Skip to content

OCPBUGS#37577: Add a note about identity-provider-arn#109594

Open
aksjoshi89 wants to merge 1 commit intoopenshift:enterprise-4.15from
aksjoshi89:OCPBUGS-37577
Open

OCPBUGS#37577: Add a note about identity-provider-arn#109594
aksjoshi89 wants to merge 1 commit intoopenshift:enterprise-4.15from
aksjoshi89:OCPBUGS-37577

Conversation

@aksjoshi89
Copy link
Copy Markdown
Contributor

@aksjoshi89 aksjoshi89 commented Apr 4, 2026

@openshift-ci openshift-ci bot added the size/XS Denotes a PR that changes 0-9 lines, ignoring generated files. label Apr 4, 2026
@ocpdocs-previewbot
Copy link
Copy Markdown

ocpdocs-previewbot commented Apr 4, 2026

[role="_abstract"]
The {cert-manager-operator} is not installed in {product-title} by default. You can install the {cert-manager-operator} by using the web console.

The operator sets `features.operators.openshift.io/token-auth-aws`, `features.operators.openshift.io/token-auth-azure`, `features.operators.openshift.io/token-auth-gcp` annotations in the operator CSV, and console asks to provide the relevant credentials details when these annotations are set. Currently, the operator does not make use of the values collected by the console and users should follow https://docs.redhat.com/en/documentation/openshift_container_platform/4.20/html/security_and_compliance/cert-manager-operator-for-red-hat-openshift. Users can provide any dummy value when asked for the input. For example, when installing on ROSA, the `identity-provider-arn` is asked and any value can be provided to proceed.
Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤖 [error] Vale.Terms: Use 'Operators?' instead of 'operator'.

@aksjoshi89
Copy link
Copy Markdown
Contributor Author

@emmajiafan
Please review

[role="_abstract"]
The {cert-manager-operator} is not installed in {product-title} by default. You can install the {cert-manager-operator} by using the web console.

The operator sets `features.operators.openshift.io/token-auth-aws`, `features.operators.openshift.io/token-auth-azure`, `features.operators.openshift.io/token-auth-gcp` annotations in the operator CSV, and console asks to provide the relevant credentials details when these annotations are set. Currently, the operator does not make use of the values collected by the console and users should follow https://docs.redhat.com/en/documentation/openshift_container_platform/4.20/html/security_and_compliance/cert-manager-operator-for-red-hat-openshift. Users can provide any dummy value when asked for the input. For example, when installing on ROSA, the `identity-provider-arn` is asked and any value can be provided to proceed.
Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The text is not enclosed in a Note or Important block. Also in the preview I see the initial intro text appearing twice could you please check.

@openshift-ci openshift-ci bot added size/S Denotes a PR that changes 10-29 lines, ignoring generated files. and removed size/XS Denotes a PR that changes 0-9 lines, ignoring generated files. labels Apr 6, 2026
@openshift-ci
Copy link
Copy Markdown

openshift-ci bot commented Apr 6, 2026

@aksjoshi89: all tests passed!

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

@bharath-b-rh
Copy link
Copy Markdown

/lgtm

@openshift-ci openshift-ci bot added the lgtm Indicates that a PR is ready to be merged. label Apr 6, 2026
@emmajiafan
Copy link
Copy Markdown

/lgtm

@aksjoshi89
Copy link
Copy Markdown
Contributor Author

/label merge-review-needed

@openshift-ci openshift-ci bot added the merge-review-needed Signifies that the merge review team needs to review this PR label Apr 7, 2026
Copy link
Copy Markdown
Member

@lunarwhite lunarwhite left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I feel this PR should be opened against master/main branch and cherrypicked onto subsequently supported releases rather than enterprise-4.15 solely. The reported ticket https://redhat.atlassian.net/browse/OCPBUGS-37577 explicitly mentioned 4.15.18 / [enterprise-4.16] probably because at that time 4.16 was pointed to the master/main, but now it's 4.22. We should maintain consistency across different release branches since the cert-manager operator is OCP version agnostic.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

lgtm Indicates that a PR is ready to be merged. merge-review-needed Signifies that the merge review team needs to review this PR size/S Denotes a PR that changes 10-29 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants