++ K8S_NODE= ++ [[ -n '' ]] ++ northd_pidfile=/var/run/ovn/ovn-northd.pid ++ controller_pidfile=/var/run/ovn/ovn-controller.pid ++ controller_logfile=/var/log/ovn/acl-audit-log.log ++ vswitch_dbsock=/var/run/openvswitch/db.sock ++ nbdb_pidfile=/var/run/ovn/ovnnb_db.pid ++ nbdb_sock=/var/run/ovn/ovnnb_db.sock ++ nbdb_ctl=/var/run/ovn/ovnnb_db.ctl ++ sbdb_pidfile=/var/run/ovn/ovnsb_db.pid ++ sbdb_sock=/var/run/ovn/ovnsb_db.sock ++ sbdb_ctl=/var/run/ovn/ovnsb_db.ctl + start-rbac-proxy-node ovn-metrics 9105 29105 /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-metrics + local listen_port=9105 + local upstream_port=29105 + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 5 -ne 5 ]] ++ date -Iseconds + echo '2026-05-06T12:43:56+00:00 INFO: waiting for ovn-metrics certs to be mounted' 2026-05-06T12:43:56+00:00 INFO: waiting for ovn-metrics certs to be mounted + wait-for-certs ovn-metrics /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-metrics + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 3 -ne 3 ]] + retries=0 ++ date +%s + TS=1778071436 + WARN_TS=1778072636 + HAS_LOGGED_INFO=0 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071436 + [[ 1778071436 -gt WARN_TS ]] + [[ 0 -eq 0 ]] ++ date -Iseconds 2026-05-06T12:43:56+00:00 INFO: ovn-metrics certs not mounted. Waiting one hour. + echo '2026-05-06T12:43:56+00:00 INFO: ovn-metrics certs not mounted. Waiting one hour.' + HAS_LOGGED_INFO=1 + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071441 + [[ 1778071441 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071446 + [[ 1778071446 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071451 + [[ 1778071451 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071456 + [[ 1778071456 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071461 + [[ 1778071461 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071466 + [[ 1778071466 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071471 + [[ 1778071471 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071476 + [[ 1778071476 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071481 + [[ 1778071481 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071486 + [[ 1778071486 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071491 + [[ 1778071491 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071496 + [[ 1778071496 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071501 + [[ 1778071501 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071506 + [[ 1778071506 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071511 + [[ 1778071511 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071516 + [[ 1778071516 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071521 + [[ 1778071521 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071526 + [[ 1778071526 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071531 + [[ 1778071531 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071536 + [[ 1778071536 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071541 + [[ 1778071541 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071546 + [[ 1778071546 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071551 + [[ 1778071551 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071556 + [[ 1778071556 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071561 + [[ 1778071561 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071566 + [[ 1778071566 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071571 + [[ 1778071571 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071576 + [[ 1778071576 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071581 + [[ 1778071581 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071586 + [[ 1778071586 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071591 + [[ 1778071591 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071596 + [[ 1778071596 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071601 + [[ 1778071601 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071606 + [[ 1778071606 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071611 + [[ 1778071611 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071616 + [[ 1778071616 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071621 + [[ 1778071621 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071626 + [[ 1778071626 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071631 + [[ 1778071631 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071636 + [[ 1778071636 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071641 + [[ 1778071641 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071646 + [[ 1778071646 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071651 + [[ 1778071651 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071656 + [[ 1778071656 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071661 + [[ 1778071661 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1778071666 + [[ 1778071666 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] + [[ ! -f /etc/pki/tls/metrics-cert/tls.crt ]] ++ date -Iseconds + echo '2026-05-06T12:47:51+00:00 INFO: ovn-metrics certs mounted, starting kube-rbac-proxy' 2026-05-06T12:47:51+00:00 INFO: ovn-metrics certs mounted, starting kube-rbac-proxy + exec /usr/bin/kube-rbac-proxy --logtostderr --secure-listen-address=:9105 --tls-cipher-suites=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 --upstream=http://127.0.0.1:29105/ --tls-private-key-file=/etc/pki/tls/metrics-cert/tls.key --tls-cert-file=/etc/pki/tls/metrics-cert/tls.crt W0506 12:47:51.367265 3555 deprecated.go:66] ==== Removed Flag Warning ====================== logtostderr is removed in the k8s upstream and has no effect any more. =============================================== I0506 12:47:51.367712 3555 kube-rbac-proxy.go:235] Valid token audiences: I0506 12:47:51.369120 3555 kube-rbac-proxy.go:349] Reading certificate files I0506 12:47:51.370016 3555 kube-rbac-proxy.go:397] Starting TCP socket on :9105 I0506 12:47:51.370212 3555 kube-rbac-proxy.go:404] Listening securely on :9105