@@ -12,6 +12,7 @@ import (
1212 "github.com/openshift/library-go/pkg/controller/factory"
1313 corev1informers "k8s.io/client-go/informers/core/v1"
1414 "k8s.io/client-go/tools/cache"
15+ "k8s.io/klog/v2"
1516
1617 "k8s.io/apimachinery/pkg/api/errors"
1718 "k8s.io/apimachinery/pkg/util/sets"
@@ -93,6 +94,7 @@ func (c *AuthConfigChecker) OIDCAvailable() (bool, error) {
9394 // ensure every observed revision includes an auth-config revisioned configmap
9495 _ , err := c .kasConfigMapLister .ConfigMaps ("openshift-kube-apiserver" ).Get (fmt .Sprintf ("auth-config-%d" , revision ))
9596 if errors .IsNotFound (err ) {
97+ klog .Infof ("[debug-801] configmap auth-config-%d not found" , revision )
9698 return false , nil
9799 } else if err != nil {
98100 return false , fmt .Errorf ("getting configmap openshift-kube-apiserver/auth-config-%d: %v" , revision , err )
@@ -109,6 +111,7 @@ func (c *AuthConfigChecker) OIDCAvailable() (bool, error) {
109111 if ! strings .Contains (cm .Data ["config.yaml" ], `"oauthMetadataFile":""` ) ||
110112 strings .Contains (cm .Data ["config.yaml" ], `"authentication-token-webhook-config-file":` ) ||
111113 ! strings .Contains (cm .Data ["config.yaml" ], `"authentication-config":["/etc/kubernetes/static-pod-resources/configmaps/auth-config/auth-config.json"]` ) {
114+ klog .Infof ("[debug-801] configmap config-%d does not contain expected OIDC config" , revision )
112115 return false , nil
113116 }
114117 }
0 commit comments