I0216 09:53:26.716270 1 flags.go:64] FLAG: --add-dir-header="false" I0216 09:53:26.716369 1 flags.go:64] FLAG: --allow-paths="[]" I0216 09:53:26.716377 1 flags.go:64] FLAG: --alsologtostderr="false" I0216 09:53:26.716379 1 flags.go:64] FLAG: --auth-header-fields-enabled="false" I0216 09:53:26.716381 1 flags.go:64] FLAG: --auth-header-groups-field-name="x-remote-groups" I0216 09:53:26.716384 1 flags.go:64] FLAG: --auth-header-groups-field-separator="|" I0216 09:53:26.716386 1 flags.go:64] FLAG: --auth-header-user-field-name="x-remote-user" I0216 09:53:26.716388 1 flags.go:64] FLAG: --auth-token-audiences="[]" I0216 09:53:26.716394 1 flags.go:64] FLAG: --client-ca-file="" I0216 09:53:26.716396 1 flags.go:64] FLAG: --config-file="" I0216 09:53:26.716398 1 flags.go:64] FLAG: --help="false" I0216 09:53:26.716399 1 flags.go:64] FLAG: --http2-disable="true" I0216 09:53:26.716401 1 flags.go:64] FLAG: --http2-max-concurrent-streams="100" I0216 09:53:26.716406 1 flags.go:64] FLAG: --http2-max-size="262144" I0216 09:53:26.716408 1 flags.go:64] FLAG: --ignore-paths="[]" I0216 09:53:26.716411 1 flags.go:64] FLAG: --insecure-listen-address="" I0216 09:53:26.716413 1 flags.go:64] FLAG: --kube-api-burst="0" I0216 09:53:26.716415 1 flags.go:64] FLAG: --kube-api-qps="0" I0216 09:53:26.716418 1 flags.go:64] FLAG: --kubeconfig="" I0216 09:53:26.716419 1 flags.go:64] FLAG: --log-backtrace-at="" I0216 09:53:26.716421 1 flags.go:64] FLAG: --log-dir="" I0216 09:53:26.716422 1 flags.go:64] FLAG: --log-file="" I0216 09:53:26.716424 1 flags.go:64] FLAG: --log-file-max-size="0" I0216 09:53:26.716427 1 flags.go:64] FLAG: --log-flush-frequency="5s" I0216 09:53:26.716429 1 flags.go:64] FLAG: --logtostderr="true" I0216 09:53:26.716431 1 flags.go:64] FLAG: --oidc-ca-file="" I0216 09:53:26.716432 1 flags.go:64] FLAG: --oidc-clientID="" I0216 09:53:26.716434 1 flags.go:64] FLAG: --oidc-groups-claim="groups" I0216 09:53:26.716436 1 flags.go:64] FLAG: --oidc-groups-prefix="" I0216 09:53:26.716437 1 flags.go:64] FLAG: --oidc-issuer="" I0216 09:53:26.716439 1 flags.go:64] FLAG: --oidc-sign-alg="[RS256]" I0216 09:53:26.716444 1 flags.go:64] FLAG: --oidc-username-claim="email" I0216 09:53:26.716446 1 flags.go:64] FLAG: --oidc-username-prefix="" I0216 09:53:26.716448 1 flags.go:64] FLAG: --one-output="false" I0216 09:53:26.716449 1 flags.go:64] FLAG: --proxy-endpoints-port="0" I0216 09:53:26.716451 1 flags.go:64] FLAG: --secure-listen-address="0.0.0.0:8443" I0216 09:53:26.716452 1 flags.go:64] FLAG: --skip-headers="false" I0216 09:53:26.716454 1 flags.go:64] FLAG: --skip-log-headers="false" I0216 09:53:26.716456 1 flags.go:64] FLAG: --stderrthreshold="" I0216 09:53:26.716457 1 flags.go:64] FLAG: --tls-cert-file="" I0216 09:53:26.716459 1 flags.go:64] FLAG: --tls-cipher-suites="[]" I0216 09:53:26.716463 1 flags.go:64] FLAG: --tls-min-version="VersionTLS12" I0216 09:53:26.716464 1 flags.go:64] FLAG: --tls-private-key-file="" I0216 09:53:26.716469 1 flags.go:64] FLAG: --tls-reload-interval="1m0s" I0216 09:53:26.716472 1 flags.go:64] FLAG: --upstream="http://127.0.0.1:8080/" I0216 09:53:26.716474 1 flags.go:64] FLAG: --upstream-ca-file="" I0216 09:53:26.716476 1 flags.go:64] FLAG: --upstream-client-cert-file="" I0216 09:53:26.716477 1 flags.go:64] FLAG: --upstream-client-key-file="" I0216 09:53:26.716479 1 flags.go:64] FLAG: --upstream-force-h2c="false" I0216 09:53:26.716481 1 flags.go:64] FLAG: --v="10" I0216 09:53:26.716483 1 flags.go:64] FLAG: --version="false" I0216 09:53:26.716485 1 flags.go:64] FLAG: --vmodule="" W0216 09:53:26.716490 1 options.go:150] ==== Deprecation Warning ====================== Insecure listen address will be removed. Using --insecure-listen-address won't be possible! The ability to run kube-rbac-proxy without TLS certificates will be removed. Not using --tls-cert-file and --tls-private-key-file won't be possible! For more information, please go to https://github.com/brancz/kube-rbac-proxy/issues/187 =============================================== W0216 09:53:26.716504 1 deprecated.go:66] ==== Removed Flag Warning ====================== logtostderr is removed in the k8s upstream and has no effect any more. =============================================== I0216 09:53:26.716782 1 kube-rbac-proxy.go:233] Valid token audiences: I0216 09:53:26.717524 1 kube-rbac-proxy.go:331] Generating self signed cert as no cert is provided I0216 09:53:27.946949 1 kube-rbac-proxy.go:395] Starting TCP socket on 0.0.0.0:8443 I0216 09:53:27.947168 1 kube-rbac-proxy.go:402] Listening securely on 0.0.0.0:8443