This job view page is being replaced by Spyglass soon. Check out the new job view.
PRwojtek-t: [WIP] [DO NOT REVIEW] Debug leaking goroutines
ResultFAILURE
Tests 16 failed / 3478 succeeded
Started2022-07-19 06:33
Elapsed45m35s
Revisionf9543f966ecb2046df83c463efb140e9250fb422
Refs 109284

Test Failures


k8s.io/kubernetes/test/integration/controlplane/transformation TestKMSProvider 5.39s

go test -v k8s.io/kubernetes/test/integration/controlplane/transformation -run TestKMSProvider$
=== RUN   TestKMSProvider
I0719 06:57:47.046802  115975 kms_plugin_mock.go:108] Listening on @kms-provider.sock
    testserver.go:381: Resolved testserver package path to: "/home/prow/go/src/k8s.io/kubernetes/_output/local/go/src/k8s.io/kubernetes/cmd/kube-apiserver/app/testing"
I0719 06:57:47.876327  115975 serving.go:342] Generated self-signed cert (/tmp/kubernetes-kube-apiserver1611569238/apiserver.crt, /tmp/kubernetes-kube-apiserver1611569238/apiserver.key)
I0719 06:57:47.876343  115975 server.go:559] external host was not specified, using 192.168.1.10
W0719 06:57:47.876354  115975 authentication.go:526] AnonymousAuth is not allowed with the AlwaysAllow authorizer. Resetting AnonymousAuth to false. You should use a different authorizer
    testserver.go:212: runtime-config=map[api/all:true]
    testserver.go:213: Starting kube-apiserver on port 39527...
W0719 06:57:48.237641  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.237672  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.237684  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.237882  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238112  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238144  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238487  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238522  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238555  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238598  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238769  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.238966  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.239011  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 06:57:48.239067  115975 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 06:57:48.239081  115975 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 06:57:48.239190  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.239213  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 06:57:48.240246  115975 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 06:57:48.240264  115975 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 06:57:48.275119  115975 genericapiserver.go:653] Skipping API apiextensions.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.275277  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 06:57:48.276523  115975 instance.go:260] Using reconciler: lease
W0719 06:57:48.592116  115975 genericapiserver.go:653] Skipping API authentication.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.594526  115975 genericapiserver.go:653] Skipping API authorization.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.623897  115975 genericapiserver.go:653] Skipping API certificates.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.626484  115975 genericapiserver.go:653] Skipping API coordination.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.632751  115975 genericapiserver.go:653] Skipping API networking.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.636377  115975 genericapiserver.go:653] Skipping API node.k8s.io/v1alpha1 because it has no resources.
W0719 06:57:48.643323  115975 genericapiserver.go:653] Skipping API rbac.authorization.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.643346  115975 genericapiserver.go:653] Skipping API rbac.authorization.k8s.io/v1alpha1 because it has no resources.
W0719 06:57:48.645083  115975 genericapiserver.go:653] Skipping API scheduling.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.645108  115975 genericapiserver.go:653] Skipping API scheduling.k8s.io/v1alpha1 because it has no resources.
W0719 06:57:48.664419  115975 genericapiserver.go:653] Skipping API apps/v1beta2 because it has no resources.
W0719 06:57:48.664444  115975 genericapiserver.go:653] Skipping API apps/v1beta1 because it has no resources.
W0719 06:57:48.666749  115975 genericapiserver.go:653] Skipping API admissionregistration.k8s.io/v1beta1 because it has no resources.
I0719 06:57:48.671419  115975 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 06:57:48.671439  115975 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 06:57:48.673067  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 06:57:48.691973  115975 genericapiserver.go:653] Skipping API apiregistration.k8s.io/v1beta1 because it has no resources.
W0719 06:57:48.692368  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
    testserver.go:233: Waiting for /healthz to be ok...
I0719 06:57:50.169764  115975 dynamic_cafile_content.go:157] "Starting controller" name="request-header::/tmp/kubernetes-kube-apiserver1611569238/proxy-ca.crt"
I0719 06:57:50.169809  115975 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver1611569238/client-ca.crt"
I0719 06:57:50.170078  115975 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kubernetes-kube-apiserver1611569238/apiserver.crt::/tmp/kubernetes-kube-apiserver1611569238/apiserver.key"
I0719 06:57:50.170209  115975 secure_serving.go:210] Serving securely on 127.0.0.1:39527
I0719 06:57:50.170332  115975 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 06:57:50.173592  115975 autoregister_controller.go:141] Starting autoregister controller
I0719 06:57:50.173611  115975 cache.go:32] Waiting for caches to sync for autoregister controller
I0719 06:57:50.173800  115975 customresource_discovery_controller.go:209] Starting DiscoveryController
W0719 06:57:50.174007  115975 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 06:57:50.174161  115975 cluster_authentication_trust_controller.go:440] Starting cluster_authentication_trust_controller controller
I0719 06:57:50.174174  115975 shared_informer.go:255] Waiting for caches to sync for cluster_authentication_trust_controller
I0719 06:57:50.174203  115975 apiservice_controller.go:97] Starting APIServiceRegistrationController
I0719 06:57:50.174210  115975 cache.go:32] Waiting for caches to sync for APIServiceRegistrationController controller
I0719 06:57:50.174261  115975 controller.go:80] Starting OpenAPI V3 AggregationController
I0719 06:57:50.174297  115975 apf_controller.go:317] Starting API Priority and Fairness config controller
I0719 06:57:50.174572  115975 available_controller.go:491] Starting AvailableConditionController
I0719 06:57:50.174587  115975 cache.go:32] Waiting for caches to sync for AvailableConditionController controller
I0719 06:57:50.174604  115975 controller.go:83] Starting OpenAPI AggregationController
I0719 06:57:50.177832  115975 crdregistration_controller.go:111] Starting crd-autoregister controller
I0719 06:57:50.177854  115975 shared_informer.go:255] Waiting for caches to sync for crd-autoregister
I0719 06:57:50.177897  115975 controller.go:85] Starting OpenAPI controller
I0719 06:57:50.177955  115975 controller.go:85] Starting OpenAPI V3 controller
I0719 06:57:50.177990  115975 naming_controller.go:291] Starting NamingConditionController
I0719 06:57:50.178025  115975 establishing_controller.go:76] Starting EstablishingController
I0719 06:57:50.178056  115975 nonstructuralschema_controller.go:192] Starting NonStructuralSchemaConditionController
I0719 06:57:50.178083  115975 apiapproval_controller.go:186] Starting KubernetesAPIApprovalPolicyConformantConditionController
I0719 06:57:50.178124  115975 crd_finalizer.go:266] Starting CRDFinalizer
I0719 06:57:50.178176  115975 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver1611569238/client-ca.crt"
I0719 06:57:50.185882  115975 dynamic_cafile_content.go:157] "Starting controller" name="request-header::/tmp/kubernetes-kube-apiserver1611569238/proxy-ca.crt"
W0719 06:57:50.196626  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.196995  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
I0719 06:57:50.203702  115975 kms_plugin_mock.go:139] Received request for Version: version:"v1beta1" 
W0719 06:57:50.204511  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.204603  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
I0719 06:57:50.206267  115975 controller.go:622] quota admission added evaluator for: namespaces
I0719 06:57:50.274384  115975 cache.go:39] Caches are synced for autoregister controller
I0719 06:57:50.274577  115975 cache.go:39] Caches are synced for APIServiceRegistrationController controller
I0719 06:57:50.274626  115975 shared_informer.go:262] Caches are synced for cluster_authentication_trust_controller
I0719 06:57:50.274583  115975 apf_controller.go:322] Running API Priority and Fairness config worker
I0719 06:57:50.274629  115975 cache.go:39] Caches are synced for AvailableConditionController controller
I0719 06:57:50.278206  115975 shared_informer.go:262] Caches are synced for crd-autoregister
W0719 06:57:50.284119  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.289350  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.294254  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.304216  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.312804  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.321780  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.326359  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.331111  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.331249  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.350236  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.350313  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.352058  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.356662  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.356692  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.361016  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.361168  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.364244  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.364277  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.368925  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.368991  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.373504  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.373571  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.379120  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.379155  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.383613  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.383628  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.388190  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.388447  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.392614  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.392649  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.397398  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.397511  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.402178  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.402216  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.406854  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.409633  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 06:57:50.413009  115975 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
I0719 06:57:50.849438  115975 controller.go:132] OpenAPI AggregationController: action for item k8s_internal_local_delegation_chain_0000000000: Nothing (removed from the queue).
I0719 06:57:51.178372  115975 storage_scheduling.go:95] created PriorityClass system-node-critical with value 2000001000
I0719 06:57:51.185549  115975 storage_scheduling.go:95] created PriorityClass system-cluster-critical with value 2000000000
I0719 06:57:51.185579  115975 storage_scheduling.go:111] all system priority classes are created successfully or already exist.
I0719 06:57:51.231254  115975 alloc.go:327] "allocated clusterIPs" service="default/kubernetes" clusterIPs=map[IPv4:10.0.0.1]
W0719 06:57:51.247152  115975 lease.go:250] Resetting endpoints for master service "kubernetes" to [192.168.1.10]
I0719 06:57:51.248172  115975 controller.go:622] quota admission added evaluator for: endpoints
I0719 06:57:51.253074  115975 controller.go:622] quota admission added evaluator for: endpointslices.discovery.k8s.io
I0719 06:57:51.297719  115975 transformation_testcase.go:91] Started kube-apiserver https://127.0.0.1:39527
I0719 06:57:51.301936  115975 kms_plugin_mock.go:139] Received request for Version: version:"v1beta1" 
    kms_transformation_test.go:285: DUMP
I0719 06:57:51.334287  115975 controller.go:211] Shutting down kubernetes service endpoint reconciler
E0719 06:57:51.342378  115975 controller.go:214] Unable to remove endpoints from kubernetes service: no master IPs were listed in storage, refusing to erase all endpoints for the kubernetes service
I0719 06:57:51.342491  115975 dynamic_cafile_content.go:171] "Shutting down controller" name="request-header::/tmp/kubernetes-kube-apiserver1611569238/proxy-ca.crt"
I0719 06:57:51.342513  115975 controller.go:157] Shutting down quota evaluator
I0719 06:57:51.342528  115975 controller.go:157] Shutting down quota evaluator
I0719 06:57:51.342536  115975 controller.go:176] quota evaluator worker shutdown
I0719 06:57:51.342554  115975 controller.go:176] quota evaluator worker shutdown
I0719 06:57:51.342554  115975 object_count_tracker.go:151] "StorageObjectCountTracker pruner is exiting"
I0719 06:57:51.342599  115975 controller.go:176] quota evaluator worker shutdown
I0719 06:57:51.342611  115975 controller.go:176] quota evaluator worker shutdown
I0719 06:57:51.342620  115975 dynamic_cafile_content.go:171] "Shutting down controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver1611569238/client-ca.crt"
I0719 06:57:51.342640  115975 controller.go:89] Shutting down OpenAPI AggregationController
I0719 06:57:51.342654  115975 controller.go:86] Shutting down OpenAPI V3 AggregationController
I0719 06:57:51.342663  115975 storage_flowcontrol.go:172] APF bootstrap ensurer is exiting
I0719 06:57:51.342700  115975 secure_serving.go:255] Stopped listening on 127.0.0.1:39527
I0719 06:57:51.342719  115975 nonstructuralschema_controller.go:204] Shutting down NonStructuralSchemaConditionController
I0719 06:57:51.342729  115975 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 06:57:51.342737  115975 establishing_controller.go:87] Shutting down EstablishingController
I0719 06:57:51.342749  115975 naming_controller.go:302] Shutting down NamingConditionController
I0719 06:57:51.342762  115975 controller.go:115] Shutting down OpenAPI V3 controller
I0719 06:57:51.342887  115975 controller.go:122] Shutting down OpenAPI controller
I0719 06:57:51.342908  115975 cluster_authentication_trust_controller.go:463] Shutting down cluster_authentication_trust_controller controller
I0719 06:57:51.342917  115975 crdregistration_controller.go:142] Shutting down crd-autoregister controller
I0719 06:57:51.342931  115975 crd_finalizer.go:278] Shutting down CRDFinalizer
I0719 06:57:51.342945  115975 dynamic_cafile_content.go:171] "Shutting down controller" name="request-header::/tmp/kubernetes-kube-apiserver1611569238/proxy-ca.crt"
I0719 06:57:51.342946  115975 apiapproval_controller.go:198] Shutting down KubernetesAPIApprovalPolicyConformantConditionController
I0719 06:57:51.342962  115975 available_controller.go:503] Shutting down AvailableConditionController
I0719 06:57:51.342978  115975 apf_controller.go:326] Shutting down API Priority and Fairness config worker
I0719 06:57:51.342991  115975 apiservice_controller.go:131] Shutting down APIServiceRegistrationController
I0719 06:57:51.343005  115975 customresource_discovery_controller.go:245] Shutting down DiscoveryController
I0719 06:57:51.343027  115975 autoregister_controller.go:165] Shutting down autoregister controller
I0719 06:57:51.342549  115975 controller.go:176] quota evaluator worker shutdown
I0719 06:57:51.342495  115975 controller.go:157] Shutting down quota evaluator
I0719 06:57:51.342854  115975 dynamic_cafile_content.go:171] "Shutting down controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver1611569238/client-ca.crt"
I0719 06:57:51.342771  115975 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kubernetes-kube-apiserver1611569238/apiserver.crt::/tmp/kubernetes-kube-apiserver1611569238/apiserver.key"
--- FAIL: TestKMSProvider (5.39s)

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/examples TestAggregatedAPIServer 26s

go test -v k8s.io/kubernetes/test/integration/examples -run TestAggregatedAPIServer$
=== RUN   TestAggregatedAPIServer
    testserver.go:381: Resolved testserver package path to: "/home/prow/go/src/k8s.io/kubernetes/_output/local/go/src/k8s.io/kubernetes/cmd/kube-apiserver/app/testing"
I0719 07:02:45.346237  118079 serving.go:342] Generated self-signed cert (/tmp/kubernetes-kube-apiserver3948161520/apiserver.crt, /tmp/kubernetes-kube-apiserver3948161520/apiserver.key)
I0719 07:02:45.346255  118079 server.go:559] external host was not specified, using 192.168.1.10
W0719 07:02:45.346276  118079 authentication.go:526] AnonymousAuth is not allowed with the AlwaysAllow authorizer. Resetting AnonymousAuth to false. You should use a different authorizer
    testserver.go:212: runtime-config=map[api/all:true]
    testserver.go:213: Starting kube-apiserver on port 37585...
W0719 07:02:45.817266  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.817296  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.817304  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.817517  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.817782  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.817820  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.818251  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.818291  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.818335  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.818381  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.818573  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.818726  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.818767  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:02:45.818849  118079 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 07:02:45.818868  118079 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 07:02:45.819034  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:45.819059  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:02:45.820164  118079 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 07:02:45.820188  118079 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 07:02:45.848846  118079 genericapiserver.go:653] Skipping API apiextensions.k8s.io/v1beta1 because it has no resources.
W0719 07:02:45.848954  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:02:45.849780  118079 instance.go:260] Using reconciler: lease
W0719 07:02:46.160723  118079 genericapiserver.go:653] Skipping API authentication.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.162759  118079 genericapiserver.go:653] Skipping API authorization.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.180776  118079 genericapiserver.go:653] Skipping API certificates.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.183034  118079 genericapiserver.go:653] Skipping API coordination.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.191175  118079 genericapiserver.go:653] Skipping API networking.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.195449  118079 genericapiserver.go:653] Skipping API node.k8s.io/v1alpha1 because it has no resources.
W0719 07:02:46.204300  118079 genericapiserver.go:653] Skipping API rbac.authorization.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.204329  118079 genericapiserver.go:653] Skipping API rbac.authorization.k8s.io/v1alpha1 because it has no resources.
W0719 07:02:46.206427  118079 genericapiserver.go:653] Skipping API scheduling.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.206451  118079 genericapiserver.go:653] Skipping API scheduling.k8s.io/v1alpha1 because it has no resources.
W0719 07:02:46.229224  118079 genericapiserver.go:653] Skipping API apps/v1beta2 because it has no resources.
W0719 07:02:46.229252  118079 genericapiserver.go:653] Skipping API apps/v1beta1 because it has no resources.
W0719 07:02:46.231856  118079 genericapiserver.go:653] Skipping API admissionregistration.k8s.io/v1beta1 because it has no resources.
I0719 07:02:46.237386  118079 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 07:02:46.237405  118079 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 07:02:46.238898  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:46.263164  118079 genericapiserver.go:653] Skipping API apiregistration.k8s.io/v1beta1 because it has no resources.
W0719 07:02:46.263669  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
    testserver.go:233: Waiting for /healthz to be ok...
I0719 07:02:47.787476  118079 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver3948161520/client-ca.crt"
I0719 07:02:47.787455  118079 dynamic_cafile_content.go:157] "Starting controller" name="request-header::/tmp/kubernetes-kube-apiserver3948161520/proxy-ca.crt"
I0719 07:02:47.787838  118079 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kubernetes-kube-apiserver3948161520/apiserver.crt::/tmp/kubernetes-kube-apiserver3948161520/apiserver.key"
I0719 07:02:47.787893  118079 secure_serving.go:210] Serving securely on 127.0.0.1:37585
I0719 07:02:47.787984  118079 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:02:47.791365  118079 available_controller.go:491] Starting AvailableConditionController
I0719 07:02:47.791390  118079 cache.go:32] Waiting for caches to sync for AvailableConditionController controller
I0719 07:02:47.791427  118079 autoregister_controller.go:141] Starting autoregister controller
I0719 07:02:47.791432  118079 cache.go:32] Waiting for caches to sync for autoregister controller
W0719 07:02:47.791671  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:02:47.791855  118079 cluster_authentication_trust_controller.go:440] Starting cluster_authentication_trust_controller controller
I0719 07:02:47.791872  118079 shared_informer.go:255] Waiting for caches to sync for cluster_authentication_trust_controller
I0719 07:02:47.791896  118079 apf_controller.go:317] Starting API Priority and Fairness config controller
I0719 07:02:47.792066  118079 customresource_discovery_controller.go:209] Starting DiscoveryController
I0719 07:02:47.792100  118079 apiservice_controller.go:97] Starting APIServiceRegistrationController
I0719 07:02:47.792107  118079 cache.go:32] Waiting for caches to sync for APIServiceRegistrationController controller
I0719 07:02:47.792186  118079 controller.go:83] Starting OpenAPI AggregationController
I0719 07:02:47.792984  118079 controller.go:80] Starting OpenAPI V3 AggregationController
I0719 07:02:47.793110  118079 crdregistration_controller.go:111] Starting crd-autoregister controller
I0719 07:02:47.793128  118079 shared_informer.go:255] Waiting for caches to sync for crd-autoregister
I0719 07:02:47.793185  118079 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver3948161520/client-ca.crt"
I0719 07:02:47.801429  118079 dynamic_cafile_content.go:157] "Starting controller" name="request-header::/tmp/kubernetes-kube-apiserver3948161520/proxy-ca.crt"
I0719 07:02:47.802394  118079 controller.go:85] Starting OpenAPI controller
I0719 07:02:47.802465  118079 controller.go:85] Starting OpenAPI V3 controller
I0719 07:02:47.802485  118079 naming_controller.go:291] Starting NamingConditionController
I0719 07:02:47.802509  118079 establishing_controller.go:76] Starting EstablishingController
I0719 07:02:47.802537  118079 nonstructuralschema_controller.go:192] Starting NonStructuralSchemaConditionController
I0719 07:02:47.802556  118079 apiapproval_controller.go:186] Starting KubernetesAPIApprovalPolicyConformantConditionController
I0719 07:02:47.802577  118079 crd_finalizer.go:266] Starting CRDFinalizer
W0719 07:02:47.812053  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.815473  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.816940  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.817992  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
I0719 07:02:47.819254  118079 controller.go:622] quota admission added evaluator for: namespaces
I0719 07:02:47.892389  118079 cache.go:39] Caches are synced for AvailableConditionController controller
I0719 07:02:47.892432  118079 shared_informer.go:262] Caches are synced for cluster_authentication_trust_controller
I0719 07:02:47.892480  118079 cache.go:39] Caches are synced for APIServiceRegistrationController controller
I0719 07:02:47.892494  118079 cache.go:39] Caches are synced for autoregister controller
I0719 07:02:47.892453  118079 apf_controller.go:322] Running API Priority and Fairness config worker
I0719 07:02:47.893179  118079 shared_informer.go:262] Caches are synced for crd-autoregister
W0719 07:02:47.898807  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.904694  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.940225  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.943709  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.948977  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.953349  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.957027  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.960725  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.960737  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.966480  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.966624  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.969671  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.969815  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.973242  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.973282  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.977781  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.977822  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.981320  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.981326  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.987184  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.987192  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.992459  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.992501  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.998172  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:47.998179  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.001348  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.001477  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.004988  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.005045  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.009639  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.009667  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.014051  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.014074  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.032877  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.032912  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.035438  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:02:48.040419  118079 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
I0719 07:02:48.500325  118079 controller.go:132] OpenAPI AggregationController: action for item k8s_internal_local_delegation_chain_0000000000: Nothing (removed from the queue).
I0719 07:02:48.795335  118079 storage_scheduling.go:95] created PriorityClass system-node-critical with value 2000001000
I0719 07:02:48.804273  118079 storage_scheduling.go:95] created PriorityClass system-cluster-critical with value 2000000000
I0719 07:02:48.804303  118079 storage_scheduling.go:111] all system priority classes are created successfully or already exist.
I0719 07:02:48.835932  118079 alloc.go:327] "allocated clusterIPs" service="default/kubernetes" clusterIPs=map[IPv4:10.0.0.1]
W0719 07:02:48.854517  118079 lease.go:250] Resetting endpoints for master service "kubernetes" to [192.168.1.10]
I0719 07:02:48.855562  118079 controller.go:622] quota admission added evaluator for: endpoints
I0719 07:02:48.861922  118079 controller.go:622] quota admission added evaluator for: endpointslices.discovery.k8s.io
    apiserver_test.go:285: Client: Server public key is "192.168.1.10@1658213547" [serving] validServingFor=[192.168.1.10,10.0.0.1,kubernetes.default.svc,kubernetes.default,kubernetes,localhost] issuer="192.168.1.10-ca@1658213547" (2022-07-19 05:52:27 +0000 UTC to 2122-06-25 05:52:27 +0000 UTC (now=2022-07-19 07:02:48.973206573 +0000 UTC))
    apiserver_test.go:285: Client: Server public key is "192.168.1.10-ca@1658213547" [] issuer="<self>" (2022-07-19 05:52:27 +0000 UTC to 2122-06-25 05:52:27 +0000 UTC (now=2022-07-19 07:02:48.973254136 +0000 UTC))
    apiserver_test.go:292: CA bundle "192.168.1.10@1658213547" [serving] validServingFor=[192.168.1.10,10.0.0.1,kubernetes.default.svc,kubernetes.default,kubernetes,localhost] issuer="192.168.1.10-ca@1658213547" (2022-07-19 05:52:27 +0000 UTC to 2122-06-25 05:52:27 +0000 UTC (now=2022-07-19 07:02:48.973325124 +0000 UTC))
    apiserver_test.go:292: CA bundle "192.168.1.10-ca@1658213547" [] issuer="<self>" (2022-07-19 05:52:27 +0000 UTC to 2122-06-25 05:52:27 +0000 UTC (now=2022-07-19 07:02:48.973337065 +0000 UTC))
I0719 07:02:49.733057  118079 serving.go:342] Generated self-signed cert (/tmp/test-integration-wardle-server1794606116/apiserver.crt, /tmp/test-integration-wardle-server1794606116/apiserver.key)
W0719 07:02:50.188993  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:50.189100  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:02:50.189158  118079 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
Error: unable to load configmap based request-header-client-ca-file: Get "https://127.0.0.1:37585/api/v1/namespaces/kube-system/configmaps/extension-apiserver-authentication": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1
Usage:
   [flags]

Flags:
      --admission-control-config-file string                    File with admission control configuration.
      --audit-log-batch-buffer-size int                         The size of the buffer to store events before batching and writing. Only used in batch mode. (default 10000)
      --audit-log-batch-max-size int                            The maximum size of a batch. Only used in batch mode. (default 1)
      --audit-log-batch-max-wait duration                       The amount of time to wait before force writing the batch that hadn't reached the max size. Only used in batch mode.
      --audit-log-batch-throttle-burst int                      Maximum number of requests sent at the same moment if ThrottleQPS was not utilized before. Only used in batch mode.
      --audit-log-batch-throttle-enable                         Whether batching throttling is enabled. Only used in batch mode.
      --audit-log-batch-throttle-qps float32                    Maximum average number of batches per second. Only used in batch mode.
      --audit-log-compress                                      If set, the rotated log files will be compressed using gzip.
      --audit-log-format string                                 Format of saved audits. "legacy" indicates 1-line text format for each event. "json" indicates structured json format. Known formats are legacy,json. (default "json")
      --audit-log-maxage int                                    The maximum number of days to retain old audit log files based on the timestamp encoded in their filename.
      --audit-log-maxbackup int                                 The maximum number of old audit log files to retain. Setting a value of 0 will mean there's no restriction on the number of files.
      --audit-log-maxsize int                                   The maximum size in megabytes of the audit log file before it gets rotated.
      --audit-log-mode string                                   Strategy for sending audit events. Blocking indicates sending events should block server responses. Batch causes the backend to buffer and write events asynchronously. Known modes are batch,blocking,blocking-strict. (default "blocking")
      --audit-log-path string                                   If set, all requests coming to the apiserver will be logged to this file.  '-' means standard out.
      --audit-log-truncate-enabled                              Whether event and batch truncating is enabled.
      --audit-log-truncate-max-batch-size int                   Maximum size of the batch sent to the underlying backend. Actual serialized size can be several hundreds of bytes greater. If a batch exceeds this limit, it is split into several batches of smaller size. (default 10485760)
      --audit-log-truncate-max-event-size int                   Maximum size of the audit event sent to the underlying backend. If the size of an event is greater than this number, first request and response are removed, and if this doesn't reduce the size enough, event is discarded. (default 102400)
      --audit-log-version string                                API group and version used for serializing audit events written to log. (default "audit.k8s.io/v1")
      --audit-policy-file string                                Path to the file that defines the audit policy configuration.
      --audit-webhook-batch-buffer-size int                     The size of the buffer to store events before batching and writing. Only used in batch mode. (default 10000)
      --audit-webhook-batch-max-size int                        The maximum size of a batch. Only used in batch mode. (default 400)
      --audit-webhook-batch-max-wait duration                   The amount of time to wait before force writing the batch that hadn't reached the max size. Only used in batch mode. (default 30s)
      --audit-webhook-batch-throttle-burst int                  Maximum number of requests sent at the same moment if ThrottleQPS was not utilized before. Only used in batch mode. (default 15)
      --audit-webhook-batch-throttle-enable                     Whether batching throttling is enabled. Only used in batch mode. (default true)
      --audit-webhook-batch-throttle-qps float32                Maximum average number of batches per second. Only used in batch mode. (default 10)
      --audit-webhook-config-file string                        Path to a kubeconfig formatted file that defines the audit webhook configuration.
      --audit-webhook-initial-backoff duration                  The amount of time to wait before retrying the first failed request. (default 10s)
      --audit-webhook-mode string                               Strategy for sending audit events. Blocking indicates sending events should block server responses. Batch causes the backend to buffer and write events asynchronously. Known modes are batch,blocking,blocking-strict. (default "batch")
      --audit-webhook-truncate-enabled                          Whether event and batch truncating is enabled.
      --audit-webhook-truncate-max-batch-size int               Maximum size of the batch sent to the underlying backend. Actual serialized size can be several hundreds of bytes greater. If a batch exceeds this limit, it is split into several batches of smaller size. (default 10485760)
      --audit-webhook-truncate-max-event-size int               Maximum size of the audit event sent to the underlying backend. If the size of an event is greater than this number, first request and response are removed, and if this doesn't reduce the size enough, event is discarded. (default 102400)
      --audit-webhook-version string                            API group and version used for serializing audit events written to webhook. (default "audit.k8s.io/v1")
      --authentication-kubeconfig string                        kubeconfig file pointing at the 'core' kubernetes server with enough rights to create tokenreviews.authentication.k8s.io.
      --authentication-skip-lookup                              If false, the authentication-kubeconfig will be used to lookup missing authentication configuration from the cluster.
      --authentication-token-webhook-cache-ttl duration         The duration to cache responses from the webhook token authenticator. (default 10s)
      --authentication-tolerate-lookup-failure                  If true, failures to look up missing authentication configuration from the cluster are not considered fatal. Note that this can result in authentication that treats all requests as anonymous.
      --authorization-always-allow-paths strings                A list of HTTP paths to skip during authorization, i.e. these are authorized without contacting the 'core' kubernetes server. (default [/healthz,/readyz,/livez])
      --authorization-kubeconfig string                         kubeconfig file pointing at the 'core' kubernetes server with enough rights to create subjectaccessreviews.authorization.k8s.io.
      --authorization-webhook-cache-authorized-ttl duration     The duration to cache 'authorized' responses from the webhook authorizer. (default 10s)
      --authorization-webhook-cache-unauthorized-ttl duration   The duration to cache 'unauthorized' responses from the webhook authorizer. (default 10s)
      --bind-address ip                                         The IP address on which to listen for the --secure-port port. The associated interface(s) must be reachable by the rest of the cluster, and by CLI/web clients. If blank or an unspecified address (0.0.0.0 or ::), all interfaces will be used. (default 127.0.0.1)
      --cert-dir string                                         The directory where the TLS certs are located. If --tls-cert-file and --tls-private-key-file are provided, this flag will be ignored. (default "apiserver.local.config/certificates")
      --client-ca-file string                                   If set, any request presenting a client certificate signed by one of the authorities in the client-ca-file is authenticated with an identity corresponding to the CommonName of the client certificate.
      --contention-profiling                                    Enable lock contention profiling, if profiling is enabled
      --delete-collection-workers int                           Number of workers spawned for DeleteCollection call. These are used to speed up namespace cleanup. (default 1)
      --disable-admission-plugins strings                       admission plugins that should be disabled although they are in the default enabled plugins list (NamespaceLifecycle, MutatingAdmissionWebhook, ValidatingAdmissionWebhook). Comma-delimited list of admission plugins: MutatingAdmissionWebhook, NamespaceLifecycle, ValidatingAdmissionWebhook. The order of plugins in this flag does not matter.
      --egress-selector-config-file string                      File with apiserver egress selector configuration.
      --enable-admission-plugins strings                        admission plugins that should be enabled in addition to default enabled ones (NamespaceLifecycle, MutatingAdmissionWebhook, ValidatingAdmissionWebhook). Comma-delimited list of admission plugins: MutatingAdmissionWebhook, NamespaceLifecycle, ValidatingAdmissionWebhook. The order of plugins in this flag does not matter.
      --enable-garbage-collector                                Enables the generic garbage collector. MUST be synced with the corresponding flag of the kube-controller-manager. (default true)
      --encryption-provider-config string                       The file containing configuration for encryption providers to be used for storing secrets in etcd
      --etcd-cafile string                                      SSL Certificate Authority file used to secure etcd communication.
      --etcd-certfile string                                    SSL certification file used to secure etcd communication.
      --etcd-compaction-interval duration                       The interval of compaction requests. If 0, the compaction request from apiserver is disabled. (default 5m0s)
      --etcd-count-metric-poll-period duration                  Frequency of polling etcd for number of resources per type. 0 disables the metric collection. (default 1m0s)
      --etcd-db-metric-poll-interval duration                   The interval of requests to poll etcd and update metric. 0 disables the metric collection (default 30s)
      --etcd-healthcheck-timeout duration                       The timeout to use when checking etcd health. (default 2s)
      --etcd-keyfile string                                     SSL key file used to secure etcd communication.
      --etcd-prefix string                                      The prefix to prepend to all resource paths in etcd. (default "/registry/wardle.example.com")
      --etcd-servers strings                                    List of etcd servers to connect with (scheme://ip:port), comma separated.
      --etcd-servers-overrides strings                          Per-resource etcd servers overrides, comma separated. The individual override format: group/resource#servers, where servers are URLs, semicolon separated. Note that this applies only to resources compiled into this server binary. 
      --feature-gates mapStringBool                             A set of key=value pairs that describe feature gates for alpha/experimental features. Options are:
                                                                APIListChunking=true|false (BETA - default=true)
                                                                APIPriorityAndFairness=true|false (BETA - default=true)
                                                                APIResponseCompression=true|false (BETA - default=true)
                                                                APIServerIdentity=true|false (ALPHA - default=false)
                                                                APIServerTracing=true|false (ALPHA - default=false)
                                                                AllAlpha=true|false (ALPHA - default=false)
                                                                AllBeta=true|false (BETA - default=false)
                                                                AnyVolumeDataSource=true|false (BETA - default=true)
                                                                AppArmor=true|false (BETA - default=true)
                                                                CPUManager=true|false (BETA - default=true)
                                                                CPUManagerPolicyAlphaOptions=true|false (ALPHA - default=false)
                                                                CPUManagerPolicyBetaOptions=true|false (BETA - default=true)
                                                                CPUManagerPolicyOptions=true|false (BETA - default=true)
                                                                CSIInlineVolume=true|false (BETA - default=true)
                                                                CSIMigrationAWS=true|false (BETA - default=true)
                                                                CSIMigrationAzureFile=true|false (BETA - default=true)
                                                                CSIMigrationGCE=true|false (BETA - default=true)
                                                                CSIMigrationPortworx=true|false (BETA - default=false)
                                                                CSIMigrationRBD=true|false (ALPHA - default=false)
                                                                CSIMigrationvSphere=true|false (BETA - default=true)
                                                                CSINodeExpandSecret=true|false (ALPHA - default=false)
                                                                CSIVolumeHealth=true|false (ALPHA - default=false)
                                                                ContainerCheckpoint=true|false (ALPHA - default=false)
                                                                ContextualLogging=true|false (ALPHA - default=false)
                                                                CronJobTimeZone=true|false (ALPHA - default=false)
                                                                CustomCPUCFSQuotaPeriod=true|false (ALPHA - default=false)
                                                                CustomResourceValidationExpressions=true|false (ALPHA - default=false)
                                                                DaemonSetUpdateSurge=true|false (BETA - default=true)
                                                                DelegateFSGroupToCSIDriver=true|false (BETA - default=true)
                                                                DevicePlugins=true|false (BETA - default=true)
                                                                DisableAcceleratorUsageMetrics=true|false (BETA - default=true)
                                                                DisableCloudProviders=true|false (ALPHA - default=false)
                                                                DisableKubeletCloudCredentialProviders=true|false (ALPHA - default=false)
                                                                DownwardAPIHugePages=true|false (BETA - default=true)
                                                                EndpointSliceTerminatingCondition=true|false (BETA - default=true)
                                                                EphemeralContainers=true|false (BETA - default=true)
                                                                ExpandedDNSConfig=true|false (ALPHA - default=false)
                                                                ExperimentalHostUserNamespaceDefaulting=true|false (BETA - default=false)
                                                                GRPCContainerProbe=true|false (BETA - default=true)
                                                                GracefulNodeShutdown=true|false (BETA - default=true)
                                                                GracefulNodeShutdownBasedOnPodPriority=true|false (BETA - default=true)
                                                                HPAContainerMetrics=true|false (ALPHA - default=false)
                                                                HPAScaleToZero=true|false (ALPHA - default=false)
                                                                HonorPVReclaimPolicy=true|false (ALPHA - default=false)
                                                                IdentifyPodOS=true|false (BETA - default=true)
                                                                InTreePluginAWSUnregister=true|false (ALPHA - default=false)
                                                                InTreePluginAzureDiskUnregister=true|false (ALPHA - default=false)
                                                                InTreePluginAzureFileUnregister=true|false (ALPHA - default=false)
                                                                InTreePluginGCEUnregister=true|false (ALPHA - default=false)
                                                                InTreePluginOpenStackUnregister=true|false (ALPHA - default=false)
                                                                InTreePluginPortworxUnregister=true|false (ALPHA - default=false)
                                                                InTreePluginRBDUnregister=true|false (ALPHA - default=false)
                                                                InTreePluginvSphereUnregister=true|false (ALPHA - default=false)
                                                                JobMutableNodeSchedulingDirectives=true|false (BETA - default=true)
                                                                JobReadyPods=true|false (BETA - default=true)
                                                                JobTrackingWithFinalizers=true|false (BETA - default=true)
                                                                KubeletCredentialProviders=true|false (BETA - default=true)
                                                                KubeletInUserNamespace=true|false (ALPHA - default=false)
                                                                KubeletPodResources=true|false (BETA - default=true)
                                                                KubeletPodResourcesGetAllocatable=true|false (BETA - default=true)
                                                                LegacyServiceAccountTokenNoAutoGeneration=true|false (BETA - default=true)
                                                                LocalStorageCapacityIsolation=true|false (BETA - default=true)
                                                                LocalStorageCapacityIsolationFSQuotaMonitoring=true|false (ALPHA - default=false)
                                                                LogarithmicScaleDown=true|false (BETA - default=true)
                                                                LoggingAlphaOptions=true|false (ALPHA - default=false)
                                                                LoggingBetaOptions=true|false (BETA - default=true)
                                                                MaxUnavailableStatefulSet=true|false (ALPHA - default=false)
                                                                MemoryManager=true|false (BETA - default=true)
                                                                MemoryQoS=true|false (ALPHA - default=false)
                                                                MinDomainsInPodTopologySpread=true|false (BETA - default=false)
                                                                MixedProtocolLBService=true|false (BETA - default=true)
                                                                NetworkPolicyStatus=true|false (ALPHA - default=false)
                                                                NodeInclusionPolicyInPodTopologySpread=true|false (ALPHA - default=false)
                                                                NodeOutOfServiceVolumeDetach=true|false (ALPHA - default=false)
                                                                NodeSwap=true|false (ALPHA - default=false)
                                                                OpenAPIEnums=true|false (BETA - default=true)
                                                                OpenAPIV3=true|false (BETA - default=true)
                                                                PodAndContainerStatsFromCRI=true|false (ALPHA - default=false)
                                                                PodDeletionCost=true|false (BETA - default=true)
                                                                ProbeTerminationGracePeriod=true|false (BETA - default=false)
                                                                ProcMountType=true|false (ALPHA - default=false)
                                                                ProxyTerminatingEndpoints=true|false (ALPHA - default=false)
                                                                QOSReserved=true|false (ALPHA - default=false)
                                                                ReadWriteOncePod=true|false (ALPHA - default=false)
                                                                RecoverVolumeExpansionFailure=true|false (ALPHA - default=false)
                                                                RemainingItemCount=true|false (BETA - default=true)
                                                                RotateKubeletServerCertificate=true|false (BETA - default=true)
                                                                SeccompDefault=true|false (BETA - default=true)
                                                                ServerSideFieldValidation=true|false (ALPHA - default=false)
                                                                ServiceIPStaticSubrange=true|false (BETA - default=true)
                                                                ServiceInternalTrafficPolicy=true|false (BETA - default=true)
                                                                SizeMemoryBackedVolumes=true|false (BETA - default=true)
                                                                StatefulSetAutoDeletePVC=true|false (ALPHA - default=false)
                                                                StorageVersionAPI=true|false (ALPHA - default=false)
                                                                StorageVersionHash=true|false (BETA - default=true)
                                                                TopologyAwareHints=true|false (BETA - default=true)
                                                                TopologyManager=true|false (BETA - default=true)
                                                                VolumeCapacityPriority=true|false (ALPHA - default=false)
                                                                WinDSR=true|false (ALPHA - default=false)
                                                                WinOverlay=true|false (BETA - default=true)
                                                                WindowsHostProcessContainers=true|false (BETA - default=true)
  -h, --help                                                    help for this command
      --http2-max-streams-per-connection int                    The limit that the server gives to clients for the maximum number of streams in an HTTP/2 connection. Zero means to use golang's default. (default 1000)
      --kubeconfig string                                       kubeconfig file pointing at the 'core' kubernetes server.
      --lease-reuse-duration-seconds int                        The time in seconds that each lease is reused. A lower value could avoid large number of objects reusing the same lease. Notice that a too small value may cause performance problems at storage layer. (default 60)
      --permit-address-sharing                                  If true, SO_REUSEADDR will be used when binding the port. This allows binding to wildcard IPs like 0.0.0.0 and specific IPs in parallel, and it avoids waiting for the kernel to release sockets in TIME_WAIT state. [default=false]
      --permit-port-sharing                                     If true, SO_REUSEPORT will be used when binding the port, which allows more than one instance to bind on the same address and port. [default=false]
      --profiling                                               Enable profiling via web interface host:port/debug/pprof/ (default true)
      --requestheader-allowed-names strings                     List of client certificate common names to allow to provide usernames in headers specified by --requestheader-username-headers. If empty, any client certificate validated by the authorities in --requestheader-client-ca-file is allowed.
      --requestheader-client-ca-file string                     Root certificate bundle to use to verify client certificates on incoming requests before trusting usernames in headers specified by --requestheader-username-headers. WARNING: generally do not depend on authorization being already done for incoming requests.
      --requestheader-extra-headers-prefix strings              List of request header prefixes to inspect. X-Remote-Extra- is suggested. (default [x-remote-extra-])
      --requestheader-group-headers strings                     List of request headers to inspect for groups. X-Remote-Group is suggested. (default [x-remote-group])
      --requestheader-username-headers strings                  List of request headers to inspect for usernames. X-Remote-User is common. (default [x-remote-user])
      --secure-port int                                         The port on which to serve HTTPS with authentication and authorization. If 0, don't serve HTTPS at all. (default 443)
      --storage-backend string                                  The storage backend for persistence. Options: 'etcd3' (default).
      --storage-media-type string                               The media type to use to store objects in storage. Some resources or storage backends may only support a specific media type and will ignore this setting. (default "application/json")
      --tls-cert-file string                                    File containing the default x509 Certificate for HTTPS. (CA cert, if any, concatenated after server cert). If HTTPS serving is enabled, and --tls-cert-file and --tls-private-key-file are not provided, a self-signed certificate and key are generated for the public address and saved to the directory specified by --cert-dir.
      --tls-cipher-suites strings                               Comma-separated list of cipher suites for the server. If omitted, the default Go cipher suites will be used. 
                                                                Preferred values: TLS_AES_128_GCM_SHA256, TLS_AES_256_GCM_SHA384, TLS_CHACHA20_POLY1305_SHA256, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305, TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305, TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256, TLS_RSA_WITH_AES_128_CBC_SHA, TLS_RSA_WITH_AES_128_GCM_SHA256, TLS_RSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_256_GCM_SHA384. 
                                                                Insecure values: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_RC4_128_SHA, TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_RSA_WITH_RC4_128_SHA, TLS_RSA_WITH_3DES_EDE_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA256, TLS_RSA_WITH_RC4_128_SHA.
      --tls-min-version string                                  Minimum TLS version supported. Possible values: VersionTLS10, VersionTLS11, VersionTLS12, VersionTLS13
      --tls-private-key-file string                             File containing the default x509 private key matching --tls-cert-file.
      --tls-sni-cert-key namedCertKey                           A pair of x509 certificate and private key file paths, optionally suffixed with a list of domain patterns which are fully qualified domain names, possibly with prefixed wildcard segments. The domain patterns also allow IP addresses, but IPs should only be used if the apiserver has visibility to the IP address requested by a client. If no domain patterns are provided, the names of the certificate are extracted. Non-wildcard matches trump over wildcard matches, explicit domain patterns trump over extracted names. For multiple key/certificate pairs, use the --tls-sni-cert-key multiple times. Examples: "example.crt,example.key" or "foo.crt,foo.key:*.foo.com,foo.com". (default [])
      --tracing-config-file string                              File with apiserver tracing configuration.
      --version version[=true]                                  Print version information and quit
      --watch-cache                                             Enable watch caching in the apiserver (default true)
      --watch-cache-sizes strings                               Watch cache size settings for some resources (pods, nodes, etc.), comma separated. The individual setting format: resource[.group]#size, where resource is lowercase plural (no version), group is omitted for resources of apiVersion v1 (the legacy core API) and included for others, and size is a number. This option is only meaningful for resources built into the apiserver, not ones defined by CRDs or aggregated from external servers, and is only consulted if the watch-cache is enabled. The only meaningful size setting to supply here is zero, which means to disable watch caching for the associated resource; all non-zero values are equivalent and mean to not disable watch caching for that resource

    apiserver_test.go:93: unable to load configmap based request-header-client-ca-file: Get "https://127.0.0.1:37585/api/v1/namespaces/kube-system/configmaps/extension-apiserver-authentication": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1
    apiserver_test.go:260: 
    apiserver_test.go:261: Get "https://127.0.0.1:42783/healthz": net/http: TLS handshake timeout
    apiserver_test.go:98: timed out waiting for the condition
I0719 07:03:09.777329  118079 controller.go:211] Shutting down kubernetes service endpoint reconciler
E0719 07:03:09.784898  118079 controller.go:214] Unable to remove endpoints from kubernetes service: no master IPs were listed in storage, refusing to erase all endpoints for the kubernetes service
I0719 07:03:09.785041  118079 dynamic_cafile_content.go:171] "Shutting down controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver3948161520/client-ca.crt"
I0719 07:03:09.785324  118079 available_controller.go:503] Shutting down AvailableConditionController
I0719 07:03:09.785345  118079 naming_controller.go:302] Shutting down NamingConditionController
I0719 07:03:09.785362  118079 establishing_controller.go:87] Shutting down EstablishingController
I0719 07:03:09.785392  118079 nonstructuralschema_controller.go:204] Shutting down NonStructuralSchemaConditionController
I0719 07:03:09.785413  118079 crd_finalizer.go:278] Shutting down CRDFinalizer
I0719 07:03:09.785430  118079 storage_flowcontrol.go:172] APF bootstrap ensurer is exiting
I0719 07:03:09.785441  118079 crdregistration_controller.go:142] Shutting down crd-autoregister controller
I0719 07:03:09.785459  118079 apf_controller.go:326] Shutting down API Priority and Fairness config worker
I0719 07:03:09.785468  118079 controller.go:122] Shutting down OpenAPI controller
I0719 07:03:09.785475  118079 autoregister_controller.go:165] Shutting down autoregister controller
I0719 07:03:09.785488  118079 controller.go:115] Shutting down OpenAPI V3 controller
I0719 07:03:09.785493  118079 apiservice_controller.go:131] Shutting down APIServiceRegistrationController
I0719 07:03:09.785355  118079 apiapproval_controller.go:198] Shutting down KubernetesAPIApprovalPolicyConformantConditionController
I0719 07:03:09.785506  118079 customresource_discovery_controller.go:245] Shutting down DiscoveryController
I0719 07:03:09.785658  118079 dynamic_cafile_content.go:171] "Shutting down controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver3948161520/client-ca.crt"
I0719 07:03:09.785690  118079 object_count_tracker.go:151] "StorageObjectCountTracker pruner is exiting"
I0719 07:03:09.785709  118079 controller.go:86] Shutting down OpenAPI V3 AggregationController
I0719 07:03:09.785727  118079 controller.go:89] Shutting down OpenAPI AggregationController
I0719 07:03:09.785785  118079 secure_serving.go:255] Stopped listening on 127.0.0.1:37585
I0719 07:03:09.785811  118079 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:03:09.785846  118079 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kubernetes-kube-apiserver3948161520/apiserver.crt::/tmp/kubernetes-kube-apiserver3948161520/apiserver.key"
I0719 07:03:09.785888  118079 dynamic_cafile_content.go:171] "Shutting down controller" name="request-header::/tmp/kubernetes-kube-apiserver3948161520/proxy-ca.crt"
I0719 07:03:09.785933  118079 controller.go:157] Shutting down quota evaluator
I0719 07:03:09.785946  118079 controller.go:157] Shutting down quota evaluator
I0719 07:03:09.785955  118079 controller.go:176] quota evaluator worker shutdown
I0719 07:03:09.785924  118079 controller.go:157] Shutting down quota evaluator
I0719 07:03:09.786118  118079 cluster_authentication_trust_controller.go:463] Shutting down cluster_authentication_trust_controller controller
I0719 07:03:09.786163  118079 dynamic_cafile_content.go:171] "Shutting down controller" name="request-header::/tmp/kubernetes-kube-apiserver3948161520/proxy-ca.crt"
I0719 07:03:09.786256  118079 controller.go:176] quota evaluator worker shutdown
I0719 07:03:09.786264  118079 controller.go:176] quota evaluator worker shutdown
I0719 07:03:09.786271  118079 controller.go:176] quota evaluator worker shutdown
I0719 07:03:09.786282  118079 controller.go:176] quota evaluator worker shutdown
--- FAIL: TestAggregatedAPIServer (26.01s)

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth$
=== RUN   TestComponentSecureServingAndAuth
    testserver.go:381: Resolved testserver package path to: "/home/prow/go/src/k8s.io/kubernetes/_output/local/go/src/k8s.io/kubernetes/cmd/kube-apiserver/app/testing"
I0719 07:10:41.816608  121494 serving.go:342] Generated self-signed cert (/tmp/kubernetes-kube-apiserver132121984/apiserver.crt, /tmp/kubernetes-kube-apiserver132121984/apiserver.key)
I0719 07:10:41.816633  121494 server.go:559] external host was not specified, using 192.168.1.10
    testserver.go:212: runtime-config=map[api/all:true]
    testserver.go:213: Starting kube-apiserver on port 44923...
W0719 07:10:42.539989  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540018  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540029  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540306  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540327  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540337  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540346  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540359  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540669  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.540710  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.541278  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.541326  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.541365  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.541415  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.541667  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.541830  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.541877  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:10:42.541942  121494 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 07:10:42.542012  121494 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 07:10:42.542169  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:42.542239  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:10:42.543670  121494 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 07:10:42.543694  121494 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 07:10:42.574951  121494 genericapiserver.go:653] Skipping API apiextensions.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.575060  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:10:42.575937  121494 instance.go:260] Using reconciler: lease
W0719 07:10:42.890427  121494 genericapiserver.go:653] Skipping API authentication.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.892525  121494 genericapiserver.go:653] Skipping API authorization.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.910739  121494 genericapiserver.go:653] Skipping API certificates.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.912974  121494 genericapiserver.go:653] Skipping API coordination.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.921365  121494 genericapiserver.go:653] Skipping API networking.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.925809  121494 genericapiserver.go:653] Skipping API node.k8s.io/v1alpha1 because it has no resources.
W0719 07:10:42.934860  121494 genericapiserver.go:653] Skipping API rbac.authorization.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.934881  121494 genericapiserver.go:653] Skipping API rbac.authorization.k8s.io/v1alpha1 because it has no resources.
W0719 07:10:42.936872  121494 genericapiserver.go:653] Skipping API scheduling.k8s.io/v1beta1 because it has no resources.
W0719 07:10:42.936894  121494 genericapiserver.go:653] Skipping API scheduling.k8s.io/v1alpha1 because it has no resources.
W0719 07:10:42.993496  121494 genericapiserver.go:653] Skipping API apps/v1beta2 because it has no resources.
W0719 07:10:42.993532  121494 genericapiserver.go:653] Skipping API apps/v1beta1 because it has no resources.
W0719 07:10:42.996190  121494 genericapiserver.go:653] Skipping API admissionregistration.k8s.io/v1beta1 because it has no resources.
I0719 07:10:43.001496  121494 plugins.go:158] Loaded 11 mutating admission controller(s) successfully in the following order: NamespaceLifecycle,LimitRanger,ServiceAccount,TaintNodesByCondition,Priority,DefaultTolerationSeconds,DefaultStorageClass,StorageObjectInUseProtection,RuntimeClass,DefaultIngressClass,MutatingAdmissionWebhook.
I0719 07:10:43.001524  121494 plugins.go:161] Loaded 11 validating admission controller(s) successfully in the following order: LimitRanger,ServiceAccount,PodSecurity,Priority,PersistentVolumeClaimResize,RuntimeClass,CertificateApproval,CertificateSigning,CertificateSubjectRestriction,ValidatingAdmissionWebhook,ResourceQuota.
W0719 07:10:43.003129  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:43.022499  121494 genericapiserver.go:653] Skipping API apiregistration.k8s.io/v1beta1 because it has no resources.
W0719 07:10:43.022915  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
    testserver.go:233: Waiting for /healthz to be ok...
I0719 07:10:44.510370  121494 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver132121984/client-ca.crt"
I0719 07:10:44.510374  121494 dynamic_cafile_content.go:157] "Starting controller" name="request-header::/tmp/kubernetes-kube-apiserver132121984/proxy-ca.crt"
I0719 07:10:44.510653  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kubernetes-kube-apiserver132121984/apiserver.crt::/tmp/kubernetes-kube-apiserver132121984/apiserver.key"
I0719 07:10:44.510749  121494 secure_serving.go:210] Serving securely on 127.0.0.1:44923
I0719 07:10:44.510818  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:44.514645  121494 autoregister_controller.go:141] Starting autoregister controller
I0719 07:10:44.514667  121494 cache.go:32] Waiting for caches to sync for autoregister controller
I0719 07:10:44.514799  121494 customresource_discovery_controller.go:209] Starting DiscoveryController
I0719 07:10:44.515251  121494 controller.go:80] Starting OpenAPI V3 AggregationController
I0719 07:10:44.515294  121494 available_controller.go:491] Starting AvailableConditionController
I0719 07:10:44.515301  121494 cache.go:32] Waiting for caches to sync for AvailableConditionController controller
I0719 07:10:44.515320  121494 controller.go:83] Starting OpenAPI AggregationController
W0719 07:10:44.515480  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
I0719 07:10:44.515596  121494 cluster_authentication_trust_controller.go:440] Starting cluster_authentication_trust_controller controller
I0719 07:10:44.515607  121494 shared_informer.go:255] Waiting for caches to sync for cluster_authentication_trust_controller
I0719 07:10:44.515627  121494 apf_controller.go:317] Starting API Priority and Fairness config controller
I0719 07:10:44.515939  121494 apiservice_controller.go:97] Starting APIServiceRegistrationController
I0719 07:10:44.515954  121494 cache.go:32] Waiting for caches to sync for APIServiceRegistrationController controller
I0719 07:10:44.516058  121494 crdregistration_controller.go:111] Starting crd-autoregister controller
I0719 07:10:44.516073  121494 shared_informer.go:255] Waiting for caches to sync for crd-autoregister
I0719 07:10:44.516110  121494 controller.go:85] Starting OpenAPI controller
I0719 07:10:44.516142  121494 controller.go:85] Starting OpenAPI V3 controller
I0719 07:10:44.516180  121494 naming_controller.go:291] Starting NamingConditionController
I0719 07:10:44.516207  121494 establishing_controller.go:76] Starting EstablishingController
I0719 07:10:44.516228  121494 nonstructuralschema_controller.go:192] Starting NonStructuralSchemaConditionController
I0719 07:10:44.516245  121494 apiapproval_controller.go:186] Starting KubernetesAPIApprovalPolicyConformantConditionController
I0719 07:10:44.516259  121494 crd_finalizer.go:266] Starting CRDFinalizer
I0719 07:10:44.519679  121494 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/tmp/kubernetes-kube-apiserver132121984/client-ca.crt"
I0719 07:10:44.524798  121494 dynamic_cafile_content.go:157] "Starting controller" name="request-header::/tmp/kubernetes-kube-apiserver132121984/proxy-ca.crt"
W0719 07:10:44.537891  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.538056  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.542144  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.542350  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
I0719 07:10:44.615132  121494 cache.go:39] Caches are synced for autoregister controller
I0719 07:10:44.615364  121494 cache.go:39] Caches are synced for AvailableConditionController controller
I0719 07:10:44.615777  121494 apf_controller.go:322] Running API Priority and Fairness config worker
I0719 07:10:44.615809  121494 shared_informer.go:262] Caches are synced for cluster_authentication_trust_controller
I0719 07:10:44.616396  121494 cache.go:39] Caches are synced for APIServiceRegistrationController controller
I0719 07:10:44.616439  121494 shared_informer.go:262] Caches are synced for crd-autoregister
W0719 07:10:44.623349  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
I0719 07:10:44.623577  121494 controller.go:622] quota admission added evaluator for: namespaces
W0719 07:10:44.637496  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.643128  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.647603  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.650200  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.654566  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.662366  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.667975  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.668114  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.673008  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.673133  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.676671  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.676677  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.681731  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.681738  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.686596  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.686636  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.690473  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.690546  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.695996  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.696033  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.701250  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.701422  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.705741  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.705744  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.710646  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.710732  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.715209  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.715224  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.719988  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.720025  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.724697  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.724844  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.729539  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 PriorityLevelConfiguration is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.729895  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.734226  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
W0719 07:10:44.752940  121494 warnings.go:70] flowcontrol.apiserver.k8s.io/v1beta2 FlowSchema is deprecated in v1.26+, unavailable in v1.29+
I0719 07:10:45.196217  121494 controller.go:132] OpenAPI AggregationController: action for item k8s_internal_local_delegation_chain_0000000000: Nothing (removed from the queue).
I0719 07:10:45.519876  121494 storage_scheduling.go:95] created PriorityClass system-node-critical with value 2000001000
I0719 07:10:45.526363  121494 storage_scheduling.go:95] created PriorityClass system-cluster-critical with value 2000000000
I0719 07:10:45.526383  121494 storage_scheduling.go:111] all system priority classes are created successfully or already exist.
I0719 07:10:46.300214  121494 controller.go:622] quota admission added evaluator for: roles.rbac.authorization.k8s.io
I0719 07:10:46.347891  121494 controller.go:622] quota admission added evaluator for: rolebindings.rbac.authorization.k8s.io
I0719 07:10:46.448063  121494 alloc.go:327] "allocated clusterIPs" service="default/kubernetes" clusterIPs=map[IPv4:10.0.0.1]
W0719 07:10:46.459256  121494 lease.go:250] Resetting endpoints for master service "kubernetes" to [192.168.1.10]
I0719 07:10:46.460240  121494 controller.go:622] quota admission added evaluator for: endpoints
I0719 07:10:46.465059  121494 controller.go:622] quota admission added evaluator for: endpointslices.discovery.k8s.io
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/no-flags
    testserver.go:100: kube-controller-manager will listen securely on port 33321...
I0719 07:10:46.908128  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager1846225868/kube-controller-manager.crt, /tmp/kube-controller-manager1846225868/kube-controller-manager.key)
W0719 07:10:46.908152  121494 client_config.go:617] Neither --kubeconfig nor --master was specified.  Using the inClusterConfig.  This might not work.
W0719 07:10:46.908160  121494 client_config.go:622] error creating inClusterConfig, falling back to default config: unable to load in-cluster configuration, KUBERNETES_SERVICE_HOST and KUBERNETES_SERVICE_PORT must be defined
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager//healthz_without_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 44111...
I0719 07:10:47.488097  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager1466712711/kube-controller-manager.crt, /tmp/kube-controller-manager1466712711/kube-controller-manager.key)
W0719 07:10:48.395081  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:48.395114  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:48.395129  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:48.395292  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:48.395325  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
I0719 07:10:48.396774  121494 secure_serving.go:210] Serving securely on [::]:44111
I0719 07:10:48.397367  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager1466712711/kube-controller-manager.crt::/tmp/kube-controller-manager1466712711/kube-controller-manager.key"
I0719 07:10:48.397535  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:48.510019  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:48.510142  121494 secure_serving.go:255] Stopped listening on [::]:44111
I0719 07:10:48.510148  121494 dynamic_serving_content.go:192] "Failed to remove file watch, it may have been deleted" file="/tmp/kube-controller-manager1466712711/kube-controller-manager.key" err="can't remove non-existent inotify watch for: /tmp/kube-controller-manager1466712711/kube-controller-manager.key"
I0719 07:10:48.510175  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager1466712711/kube-controller-manager.crt::/tmp/kube-controller-manager1466712711/kube-controller-manager.key"
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager//metrics_without_authn/authz
E0719 07:10:48.510215  121494 dynamic_serving_content.go:218] key failed with : open /tmp/kube-controller-manager1466712711/kube-controller-manager.crt: no such file or directory
    testserver.go:100: kube-controller-manager will listen securely on port 43653...
E0719 07:10:48.530861  121494 dynamic_serving_content.go:141] "Failed to watch cert and key file, will retry later" err="error adding watch for file /tmp/kube-controller-manager1466712711/kube-controller-manager.key: no such file or directory"
I0719 07:10:48.893270  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager956199944/kube-controller-manager.crt, /tmp/kube-controller-manager956199944/kube-controller-manager.key)
W0719 07:10:50.524093  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:50.524127  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:50.524143  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:50.524348  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:50.524381  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
E0719 07:10:50.524461  121494 controllermanager.go:190] unable to register configz: register config "kubecontrollermanager.config.k8s.io" twice
I0719 07:10:50.525405  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager956199944/kube-controller-manager.crt::/tmp/kube-controller-manager956199944/kube-controller-manager.key"
I0719 07:10:50.525592  121494 secure_serving.go:210] Serving securely on [::]:43653
I0719 07:10:50.525703  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:50.635818  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:50.635857  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager956199944/kube-controller-manager.crt::/tmp/kube-controller-manager956199944/kube-controller-manager.key"
I0719 07:10:50.635999  121494 secure_serving.go:255] Stopped listening on [::]:43653
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 40121...
I0719 07:10:51.070868  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager2257817164/kube-controller-manager.crt, /tmp/kube-controller-manager2257817164/kube-controller-manager.key)
W0719 07:10:51.374988  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:51.375109  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:51.375170  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
    serving_test.go:383: StartTestServer() error = failed to create config from options: unable to load configmap based request-header-client-ca-file: Get "https://127.0.0.1:44923/api/v1/namespaces/kube-system/configmaps/extension-apiserver-authentication": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1, wantErr false
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_BROKEN_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 33003...
I0719 07:10:51.965396  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager3360064440/kube-controller-manager.crt, /tmp/kube-controller-manager3360064440/kube-controller-manager.key)
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:52.708326  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:52.708351  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
E0719 07:10:52.708439  121494 controllermanager.go:190] unable to register configz: register config "kubecontrollermanager.config.k8s.io" twice
I0719 07:10:52.709289  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager3360064440/kube-controller-manager.crt::/tmp/kube-controller-manager3360064440/kube-controller-manager.key"
I0719 07:10:52.709421  121494 secure_serving.go:210] Serving securely on [::]:33003
I0719 07:10:52.709740  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:52.818245  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:52.818274  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager3360064440/kube-controller-manager.crt::/tmp/kube-controller-manager3360064440/kube-controller-manager.key"
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/not_authorized_/metrics_with_BROKEN_authn/authz
I0719 07:10:52.818367  121494 secure_serving.go:255] Stopped listening on [::]:33003
    testserver.go:100: kube-controller-manager will listen securely on port 44989...
I0719 07:10:53.420150  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager618734955/kube-controller-manager.crt, /tmp/kube-controller-manager618734955/kube-controller-manager.key)
W0719 07:10:53.588540  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:53.588633  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:53.588695  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
    serving_test.go:383: StartTestServer() error = failed to create config from options: unable to load configmap based request-header-client-ca-file: Get "https://127.0.0.1:44923/api/v1/namespaces/kube-system/configmaps/extension-apiserver-authentication": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1, wantErr false
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/always-allowed_/metrics_with_BROKEN_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 38807...
I0719 07:10:54.211054  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager1518533378/kube-controller-manager.crt, /tmp/kube-controller-manager1518533378/kube-controller-manager.key)
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:55.110817  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:55.110846  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
E0719 07:10:55.110966  121494 controllermanager.go:190] unable to register configz: register config "kubecontrollermanager.config.k8s.io" twice
I0719 07:10:55.112013  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager1518533378/kube-controller-manager.crt::/tmp/kube-controller-manager1518533378/kube-controller-manager.key"
I0719 07:10:55.112224  121494 secure_serving.go:210] Serving securely on [::]:38807
I0719 07:10:55.112312  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:55.244962  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:55.245008  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager1518533378/kube-controller-manager.crt::/tmp/kube-controller-manager1518533378/kube-controller-manager.key"
I0719 07:10:55.245129  121494 secure_serving.go:255] Stopped listening on [::]:38807
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager/no-flags
    testserver.go:132: cloud-controller-manager will listen securely on port 37475...
I0719 07:10:55.744785  121494 serving.go:342] Generated self-signed cert (/tmp/cloud-controller-manager1568788951/cloud-controller-manager.crt, /tmp/cloud-controller-manager1568788951/cloud-controller-manager.key)
W0719 07:10:56.041265  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:56.041294  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:56.041312  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
W0719 07:10:56.041322  121494 client_config.go:617] Neither --kubeconfig nor --master was specified.  Using the inClusterConfig.  This might not work.
W0719 07:10:56.041326  121494 client_config.go:622] error creating inClusterConfig, falling back to default config: unable to load in-cluster configuration, KUBERNETES_SERVICE_HOST and KUBERNETES_SERVICE_PORT must be defined
invalid configuration: no configuration has been provided, try setting KUBERNETES_MASTER environment variable
Error: invalid configuration: no configuration has been provided, try setting KUBERNETES_MASTER environment variable
Usage:
  cloud-controller-manager [flags]

Debugging flags:

      --contention-profiling   Enable lock contention profiling, if profiling is enabled
      --profiling              Enable profiling via web interface host:port/debug/pprof/ (default true)

Leader-migration flags:

      --enable-leader-migration          Whether to enable controller leader migration.
      --leader-migration-config string   Path to the config file for controller leader migration, or empty to use the value that reflects default configuration of the controller manager. The config file should be of type LeaderMigrationConfiguration, group controllermanager.config.k8s.io, version v1alpha1.

Generic flags:

      --allocate-node-cidrs                       Should CIDRs for Pods be allocated and set on the cloud provider.
      --cidr-allocator-type string                Type of CIDR allocator to use (default "RangeAllocator")
      --cloud-config string                       The path to the cloud provider configuration file. Empty string for no configuration file.
      --cloud-provider string                     The provider for cloud services. Empty string for no provider.
      --cloud-provider-gce-l7lb-src-cidrs cidrs   CIDRs opened in GCE firewall for L7 LB traffic proxy & health checks (default 130.211.0.0/22,35.191.0.0/16)
      --cloud-provider-gce-lb-src-cidrs cidrs     CIDRs opened in GCE firewall for L4 LB traffic proxy & health checks (default 130.211.0.0/22,209.85.152.0/22,209.85.204.0/22,35.191.0.0/16)
      --cluster-cidr string                       CIDR Range for Pods in cluster. Requires --allocate-node-cidrs to be true
      --cluster-name string                       The instance prefix for the cluster. (default "kubernetes")
      --configure-cloud-routes                    Should CIDRs allocated by allocate-node-cidrs be configured on the cloud provider. (default true)
      --controller-start-interval duration        Interval between starting controller managers.
      --controllers strings                       A list of controllers to enable. '*' enables all on-by-default controllers, 'foo' enables the controller named 'foo', '-foo' disables the controller named 'foo'.
                                                  All controllers: cloud-node, cloud-node-lifecycle, route, service
                                                  Disabled-by-default controllers:  (default [*])
      --external-cloud-volume-plugin string       The plugin to use when cloud provider is set to external. Can be empty, should only be set when cloud-provider is external. Currently used to allow node and volume controllers to work for in tree cloud providers.
      --feature-gates mapStringBool               A set of key=value pairs that describe feature gates for alpha/experimental features. Options are:
                                                  APIListChunking=true|false (BETA - default=true)
                                                  APIPriorityAndFairness=true|false (BETA - default=true)
                                                  APIResponseCompression=true|false (BETA - default=true)
                                                  APIServerIdentity=true|false (ALPHA - default=false)
                                                  APIServerTracing=true|false (ALPHA - default=false)
                                                  AllAlpha=true|false (ALPHA - default=false)
                                                  AllBeta=true|false (BETA - default=false)
                                                  AnyVolumeDataSource=true|false (BETA - default=true)
                                                  AppArmor=true|false (BETA - default=true)
                                                  CPUManager=true|false (BETA - default=true)
                                                  CPUManagerPolicyAlphaOptions=true|false (ALPHA - default=false)
                                                  CPUManagerPolicyBetaOptions=true|false (BETA - default=true)
                                                  CPUManagerPolicyOptions=true|false (BETA - default=true)
                                                  CSIInlineVolume=true|false (BETA - default=true)
                                                  CSIMigrationAWS=true|false (BETA - default=true)
                                                  CSIMigrationAzureFile=true|false (BETA - default=true)
                                                  CSIMigrationGCE=true|false (BETA - default=true)
                                                  CSIMigrationPortworx=true|false (BETA - default=false)
                                                  CSIMigrationRBD=true|false (ALPHA - default=false)
                                                  CSIMigrationvSphere=true|false (BETA - default=true)
                                                  CSINodeExpandSecret=true|false (ALPHA - default=false)
                                                  CSIVolumeHealth=true|false (ALPHA - default=false)
                                                  ContainerCheckpoint=true|false (ALPHA - default=false)
                                                  ContextualLogging=true|false (ALPHA - default=false)
                                                  CronJobTimeZone=true|false (ALPHA - default=false)
                                                  CustomCPUCFSQuotaPeriod=true|false (ALPHA - default=false)
                                                  CustomResourceValidationExpressions=true|false (ALPHA - default=false)
                                                  DaemonSetUpdateSurge=true|false (BETA - default=true)
                                                  DelegateFSGroupToCSIDriver=true|false (BETA - default=true)
                                                  DevicePlugins=true|false (BETA - default=true)
                                                  DisableAcceleratorUsageMetrics=true|false (BETA - default=true)
                                                  DisableCloudProviders=true|false (ALPHA - default=false)
                                                  DisableKubeletCloudCredentialProviders=true|false (ALPHA - default=false)
                                                  DownwardAPIHugePages=true|false (BETA - default=true)
                                                  EndpointSliceTerminatingCondition=true|false (BETA - default=true)
                                                  EphemeralContainers=true|false (BETA - default=true)
                                                  ExpandedDNSConfig=true|false (ALPHA - default=false)
                                                  ExperimentalHostUserNamespaceDefaulting=true|false (BETA - default=false)
                                                  GRPCContainerProbe=true|false (BETA - default=true)
                                                  GracefulNodeShutdown=true|false (BETA - default=true)
                                                  GracefulNodeShutdownBasedOnPodPriority=true|false (BETA - default=true)
                                                  HPAContainerMetrics=true|false (ALPHA - default=false)
                                                  HPAScaleToZero=true|false (ALPHA - default=false)
                                                  HonorPVReclaimPolicy=true|false (ALPHA - default=false)
                                                  IdentifyPodOS=true|false (BETA - default=true)
                                                  InTreePluginAWSUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginAzureDiskUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginAzureFileUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginGCEUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginOpenStackUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginPortworxUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginRBDUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginvSphereUnregister=true|false (ALPHA - default=false)
                                                  JobMutableNodeSchedulingDirectives=true|false (BETA - default=true)
                                                  JobReadyPods=true|false (BETA - default=true)
                                                  JobTrackingWithFinalizers=true|false (BETA - default=true)
                                                  KubeletCredentialProviders=true|false (BETA - default=true)
                                                  KubeletInUserNamespace=true|false (ALPHA - default=false)
                                                  KubeletPodResources=true|false (BETA - default=true)
                                                  KubeletPodResourcesGetAllocatable=true|false (BETA - default=true)
                                                  LegacyServiceAccountTokenNoAutoGeneration=true|false (BETA - default=true)
                                                  LocalStorageCapacityIsolation=true|false (BETA - default=true)
                                                  LocalStorageCapacityIsolationFSQuotaMonitoring=true|false (ALPHA - default=false)
                                                  LogarithmicScaleDown=true|false (BETA - default=true)
                                                  LoggingAlphaOptions=true|false (ALPHA - default=false)
                                                  LoggingBetaOptions=true|false (BETA - default=true)
                                                  MaxUnavailableStatefulSet=true|false (ALPHA - default=false)
                                                  MemoryManager=true|false (BETA - default=true)
                                                  MemoryQoS=true|false (ALPHA - default=false)
                                                  MinDomainsInPodTopologySpread=true|false (BETA - default=false)
                                                  MixedProtocolLBService=true|false (BETA - default=true)
                                                  NetworkPolicyStatus=true|false (ALPHA - default=false)
                                                  NodeInclusionPolicyInPodTopologySpread=true|false (ALPHA - default=false)
                                                  NodeOutOfServiceVolumeDetach=true|false (ALPHA - default=false)
                                                  NodeSwap=true|false (ALPHA - default=false)
                                                  OpenAPIEnums=true|false (BETA - default=true)
                                                  OpenAPIV3=true|false (BETA - default=true)
                                                  PodAndContainerStatsFromCRI=true|false (ALPHA - default=false)
                                                  PodDeletionCost=true|false (BETA - default=true)
                                                  ProbeTerminationGracePeriod=true|false (BETA - default=false)
                                                  ProcMountType=true|false (ALPHA - default=false)
                                                  ProxyTerminatingEndpoints=true|false (ALPHA - default=false)
                                                  QOSReserved=true|false (ALPHA - default=false)
                                                  ReadWriteOncePod=true|false (ALPHA - default=false)
                                                  RecoverVolumeExpansionFailure=true|false (ALPHA - default=false)
                                                  RemainingItemCount=true|false (BETA - default=true)
                                                  RotateKubeletServerCertificate=true|false (BETA - default=true)
                                                  SeccompDefault=true|false (BETA - default=true)
                                                  ServerSideFieldValidation=true|false (ALPHA - default=false)
                                                  ServiceIPStaticSubrange=true|false (BETA - default=true)
                                                  ServiceInternalTrafficPolicy=true|false (BETA - default=true)
                                                  SizeMemoryBackedVolumes=true|false (BETA - default=true)
                                                  StatefulSetAutoDeletePVC=true|false (ALPHA - default=false)
                                                  StorageVersionAPI=true|false (ALPHA - default=false)
                                                  StorageVersionHash=true|false (BETA - default=true)
                                                  TopologyAwareHints=true|false (BETA - default=true)
                                                  TopologyManager=true|false (BETA - default=true)
                                                  VolumeCapacityPriority=true|false (ALPHA - default=false)
                                                  WinDSR=true|false (ALPHA - default=false)
                                                  WinOverlay=true|false (BETA - default=true)
                                                  WindowsHostProcessContainers=true|false (BETA - default=true)
      --kube-api-burst int32                      Burst to use while talking with kubernetes apiserver. (default 30)
      --kube-api-content-type string              Content type of requests sent to apiserver. (default "application/vnd.kubernetes.protobuf")
      --kube-api-qps float32                      QPS to use while talking with kubernetes apiserver. (default 20)
      --leader-elect                              Start a leader election client and gain leadership before executing the main loop. Enable this when running replicated components for high availability. (default true)
      --leader-elect-lease-duration duration      The duration that non-leader candidates will wait after observing a leadership renewal until attempting to acquire leadership of a led but unrenewed leader slot. This is effectively the maximum duration that a leader can be stopped before it is replaced by another candidate. This is only applicable if leader election is enabled. (default 15s)
      --leader-elect-renew-deadline duration      The interval between attempts by the acting master to renew a leadership slot before it stops leading. This must be less than or equal to the lease duration. This is only applicable if leader election is enabled. (default 10s)
      --leader-elect-resource-lock string         The type of resource object that is used for locking during leader election. Supported options are 'leases', 'endpointsleases' and 'configmapsleases'. (default "leases")
      --leader-elect-resource-name string         The name of resource object that is used for locking during leader election. (default "cloud-controller-manager")
      --leader-elect-resource-namespace string    The namespace of resource object that is used for locking during leader election. (default "kube-system")
      --leader-elect-retry-period duration        The duration the clients should wait between attempting acquisition and renewal of a leadership. This is only applicable if leader election is enabled. (default 2s)
      --min-resync-period duration                The resync period in reflectors will be random between MinResyncPeriod and 2*MinResyncPeriod. (default 12h0m0s)
      --node-monitor-period duration              The period for syncing NodeStatus in NodeController. (default 5s)
      --route-reconciliation-period duration      The period for reconciling routes created for Nodes by cloud provider. (default 10s)
      --use-service-account-credentials           If true, use individual service account credentials for each controller.

Service controller flags:

      --concurrent-service-syncs int32   The number of services that are allowed to sync concurrently. Larger number = more responsive service management, but more CPU (and network) load (default 1)

Secure serving flags:

      --bind-address ip                        The IP address on which to listen for the --secure-port port. The associated interface(s) must be reachable by the rest of the cluster, and by CLI/web clients. If blank or an unspecified address (0.0.0.0 or ::), all interfaces will be used. (default 0.0.0.0)
      --cert-dir string                        The directory where the TLS certs are located. If --tls-cert-file and --tls-private-key-file are provided, this flag will be ignored.
      --http2-max-streams-per-connection int   The limit that the server gives to clients for the maximum number of streams in an HTTP/2 connection. Zero means to use golang's default.
      --permit-address-sharing                 If true, SO_REUSEADDR will be used when binding the port. This allows binding to wildcard IPs like 0.0.0.0 and specific IPs in parallel, and it avoids waiting for the kernel to release sockets in TIME_WAIT state. [default=false]
      --permit-port-sharing                    If true, SO_REUSEPORT will be used when binding the port, which allows more than one instance to bind on the same address and port. [default=false]
      --secure-port int                        The port on which to serve HTTPS with authentication and authorization. If 0, don't serve HTTPS at all. (default 10258)
      --tls-cert-file string                   File containing the default x509 Certificate for HTTPS. (CA cert, if any, concatenated after server cert). If HTTPS serving is enabled, and --tls-cert-file and --tls-private-key-file are not provided, a self-signed certificate and key are generated for the public address and saved to the directory specified by --cert-dir.
      --tls-cipher-suites strings              Comma-separated list of cipher suites for the server. If omitted, the default Go cipher suites will be used. 
                                               Preferred values: TLS_AES_128_GCM_SHA256, TLS_AES_256_GCM_SHA384, TLS_CHACHA20_POLY1305_SHA256, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305, TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305, TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256, TLS_RSA_WITH_AES_128_CBC_SHA, TLS_RSA_WITH_AES_128_GCM_SHA256, TLS_RSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_256_GCM_SHA384. 
                                               Insecure values: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_RC4_128_SHA, TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_RSA_WITH_RC4_128_SHA, TLS_RSA_WITH_3DES_EDE_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA256, TLS_RSA_WITH_RC4_128_SHA.
      --tls-min-version string                 Minimum TLS version supported. Possible values: VersionTLS10, VersionTLS11, VersionTLS12, VersionTLS13
      --tls-private-key-file string            File containing the default x509 private key matching --tls-cert-file.
      --tls-sni-cert-key namedCertKey          A pair of x509 certificate and private key file paths, optionally suffixed with a list of domain patterns which are fully qualified domain names, possibly with prefixed wildcard segments. The domain patterns also allow IP addresses, but IPs should only be used if the apiserver has visibility to the IP address requested by a client. If no domain patterns are provided, the names of the certificate are extracted. Non-wildcard matches trump over wildcard matches, explicit domain patterns trump over extracted names. For multiple key/certificate pairs, use the --tls-sni-cert-key multiple times. Examples: "example.crt,example.key" or "foo.crt,foo.key:*.foo.com,foo.com". (default [])

Authentication flags:

      --authentication-kubeconfig string                  kubeconfig file pointing at the 'core' kubernetes server with enough rights to create tokenreviews.authentication.k8s.io. This is optional. If empty, all token requests are considered to be anonymous and no client CA is looked up in the cluster.
      --authentication-skip-lookup                        If false, the authentication-kubeconfig will be used to lookup missing authentication configuration from the cluster.
      --authentication-token-webhook-cache-ttl duration   The duration to cache responses from the webhook token authenticator. (default 10s)
      --authentication-tolerate-lookup-failure            If true, failures to look up missing authentication configuration from the cluster are not considered fatal. Note that this can result in authentication that treats all requests as anonymous.
      --client-ca-file string                             If set, any request presenting a client certificate signed by one of the authorities in the client-ca-file is authenticated with an identity corresponding to the CommonName of the client certificate.
      --requestheader-allowed-names strings               List of client certificate common names to allow to provide usernames in headers specified by --requestheader-username-headers. If empty, any client certificate validated by the authorities in --requestheader-client-ca-file is allowed.
      --requestheader-client-ca-file string               Root certificate bundle to use to verify client certificates on incoming requests before trusting usernames in headers specified by --requestheader-username-headers. WARNING: generally do not depend on authorization being already done for incoming requests.
      --requestheader-extra-headers-prefix strings        List of request header prefixes to inspect. X-Remote-Extra- is suggested. (default [x-remote-extra-])
      --requestheader-group-headers strings               List of request headers to inspect for groups. X-Remote-Group is suggested. (default [x-remote-group])
      --requestheader-username-headers strings            List of request headers to inspect for usernames. X-Remote-User is common. (default [x-remote-user])

Authorization flags:

      --authorization-always-allow-paths strings                A list of HTTP paths to skip during authorization, i.e. these are authorized without contacting the 'core' kubernetes server. (default [/healthz,/readyz,/livez])
      --authorization-kubeconfig string                         kubeconfig file pointing at the 'core' kubernetes server with enough rights to create subjectaccessreviews.authorization.k8s.io. This is optional. If empty, all requests not skipped by authorization are forbidden.
      --authorization-webhook-cache-authorized-ttl duration     The duration to cache 'authorized' responses from the webhook authorizer. (default 10s)
      --authorization-webhook-cache-unauthorized-ttl duration   The duration to cache 'unauthorized' responses from the webhook authorizer. (default 10s)

Misc flags:

      --kubeconfig string                       Path to kubeconfig file with authorization and master location information.
      --master string                           The address of the Kubernetes API server (overrides any value in kubeconfig).
      --node-status-update-frequency duration   Specifies how often the controller updates nodes' status. (default 5m0s)

Global flags:

      --add_dir_header                   If true, adds the file directory to the header of the log messages (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --alsologtostderr                  log to standard error as well as files (no effect when -logtostderr=true) (default true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
  -h, --help                             help for cloud-controller-manager
      --log-flush-frequency duration     Maximum number of seconds between log flushes (default 5s)
      --log_backtrace_at traceLocation   when logging hits line file:N, emit a stack trace (default :0) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --log_dir string                   If non-empty, write log files in this directory (no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --log_file string                  If non-empty, use this log file (no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --log_file_max_size uint           Defines the maximum size a log file can grow to (no effect when -logtostderr=true). Unit is megabytes. If the value is 0, the maximum file size is unlimited. (default 1800) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --logtostderr                      log to standard error instead of files (default true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --one_output                       If true, only write logs to their native severity level (vs also writing to each lower severity level; no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --skip_headers                     If true, avoid header prefixes in the log messages (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --skip_log_headers                 If true, avoid headers when opening log files (no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --stderrthreshold severity         logs at or above this threshold go to stderr when writing to files and stderr (no effect when -logtostderr=true or -alsologtostderr=false) (default 2) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
  -v, --v Level                          number for the log level verbosity
      --version version[=true]           Print version information and quit
      --vmodule moduleSpec               comma-separated list of pattern=N settings for file-filtered logging (default garbagecollector*=6,graph_builder*=6)

=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager//healthz_without_authn/authz
    testserver.go:132: cloud-controller-manager will listen securely on port 38069...
I0719 07:10:56.287038  121494 serving.go:342] Generated self-signed cert (/tmp/cloud-controller-manager2729808543/cloud-controller-manager.crt, /tmp/cloud-controller-manager2729808543/cloud-controller-manager.key)
W0719 07:10:57.021874  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:57.021902  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:57.021916  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
I0719 07:10:57.022605  121494 controllermanager.go:144] Version: v0.0.0-master+$Format:%H$
    testserver.go:154: Waiting for /healthz to be ok...
I0719 07:10:57.023799  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.crt::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.key"
I0719 07:10:57.023901  121494 secure_serving.go:210] Serving securely on [::]:38069
I0719 07:10:57.023927  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:57.133598  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:57.133646  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.crt::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.key"
I0719 07:10:57.133686  121494 secure_serving.go:255] Stopped listening on [::]:38069
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager//metrics_without_authn/authz
    testserver.go:132: cloud-controller-manager will listen securely on port 39287...
I0719 07:10:57.377972  121494 serving.go:342] Generated self-signed cert (/tmp/cloud-controller-manager561153637/cloud-controller-manager.crt, /tmp/cloud-controller-manager561153637/cloud-controller-manager.key)
W0719 07:10:57.833474  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:57.833573  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:57.833604  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
I0719 07:10:57.834349  121494 controllermanager.go:144] Version: v0.0.0-master+$Format:%H$
    testserver.go:154: Waiting for /healthz to be ok...
E0719 07:10:57.834436  121494 controllermanager.go:155] unable to register configz: register config "cloudcontrollermanager.config.k8s.io" twice
I0719 07:10:57.835731  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/cloud-controller-manager561153637/cloud-controller-manager.crt::/tmp/cloud-controller-manager561153637/cloud-controller-manager.key"
I0719 07:10:57.835858  121494 secure_serving.go:210] Serving securely on [::]:39287
I0719 07:10:57.835915  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:57.947361  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:57.947409  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/cloud-controller-manager561153637/cloud-controller-manager.crt::/tmp/cloud-controller-manager561153637/cloud-controller-manager.key"
I0719 07:10:57.947500  121494 secure_serving.go:255] Stopped listening on [::]:39287
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager/authorization_skipped_for_/healthz_with_authn/authz
    testserver.go:132: cloud-controller-manager will listen securely on port 34215...
F0719 07:10:58.413750  121494 controllermanager.go:221] error building controller context: failed to wait for apiserver being healthy: timed out waiting for the condition: failed to get apiserver /healthz status: Get "https://127.0.0.1:44923/healthz": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/cloud-controller-manager 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/cloud-controller-manager$
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/cloud-controller-manager//healthz_without_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/cloud-controller-manager//healthz_without_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager//healthz_without_authn/authz
    testserver.go:132: cloud-controller-manager will listen securely on port 38069...
I0719 07:10:56.287038  121494 serving.go:342] Generated self-signed cert (/tmp/cloud-controller-manager2729808543/cloud-controller-manager.crt, /tmp/cloud-controller-manager2729808543/cloud-controller-manager.key)
W0719 07:10:57.021874  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:57.021902  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:57.021916  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
I0719 07:10:57.022605  121494 controllermanager.go:144] Version: v0.0.0-master+$Format:%H$
    testserver.go:154: Waiting for /healthz to be ok...
I0719 07:10:57.023799  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.crt::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.key"
I0719 07:10:57.023901  121494 secure_serving.go:210] Serving securely on [::]:38069
I0719 07:10:57.023927  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:57.133598  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:57.133646  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.crt::/tmp/cloud-controller-manager2729808543/cloud-controller-manager.key"
I0719 07:10:57.133686  121494 secure_serving.go:255] Stopped listening on [::]:38069

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/cloud-controller-manager//metrics_without_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/cloud-controller-manager//metrics_without_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager//metrics_without_authn/authz
    testserver.go:132: cloud-controller-manager will listen securely on port 39287...
I0719 07:10:57.377972  121494 serving.go:342] Generated self-signed cert (/tmp/cloud-controller-manager561153637/cloud-controller-manager.crt, /tmp/cloud-controller-manager561153637/cloud-controller-manager.key)
W0719 07:10:57.833474  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:57.833573  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:57.833604  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
I0719 07:10:57.834349  121494 controllermanager.go:144] Version: v0.0.0-master+$Format:%H$
    testserver.go:154: Waiting for /healthz to be ok...
E0719 07:10:57.834436  121494 controllermanager.go:155] unable to register configz: register config "cloudcontrollermanager.config.k8s.io" twice
I0719 07:10:57.835731  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/cloud-controller-manager561153637/cloud-controller-manager.crt::/tmp/cloud-controller-manager561153637/cloud-controller-manager.key"
I0719 07:10:57.835858  121494 secure_serving.go:210] Serving securely on [::]:39287
I0719 07:10:57.835915  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:57.947361  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:57.947409  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/cloud-controller-manager561153637/cloud-controller-manager.crt::/tmp/cloud-controller-manager561153637/cloud-controller-manager.key"
I0719 07:10:57.947500  121494 secure_serving.go:255] Stopped listening on [::]:39287

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/cloud-controller-manager/authorization_skipped_for_/healthz_with_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/cloud-controller-manager/authorization_skipped_for_/healthz_with_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager/authorization_skipped_for_/healthz_with_authn/authz
    testserver.go:132: cloud-controller-manager will listen securely on port 34215...
F0719 07:10:58.413750  121494 controllermanager.go:221] error building controller context: failed to wait for apiserver being healthy: timed out waiting for the condition: failed to get apiserver /healthz status: Get "https://127.0.0.1:44923/healthz": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/cloud-controller-manager/no-flags 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/cloud-controller-manager/no-flags$
=== RUN   TestComponentSecureServingAndAuth/cloud-controller-manager/no-flags
    testserver.go:132: cloud-controller-manager will listen securely on port 37475...
I0719 07:10:55.744785  121494 serving.go:342] Generated self-signed cert (/tmp/cloud-controller-manager1568788951/cloud-controller-manager.crt, /tmp/cloud-controller-manager1568788951/cloud-controller-manager.key)
W0719 07:10:56.041265  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:56.041294  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:56.041312  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
W0719 07:10:56.041322  121494 client_config.go:617] Neither --kubeconfig nor --master was specified.  Using the inClusterConfig.  This might not work.
W0719 07:10:56.041326  121494 client_config.go:622] error creating inClusterConfig, falling back to default config: unable to load in-cluster configuration, KUBERNETES_SERVICE_HOST and KUBERNETES_SERVICE_PORT must be defined
invalid configuration: no configuration has been provided, try setting KUBERNETES_MASTER environment variable
Error: invalid configuration: no configuration has been provided, try setting KUBERNETES_MASTER environment variable
Usage:
  cloud-controller-manager [flags]

Debugging flags:

      --contention-profiling   Enable lock contention profiling, if profiling is enabled
      --profiling              Enable profiling via web interface host:port/debug/pprof/ (default true)

Leader-migration flags:

      --enable-leader-migration          Whether to enable controller leader migration.
      --leader-migration-config string   Path to the config file for controller leader migration, or empty to use the value that reflects default configuration of the controller manager. The config file should be of type LeaderMigrationConfiguration, group controllermanager.config.k8s.io, version v1alpha1.

Generic flags:

      --allocate-node-cidrs                       Should CIDRs for Pods be allocated and set on the cloud provider.
      --cidr-allocator-type string                Type of CIDR allocator to use (default "RangeAllocator")
      --cloud-config string                       The path to the cloud provider configuration file. Empty string for no configuration file.
      --cloud-provider string                     The provider for cloud services. Empty string for no provider.
      --cloud-provider-gce-l7lb-src-cidrs cidrs   CIDRs opened in GCE firewall for L7 LB traffic proxy & health checks (default 130.211.0.0/22,35.191.0.0/16)
      --cloud-provider-gce-lb-src-cidrs cidrs     CIDRs opened in GCE firewall for L4 LB traffic proxy & health checks (default 130.211.0.0/22,209.85.152.0/22,209.85.204.0/22,35.191.0.0/16)
      --cluster-cidr string                       CIDR Range for Pods in cluster. Requires --allocate-node-cidrs to be true
      --cluster-name string                       The instance prefix for the cluster. (default "kubernetes")
      --configure-cloud-routes                    Should CIDRs allocated by allocate-node-cidrs be configured on the cloud provider. (default true)
      --controller-start-interval duration        Interval between starting controller managers.
      --controllers strings                       A list of controllers to enable. '*' enables all on-by-default controllers, 'foo' enables the controller named 'foo', '-foo' disables the controller named 'foo'.
                                                  All controllers: cloud-node, cloud-node-lifecycle, route, service
                                                  Disabled-by-default controllers:  (default [*])
      --external-cloud-volume-plugin string       The plugin to use when cloud provider is set to external. Can be empty, should only be set when cloud-provider is external. Currently used to allow node and volume controllers to work for in tree cloud providers.
      --feature-gates mapStringBool               A set of key=value pairs that describe feature gates for alpha/experimental features. Options are:
                                                  APIListChunking=true|false (BETA - default=true)
                                                  APIPriorityAndFairness=true|false (BETA - default=true)
                                                  APIResponseCompression=true|false (BETA - default=true)
                                                  APIServerIdentity=true|false (ALPHA - default=false)
                                                  APIServerTracing=true|false (ALPHA - default=false)
                                                  AllAlpha=true|false (ALPHA - default=false)
                                                  AllBeta=true|false (BETA - default=false)
                                                  AnyVolumeDataSource=true|false (BETA - default=true)
                                                  AppArmor=true|false (BETA - default=true)
                                                  CPUManager=true|false (BETA - default=true)
                                                  CPUManagerPolicyAlphaOptions=true|false (ALPHA - default=false)
                                                  CPUManagerPolicyBetaOptions=true|false (BETA - default=true)
                                                  CPUManagerPolicyOptions=true|false (BETA - default=true)
                                                  CSIInlineVolume=true|false (BETA - default=true)
                                                  CSIMigrationAWS=true|false (BETA - default=true)
                                                  CSIMigrationAzureFile=true|false (BETA - default=true)
                                                  CSIMigrationGCE=true|false (BETA - default=true)
                                                  CSIMigrationPortworx=true|false (BETA - default=false)
                                                  CSIMigrationRBD=true|false (ALPHA - default=false)
                                                  CSIMigrationvSphere=true|false (BETA - default=true)
                                                  CSINodeExpandSecret=true|false (ALPHA - default=false)
                                                  CSIVolumeHealth=true|false (ALPHA - default=false)
                                                  ContainerCheckpoint=true|false (ALPHA - default=false)
                                                  ContextualLogging=true|false (ALPHA - default=false)
                                                  CronJobTimeZone=true|false (ALPHA - default=false)
                                                  CustomCPUCFSQuotaPeriod=true|false (ALPHA - default=false)
                                                  CustomResourceValidationExpressions=true|false (ALPHA - default=false)
                                                  DaemonSetUpdateSurge=true|false (BETA - default=true)
                                                  DelegateFSGroupToCSIDriver=true|false (BETA - default=true)
                                                  DevicePlugins=true|false (BETA - default=true)
                                                  DisableAcceleratorUsageMetrics=true|false (BETA - default=true)
                                                  DisableCloudProviders=true|false (ALPHA - default=false)
                                                  DisableKubeletCloudCredentialProviders=true|false (ALPHA - default=false)
                                                  DownwardAPIHugePages=true|false (BETA - default=true)
                                                  EndpointSliceTerminatingCondition=true|false (BETA - default=true)
                                                  EphemeralContainers=true|false (BETA - default=true)
                                                  ExpandedDNSConfig=true|false (ALPHA - default=false)
                                                  ExperimentalHostUserNamespaceDefaulting=true|false (BETA - default=false)
                                                  GRPCContainerProbe=true|false (BETA - default=true)
                                                  GracefulNodeShutdown=true|false (BETA - default=true)
                                                  GracefulNodeShutdownBasedOnPodPriority=true|false (BETA - default=true)
                                                  HPAContainerMetrics=true|false (ALPHA - default=false)
                                                  HPAScaleToZero=true|false (ALPHA - default=false)
                                                  HonorPVReclaimPolicy=true|false (ALPHA - default=false)
                                                  IdentifyPodOS=true|false (BETA - default=true)
                                                  InTreePluginAWSUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginAzureDiskUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginAzureFileUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginGCEUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginOpenStackUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginPortworxUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginRBDUnregister=true|false (ALPHA - default=false)
                                                  InTreePluginvSphereUnregister=true|false (ALPHA - default=false)
                                                  JobMutableNodeSchedulingDirectives=true|false (BETA - default=true)
                                                  JobReadyPods=true|false (BETA - default=true)
                                                  JobTrackingWithFinalizers=true|false (BETA - default=true)
                                                  KubeletCredentialProviders=true|false (BETA - default=true)
                                                  KubeletInUserNamespace=true|false (ALPHA - default=false)
                                                  KubeletPodResources=true|false (BETA - default=true)
                                                  KubeletPodResourcesGetAllocatable=true|false (BETA - default=true)
                                                  LegacyServiceAccountTokenNoAutoGeneration=true|false (BETA - default=true)
                                                  LocalStorageCapacityIsolation=true|false (BETA - default=true)
                                                  LocalStorageCapacityIsolationFSQuotaMonitoring=true|false (ALPHA - default=false)
                                                  LogarithmicScaleDown=true|false (BETA - default=true)
                                                  LoggingAlphaOptions=true|false (ALPHA - default=false)
                                                  LoggingBetaOptions=true|false (BETA - default=true)
                                                  MaxUnavailableStatefulSet=true|false (ALPHA - default=false)
                                                  MemoryManager=true|false (BETA - default=true)
                                                  MemoryQoS=true|false (ALPHA - default=false)
                                                  MinDomainsInPodTopologySpread=true|false (BETA - default=false)
                                                  MixedProtocolLBService=true|false (BETA - default=true)
                                                  NetworkPolicyStatus=true|false (ALPHA - default=false)
                                                  NodeInclusionPolicyInPodTopologySpread=true|false (ALPHA - default=false)
                                                  NodeOutOfServiceVolumeDetach=true|false (ALPHA - default=false)
                                                  NodeSwap=true|false (ALPHA - default=false)
                                                  OpenAPIEnums=true|false (BETA - default=true)
                                                  OpenAPIV3=true|false (BETA - default=true)
                                                  PodAndContainerStatsFromCRI=true|false (ALPHA - default=false)
                                                  PodDeletionCost=true|false (BETA - default=true)
                                                  ProbeTerminationGracePeriod=true|false (BETA - default=false)
                                                  ProcMountType=true|false (ALPHA - default=false)
                                                  ProxyTerminatingEndpoints=true|false (ALPHA - default=false)
                                                  QOSReserved=true|false (ALPHA - default=false)
                                                  ReadWriteOncePod=true|false (ALPHA - default=false)
                                                  RecoverVolumeExpansionFailure=true|false (ALPHA - default=false)
                                                  RemainingItemCount=true|false (BETA - default=true)
                                                  RotateKubeletServerCertificate=true|false (BETA - default=true)
                                                  SeccompDefault=true|false (BETA - default=true)
                                                  ServerSideFieldValidation=true|false (ALPHA - default=false)
                                                  ServiceIPStaticSubrange=true|false (BETA - default=true)
                                                  ServiceInternalTrafficPolicy=true|false (BETA - default=true)
                                                  SizeMemoryBackedVolumes=true|false (BETA - default=true)
                                                  StatefulSetAutoDeletePVC=true|false (ALPHA - default=false)
                                                  StorageVersionAPI=true|false (ALPHA - default=false)
                                                  StorageVersionHash=true|false (BETA - default=true)
                                                  TopologyAwareHints=true|false (BETA - default=true)
                                                  TopologyManager=true|false (BETA - default=true)
                                                  VolumeCapacityPriority=true|false (ALPHA - default=false)
                                                  WinDSR=true|false (ALPHA - default=false)
                                                  WinOverlay=true|false (BETA - default=true)
                                                  WindowsHostProcessContainers=true|false (BETA - default=true)
      --kube-api-burst int32                      Burst to use while talking with kubernetes apiserver. (default 30)
      --kube-api-content-type string              Content type of requests sent to apiserver. (default "application/vnd.kubernetes.protobuf")
      --kube-api-qps float32                      QPS to use while talking with kubernetes apiserver. (default 20)
      --leader-elect                              Start a leader election client and gain leadership before executing the main loop. Enable this when running replicated components for high availability. (default true)
      --leader-elect-lease-duration duration      The duration that non-leader candidates will wait after observing a leadership renewal until attempting to acquire leadership of a led but unrenewed leader slot. This is effectively the maximum duration that a leader can be stopped before it is replaced by another candidate. This is only applicable if leader election is enabled. (default 15s)
      --leader-elect-renew-deadline duration      The interval between attempts by the acting master to renew a leadership slot before it stops leading. This must be less than or equal to the lease duration. This is only applicable if leader election is enabled. (default 10s)
      --leader-elect-resource-lock string         The type of resource object that is used for locking during leader election. Supported options are 'leases', 'endpointsleases' and 'configmapsleases'. (default "leases")
      --leader-elect-resource-name string         The name of resource object that is used for locking during leader election. (default "cloud-controller-manager")
      --leader-elect-resource-namespace string    The namespace of resource object that is used for locking during leader election. (default "kube-system")
      --leader-elect-retry-period duration        The duration the clients should wait between attempting acquisition and renewal of a leadership. This is only applicable if leader election is enabled. (default 2s)
      --min-resync-period duration                The resync period in reflectors will be random between MinResyncPeriod and 2*MinResyncPeriod. (default 12h0m0s)
      --node-monitor-period duration              The period for syncing NodeStatus in NodeController. (default 5s)
      --route-reconciliation-period duration      The period for reconciling routes created for Nodes by cloud provider. (default 10s)
      --use-service-account-credentials           If true, use individual service account credentials for each controller.

Service controller flags:

      --concurrent-service-syncs int32   The number of services that are allowed to sync concurrently. Larger number = more responsive service management, but more CPU (and network) load (default 1)

Secure serving flags:

      --bind-address ip                        The IP address on which to listen for the --secure-port port. The associated interface(s) must be reachable by the rest of the cluster, and by CLI/web clients. If blank or an unspecified address (0.0.0.0 or ::), all interfaces will be used. (default 0.0.0.0)
      --cert-dir string                        The directory where the TLS certs are located. If --tls-cert-file and --tls-private-key-file are provided, this flag will be ignored.
      --http2-max-streams-per-connection int   The limit that the server gives to clients for the maximum number of streams in an HTTP/2 connection. Zero means to use golang's default.
      --permit-address-sharing                 If true, SO_REUSEADDR will be used when binding the port. This allows binding to wildcard IPs like 0.0.0.0 and specific IPs in parallel, and it avoids waiting for the kernel to release sockets in TIME_WAIT state. [default=false]
      --permit-port-sharing                    If true, SO_REUSEPORT will be used when binding the port, which allows more than one instance to bind on the same address and port. [default=false]
      --secure-port int                        The port on which to serve HTTPS with authentication and authorization. If 0, don't serve HTTPS at all. (default 10258)
      --tls-cert-file string                   File containing the default x509 Certificate for HTTPS. (CA cert, if any, concatenated after server cert). If HTTPS serving is enabled, and --tls-cert-file and --tls-private-key-file are not provided, a self-signed certificate and key are generated for the public address and saved to the directory specified by --cert-dir.
      --tls-cipher-suites strings              Comma-separated list of cipher suites for the server. If omitted, the default Go cipher suites will be used. 
                                               Preferred values: TLS_AES_128_GCM_SHA256, TLS_AES_256_GCM_SHA384, TLS_CHACHA20_POLY1305_SHA256, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305, TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305, TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256, TLS_RSA_WITH_AES_128_CBC_SHA, TLS_RSA_WITH_AES_128_GCM_SHA256, TLS_RSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_256_GCM_SHA384. 
                                               Insecure values: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_RC4_128_SHA, TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_RSA_WITH_RC4_128_SHA, TLS_RSA_WITH_3DES_EDE_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA256, TLS_RSA_WITH_RC4_128_SHA.
      --tls-min-version string                 Minimum TLS version supported. Possible values: VersionTLS10, VersionTLS11, VersionTLS12, VersionTLS13
      --tls-private-key-file string            File containing the default x509 private key matching --tls-cert-file.
      --tls-sni-cert-key namedCertKey          A pair of x509 certificate and private key file paths, optionally suffixed with a list of domain patterns which are fully qualified domain names, possibly with prefixed wildcard segments. The domain patterns also allow IP addresses, but IPs should only be used if the apiserver has visibility to the IP address requested by a client. If no domain patterns are provided, the names of the certificate are extracted. Non-wildcard matches trump over wildcard matches, explicit domain patterns trump over extracted names. For multiple key/certificate pairs, use the --tls-sni-cert-key multiple times. Examples: "example.crt,example.key" or "foo.crt,foo.key:*.foo.com,foo.com". (default [])

Authentication flags:

      --authentication-kubeconfig string                  kubeconfig file pointing at the 'core' kubernetes server with enough rights to create tokenreviews.authentication.k8s.io. This is optional. If empty, all token requests are considered to be anonymous and no client CA is looked up in the cluster.
      --authentication-skip-lookup                        If false, the authentication-kubeconfig will be used to lookup missing authentication configuration from the cluster.
      --authentication-token-webhook-cache-ttl duration   The duration to cache responses from the webhook token authenticator. (default 10s)
      --authentication-tolerate-lookup-failure            If true, failures to look up missing authentication configuration from the cluster are not considered fatal. Note that this can result in authentication that treats all requests as anonymous.
      --client-ca-file string                             If set, any request presenting a client certificate signed by one of the authorities in the client-ca-file is authenticated with an identity corresponding to the CommonName of the client certificate.
      --requestheader-allowed-names strings               List of client certificate common names to allow to provide usernames in headers specified by --requestheader-username-headers. If empty, any client certificate validated by the authorities in --requestheader-client-ca-file is allowed.
      --requestheader-client-ca-file string               Root certificate bundle to use to verify client certificates on incoming requests before trusting usernames in headers specified by --requestheader-username-headers. WARNING: generally do not depend on authorization being already done for incoming requests.
      --requestheader-extra-headers-prefix strings        List of request header prefixes to inspect. X-Remote-Extra- is suggested. (default [x-remote-extra-])
      --requestheader-group-headers strings               List of request headers to inspect for groups. X-Remote-Group is suggested. (default [x-remote-group])
      --requestheader-username-headers strings            List of request headers to inspect for usernames. X-Remote-User is common. (default [x-remote-user])

Authorization flags:

      --authorization-always-allow-paths strings                A list of HTTP paths to skip during authorization, i.e. these are authorized without contacting the 'core' kubernetes server. (default [/healthz,/readyz,/livez])
      --authorization-kubeconfig string                         kubeconfig file pointing at the 'core' kubernetes server with enough rights to create subjectaccessreviews.authorization.k8s.io. This is optional. If empty, all requests not skipped by authorization are forbidden.
      --authorization-webhook-cache-authorized-ttl duration     The duration to cache 'authorized' responses from the webhook authorizer. (default 10s)
      --authorization-webhook-cache-unauthorized-ttl duration   The duration to cache 'unauthorized' responses from the webhook authorizer. (default 10s)

Misc flags:

      --kubeconfig string                       Path to kubeconfig file with authorization and master location information.
      --master string                           The address of the Kubernetes API server (overrides any value in kubeconfig).
      --node-status-update-frequency duration   Specifies how often the controller updates nodes' status. (default 5m0s)

Global flags:

      --add_dir_header                   If true, adds the file directory to the header of the log messages (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --alsologtostderr                  log to standard error as well as files (no effect when -logtostderr=true) (default true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
  -h, --help                             help for cloud-controller-manager
      --log-flush-frequency duration     Maximum number of seconds between log flushes (default 5s)
      --log_backtrace_at traceLocation   when logging hits line file:N, emit a stack trace (default :0) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --log_dir string                   If non-empty, write log files in this directory (no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --log_file string                  If non-empty, use this log file (no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --log_file_max_size uint           Defines the maximum size a log file can grow to (no effect when -logtostderr=true). Unit is megabytes. If the value is 0, the maximum file size is unlimited. (default 1800) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --logtostderr                      log to standard error instead of files (default true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --one_output                       If true, only write logs to their native severity level (vs also writing to each lower severity level; no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --skip_headers                     If true, avoid header prefixes in the log messages (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --skip_log_headers                 If true, avoid headers when opening log files (no effect when -logtostderr=true) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
      --stderrthreshold severity         logs at or above this threshold go to stderr when writing to files and stderr (no effect when -logtostderr=true or -alsologtostderr=false) (default 2) (DEPRECATED: will be removed in a future release, see https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/2845-deprecate-klog-specific-flags-in-k8s-components)
  -v, --v Level                          number for the log level verbosity
      --version version[=true]           Print version information and quit
      --vmodule moduleSpec               comma-separated list of pattern=N settings for file-filtered logging (default garbagecollector*=6,graph_builder*=6)


				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager//healthz_without_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager//healthz_without_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager//healthz_without_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 44111...
I0719 07:10:47.488097  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager1466712711/kube-controller-manager.crt, /tmp/kube-controller-manager1466712711/kube-controller-manager.key)
W0719 07:10:48.395081  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:48.395114  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:48.395129  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:48.395292  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:48.395325  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
I0719 07:10:48.396774  121494 secure_serving.go:210] Serving securely on [::]:44111
I0719 07:10:48.397367  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager1466712711/kube-controller-manager.crt::/tmp/kube-controller-manager1466712711/kube-controller-manager.key"
I0719 07:10:48.397535  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:48.510019  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:48.510142  121494 secure_serving.go:255] Stopped listening on [::]:44111
I0719 07:10:48.510148  121494 dynamic_serving_content.go:192] "Failed to remove file watch, it may have been deleted" file="/tmp/kube-controller-manager1466712711/kube-controller-manager.key" err="can't remove non-existent inotify watch for: /tmp/kube-controller-manager1466712711/kube-controller-manager.key"
I0719 07:10:48.510175  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager1466712711/kube-controller-manager.crt::/tmp/kube-controller-manager1466712711/kube-controller-manager.key"

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager//metrics_without_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager//metrics_without_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager//metrics_without_authn/authz
E0719 07:10:48.510215  121494 dynamic_serving_content.go:218] key failed with : open /tmp/kube-controller-manager1466712711/kube-controller-manager.crt: no such file or directory
    testserver.go:100: kube-controller-manager will listen securely on port 43653...
E0719 07:10:48.530861  121494 dynamic_serving_content.go:141] "Failed to watch cert and key file, will retry later" err="error adding watch for file /tmp/kube-controller-manager1466712711/kube-controller-manager.key: no such file or directory"
I0719 07:10:48.893270  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager956199944/kube-controller-manager.crt, /tmp/kube-controller-manager956199944/kube-controller-manager.key)
W0719 07:10:50.524093  121494 authentication.go:317] No authentication-kubeconfig provided in order to lookup client-ca-file in configmap/extension-apiserver-authentication in kube-system, so client certificate authentication won't work.
W0719 07:10:50.524127  121494 authentication.go:341] No authentication-kubeconfig provided in order to lookup requestheader-client-ca-file in configmap/extension-apiserver-authentication in kube-system, so request-header client certificate authentication won't work.
W0719 07:10:50.524143  121494 authorization.go:193] No authorization-kubeconfig provided, so SubjectAccessReview of authorization tokens won't work.
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:50.524348  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:50.524381  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
E0719 07:10:50.524461  121494 controllermanager.go:190] unable to register configz: register config "kubecontrollermanager.config.k8s.io" twice
I0719 07:10:50.525405  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager956199944/kube-controller-manager.crt::/tmp/kube-controller-manager956199944/kube-controller-manager.key"
I0719 07:10:50.525592  121494 secure_serving.go:210] Serving securely on [::]:43653
I0719 07:10:50.525703  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:50.635818  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:50.635857  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager956199944/kube-controller-manager.crt::/tmp/kube-controller-manager956199944/kube-controller-manager.key"
I0719 07:10:50.635999  121494 secure_serving.go:255] Stopped listening on [::]:43653

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager/always-allowed_/metrics_with_BROKEN_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager/always-allowed_/metrics_with_BROKEN_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/always-allowed_/metrics_with_BROKEN_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 38807...
I0719 07:10:54.211054  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager1518533378/kube-controller-manager.crt, /tmp/kube-controller-manager1518533378/kube-controller-manager.key)
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:55.110817  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:55.110846  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
E0719 07:10:55.110966  121494 controllermanager.go:190] unable to register configz: register config "kubecontrollermanager.config.k8s.io" twice
I0719 07:10:55.112013  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager1518533378/kube-controller-manager.crt::/tmp/kube-controller-manager1518533378/kube-controller-manager.key"
I0719 07:10:55.112224  121494 secure_serving.go:210] Serving securely on [::]:38807
I0719 07:10:55.112312  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:55.244962  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:55.245008  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager1518533378/kube-controller-manager.crt::/tmp/kube-controller-manager1518533378/kube-controller-manager.key"
I0719 07:10:55.245129  121494 secure_serving.go:255] Stopped listening on [::]:38807

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_BROKEN_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_BROKEN_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_BROKEN_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 33003...
I0719 07:10:51.965396  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager3360064440/kube-controller-manager.crt, /tmp/kube-controller-manager3360064440/kube-controller-manager.key)
    testserver.go:115: Waiting for /healthz to be ok...
I0719 07:10:52.708326  121494 controllermanager.go:178] Version: v0.0.0-master+$Format:%H$
I0719 07:10:52.708351  121494 controllermanager.go:180] "Golang settings" GOGC="" GOMAXPROCS="4" GOTRACEBACK=""
E0719 07:10:52.708439  121494 controllermanager.go:190] unable to register configz: register config "kubecontrollermanager.config.k8s.io" twice
I0719 07:10:52.709289  121494 dynamic_serving_content.go:132] "Starting controller" name="serving-cert::/tmp/kube-controller-manager3360064440/kube-controller-manager.crt::/tmp/kube-controller-manager3360064440/kube-controller-manager.key"
I0719 07:10:52.709421  121494 secure_serving.go:210] Serving securely on [::]:33003
I0719 07:10:52.709740  121494 tlsconfig.go:240] "Starting DynamicServingCertificateController"
I0719 07:10:52.818245  121494 tlsconfig.go:255] "Shutting down DynamicServingCertificateController"
I0719 07:10:52.818274  121494 dynamic_serving_content.go:146] "Shutting down controller" name="serving-cert::/tmp/kube-controller-manager3360064440/kube-controller-manager.crt::/tmp/kube-controller-manager3360064440/kube-controller-manager.key"

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/authorization_skipped_for_/healthz_with_authn/authz
    testserver.go:100: kube-controller-manager will listen securely on port 40121...
I0719 07:10:51.070868  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager2257817164/kube-controller-manager.crt, /tmp/kube-controller-manager2257817164/kube-controller-manager.key)
W0719 07:10:51.374988  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:51.375109  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:51.375170  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
    serving_test.go:383: StartTestServer() error = failed to create config from options: unable to load configmap based request-header-client-ca-file: Get "https://127.0.0.1:44923/api/v1/namespaces/kube-system/configmaps/extension-apiserver-authentication": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1, wantErr false

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager/no-flags 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager/no-flags$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/no-flags
    testserver.go:100: kube-controller-manager will listen securely on port 33321...
I0719 07:10:46.908128  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager1846225868/kube-controller-manager.crt, /tmp/kube-controller-manager1846225868/kube-controller-manager.key)
W0719 07:10:46.908152  121494 client_config.go:617] Neither --kubeconfig nor --master was specified.  Using the inClusterConfig.  This might not work.
W0719 07:10:46.908160  121494 client_config.go:622] error creating inClusterConfig, falling back to default config: unable to load in-cluster configuration, KUBERNETES_SERVICE_HOST and KUBERNETES_SERVICE_PORT must be defined

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


k8s.io/kubernetes/test/integration/serving TestComponentSecureServingAndAuth/kube-controller-manager/not_authorized_/metrics_with_BROKEN_authn/authz 0.00s

go test -v k8s.io/kubernetes/test/integration/serving -run TestComponentSecureServingAndAuth/kube-controller-manager/not_authorized_/metrics_with_BROKEN_authn/authz$
=== RUN   TestComponentSecureServingAndAuth/kube-controller-manager/not_authorized_/metrics_with_BROKEN_authn/authz
I0719 07:10:52.818367  121494 secure_serving.go:255] Stopped listening on [::]:33003
    testserver.go:100: kube-controller-manager will listen securely on port 44989...
I0719 07:10:53.420150  121494 serving.go:342] Generated self-signed cert (/tmp/kube-controller-manager618734955/kube-controller-manager.crt, /tmp/kube-controller-manager618734955/kube-controller-manager.key)
W0719 07:10:53.588540  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:53.588633  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
W0719 07:10:53.588695  121494 mutation_detector.go:53] Mutation detector is enabled, this will result in memory leakage.
    serving_test.go:383: StartTestServer() error = failed to create config from options: unable to load configmap based request-header-client-ca-file: Get "https://127.0.0.1:44923/api/v1/namespaces/kube-system/configmaps/extension-apiserver-authentication": x509: certificate is valid for 192.168.1.10, 10.0.0.1, not 127.0.0.1, wantErr false

				from junit_20220719-065015.xml

Filter through log files | View test history on testgrid


Show 3478 Passed Tests

Show 29 Skipped Tests