Project

General

Profile

Actions

action #56471

closed

[kernel][publiccloud][flavor~"^GCE"] check permissions for GCE

Added by cfconrad over 4 years ago. Updated over 3 years ago.

Status:
Resolved
Priority:
High
Assignee:
Category:
Bugs in existing tests
Target version:
QE Kernel - QE Kernel Done
Start date:
2019-09-05
Due date:
% Done:

0%

Estimated time:
Difficulty:

Description

Observation

openQA test in scenario sle-12-SP5-GCE-BYOS-x86_64-publiccloud_boottime@gce_n1_standard_2 fails in
boottime

Test suite description

Test will measure boot time of SLE image inside Public Cloud providers ( Amazon,Microsoft, Google )

Reproducible

Fails since (at least) Build 0.9.1-1.8 (current job)

Expected result

Last good: 0.9.1-1.5 (or more recent)

Further details

Always latest result in this scenario: latest

Hints

We moved all departments into vault namespaces. Maybe @cfconrad made a mistake by creating qa-kernel/ namespace in vault (publiccloud.qa.suse.de)

# terraform apply -no-color myplan ; echo B~vFt-$?-
random_id.service[0]: Creating...
random_id.service[0]: Creation complete after 0s [id=pIiK4qR_r98]
google_compute_instance.openqa[0]: Creating...
Error: Error waiting for instance to create: The user does not have access to service account 'vaultopenqa-role-1567427855@suse-sle-qa.iam.gserviceaccount.com'.  User: 'vaultopenqa-role-1567427855@suse-sle-qa.iam.gserviceaccount.com'.  Ask a project owner to grant you the iam.serviceAccountUser role on the service account
on plan.tf line 59, in resource "google_compute_instance" "openqa":
59: resource "google_compute_instance" "openqa" {
B~vFt-1-
Actions

Also available in: Atom PDF