Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

EKS Discovery auto-enroll flow assumes user knowledge #41362

Open
stevenGravy opened this issue May 9, 2024 · 1 comment
Open

EKS Discovery auto-enroll flow assumes user knowledge #41362

stevenGravy opened this issue May 9, 2024 · 1 comment
Labels
bug discover Issues related to Teleport Discover

Comments

@stevenGravy
Copy link
Contributor

Expected behavior:

Teleport would provide more of a guided exp:

  • Create a token to use
  • Provide any information on required tools
  • Show how to install Teleport or create a ECS discovery service

This might be the first time a user goes to enroll a resource in Teleport. Assuming they can do all this can be too much.

Current behavior:

The all enroll for EKS requires a user to have tctl available. There is no pre-req or info where to get tctl
This also assume a user knows how to install Teleport. There is no pre-req to having a Linux machine or how to install Teleport on that machine.

image

Bug details:

  • Teleport version: 15.3.1
  • Recreation steps
  1. Enroll EKS in Access Mgmt
  2. Go to Enroll EKS Cluster step
@stevenGravy stevenGravy added bug discover Issues related to Teleport Discover labels May 9, 2024
@webvictim
Copy link
Contributor

webvictim commented May 9, 2024

The UI also doesn't tell you that you need to add an IAM role to the instance running the discovery_service, which is step 1 in the EKS auto-discovery docs: https://goteleport.com/docs/auto-discovery/kubernetes/aws/#step-13-set-up-aws-iam-credentials

OK, so you don't actually need an IAM role on your discovery service when you're using an AWS integration. This is because EKS auto-discovery and EKS auto-discovery via Discover are two different things...

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug discover Issues related to Teleport Discover
Projects
None yet
Development

No branches or pull requests

2 participants