Skip to content

[IAM Controller] can't remove user #2229

@gecube

Description

@gecube
{"level":"error","ts":"2024-12-11T00:55:29.773Z","msg":"Reconciler error","controller":"user","controllerGroup":"iam.services.k8s.aws","controllerKind":"User","User":{"name":"*****","namespace":"infra-tooling"},"namespace":"infra-tooling","name":"*****","reconcileID":"73e066c7-0af0-4813-b882-79d14295e263","error":"DeleteConflict: Cannot delete entity, must delete access keys first.\n\tstatus code: 409, request id: b3fef8ce-e08a-4e57-8ca5-01c67fd0f852","stacktrace":"sigs.k8s.io/controller-runtime/pkg/internal/controller.(*Controller[...]).reconcileHandler\n\t/go/pkg/mod/sigs.k8s.io/[email protected]/pkg/internal/controller/controller.go:316\nsigs.k8s.io/controller-runtime/pkg/internal/controller.(*Controller[...]).processNextWorkItem\n\t/go/pkg/mod/sigs.k8s.io/[email protected]/pkg/internal/controller/controller.go:263\nsigs.k8s.io/controller-runtime/pkg/internal/controller.(*Controller[...]).Start.func2.2\n\t/go/pkg/mod/sigs.k8s.io/[email protected]/pkg/internal/controller/controller.go:224"}
{"level":"info","ts":"2024-12-11T00:55:29.815Z","logger":"ackrt","msg":"updated resource","kind":"Role","namespace":"infra-tooling","name":"*****","account":"*****","role":"","region":"eu-west-2","is_adopted":false,"generation":8}

Expected behaviour:

  • either proper interface for managing access keys from ACK
  • or provide a way to remove user silently with access keys.

Metadata

Metadata

Assignees

No one assigned

    Labels

    kind/bugCategorizes issue or PR as related to a bug.service/iamIndicates issues or PRs that are related to iam-controller.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions