In Flexera Ocean, AKS clusters that use shutdown hours can temporarily start without the Ocean admission controller running. If spot toleration injection is enabled during this time, Ocean may launch regular VMs in addition to Spot VMs after shutdown hours end.
This can happen even when the Spot percentage is set to 100 percent. Regular VMs are created before the Ocean admission controller webhook becomes available, so tolerations are not injected into workloads at admission time.
The steps below describe a workaround that forces workloads to wait until the admission controller is running, ensuring Spot tolerations are applied correctly.
Do not apply this configuration in production clusters. If the admission controller pods fail or remain stuck, workloads can stay in a pending state indefinitely.
-
Edit the webhook configuration
Run the following command to open the Ocean admission controller webhook configuration:
kubectl edit MutatingWebhookConfiguration spot-admission-controller.kube-system.svc -
Verify the object selector configuration
Make sure the following
objectSelectorblock exists in the webhook configuration:objectSelector: matchExpressions: - key: app.kubernetes.io/name operator: NotIn values: - spot-admission-controllerThis configuration prevents the webhook from mutating its own admission controller pods.
-
Reinstall the admission controller if needed
If the
objectSelectorblock is missing, reinstall the Spot admission controller so the configuration is recreated correctly. -
Update the failure policy
Locate the
failurePolicyfield and set it toFail:failurePolicy: FailThis setting forces Kubernetes to wait for the admission controller to be available before allowing pod creation.
-
Save the changes
Save and close the editor to apply the updated webhook configuration.
Related Articles
Understand shutdown hours support in GKE shielded node clusters 3Number of Views Prevent on‑demand instances from reverting to Spot outside configured hours 4Number of Views Why Ocean doesn’t launch a node automatically after shutdown hours end in EKS 9Number of Views Prevent FlexNet inventory agent AgentID collisions when cloning virtual machines 41Number of Views Use AWS node termination handler on Spot nodes in EKS 3Number of Views
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Revenera Assistant
Case id: 00001065
Activity: Status change: 2 hours ago