IPsecトンネルが確立されたときにPodがPVCをマウントできない
環境
- ONTAP 9.X
- AFF
- Kubernetes
- NFS
問題
- IPsecが有効になっているときにPersistent Volume Claim(PVC)を使用してKubernetesでPodを作成しようとすると、PodはPVCのマウントに失敗します。
- ワーカーノードで次のエラーが観察されます:
Events:
Type Reason Age From Message
---- ------ ---- ---- -------
Warning FailedScheduling 30m (x3 over 30m) default-scheduler 0/4 nodes are available: pod has unbound immediate PersistentVolumeClaims. preemption: 0/4 nodes are available: 4 Preemption is not helpful for scheduling.
Normal Scheduled 30m default-scheduler Successfully assigned (Kubernetes Cluster) to (Pool Name)
Normal SuccessfulAttachVolume 30m attachdetach-controller AttachVolume.Attach succeeded for volume "(Volume Name)"
Warning FailedMount 15m (x3 over 27m) kubelet MountVolume.SetUp failed for volume "(Volume Name)" : rpc error: code = Aborted desc = request waited too long for the lock
Warning FailedMount 9s (x9 over 28m) kubelet MountVolume.SetUp failed for volume "(Volume Name)" : rpc error: code = DeadlineExceeded desc = context deadline exceeded