fix(argo): let Flux replace a one-shot retirement Job #470
Loading…
Reference in a new issue
No description provided.
Delete branch "sean/tombstone-force"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
A Job's pod template is immutable, so the read-grant fix could not reach either tombstone: Flux's dry-run refused it with 'field is immutable', and because that dry-run fails the WHOLE pipelines-retirement Kustomization went Ready: False -- nothing in it reconciled, not the corrected Job, not the ClusterRole beside it, not the other four tombstones. That is the worst property for the one component whose purpose is to run a script once and be corrected when it is wrong. kustomize.toolkit.fluxcd.io/force: enabled makes Flux recreate instead of patch; it is the same annotation rustfs-identities/tempo.yaml already carries. A new guard requires it of every Job in the component, refuses to pass on an empty scan, and has a negative control. https://claude.ai/code/session_01KZoQin34jeyt6nDGqvJA76