++ K8S_NODE= ++ [[ -n '' ]] ++ northd_pidfile=/var/run/ovn/ovn-northd.pid ++ controller_pidfile=/var/run/ovn/ovn-controller.pid ++ controller_logfile=/var/log/ovn/acl-audit-log.log ++ vswitch_dbsock=/var/run/openvswitch/db.sock ++ nbdb_pidfile=/var/run/ovn/ovnnb_db.pid ++ nbdb_sock=/var/run/ovn/ovnnb_db.sock ++ nbdb_ctl=/var/run/ovn/ovnnb_db.ctl ++ sbdb_pidfile=/var/run/ovn/ovnsb_db.pid ++ sbdb_sock=/var/run/ovn/ovnsb_db.sock ++ sbdb_ctl=/var/run/ovn/ovnsb_db.ctl + start-rbac-proxy-node ovn-node-metrics 9103 29103 /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-node-metrics + local listen_port=9103 + local upstream_port=29103 + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 5 -ne 5 ]] ++ date -Iseconds + echo '2026-04-22T03:01:53+00:00 INFO: waiting for ovn-node-metrics certs to be mounted' 2026-04-22T03:01:53+00:00 INFO: waiting for ovn-node-metrics certs to be mounted + wait-for-certs ovn-node-metrics /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-node-metrics + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 3 -ne 3 ]] + retries=0 ++ date +%s + TS=1776826913 + WARN_TS=1776828113 + HAS_LOGGED_INFO=0 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826913 + [[ 1776826913 -gt WARN_TS ]] + [[ 0 -eq 0 ]] ++ date -Iseconds 2026-04-22T03:01:53+00:00 INFO: ovn-node-metrics certs not mounted. Waiting one hour. + echo '2026-04-22T03:01:53+00:00 INFO: ovn-node-metrics certs not mounted. Waiting one hour.' + HAS_LOGGED_INFO=1 + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826918 + [[ 1776826918 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826923 + [[ 1776826923 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826928 + [[ 1776826928 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826933 + [[ 1776826933 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826938 + [[ 1776826938 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826943 + [[ 1776826943 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826948 + [[ 1776826948 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826953 + [[ 1776826953 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826958 + [[ 1776826958 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826963 + [[ 1776826963 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826968 + [[ 1776826968 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826973 + [[ 1776826973 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826978 + [[ 1776826978 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826983 + [[ 1776826983 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826988 + [[ 1776826988 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826993 + [[ 1776826993 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776826998 + [[ 1776826998 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827003 + [[ 1776827003 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827008 + [[ 1776827008 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827013 + [[ 1776827013 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827018 + [[ 1776827018 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827024 + [[ 1776827024 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827029 + [[ 1776827029 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827034 + [[ 1776827034 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827039 + [[ 1776827039 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827044 + [[ 1776827044 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827049 + [[ 1776827049 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827054 + [[ 1776827054 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827059 + [[ 1776827059 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827064 + [[ 1776827064 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827069 + [[ 1776827069 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827074 + [[ 1776827074 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827079 + [[ 1776827079 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827084 + [[ 1776827084 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827089 + [[ 1776827089 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827094 + [[ 1776827094 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827099 + [[ 1776827099 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827104 + [[ 1776827104 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827109 + [[ 1776827109 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827114 + [[ 1776827114 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827119 + [[ 1776827119 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827124 + [[ 1776827124 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827129 + [[ 1776827129 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827134 + [[ 1776827134 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827139 + [[ 1776827139 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827144 + [[ 1776827144 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827149 + [[ 1776827149 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827154 + [[ 1776827154 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827159 + [[ 1776827159 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827164 + [[ 1776827164 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827169 + [[ 1776827169 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827174 + [[ 1776827174 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827179 + [[ 1776827179 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827184 + [[ 1776827184 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1776827189 + [[ 1776827189 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] + [[ ! -f /etc/pki/tls/metrics-cert/tls.crt ]] ++ date -Iseconds 2026-04-22T03:06:34+00:00 INFO: ovn-node-metrics certs mounted, starting kube-rbac-proxy + echo '2026-04-22T03:06:34+00:00 INFO: ovn-node-metrics certs mounted, starting kube-rbac-proxy' + exec /usr/bin/kube-rbac-proxy --logtostderr --secure-listen-address=:9103 --tls-cipher-suites=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 --upstream=http://127.0.0.1:29103/ --tls-private-key-file=/etc/pki/tls/metrics-cert/tls.key --tls-cert-file=/etc/pki/tls/metrics-cert/tls.crt W0422 03:06:34.158146 3109 deprecated.go:66] ==== Removed Flag Warning ====================== logtostderr is removed in the k8s upstream and has no effect any more. =============================================== I0422 03:06:34.158582 3109 kube-rbac-proxy.go:235] Valid token audiences: I0422 03:06:34.159583 3109 kube-rbac-proxy.go:349] Reading certificate files I0422 03:06:34.159819 3109 kube-rbac-proxy.go:397] Starting TCP socket on :9103 I0422 03:06:34.160121 3109 kube-rbac-proxy.go:404] Listening securely on :9103