Unable to delete existing gatekeeper artifacts in ARO cluster

Koteru Reddy (LTIMindtree Limited) 85 Reputation points Microsoft External Staff
2025-11-03T06:54:56.4966667+00:00

I was not able to delete existing gatekeeper artifacts. these are platform managed resources, and I do not have access to delete them.

they need to be deleted first before we can install azure policy arc extension, Could you please help us to suggest a way to delete the gatekeeper artifacts.

  1. namespace: <masked by moderator> 
  2. any crds that contain <masked by moderator>

and then please let me know how you were able to delete them so we can run this before installing the extension 

once you delete those two, 

 when you run 

kubectl get crds

kubectl get deployments -A

 

you should not see the word "gatekeeper" anywhere

Azure Red Hat OpenShift
Azure Red Hat OpenShift

An Azure service that provides a flexible, self-service deployment of fully managed OpenShift clusters.


Answer accepted by question author

Anonymous
2025-11-03T09:15:14.6733333+00:00

Hello Koteru Reddy (LTIMindtree Limited), Yes, you are correct since these are ARO managed resources, even if you are able to delete them those resources (Gatekeeper) will get auto generated as it's by design of the ARO cluster.

To assist with this particular request as per shared business impact, we checked with the RedHat support team and they have mentioned that this ask can't be supported for entire subscription but only can be scoped for a specific/particular ARO cluster and that cluster shouldn't be deleted or re-created otherwise the cluster name will get changed and the exception will be revoked.

Was this answer helpful?

1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.