Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Promote cs-canary to prod cs.k8s.io #7718

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

dims
Copy link
Member

@dims dims commented Jan 23, 2025

Fixes #2182

With the recent changes in #7707 and #7695 the performance is on par with the baremetal host we were running on equinix. Let's switch over the default cs.k8s.io to our own infra so we can turn down the equinix host. Thanks for all the support all these years to Equinix/Packet folks!

Signed-off-by: Davanum Srinivas <[email protected]>
@k8s-ci-robot k8s-ci-robot added the cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. label Jan 23, 2025
@k8s-ci-robot
Copy link
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: dims

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@k8s-ci-robot k8s-ci-robot added the approved Indicates a PR has been approved by an approver from all required OWNERS files. label Jan 23, 2025
@k8s-ci-robot k8s-ci-robot added area/apps Application management, code in apps/ area/dns DNS records for k8s.io, kubernetes.io, k8s.dev, etc., code in dns/ area/infra Infrastructure management, infrastructure design, code in infra/ area/infra/gcp Issues or PRs related to Kubernetes GCP infrastructure size/S Denotes a PR that changes 10-29 lines, ignoring generated files. area/terraform Terraform modules, testing them, writing more of them, code in infra/gcp/clusters/ sig/k8s-infra Categorizes an issue or PR as relevant to SIG K8s Infra. labels Jan 23, 2025
@dims
Copy link
Member Author

dims commented Jan 23, 2025

/assign @ameukam @BenTheElder @upodroid

/hold for consensus and approvals

@k8s-ci-robot k8s-ci-robot added the do-not-merge/hold Indicates that a PR should not merge because someone has issued a /hold command. label Jan 23, 2025
@k8s-infra-ci-robot
Copy link
Contributor

Ran Plan for dir: infra/gcp/terraform/kubernetes-public workspace: default

Plan Error

Show Output
running "/atlantis/bin/terraform1.3.10 plan -input=false -refresh -out \"/atlantis/repos/kubernetes/k8s.io/7718/default/infra/gcp/terraform/kubernetes-public/default.tfplan\"" in "/atlantis/repos/kubernetes/k8s.io/7718/default/infra/gcp/terraform/kubernetes-public": exit status 1
random_password.db_password: Refreshing state... [id=none]
data.google_service_account.k8s_cve_feed_sa: Reading...
module.aaa_kettle_sa.data.google_iam_policy.workload_identity: Reading...
data.google_service_account.triage_sa: Reading...
data.google_project.project: Reading...
data.google_iam_policy.prod_readiness_dataset_iam_policy: Reading...
data.google_service_account.keps_sa: Reading...
data.google_pubsub_topic.kubernetes_ci_logs_topic: Reading...
module.aaa_kettle_sa.google_service_account.serviceaccount: Refreshing state... [id=projects/kubernetes-public/serviceAccounts/[email protected]]
module.iam.google_project_iam_binding.project_iam_authoritative["default--roles/dns.admin"]: Refreshing state... [id=kubernetes-public/roles/dns.admin]
module.aaa_kettle_sa.data.google_iam_policy.workload_identity: Read complete after 3s [id=2324745334]
data.google_service_account.triage_sa: Read complete after 3s [id=projects/k8s-infra-prow-build-trusted/serviceAccounts/[email protected]]
data.google_pubsub_topic.kubernetes_ci_logs_topic: Read complete after 3s [id=projects/k8s-infra-prow/topics/kubernetes-ci-logs-updates]
data.google_service_account.k8s_cve_feed_sa: Read complete after 3s [id=projects/k8s-infra-prow-build-trusted/serviceAccounts/k8s-cve-feed@k8s-infra-prow-build-trusted.iam.gserviceaccount.com]
data.google_service_account.keps_sa: Read complete after 3s [id=projects/k8s-infra-prow-build-trusted/serviceAccounts/[email protected]]
data.google_iam_policy.prod_readiness_dataset_iam_policy: Read complete after 3s [id=3781512470]
data.google_service_account.metrics_sa: Reading...
data.google_iam_policy.triage_dataset_iam_policy: Reading...
module.iam.google_project_iam_binding.project_iam_authoritative["default--roles/secretmanager.secretAccessor"]: Refreshing state... [id=kubernetes-public/roles/secretmanager.secretAccessor]
data.google_iam_policy.triage_dataset_iam_policy: Read complete after 2s [id=3240985767]
data.google_service_account.metrics_sa: Read complete after 2s [id=projects/k8s-infra-prow-build-trusted/serviceAccounts/[email protected]]
data.google_project.project: Read complete after 6s [id=projects/kubernetes-public]
data.google_iam_policy.prod_kettle_dataset_iam_policy: Reading...
data.google_iam_policy.metrics_bucket_iam_bindings: Reading...
google_project_iam_member.kettle_jobuser_binding: Refreshing state... [id=kubernetes-public/roles/bigquery.jobUser/serviceAccount:[email protected]]
module.aaa_kettle_sa.google_service_account_iam_policy.serviceaccount_iam: Refreshing state... [id=projects/kubernetes-public/serviceAccounts/[email protected]]
google_project_iam_binding.cloud_sql_access: Refreshing state... [id=kubernetes-public/roles/cloudsql.editor]
google_project_iam_member.triage_sa_bigquery_user: Refreshing state... [id=kubernetes-public/roles/bigquery.user/serviceAccount:[email protected]]
google_project_iam_member.k8s_metrics_sa_bigquery_user: Refreshing state... [id=kubernetes-public/roles/bigquery.user/serviceAccount:[email protected]]
google_storage_bucket.triage_bucket: Refreshing state... [id=k8s-triage]
data.google_iam_policy.prod_kettle_dataset_iam_policy: Read complete after 1s [id=2913785020]
data.google_iam_policy.metrics_bucket_iam_bindings: Read complete after 1s [id=1448609610]
google_pubsub_topic.notification_topic: Refreshing state... [id=projects/kubernetes-public/topics/k8s-infra-kubernetes-jenkins-changes]
google_storage_bucket.metrics_bucket: Refreshing state... [id=k8s-metrics]
google_bigquery_dataset.prod_kettle_dataset: Refreshing state... [id=projects/kubernetes-public/datasets/k8s_infra_kettle]
google_bigquery_dataset.prod_readiness_dataset: Refreshing state... [id=projects/kubernetes-public/datasets/k8s_prod_readiness]
google_storage_bucket.scalability_golang_builds: Refreshing state... [id=k8s-infra-scale-golang-builds]
google_compute_global_address.k8s_io["ingress-prod-v6"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/k8s-io-ingress-prod-v6]
google_compute_global_address.k8s_io["slack"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/slack-infra-ingress-prod]
google_compute_global_address.k8s_io["cs"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/cs-k8s-io-ingress]
google_compute_global_address.k8s_io["elections"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/k8s-io-elections]
google_compute_global_address.k8s_io["gcsweb"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/gcsweb-k8s-io]
google_compute_global_address.k8s_io["triage-party-release"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/triage-party-release-ingress-prod]
google_compute_global_address.k8s_io["ingress-prod"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/k8s-io-ingress-prod]
google_compute_global_address.k8s_io["perf-dash"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/perf-dash-k8s-io-ingress-prod]
google_compute_global_address.k8s_io["canary-v6"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/k8s-io-ingress-canary-v6]
google_bigquery_dataset.triage_dataset: Refreshing state... [id=projects/kubernetes-public/datasets/k8s_triage]
google_compute_global_address.k8s_io["canary"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/k8s-io-ingress-canary]
data.google_iam_policy.keps_bucket_iam_bindings: Reading...
google_compute_global_address.k8s_io["triage-party-cli"]: Refreshing state... [id=projects/kubernetes-public/global/addresses/triage-party-cli-ingress-prod]
data.google_iam_policy.keps_bucket_iam_bindings: Read complete after 1s [id=2285297501]
data.google_iam_policy.cve_feed_bucket_iam_bindings: Reading...
google_storage_bucket.cve_feed_bucket: Refreshing state... [id=k8s-cve-feed]
google_sql_database_instance.db_instance: Refreshing state... [id=terraform-20210921031444719700000001]
google_compute_global_address.db_private_ip_address: Refreshing state... [id=projects/kubernetes-public/global/addresses/k8s-infra-db-election-private-ip]
data.google_iam_policy.cve_feed_bucket_iam_bindings: Read complete after 0s [id=2485311165]
google_storage_bucket.keps_bucket: Refreshing state... [id=k8s-keps]
data.google_iam_policy.scalability_tests_logs_bindings: Reading...
google_storage_bucket.scalability_tests_logs: Refreshing state... [id=k8s-infra-scalability-tests-logs]
data.google_iam_policy.scalability_golang_builds_bindings: Reading...
data.google_iam_policy.scalability_tests_logs_bindings: Read complete after 1s [id=3173417144]
google_secret_manager_secret.aaa_app_secrets["k8s-infra-prow-github-oauth-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-prow-github-oauth-config]
google_secret_manager_secret.aaa_app_secrets["k8s-infra-prow-hmac-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-prow-hmac-token]
google_secret_manager_secret.aaa_app_secrets["triage-party-cli-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/triage-party-cli-github-token]
data.google_iam_policy.scalability_golang_builds_bindings: Read complete after 1s [id=2833377609]
google_secret_manager_secret.aaa_app_secrets["elekto-db-host"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-host]
google_secret_manager_secret.aaa_app_secrets["elekto-meta-secret"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-meta-secret]
google_secret_manager_secret.aaa_app_secrets["slack-moderator-words-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-moderator-words-config]
google_secret_manager_secret.aaa_app_secrets["elekto-db-port"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-port]
google_secret_manager_secret.aaa_app_secrets["slack-post-message-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-post-message-config]
google_secret_manager_secret.aaa_app_secrets["recaptcha-site-key"]: Refreshing state... [id=projects/kubernetes-public/secrets/recaptcha-site-key]
google_secret_manager_secret.aaa_app_secrets["elekto-db-database"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-database]
google_secret_manager_secret.aaa_app_secrets["k8s-infra-ci-robot-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-ci-robot-github-token]
google_secret_manager_secret.aaa_app_secrets["publishing-bot-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/publishing-bot-github-token]
google_secret_manager_secret.aaa_app_secrets["elekto-db-password"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-password]
google_secret_manager_secret.aaa_app_secrets["slack-welcomer-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-welcomer-config]
google_secret_manager_secret.aaa_app_secrets["k8s-infra-ci-robot-github-account-password"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-ci-robot-github-account-password]
google_secret_manager_secret.aaa_app_secrets["elekto-github-client-secret"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-github-client-secret]
google_secret_manager_secret.aaa_app_secrets["k8s-infra-build-clusters-kubeconfig"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-build-clusters-kubeconfig]
google_secret_manager_secret.aaa_app_secrets["elekto-github-client-id"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-github-client-id]
google_secret_manager_secret.aaa_app_secrets["recaptcha-secret-key"]: Refreshing state... [id=projects/kubernetes-public/secrets/recaptcha-secret-key]
google_service_account.cluster_node_sa: Refreshing state... [id=projects/kubernetes-public/serviceAccounts/[email protected]]
google_secret_manager_secret.aaa_app_secrets["slack-moderator-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-moderator-config]
google_secret_manager_secret.aaa_app_secrets["elekto-db-username"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-username]
google_secret_manager_secret.aaa_app_secrets["k8s-infra-prow-cookie"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-prow-cookie]
google_secret_manager_secret.aaa_app_secrets["slack-event-log-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-event-log-config]
google_secret_manager_secret.aaa_app_secrets["k8s-infra-cherrypick-robot-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-cherrypick-robot-github-token]
google_secret_manager_secret.aaa_app_secrets["slackin-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/slackin-token]
google_pubsub_subscription.kettle_subscription: Refreshing state... [id=projects/kubernetes-public/subscriptions/k8s-infra-kettle-staging]
google_pubsub_subscription.kettle_ci_logs_subscription: Refreshing state... [id=projects/kubernetes-public/subscriptions/k8s-infra-kettle]
google_storage_bucket_iam_policy.metrics_bucket_iam_policy: Refreshing state... [id=b/k8s-metrics]
google_bigquery_dataset_iam_policy.prod_readiness_dataset: Refreshing state... [id=projects/kubernetes-public/datasets/k8s_prod_readiness]
google_bigquery_dataset_iam_policy.triage_dataset: Refreshing state... [id=projects/kubernetes-public/datasets/k8s_triage]
google_project_iam_member.prod_readiness_job_user: Refreshing state... [id=kubernetes-public/roles/bigquery.jobUser/group:[email protected]]
google_storage_bucket_iam_policy.scalability_golang_builds_policy: Refreshing state... [id=b/k8s-infra-scale-golang-builds]
google_service_networking_connection.private_vpc_connection: Refreshing state... [id=projects%2Fkubernetes-public%2Fglobal%2Fnetworks%2Fdefault:servicenetworking.googleapis.com]
google_bigquery_dataset_iam_policy.prod_kettle_dataset: Refreshing state... [id=projects/kubernetes-public/datasets/k8s_infra_kettle]
google_storage_bucket_iam_policy.cve_feed_bucket_iam_policy: Refreshing state... [id=b/k8s-cve-feed]
google_storage_bucket_iam_policy.scalability_tests_logs_policy: Refreshing state... [id=b/k8s-infra-scalability-tests-logs]
google_storage_bucket_iam_policy.keps_bucket_iam_policy: Refreshing state... [id=b/k8s-keps]
data.google_iam_policy.triage_bucket_iam_bindings: Reading...
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["slack-moderator-words-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-moderator-words-config/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["recaptcha-site-key"]: Refreshing state... [id=projects/kubernetes-public/secrets/recaptcha-site-key/roles/secretmanager.admin]
data.google_iam_policy.triage_bucket_iam_bindings: Read complete after 1s [id=3763930541]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["k8s-infra-prow-cookie"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-prow-cookie/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["slack-post-message-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-post-message-config/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["publishing-bot-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/publishing-bot-github-token/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["k8s-infra-ci-robot-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-ci-robot-github-token/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-db-database"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-database/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-db-password"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-password/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-db-port"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-port/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["slack-moderator-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-moderator-config/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-db-username"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-username/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-meta-secret"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-meta-secret/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["recaptcha-secret-key"]: Refreshing state... [id=projects/kubernetes-public/secrets/recaptcha-secret-key/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["slackin-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/slackin-token/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["k8s-infra-ci-robot-github-account-password"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-ci-robot-github-account-password/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["slack-welcomer-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-welcomer-config/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["slack-event-log-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/slack-event-log-config/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-db-host"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-db-host/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["triage-party-cli-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/triage-party-cli-github-token/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["k8s-infra-prow-github-oauth-config"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-prow-github-oauth-config/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-github-client-id"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-github-client-id/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["elekto-github-client-secret"]: Refreshing state... [id=projects/kubernetes-public/secrets/elekto-github-client-secret/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["k8s-infra-cherrypick-robot-github-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-cherrypick-robot-github-token/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["k8s-infra-build-clusters-kubeconfig"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-build-clusters-kubeconfig/roles/secretmanager.admin]
google_secret_manager_secret_iam_binding.aaa_app_secret_admins["k8s-infra-prow-hmac-token"]: Refreshing state... [id=projects/kubernetes-public/secrets/k8s-infra-prow-hmac-token/roles/secretmanager.admin]
google_project_iam_member.cluster_node_sa_logging: Refreshing state... [id=kubernetes-public/roles/logging.logWriter/serviceaccount:[email protected]]
google_project_iam_member.cluster_node_sa_monitoring_viewer: Refreshing state... [id=kubernetes-public/roles/monitoring.viewer/serviceaccount:[email protected]]
google_bigquery_dataset.usage_metering: Refreshing state... [id=kubernetes-public:usage_metering_aaa]
google_project_iam_member.cluster_node_sa_monitoring_metricwriter: Refreshing state... [id=kubernetes-public/roles/monitoring.metricWriter/serviceaccount:[email protected]]
google_pubsub_subscription_iam_binding.ci_logs_subscription_binding: Refreshing state... [id=projects/kubernetes-public/subscriptions/k8s-infra-kettle/roles/pubsub.editor]
google_pubsub_subscription_iam_binding.subscription_binding: Refreshing state... [id=projects/kubernetes-public/subscriptions/k8s-infra-kettle-staging/roles/pubsub.editor]
google_storage_bucket_iam_policy.triage_bucket_iam_policy: Refreshing state... [id=b/k8s-triage]
google_container_cluster.cluster: Refreshing state... [id=aaa]
google_container_node_pool.pool2: Refreshing state... [id=us-central1/aaa/pool2-20200316195138785800000001]
google_container_node_pool.pool1: Refreshing state... [id=us-central1/aaa/pool1-20190918234853194900000001]
╷
│ Error: Error when reading or editing SQL Database Instance "terraform-20210921031444719700000001": googleapi: Error 403: Cloud SQL Admin API has not been used in project 270672962129 before or it is disabled. Enable it by visiting https://console.developers.google.com/apis/api/sqladmin.googleapis.com/overview?project=270672962129 then retry. If you enabled this API recently, wait a few minutes for the action to propagate to our systems and retry.
│ Details:
│ [
│   {
│     "@type": "type.googleapis.com/google.rpc.ErrorInfo",
│     "domain": "googleapis.com",
│     "metadata": {
│       "activationUrl": "https://console.developers.google.com/apis/api/sqladmin.googleapis.com/overview?project=270672962129",
│       "consumer": "projects/270672962129",
│       "containerInfo": "270672962129",
│       "service": "sqladmin.googleapis.com",
│       "serviceTitle": "Cloud SQL Admin API"
│     },
│     "reason": "SERVICE_DISABLED"
│   },
│   {
│     "@type": "type.googleapis.com/google.rpc.LocalizedMessage",
│     "locale": "en-US",
│     "message": "Cloud SQL Admin API has not been used in project 270672962129 before or it is disabled. Enable it by visiting https://console.developers.google.com/apis/api/sqladmin.googleapis.com/overview?project=270672962129 then retry. If you enabled this API recently, wait a few minutes for the action to propagate to our systems and retry."
│   },
│   {
│     "@type": "type.googleapis.com/google.rpc.Help",
│     "links": [
│       {
│         "description": "Google developers console API activation",
│         "url": "https://console.developers.google.com/apis/api/sqladmin.googleapis.com/overview?project=270672962129"
│       }
│     ]
│   }
│ ]
│ , accessNotConfigured
│ 
│   with google_sql_database_instance.db_instance,
│   on k8s-elections-database.tf line 23, in resource "google_sql_database_instance" "db_instance":
│   23: resource "google_sql_database_instance" "db_instance" {
│ 
╵

@dims
Copy link
Member Author

dims commented Jan 23, 2025

/skip

@BenTheElder
Copy link
Member

what about #7707 (review) ?

@BenTheElder
Copy link
Member

TF plan seems to be failing, possibly related to manual cluster changes?

@dims
Copy link
Member Author

dims commented Jan 23, 2025

@BenTheElder seemed unrelated. I probably have to check if we create the NAPs in terraform as well ( not that familiar with TF )

 Error: Error when reading or editing SQL Database Instance "terraform-20210921031444719700000001": googleapi: Error 403: Cloud SQL Admin API has not been used in project 270672962129 before or it is disabled. Enable it by visiting https://console.developers.google.com/apis/api/sqladmin.googleapis.com/overview?project=270672962129 then retry. If you enabled this API recently, wait a few minutes for the action to propagate to our systems and retry.
│

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
approved Indicates a PR has been approved by an approver from all required OWNERS files. area/apps Application management, code in apps/ area/dns DNS records for k8s.io, kubernetes.io, k8s.dev, etc., code in dns/ area/infra/gcp Issues or PRs related to Kubernetes GCP infrastructure area/infra Infrastructure management, infrastructure design, code in infra/ area/terraform Terraform modules, testing them, writing more of them, code in infra/gcp/clusters/ cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. do-not-merge/hold Indicates that a PR should not merge because someone has issued a /hold command. sig/k8s-infra Categorizes an issue or PR as relevant to SIG K8s Infra. size/S Denotes a PR that changes 10-29 lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Where to host cs.k8s.io
6 participants