Skip to content

fix(chart): skip falcoctl config volume when artifacts are disabled#3894

Open
immanuwell wants to merge 1 commit into
falcosecurity:masterfrom
immanuwell:fix/falcoctl-config-volume
Open

fix(chart): skip falcoctl config volume when artifacts are disabled#3894
immanuwell wants to merge 1 commit into
falcosecurity:masterfrom
immanuwell:fix/falcoctl-config-volume

Conversation

@immanuwell

Copy link
Copy Markdown

/kind bug
/kind chart-release
/area chart

What this PR does / why we need it:

Tiny chart papercut. When both falcoctl artifact containers are disabled, the falcoctl ConfigMap is skipped but the pod still references falcoctl-config-volume. Kubernetes then tries to mount a ConfigMap that does not exist, so yeah, pod startup can fail.

Repro:

helm template rendered-resources chart/falco \
  --set falcoctl.artifact.install.enabled=false \
  --set falcoctl.artifact.follow.enabled=false | \
  rg "falcoctl-config-volume|falcoctl.yaml|rendered-resources-falco-falcoctl"

Before this fix, the pod rendered falcoctl-config-volume pointing to rendered-resources-falco-falcoctl, while that ConfigMap was not rendered. After this fix, no stale falcoctl ConfigMap refs are rendered when both artifact containers are off.

Which issue(s) this PR fixes:

None found.

Special notes for your reviewer:

make chart-check passes locally.

Does this PR introduce a user-facing change?:

fix(chart): do not render the falcoctl config volume when falcoctl artifact install and follow are disabled

Signed-off-by: immanuwell <pchpr.00@list.ru>
@poiana

poiana commented May 21, 2026

Copy link
Copy Markdown
Contributor

Welcome @immanuwell! It looks like this is your first PR to falcosecurity/falco 🎉

@poiana poiana added the size/M label May 21, 2026
@poiana
poiana requested review from Kaizhe and irozzo-1A May 21, 2026 09:46
@poiana

poiana commented May 21, 2026

Copy link
Copy Markdown
Contributor

LGTM label has been added.

DetailsGit tree hash: 4bf022086180d6c20d1b3431df6c4ceab313e7db

@leogr leogr left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM.

/hold we are releasing Falco 0.44 and we are under freeze currently. TBD if we want to merge this now or immediately after the release

@github-project-automation github-project-automation Bot moved this from Todo to In progress in Falco Roadmap May 21, 2026
@poiana

poiana commented May 21, 2026

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: immanuwell, leogr, sgaist

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

Status: In progress

Development

Successfully merging this pull request may close these issues.

4 participants