hundreds-sugar-37524
11/20/2025, 8:25 AMagentToken and serverToken . Either a mismatch between rke2 file and etcd data or between rke2 and the secret in rancher (similar to /var/lib/rancher/rke2/server/cred/passwd newer than datastore and could cause a cluster outage. Remove the file(s ) from disk and restart to be recreated from datastore. · rancher/rke2 · Discussion #4035 and Agent token rotation leads to datastore being out-of-sync · Issue #5785 · rancher/rke2)
any ideas ?
Our steps are:
• backup downstream-1 on rancher-az-1
• create downstream-1-backup on rancher-az-2 with one node
• restore the cluster using rke2 cli
• cluster is up with data from downstream-1, clean stuff like old nodes
• if I restart rke2-server, it fails with /var/lib/rancher/rke2/server/cred/passwd newer than datastore . If I add a new node, same thing. Even if I update the rancher secret who holds agentToken and serverToken
We don't use velero to copy paste our resources between the clusters because we want to preserve ownerRef