aws / aws/containers-roadmap

[EKS] [Support]: Getting forbidden error during modifying sysctl param in 1.22

Open
#2,014 0 comments 0 reactions 0 assignees View on GitHub
EKS Proposed
Dominant language
Shell
Stars
5.4k
Forks
334
PR merge metrics
No merged PRs in 30d

Description

I have a requirement to modify sysctl param via one of application running on EKS. I have added all required permission via PSP and also passed --allowed-unsafe-sysctls with required param in my userdata script .
But still getting forbidden error.

Contributor guide

Open the contributing guide

Research direction

Start by reviewing EKS 1.22 sysctl support, the configured PodSecurityPolicy permissions, and the --allowed-unsafe-sysctls setting in the userdata script. Reproduce the forbidden error with the reported setup and compare the required parameter with the effective configuration; done means the application can modify it without the forbidden error.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws, kubernetes
Domain
cloud, infrastructure, security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.