Repository navigation
chore: Updating Orchestrator flavour NetworkPolicies to SonataFlow-specific labels - #588
OpinionatedHeron wants to merge 4 commits into
Conversation
Signed-off-by: Leanne Ahern <lahern@redhat.com>
Signed-off-by: Leanne Ahern <lahern@redhat.com>
Signed-off-by: Leanne Ahern <lahern@redhat.com>
…mmit Signed-off-by: Leanne Ahern <lahern@redhat.com>
|
|
/cc |
|
/agentic_review |
|
/cherrypick release-2.1 |
|
@rm3l: once the present PR merges, I will cherry-pick it on top of DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
Code Review by Qodo
1. Orchestrator loses database access
|
rm3l
left a comment
There was a problem hiding this comment.
@OpinionatedHeron I agree with Qodo's review comment here.. Looks like the Sonataflow data-index and job services can no longer connect to the DB because of the new orch NPs:
and should not be used anymore.
2026-10-06 14:33:15,160 ERROR [io.qua.run.Application] (main) Failed to start application: java.lang.RuntimeException: Failed to start quarkus
at io.quarkus.runner.ApplicationImpl.doStart(Unknown Source)
at io.quarkus.runtime.Application.start(Application.java:101)
at io.quarkus.runtime.ApplicationLifecycleManager.run(ApplicationLifecycleManager.java:119)
at io.quarkus.runtime.Quarkus.run(Quarkus.java:80)
at io.quarkus.runtime.Quarkus.run(Quarkus.java:51)
at io.quarkus.runtime.Quarkus.run(Quarkus.java:144)
at io.quarkus.runner.GeneratedMain.main(Unknown Source)
at io.quarkus.bootstrap.runner.QuarkusEntryPoint.doRun(QuarkusEntryPoint.java:69)
at io.quarkus.bootstrap.runner.QuarkusEntryPoint.main(QuarkusEntryPoint.java:37)
Caused by: org.flywaydb.core.internal.exception.sqlExceptions.FlywaySqlUnableToConnectToDbException: Unable to obtain connection from database: Acquisition timeout while waiting for new connection
-----------------------------------------------------------------------------------------------
SQL State : null
Error Code : 0
Message : Acquisition timeout while waiting for new connection
at org.flywaydb.core.internal.jdbc.JdbcUtils.openConnection(JdbcUtils.java:70)
at org.flywaydb.core.internal.jdbc.JdbcConnectionFactory.<init>(JdbcConnectionFactory.java:76)
at org.flywaydb.core.FlywayExecutor.execute(FlywayExecutor.java:142)
at org.flywaydb.core.Flyway.migrate(Flyway.java:186)
at io.quarkus.flyway.runtime.FlywayRecorder.doStartActions(FlywayRecorder.java:150)
at io.quarkus.runner.recorded.FlywayProcessor$startActions1575138505.deploy_0(Unknown Source)
at io.quarkus.runner.recorded.FlywayProcessor$startActions1575138505.deploy(Unknown Source)
... 9 more
Caused by: java.sql.SQLException: Acquisition timeout while waiting for new connection
at io.agroal.pool.ConnectionPool.handlerFromSharedCache(ConnectionPool.java:394)
at io.agroal.pool.ConnectionPool.getConnection(ConnectionPool.java:308)
at io.agroal.pool.DataSource.getConnection(DataSource.java:86)
at io.agroal.api.AgroalDataSource_83v3mgZs1bc75ou7lAXNtJCAcLA_Synthetic_ClientProxy.getConnection(Unknown Source)
at org.flywaydb.core.internal.jdbc.JdbcUtils.openConnection(JdbcUtils.java:65)
... 15 more
Caused by: java.util.concurrent.TimeoutException
at java.base/java.util.concurrent.FutureTask.get(FutureTask.java:204)
at io.agroal.pool.ConnectionPool.handlerFromSharedCache(ConnectionPool.java:372)
... 19 more



Description of the change
The Orchestrator flavour NetworkPolicies currently use podSelector: {} (namespace-wide), which conflicts with the ADR's "default deny with selective allow" and "label-scoped policies" principles.
Which issue(s) does this PR fix or relate to
Checklist
Chart.yamlaccording to Semantic Versioning.values.yamland added to the corresponding README.md. The pre-commit utility can be used to generate the necessary content. Runpre-commit run --all-filesto run the hooks and then push any resulting changes. The pre-commit Workflow will enforce this and warn you if needed.pre-commithook.ct lintcommand.