Known Issues in Cloudera Data Services on premises 1.5.4-SP1
The following are the new known issues in the 1.5.4 service pack SP1 release of Cloudera Data Services on premises.
- CDPVC-1739 - Rollback workload username generation changes to pre 1.5.4-SP1 state in Cloudera Data Services on premises
- 
          The current system for generating workload usernames in CDE, which shares code with PbC, automatically converts usernames to lowercase. Additionally, it removes special characters/spaces and adds prefixes if the IdP (Identity Provider) user ID starts with a number. This automated transformation creates a significant issue: Ranger, a critical component for authorization, requires the workload username to exactly match the IdP user ID. If an IdP user ID from LDAP/SAML contains uppercase or mixed-case characters, special characters, spaces, or starts with a number, the CDE transformation will result in a mismatch. This mismatch prevents Ranger from properly recognizing and authorizing users, leading to functionality issues. 
- OBS-6044 - Warning alert in the Cloudera Embedded Container Service Health Test status when a cluster is restarted for stability execution
- The following warning alert is shown in the Cloudera Embedded Container Service Health Test status when a cluster is restarted in Cloudera Manager for stability execution. Prometheus has issues compacting blocksThis issue occurs when WAL (Write Ahead Logs) are corrupted. 
- OPSX-5810 - Cloudera Control Plane on premises installation fails at the vault initialization phase due to longhorn-manager pods
- 
          At times, longhorn-manager pods will fail to come up with repeating error messages like:level=error msg="Failed to save TLS secret for longhorn-system/longhorn-webhook-tls: Operation cannot be fulfilled on secrets \"longhorn-webhook-tls\": the object has been modified; please apply your changes to the latest version and try again" This causes the Longhorn nodes to remain in a NotReady state, stopping volumes from successfully being created/attached. 
- OPSX-5403 - Typecasting fails when truststore password is integer
- The truststore_password in the SCM configuration should not be an integer for Private Cloud installation.
- OPSX-4684 - Start Cloudera Embedded Container Service command shows finished successfully even though start docker server failed on one of the hosts
- Docker service starts with one or more docker roles failed to start because the corresponding host is unhealthy.
- OPSX-4391 - External docker cert not base64 encoded
- 
          When using Cloudera Data Services on premises on Cloudera Embedded Container Service, in some rare situations, the CA certificate for the Docker registry in the cdp namespace is incorrectly encoded, resulting in TLS errors when connecting to the Docker registry. 
- OPSX-3323 - Custom Log redaction does not work for JSON files in diag bundles
- 
          The JSON files within the diag bundle will not be redacted. 
- OPSX-2772 - For Account Administrator user, update roles functionality should be disabled
- When a user with administrative privileges accesses the User Management > Update Roles page in the Cloudera Management Console, the user is presented with options to select various roles. Selecting or deselecting these roles does not change this user's privileges -- an administrative user, by default, has all privileges, and those privileges cannot be changed.
