++ K8S_NODE= ++ [[ -n '' ]] ++ northd_pidfile=/var/run/ovn/ovn-northd.pid ++ controller_pidfile=/var/run/ovn/ovn-controller.pid ++ controller_logfile=/var/log/ovn/acl-audit-log.log ++ vswitch_dbsock=/var/run/openvswitch/db.sock ++ nbdb_pidfile=/var/run/ovn/ovnnb_db.pid ++ nbdb_sock=/var/run/ovn/ovnnb_db.sock ++ nbdb_ctl=/var/run/ovn/ovnnb_db.ctl ++ sbdb_pidfile=/var/run/ovn/ovnsb_db.pid ++ sbdb_sock=/var/run/ovn/ovnsb_db.sock ++ sbdb_ctl=/var/run/ovn/ovnsb_db.ctl + start-rbac-proxy-node ovn-node-metrics 9103 29103 /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-node-metrics + local listen_port=9103 + local upstream_port=29103 + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 5 -ne 5 ]] ++ date -Iseconds + echo '2026-04-28T15:35:22+00:00 INFO: waiting for ovn-node-metrics certs to be mounted' 2026-04-28T15:35:22+00:00 INFO: waiting for ovn-node-metrics certs to be mounted + wait-for-certs ovn-node-metrics /etc/pki/tls/metrics-cert/tls.key /etc/pki/tls/metrics-cert/tls.crt + local detail=ovn-node-metrics + local privkey=/etc/pki/tls/metrics-cert/tls.key + local clientcert=/etc/pki/tls/metrics-cert/tls.crt + [[ 3 -ne 3 ]] + retries=0 ++ date +%s + TS=1777390522 + WARN_TS=1777391722 + HAS_LOGGED_INFO=0 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390522 + [[ 1777390522 -gt WARN_TS ]] + [[ 0 -eq 0 ]] ++ date -Iseconds 2026-04-28T15:35:22+00:00 INFO: ovn-node-metrics certs not mounted. Waiting one hour. + echo '2026-04-28T15:35:22+00:00 INFO: ovn-node-metrics certs not mounted. Waiting one hour.' + HAS_LOGGED_INFO=1 + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390527 + [[ 1777390527 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390532 + [[ 1777390532 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390537 + [[ 1777390537 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390542 + [[ 1777390542 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390547 + [[ 1777390547 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390552 + [[ 1777390552 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390557 + [[ 1777390557 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390562 + [[ 1777390562 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390567 + [[ 1777390567 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390572 + [[ 1777390572 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390577 + [[ 1777390577 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390582 + [[ 1777390582 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390587 + [[ 1777390587 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390592 + [[ 1777390592 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390597 + [[ 1777390597 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390602 + [[ 1777390602 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390607 + [[ 1777390607 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] ++ date +%s + CUR_TS=1777390612 + [[ 1777390612 -gt WARN_TS ]] + [[ 1 -eq 0 ]] + sleep 5 + [[ ! -f /etc/pki/tls/metrics-cert/tls.key ]] + [[ ! -f /etc/pki/tls/metrics-cert/tls.crt ]] ++ date -Iseconds 2026-04-28T15:36:57+00:00 INFO: ovn-node-metrics certs mounted, starting kube-rbac-proxy + echo '2026-04-28T15:36:57+00:00 INFO: ovn-node-metrics certs mounted, starting kube-rbac-proxy' + exec /usr/bin/kube-rbac-proxy --logtostderr --secure-listen-address=:9103 --tls-cipher-suites=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 --upstream=http://127.0.0.1:29103/ --tls-private-key-file=/etc/pki/tls/metrics-cert/tls.key --tls-cert-file=/etc/pki/tls/metrics-cert/tls.crt W0428 15:36:57.424883 3533 deprecated.go:66] ==== Removed Flag Warning ====================== logtostderr is removed in the k8s upstream and has no effect any more. =============================================== I0428 15:36:57.425757 3533 kube-rbac-proxy.go:235] Valid token audiences: I0428 15:36:57.427039 3533 kube-rbac-proxy.go:349] Reading certificate files I0428 15:36:57.427323 3533 kube-rbac-proxy.go:397] Starting TCP socket on :9103 I0428 15:36:57.427611 3533 kube-rbac-proxy.go:404] Listening securely on :9103