<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: &amp;quot;Failed to resolve RBAC resources for defender&amp;quot; - Repeating defender ERRO in console logs. in Prisma Cloud Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/quot-failed-to-resolve-rbac-resources-for-defender-quot/m-p/508540#M514</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/152993"&gt;@DmitryKurakin&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;The error ""Failed to resolve RBAC resources for defender"&amp;nbsp;you’re seeing is related to our k8s service account monitoring.&amp;nbsp;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;This is a feature where periodically every 15 minutes each defender running as part of a daemon set fetches the k8s cluster’s RBAC resources: roles, cluster roles, role bindings, cluster role bindings.&lt;BR /&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;This is used for example to show a list of roles and cluster roles for the service account associated with a container scanned by Prisma Cloud, in the container radar accessible under Radars &amp;gt; Containers.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;As for why the error is happening, according to the error message when the defender tries to access the k8s API server to fetch the roles, it maybe due to insufficient permissions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Another reason could be a proxy is used and its not defined properly in Prisma Cloud Defender settings.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;Can you please raise a support case and one of our TAC engineer can help to debug this to find the&amp;nbsp;exact&amp;nbsp;cause.&lt;BR /&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Jul 2022 05:43:38 GMT</pubDate>
    <dc:creator>pdhamenia</dc:creator>
    <dc:date>2022-07-12T05:43:38Z</dc:date>
    <item>
      <title>"Failed to resolve RBAC resources for defender" - Repeating defender ERRO in console logs.</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/quot-failed-to-resolve-rbac-resources-for-defender-quot/m-p/462084#M445</link>
      <description>&lt;P&gt;Every 15 minutes for several agents from different k8s clusters, such an error appears in the console:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ERRO 2022-01-30T21:38:05.885 pubsub_defender.go:2154 Failed to resolve RBAC resources for defender *defender_name*: {*k8s_cluster_name* {Get "&lt;A href="https://10.233.0.1:443/apis/rbac.authorization.k8s.io/v1/roles" target="_blank" rel="noopener"&gt;https://10.233.0.1:443/apis/rbac.authorization.k8s.io/v1/roles&lt;/A&gt;": URLBlocked &amp;lt;nil&amp;gt;} { &amp;lt;nil&amp;gt;}} (failed to fetch RBAC resources: )&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Everything else is working properly...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Perhaps this is due to "&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;11&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN class=""&gt;Monitor service accounts"&amp;nbsp;&lt;/SPAN&gt;(checkbox when installing the defender) and defender does not have enough rights for this? either agents are on specific nodes of the cluster on which they cannot access the head of k8s api and RBAC..?&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Has anyone encountered a similar error, any ideas?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;LI-PRODUCT title="Prisma Cloud" id="Prisma_Cloud"&gt;&lt;/LI-PRODUCT&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jul 2022 19:31:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/quot-failed-to-resolve-rbac-resources-for-defender-quot/m-p/462084#M445</guid>
      <dc:creator>DmitryKurakin</dc:creator>
      <dc:date>2022-07-28T19:31:35Z</dc:date>
    </item>
    <item>
      <title>Re: "Failed to resolve RBAC resources for defender" - Repeating defender ERRO in console logs.</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/quot-failed-to-resolve-rbac-resources-for-defender-quot/m-p/484472#M494</link>
      <description>&lt;P&gt;We experience the same issue with Prisma Compute.&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2022 10:15:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/quot-failed-to-resolve-rbac-resources-for-defender-quot/m-p/484472#M494</guid>
      <dc:creator>ElenaBel</dc:creator>
      <dc:date>2022-05-03T10:15:12Z</dc:date>
    </item>
    <item>
      <title>Re: "Failed to resolve RBAC resources for defender" - Repeating defender ERRO in console logs.</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/quot-failed-to-resolve-rbac-resources-for-defender-quot/m-p/508540#M514</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/152993"&gt;@DmitryKurakin&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;The error ""Failed to resolve RBAC resources for defender"&amp;nbsp;you’re seeing is related to our k8s service account monitoring.&amp;nbsp;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;This is a feature where periodically every 15 minutes each defender running as part of a daemon set fetches the k8s cluster’s RBAC resources: roles, cluster roles, role bindings, cluster role bindings.&lt;BR /&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;This is used for example to show a list of roles and cluster roles for the service account associated with a container scanned by Prisma Cloud, in the container radar accessible under Radars &amp;gt; Containers.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;As for why the error is happening, according to the error message when the defender tries to access the k8s API server to fetch the roles, it maybe due to insufficient permissions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Another reason could be a proxy is used and its not defined properly in Prisma Cloud Defender settings.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;Can you please raise a support case and one of our TAC engineer can help to debug this to find the&amp;nbsp;exact&amp;nbsp;cause.&lt;BR /&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jul 2022 05:43:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/quot-failed-to-resolve-rbac-resources-for-defender-quot/m-p/508540#M514</guid>
      <dc:creator>pdhamenia</dc:creator>
      <dc:date>2022-07-12T05:43:38Z</dc:date>
    </item>
  </channel>
</rss>

