
Apr 06 08:42:52 linux rancher-system-agent[1916]: time="2023-04-06T08:42:52+02:00" level=info msg="Extracting file installer.sh to /var/lib/rancher/agent/work/20230406-084252/06a9f39710c4077ea2682507377bd00109dc99981b0306eecd9ce90c5ccccf3a_0/installer.sh"
Apr 06 08:42:52 linux rancher-system-agent[1916]: time="2023-04-06T08:42:52+02:00" level=info msg="Extracting file rke2.linux-amd64.tar.gz to /var/lib/rancher/agent/work/20230406-084252/06a9f39710c4077ea2682507377bd00109dc99981b0306eecd9ce90c5ccccf3a_0/rke2.linux-amd64.tar.gz"
Apr 06 08:42:53 linux rancher-system-agent[1916]: time="2023-04-06T08:42:53+02:00" level=info msg="Extracting file sha256sum-amd64.txt to /var/lib/rancher/agent/work/20230406-084252/06a9f39710c4077ea2682507377bd00109dc99981b0306eecd9ce90c5ccccf3a_0/sha256sum-amd64.txt"
Apr 06 08:42:53 linux rancher-system-agent[1916]: time="2023-04-06T08:42:53+02:00" level=info msg="Extracting file run.sh to /var/lib/rancher/agent/work/20230406-084252/06a9f39710c4077ea2682507377bd00109dc99981b0306eecd9ce90c5ccccf3a_0/run.sh"
I found the issue. If I provision a rke2 cluster with Rancher, I must not install the rke-common and rke-selinux, everything is pull form my internal registry..