Skip to content

Conversation

lucian-tosa
Copy link
Contributor

@lucian-tosa lucian-tosa commented Aug 27, 2025

Summary

This PR fixes an issue with the new agent dockerfiles where the db tools where not placed correctly. The binaries should be present in /tools. However, our tests were still passing. For that reason, the agent-script will now fail if the binaries are missing.

Proof of Work

The tests should fail if the binaries are missing. Example: https://spruce.mongodb.com/version/68af05cace35b000077fae05/tasks?sorts=STATUS%3AASC%3BBASE_STATUS%3ADESC
The pipeline should pass.

Checklist

  • Have you linked a jira ticket and/or is the ticket in the title?
  • Have you checked whether your jira ticket required DOCSP changes?
  • Have you added changelog file?

@lucian-tosa lucian-tosa added the skip-changelog Use this label in Pull Request to not require new changelog entry file label Aug 27, 2025
Copy link

github-actions bot commented Aug 27, 2025

⚠️ (this preview might not be accurate if the PR is not rebased on current master branch)

MCK 1.3.0 Release Notes

New Features

Multi-Architecture Support

We've added comprehensive multi-architecture support for the kubernetes operator. This enhancement enables deployment on IBM Power (ppc64le) and IBM Z (s390x) architectures alongside
existing x86_64 support. Core images (operator, agent, init containers, database, readiness probe) now support multiple architectures. We do not add support IBM and ARM support for Ops-Manager and the init-ops-manager image.

  • we've migrated the agents to a new repository: quay.io/mongodb/mongodb-agent.
    • the agents in the new repository will support x86-64, ARM64, s390x, and ppc64le.
    • operator running >=MCK1.3.0 and static cannot use the agents at quay.io/mongodb/mongodb-agent-ubi.
  • quay.io/mongodb/mongodb-agent-ubi should not be used anymore, it's only there for backwards compatibility.
  • More can be read in the public docs

Bug Fixes

  • This change fixes the current complex and difficult-to-maintain architecture for stateful set containers, which relies on an "agent matrix" to map operator and agent versions which led to a sheer amount of images.
  • We solve this by shifting to a 3-container setup. This new design eliminates the need for the operator-version/agent-version matrix by adding one additional container containing all required binaries. This architecture maps to what we already do with the mongodb-database container.
  • Fixed an issue where the readiness probe reported the node as ready even when its authentication mechanism was not in sync with the other nodes, potentially causing premature restarts.

Other Changes

  • Optional permissions for PersistentVolumeClaim moved to a separate role. When managing the operator with Helm it is possible to disable permissions for PersistentVolumeClaim resources by setting operator.enablePVCResize value to false (true by default). When enabled, previously these permissions were part of the primary operator role. With this change, permissions have a separate role.
  • subresourceEnabled Helm value was removed. This setting used to be true by default and made it possible to exclude subresource permissions from the operator role by specifying false as the value. We are removing this configuration option, making the operator roles always have subresource permissions. This setting was introduced as a temporary solution for this OpenShift issue. The issue has since been resolved and the setting is no longer needed.
  • We have deliberately not published the container images for OpsManager versions 7.0.16, 8.0.8, 8.0.9 and 8.0.10 due to a bug in the OpsManager which prevents MCK customers to upgrade their OpsManager deployments to those versions.

@lucian-tosa lucian-tosa force-pushed the fix-tools-in-agent-images branch from fa05071 to 396e95d Compare August 27, 2025 14:24
@lucian-tosa lucian-tosa changed the base branch from master to migrate-repo August 27, 2025 14:25
@lucian-tosa lucian-tosa marked this pull request as ready for review August 27, 2025 14:30
@lucian-tosa lucian-tosa requested a review from a team as a code owner August 27, 2025 14:30
@lucian-tosa lucian-tosa requested review from fealebenpae and viveksinghggits and removed request for a team August 27, 2025 14:31
Copy link
Collaborator

@nammn nammn left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Lgtm thanks!

@nammn nammn merged commit 5eb1b15 into migrate-repo Aug 28, 2025
35 of 37 checks passed
@nammn nammn deleted the fix-tools-in-agent-images branch August 28, 2025 08:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
skip-changelog Use this label in Pull Request to not require new changelog entry file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants