# spec.auth.fileRealm rejected by admission webhook in eck-operator 1.4

**URL:** <https://discuss.elastic.co/t/spec-auth-filerealm-rejected-by-admission-webhook-in-eck-operator-1-4/265625>\
**Category:** Elastic Cloud on Kubernetes (ECK)\
**Created:** [February 26, 2021, 3:38pm UTC](https://discuss.elastic.co/t/spec-auth-filerealm-rejected-by-admission-webhook-in-eck-operator-1-4/265625 "2021-02-26T15:38:13Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Tihomir\_Plachkov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tihomir_plachkov/32/46404_2.png) [@Tihomir\_Plachkov](https://discuss.elastic.co/u/Tihomir_Plachkov)\
**Post date:** [February 26, 2021, 3:38pm UTC](https://discuss.elastic.co/t/spec-auth-filerealm-rejected-by-admission-webhook-in-eck-operator-1-4/265625/1 "2021-02-26T15:38:14Z")

</div>

master version: 1.16.15-gke.7800  
node version: 1.15.12-gke.20  
kubectl apply test.yaml

> Error from server ([Elasticsearch.elasticsearch.k8s.elastic.co](http://Elasticsearch.elasticsearch.k8s.elastic.co) "elasticsearch-sample" is invalid: auth: Invalid value: "auth": auth field found in the [kubectl.kubernetes.io/last-applied-configuration](http://kubectl.kubernetes.io/last-applied-configuration) annotation is unknown. This is often due to incorrect indentation in the manifest.): error when creating "test.yaml": admission webhook "[elastic-es-validation-v1beta1.k8s.elastic.co](http://elastic-es-validation-v1beta1.k8s.elastic.co)" denied the request: [Elasticsearch.elasticsearch.k8s.elastic.co](http://Elasticsearch.elasticsearch.k8s.elastic.co) "elasticsearch-sample" is invalid: auth: Invalid value: "auth": auth field found in the [kubectl.kubernetes.io/last-applied-configuration](http://kubectl.kubernetes.io/last-applied-configuration) annotation is unknown. This is often due to incorrect indentation in the manifest.

I've taken the manifest in test.yaml from the official eck documentation at

> **[Users and roles | Elastic Cloud on Kubernetes \[1.4\] | Elastic](https://www.elastic.co/guide/en/cloud-on-k8s/1.4/k8s-users-and-roles.html#k8s_file_realm)**

It works with 1.3 eck operator.

---

<div class="post-metadata">

**Author:** ![pebrc](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/pebrc/32/101790_2.png) [@pebrc](https://discuss.elastic.co/u/pebrc)\
**Post date:** [February 26, 2021, 8:59pm UTC](https://discuss.elastic.co/t/spec-auth-filerealm-rejected-by-admission-webhook-in-eck-operator-1-4/265625/2 "2021-02-26T20:59:13Z")

</div>

Did you by any chance install ECK via Helm? If so you might be hitting an issue with the validating webhook where the webhook for the v1beta1 API version validates your request where the file realm support was not present yet.

A workaround is outlined here [Elastic Search, not able to modify the settings - #5 by charith-elastic](https://discuss.elastic.co/t/elastic-search-not-able-to-modify-the-settings/265129/5)

We will also [update our documentation](https://github.com/elastic/cloud-on-k8s/pull/4272/files) to call out the issue and ship a fix for the Helm chart as soon as possible.

---

<div class="post-metadata">

**Author:** ![Tihomir\_Plachkov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tihomir_plachkov/32/46404_2.png) [@Tihomir\_Plachkov](https://discuss.elastic.co/u/Tihomir_Plachkov)\
**Post date:** [March 2, 2021, 2:46pm UTC](https://discuss.elastic.co/t/spec-auth-filerealm-rejected-by-admission-webhook-in-eck-operator-1-4/265625/3 "2021-03-02T14:46:21Z")

</div>

Yes, ECK has been installed via helm.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 30, 2021, 2:46pm UTC](https://discuss.elastic.co/t/spec-auth-filerealm-rejected-by-admission-webhook-in-eck-operator-1-4/265625/4 "2021-03-30T14:46:44Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
