The management cluster fails to install and stalls during cert-manager installation.
Antrea pods are not deployed and this causes various pods including cert-manager, core-dns, csi-controller and tanzu-capabilities-controller-manager to be in state Pending.
Antrea package and its corresponding secret is present in the cluster
kubectl get apps -n tkg-system NAMESPACE NAME DESCRIPTION SINCE-DEPLOY AGE tkg-system mgmt-capabilities Reconciling 3m21s 3m41s tkg-system mgmt-metrics-server Reconcile failed: Deploying: Error (see .status.usefulErrorMessage for details) 47s 3m44s tkg-system mgmt-pinniped Reconcile succeeded 3m26s 3m42s tkg-system mgmt-secretgen-controller Reconcile failed: Deploying: Error (see .status.usefulErrorMessage for details) 47s 3m43s tkg-system mgmt-tkg-storageclass Reconcile succeeded 3m32s 3m43s tkg-system mgmt-vsphere-cpi Reconcile succeeded 3m42s 3m44s tkg-system mgmt-vsphere-csi Reconcile failed: Deploying: Error (see .status.usefulErrorMessage for details) 46s 3m44s kubectl get secrets -n tkg-system | grep data-values tkg-system mgmt-capabilities-data-values Opaque 1 5m39s tkg-system mgmt-pinniped-data-values Opaque 1 5m39s tkg-system mgmt-tkg-storageclass-data-values Opaque 1 5m40s tkg-system mgmt-vsphere-cpi-data-values Opaque 1 5m41s tkg-system mgmt-vsphere-csi-data-values Opaque 1 5m41s
For workload classy cluster, the same symptoms exist. Pods in Pending state because Antrea is not deployed. Antrea app and secrets not present.
For workload legacy clusters, some of the same symptoms exist but not all. Antrea pods are not created and consequently several pods are in Pending state.
export KUBECONFIG=<Bootstrap kube-config> kubectl get antreaconfig -n tkg-system
# kubectl edit antreaconfig -n tkg-system <Management cluster name> labels: tkg.tanzu.vmware.com/cluster-name: <cluster name> tkg.tanzu.vmware.com/package-name: antrea.tanzu.vmware.com.1.7.2---vmware.1-tkg.1-advanced
kubectl delete pod <tanzu-addons-controller-manager-pod> -n tkg-system
# vi classy-cluster.yaml apiVersion: cni.tanzu.vmware.com/v1alpha1 kind: AntreaConfig metadata: labels: tkg.tanzu.vmware.com/cluster-name: work3 tkg.tanzu.vmware.com/package-name: antrea.tanzu.vmware.com.1.7.2---vmware.1-tkg.1-advanced
ethtool -K eth0 tx-udp_tnl-segmentation off && ethtool -K eth0 tx-udp_tnl-csum-segmentation off