++ K8S_NODE= ++ [[ -n '' ]] ++ northd_pidfile=/var/run/ovn/ovn-northd.pid ++ controller_pidfile=/var/run/ovn/ovn-controller.pid ++ controller_logfile=/var/log/ovn/acl-audit-log.log ++ vswitch_dbsock=/var/run/openvswitch/db.sock ++ nbdb_pidfile=/var/run/ovn/ovnnb_db.pid ++ nbdb_sock=/var/run/ovn/ovnnb_db.sock ++ nbdb_ctl=/var/run/ovn/ovnnb_db.ctl ++ sbdb_pidfile=/var/run/ovn/ovnsb_db.pid ++ sbdb_sock=/var/run/ovn/ovnsb_db.sock ++ sbdb_ctl=/var/run/ovn/ovnsb_db.ctl + start-rbac-proxy-node ovn-metrics 9105 29105 /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-metrics + local listen_port=9105 + local upstream_port=29105 + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 5 -ne 5 ]] ++ date -Iseconds + echo '2026-03-26T23:15:05+00:00 INFO: waiting for ovn-metrics certs to be mounted' 2026-03-26T23:15:05+00:00 INFO: waiting for ovn-metrics certs to be mounted + wait-for-certs ovn-metrics /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-metrics + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 3 -ne 3 ]] + retries=0 ++ date +%s + TS=1774566905 + WARN_TS=1774568105 + HAS_LOGGED_INFO=0 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566905 + [[ 1774566905 -gt WARN_TS ]] + [[ 0 -eq 0 ]] ++ date -Iseconds + echo '2026-03-26T23:15:05+00:00 INFO: ovn-metrics certs not mounted. Waiting one hour.' 2026-03-26T23:15:05+00:00 INFO: ovn-metrics certs not mounted. Waiting one hour. + HAS_LOGGED_INFO=1 + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566910 + [[ 1774566910 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566915 + [[ 1774566915 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566920 + [[ 1774566920 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566925 + [[ 1774566925 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566930 + [[ 1774566930 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566935 + [[ 1774566935 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566940 + [[ 1774566940 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566945 + [[ 1774566945 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566950 + [[ 1774566950 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566955 + [[ 1774566955 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566960 + [[ 1774566960 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566965 + [[ 1774566965 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566970 + [[ 1774566970 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566975 + [[ 1774566975 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566980 + [[ 1774566980 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566985 + [[ 1774566985 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566990 + [[ 1774566990 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774566995 + [[ 1774566995 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567000 + [[ 1774567000 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567005 + [[ 1774567005 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567010 + [[ 1774567010 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567015 + [[ 1774567015 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567020 + [[ 1774567020 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567025 + [[ 1774567025 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567030 + [[ 1774567030 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567035 + [[ 1774567035 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567040 + [[ 1774567040 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567046 + [[ 1774567046 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567051 + [[ 1774567051 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567056 + [[ 1774567056 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567061 + [[ 1774567061 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567066 + [[ 1774567066 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567071 + [[ 1774567071 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567076 + [[ 1774567076 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567081 + [[ 1774567081 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567086 + [[ 1774567086 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567091 + [[ 1774567091 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567096 + [[ 1774567096 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567101 + [[ 1774567101 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567106 + [[ 1774567106 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567111 + [[ 1774567111 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567116 + [[ 1774567116 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567121 + [[ 1774567121 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567126 + [[ 1774567126 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567131 + [[ 1774567131 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567136 + [[ 1774567136 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567141 + [[ 1774567141 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1774567146 + [[ 1774567146 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] + [[ ! -f /etc/pki/tls/metrics-cert/tls.crt ]] ++ date -Iseconds 2026-03-26T23:19:11+00:00 INFO: ovn-metrics certs mounted, starting kube-rbac-proxy + echo '2026-03-26T23:19:11+00:00 INFO: ovn-metrics certs mounted, starting kube-rbac-proxy' + exec /usr/bin/kube-rbac-proxy --logtostderr --secure-listen-address=:9105 --tls-cipher-suites=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 --upstream=http://127.0.0.1:29105/ --tls-private-key-file=/etc/pki/tls/metrics-cert/tls.key --tls-cert-file=/etc/pki/tls/metrics-cert/tls.crt W0326 23:19:11.108822 3398 deprecated.go:66] ==== Removed Flag Warning ====================== logtostderr is removed in the k8s upstream and has no effect any more. =============================================== I0326 23:19:11.109345 3398 kube-rbac-proxy.go:235] Valid token audiences: I0326 23:19:11.110441 3398 kube-rbac-proxy.go:349] Reading certificate files I0326 23:19:11.110758 3398 kube-rbac-proxy.go:397] Starting TCP socket on :9105 I0326 23:19:11.111050 3398 kube-rbac-proxy.go:404] Listening securely on :9105