mirror of
https://github.com/dbeaver/cloudbeaver.git
synced 2026-04-25 13:46:02 +03:00
[GH-ISSUE #3242] Since version 24.3, Cloudbeaver running into permissions issues when starting in AWS Kubernetes #1181
Labels
No labels
AS
can't reproduce
can't reproduce
deployment
development
documentation
duplicate
duplicate
ee
enhancement
external
new driver
performance
pull-request
third party issue
wait for response
wait for review
wontfix
x:Oracle
x:cassandra
x:clickhouse
x:db2
x:duckdb
x:greenplum
x:h2
x:h2gis
x:hana
x:hive
x:intersystems
x:kyuubi
x:maria
x:mongo
x:mysql
x:postgresql
x:presto
x:sql server
x:sqlite
x:teradata
x:trino
xf:accessibility
xf:administration
xf:ai
xf:authentication
xf:aws
xf:commit-mode
xf:connection
xf:dark theme
xf:data editor
xf:datatransfer
xf:dba
xf:driver management
xf:erd
xf:filters
xf:i18n
xf:i18n
xf:installer
xf:json
xf:kerberos
xf:ldap
xf:local config
xf:log viewer
xf:metadata
xf:metadata editor
xf:navigator
xf:okta
xf:query manager
xf:resource manager
xf:scripts
xf:sql editor
xf:tasks
xf:ui/uix
xo: Firefox
xo:eclipse
xo:internet explorer
xo:macos
xp:major
xrn:internal
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/cloudbeaver#1181
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @matherton21 on GitHub (Feb 6, 2025).
Original GitHub issue: https://github.com/dbeaver/cloudbeaver/issues/3242
Describe the bug
Since version 24.3, Cloudbeaver now has issues when running in certain kubernetes environments
The issue is related to the changes to the startup script for the container on this commit
https://github.com/dbeaver/cloudbeaver/pull/3087/files#diff-d523c634b73e4d716137582ef8c446f5dc3123ee6d46196dca0996497d02eda0
After the container launches on kubernetes the following logs are output
chown: changing ownership of '/opt/cloudbeaver/server/p2/org.eclipse.equinox.p2.core': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/server/p2': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/server': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/conf/initial-data.conf': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/conf/cloudbeaver.conf': Read-only file system chown: changing ownership of '/opt/cloudbeaver/conf/logback.xml': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/conf/initial-data-sources.conf': Read-only file system chown: changing ownership of '/opt/cloudbeaver/conf/product.conf': Read-only file system chown: changing ownership of '/opt/cloudbeaver/conf': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/run-server.sh': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/samples': Operation not permitted chown: changing ownership of '/opt/cloudbeaver/launch-product.sh': Operation not permitted chown: changing ownership of '/opt/cloudbeaver': Operation not permitted su: cannot set groups: Operation not permittedthe read only file system errors will be due to mounts which is fine but not sure about the rest
I suspect this might be related to security context limitations but we have some limits on what we can change due to us running on AWS EKS Fargate which requires things like allowPrivilegeEscalation being set to false
Environment