Skip to content

Commit db66416

Browse files
committed
Add activeDeadlineSeconds to kubeadm upgrade-health-check job
With kubernetes#122079, kubeadm now relies on `ttlSecondsAfterFinished` to clean up `upgrade-health-check` once its pod reaches a terminal state. However, there is a case where the pod won't reach a terminal state and the job will not register a terminal state, hence no garbage collection. For example, if the pause image is not present, `ErrImagePull` will make the pod keep retrying to pull the image and the pod will never reach a terminal state on its own. And the job will continue to wait for the pod to reach a terminal state which will not happen. So we need to set `activeDeadlineSeconds` to prevent the job from waiting forever for the pod to reach a terminal state. Without this, users invoking `kubeadm upgrade plan` need to cleanup the job outside of kubeadm even if they ignore the preflight result because the job still runs when the result is configured to be ignored via `--ignore-prelight-errors=CreateJob` flag. Since the timeout for the polling in the `CreateJob` step in kubeadm is 15 seconds, we should set the `activeDeadlineSeconds` to the same timeout.
1 parent 7ad1eaa commit db66416

File tree

1 file changed

+6
-1
lines changed

1 file changed

+6
-1
lines changed

cmd/kubeadm/app/phases/upgrade/health.go

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -98,6 +98,7 @@ func createJob(client clientset.Interface, cfg *kubeadmapi.ClusterConfiguration)
9898
fieldSelector = "spec.unschedulable=false"
9999
ns = metav1.NamespaceSystem
100100
timeout = 15 * time.Second
101+
timeoutMargin = 5 * time.Second
101102
)
102103
var (
103104
err, lastError error
@@ -132,6 +133,9 @@ func createJob(client clientset.Interface, cfg *kubeadmapi.ClusterConfiguration)
132133
return nil
133134
}
134135

136+
// Adding a margin of error to the polling timeout.
137+
timeoutWithMargin := timeout.Seconds() + timeoutMargin.Seconds()
138+
135139
// Prepare Job
136140
job := &batchv1.Job{
137141
ObjectMeta: metav1.ObjectMeta{
@@ -140,7 +144,8 @@ func createJob(client clientset.Interface, cfg *kubeadmapi.ClusterConfiguration)
140144
},
141145
Spec: batchv1.JobSpec{
142146
BackoffLimit: ptr.To[int32](0),
143-
TTLSecondsAfterFinished: ptr.To[int32](int32(timeout.Seconds()) + 5), // Make sure it's more than 'timeout'.
147+
TTLSecondsAfterFinished: ptr.To[int32](int32(timeoutWithMargin)),
148+
ActiveDeadlineSeconds: ptr.To[int64](int64(timeoutWithMargin)),
144149
Template: v1.PodTemplateSpec{
145150
Spec: v1.PodSpec{
146151
RestartPolicy: v1.RestartPolicyNever,

0 commit comments

Comments
 (0)