Raman Pandey
2 min readJun 17, 2019

--

Hi Shatrugna Sadhu,

I’m trying to install service-catalog( https://github.com/kubernetes-sigs/service-catalog). but i’m getting this error for APIService object.

Name: v1beta1.servicecatalog.k8s.io
Namespace:
Labels: <none>
Annotations: <none>
API Version: apiregistration.k8s.io/v1
Kind: APIService
Metadata:
Creation Timestamp: 2019–06–17T10:40:50Z
Resource Version: 21188
Self Link: /apis/apiregistration.k8s.io/v1/apiservices/v1beta1.servicecatalog.k8s.io
UID: 5fcd5ea3–90ec-11e9-b365–005056a5efb4
Spec:
Ca Bundle: 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
Group: servicecatalog.k8s.io
Group Priority Minimum: 10000
Service:
Name: catalog-catalog-apiserver
Namespace: catalog
Version: v1beta1
Version Priority: 20
Status:
Conditions:
Last Transition Time: 2019–06–17T10:40:50Z
Message: no response from https://10.233.31.47:443: Get https://10.233.31.47:443: dial tcp 10.233.31.47:443: connect: connection refused
Reason: FailedDiscoveryCheck
Status: False
Type: Available
Events: <none>

where 10.233.31.47 is catalog-apiserver service IP.

I’ve tried multiple ways to fix this but still i’m struck with this error. Any help would be much appreciated. I’m using calico as overlay network and i can’t see any error with calico and kube-proxy logs and have following settings in kube-apiserver.

  • kube-apiserver
    — — allow-privileged=true
    — — apiserver-count=1
    — — audit-log-maxage=30
    — — audit-log-maxbackup=1
    — — audit-log-maxsize=100
    — — audit-log-path=/var/log/audit/kube-apiserver-audit.log
    — — audit-policy-file=/etc/kubernetes/audit-policy/apiserver-audit-policy.yaml
    — — authorization-mode=RBAC
    — — bind-address=0.0.0.0
    — — endpoint-reconciler-type=lease
    — — insecure-port=0
    — — kubelet-preferred-address-types=InternalDNS,InternalIP,Hostname,ExternalDNS,ExternalIP
    — — runtime-config=admissionregistration.k8s.io/v1alpha1
    — — service-node-port-range=30000–32767
    — — storage-backend=etcd3
    — — advertise-address=161.92.248.32
    — — client-ca-file=/etc/kubernetes/ssl/ca.crt
    — — enable-bootstrap-token-auth=true
    — — etcd-cafile=/etc/ssl/etcd/ssl/ca.pem
    — — etcd-certfile=/etc/ssl/etcd/ssl/node-master-1.pem
    — — etcd-keyfile=/etc/ssl/etcd/ssl/node-master-1-key.pem
    — — etcd-servers=https://161.92.248.32:2379
    — — kubelet-client-certificate=/etc/kubernetes/ssl/apiserver-kubelet-client.crt
    — — kubelet-client-key=/etc/kubernetes/ssl/apiserver-kubelet-client.key
    — — proxy-client-cert-file=/etc/kubernetes/ssl/front-proxy-client.crt
    — — proxy-client-key-file=/etc/kubernetes/ssl/front-proxy-client.key
    — — requestheader-allowed-names=front-proxy-client
    — — requestheader-client-ca-file=/etc/kubernetes/ssl/front-proxy-ca.crt
    — — requestheader-extra-headers-prefix=X-Remote-Extra-
    — — requestheader-group-headers=X-Remote-Group
    — — requestheader-username-headers=X-Remote-User
    — — secure-port=6443
    — — service-account-key-file=/etc/kubernetes/ssl/sa.pub
    — — service-cluster-ip-range=10.233.0.0/18
    — — tls-cert-file=/etc/kubernetes/ssl/apiserver.crt
    — — tls-private-key-file=/etc/kubernetes/ssl/apiserver.key

also i’m running kube-api server, kube-controller-manager behind the corporate proxy.

Please suggest any possible solution of this issue.

Thanks.

--

--

Raman Pandey
Raman Pandey

Written by Raman Pandey

Software Engineer at BookMyShow

No responses yet