oren-cohen commented on issue #623:
URL:
https://github.com/apache/pulsar-helm-chart/issues/623#issuecomment-3313254787
Thanks for the help. It got me to find this error:
`KarpenterNodeRole-stg/i-0d5d3f2396b3ca609 is not authorized to perform:
s3:PutObject on resource: "arn:aws:s3::offload-bucket`
So I realized the Service account it was using is incorrect. When I tried to
specify a service account in the broker config in helm it did not work properly
FYI:
broker:
service_account:
name: pulsar-sa
It still was using this sa which I found in kubernetes: pulsar-broker-acct
Once I added that to my AWS trust policy for my role it finally worked!
Just curious why when I specify a service account for the broker and restart
it, it does not pick it up or create the SA in the namespace?
--
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.
To unsubscribe, e-mail: [email protected]
For queries about this service, please contact Infrastructure at:
[email protected]