++ echo 'Log: /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/logs/split-horizon-manual-tls.log' Log: /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/logs/split-horizon-manual-tls.log ++ '[' -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/conf/cloud-secret.yml ']' ++ SKIP_BACKUPS_TO_AWS_GCP_AZURE= ++ oc get projects ++ kubectl get nodes ++ grep '^minikube' +++ kubectl version -o json +++ jq -r .serverVersion.gitVersion +++ grep -eks- Warning: version difference between client (1.36) and server (1.33) exceeds the supported minor version skew of +/-1 ++ '[' ']' ++ EKS=0 +++ kubectl version -o json +++ jq -r .serverVersion.gitVersion +++ grep gke Warning: version difference between client (1.36) and server (1.33) exceeds the supported minor version skew of +/-1 ++ '[' v1.33.11-gke.1197000 ']' ++ GKE=1 +++ kubectl version -o json +++ jq -r '.serverVersion.major + "." + .serverVersion.minor' +++ /usr/sbin/sed -r 's/[^0-9.]+//g' Warning: version difference between client (1.36) and server (1.33) exceeds the supported minor version skew of +/-1 ++ KUBE_VERSION=1.33 + main + create_infra split-horizon-manual-tls-3794 + local ns=split-horizon-manual-tls-3794 + [[ 1 == 1 ]] + delete_crd + desc 'get and delete old CRDs and RBAC' + set +o xtrace ----------------------------------------------------------------------------------- get and delete old CRDs and RBAC ----------------------------------------------------------------------------------- + kubectl_bin delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml --ignore-not-found --wait=false ++ mktemp + local LAST_OUT=/tmp/tmp.7wWJ1j8wGW ++ mktemp + local LAST_ERR=/tmp/tmp.JEtHSJLJSS + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml --ignore-not-found --wait=false + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.7wWJ1j8wGW customresourcedefinition.apiextensions.k8s.io "perconaservermongodbbackups.psmdb.percona.com" deleted customresourcedefinition.apiextensions.k8s.io "perconaservermongodbrestores.psmdb.percona.com" deleted customresourcedefinition.apiextensions.k8s.io "perconaservermongodbs.psmdb.percona.com" deleted + cat /tmp/tmp.JEtHSJLJSS + rm /tmp/tmp.7wWJ1j8wGW /tmp/tmp.JEtHSJLJSS + return 0 ++ yq eval .metadata.name /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml ++ grep -v '\-\-\-' grep: warning: stray \ before - grep: warning: stray \ before - + for crd_name in $(yq eval '.metadata.name' "${src_dir}/deploy/crd.yaml" | grep -v '\-\-\-') + kubectl get perconaservermongodbbackups.psmdb.percona.com --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch perconaservermongodbbackups.psmdb.percona.com -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' error: the server doesn't have a resource type "perconaservermongodbbackups" + kubectl patch perconaservermongodbbackups.psmdb.percona.com -n sh --type=merge -p '{"metadata":{"finalizers":[]}}' error: the server doesn't have a resource type "perconaservermongodbbackups" + : + kubectl_bin wait --for=delete crd perconaservermongodbbackups.psmdb.percona.com ++ mktemp + local LAST_OUT=/tmp/tmp.riP6ozDO0u ++ mktemp + local LAST_ERR=/tmp/tmp.VuBJDs8X3N + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete crd perconaservermongodbbackups.psmdb.percona.com + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.riP6ozDO0u + cat /tmp/tmp.VuBJDs8X3N + rm /tmp/tmp.riP6ozDO0u /tmp/tmp.VuBJDs8X3N + return 0 + for crd_name in $(yq eval '.metadata.name' "${src_dir}/deploy/crd.yaml" | grep -v '\-\-\-') + kubectl get perconaservermongodbrestores.psmdb.percona.com --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch perconaservermongodbrestores.psmdb.percona.com -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' error: the server doesn't have a resource type "perconaservermongodbrestores" + kubectl patch perconaservermongodbrestores.psmdb.percona.com -n sh --type=merge -p '{"metadata":{"finalizers":[]}}' error: the server doesn't have a resource type "perconaservermongodbrestores" + : + kubectl_bin wait --for=delete crd perconaservermongodbrestores.psmdb.percona.com ++ mktemp + local LAST_OUT=/tmp/tmp.pKvqxYzGpN ++ mktemp + local LAST_ERR=/tmp/tmp.A3qksNy0M4 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete crd perconaservermongodbrestores.psmdb.percona.com + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.pKvqxYzGpN + cat /tmp/tmp.A3qksNy0M4 + rm /tmp/tmp.pKvqxYzGpN /tmp/tmp.A3qksNy0M4 + return 0 + for crd_name in $(yq eval '.metadata.name' "${src_dir}/deploy/crd.yaml" | grep -v '\-\-\-') + kubectl get perconaservermongodbs.psmdb.percona.com --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch perconaservermongodbs.psmdb.percona.com -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' error: the server doesn't have a resource type "perconaservermongodbs" + kubectl patch perconaservermongodbs.psmdb.percona.com -n sh --type=merge -p '{"metadata":{"finalizers":[]}}' error: the server doesn't have a resource type "perconaservermongodbs" + : + kubectl_bin wait --for=delete crd perconaservermongodbs.psmdb.percona.com ++ mktemp + local LAST_OUT=/tmp/tmp.sJSJZ2Df2k ++ mktemp + local LAST_ERR=/tmp/tmp.8p8vfJiajs + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete crd perconaservermongodbs.psmdb.percona.com + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.sJSJZ2Df2k + cat /tmp/tmp.8p8vfJiajs + rm /tmp/tmp.sJSJZ2Df2k /tmp/tmp.8p8vfJiajs + return 0 + local rbac_yaml=rbac.yaml + '[' -n psmdb-operator ']' + rbac_yaml=cw-rbac.yaml + kubectl_bin delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/cw-rbac.yaml --ignore-not-found ++ mktemp + local LAST_OUT=/tmp/tmp.m6YE4Npp9M ++ mktemp + local LAST_ERR=/tmp/tmp.jEmTvT2acD + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/cw-rbac.yaml --ignore-not-found + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.m6YE4Npp9M clusterrole.rbac.authorization.k8s.io "percona-server-mongodb-operator" deleted clusterrolebinding.rbac.authorization.k8s.io "service-account-percona-server-mongodb-operator" deleted + cat /tmp/tmp.jEmTvT2acD + rm /tmp/tmp.m6YE4Npp9M /tmp/tmp.jEmTvT2acD + return 0 + check_crd_for_deletion PR-2389-136576e0b + local git_tag=PR-2389-136576e0b ++ curl -s https://raw.githubusercontent.com/percona/percona-server-mongodb-operator/PR-2389-136576e0b/deploy/crd.yaml ++ yq eval .metadata.name ++ /usr/sbin/sed s/---//g ++ /usr/sbin/sed ':a;N;$!ba;s/\n/ /g' + for crd_name in $(curl -s https://raw.githubusercontent.com/percona/percona-server-mongodb-operator/${git_tag}/deploy/crd.yaml | yq eval '.metadata.name' | $sed 's/---//g' | $sed ':a;N;$!ba;s/\n/ /g') ++ kubectl_bin get crd/null -o 'jsonpath={.status.conditions[-1].type}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.z4HoL2tcgx +++ mktemp ++ local LAST_ERR=/tmp/tmp.tNOP2PWNca ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get crd/null -o 'jsonpath={.status.conditions[-1].type}' ++ exit_status=1 ++ set -e ++ '[' 1 '!=' 0 -a -n 1 ']' ++ cat /tmp/tmp.z4HoL2tcgx ++ cat /tmp/tmp.tNOP2PWNca Error from server (NotFound): customresourcedefinitions.apiextensions.k8s.io "null" not found ++ sleep 0 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get crd/null -o 'jsonpath={.status.conditions[-1].type}' ++ exit_status=1 ++ set -e ++ '[' 1 '!=' 0 -a -n 1 ']' ++ cat /tmp/tmp.z4HoL2tcgx ++ cat /tmp/tmp.tNOP2PWNca Error from server (NotFound): customresourcedefinitions.apiextensions.k8s.io "null" not found ++ sleep 4 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get crd/null -o 'jsonpath={.status.conditions[-1].type}' ++ exit_status=1 ++ set -e ++ '[' 1 '!=' 0 -a -n 1 ']' ++ cat /tmp/tmp.z4HoL2tcgx ++ cat /tmp/tmp.tNOP2PWNca Error from server (NotFound): customresourcedefinitions.apiextensions.k8s.io "null" not found ++ sleep 8 ++ cat /tmp/tmp.z4HoL2tcgx ++ cat /tmp/tmp.tNOP2PWNca Error from server (NotFound): customresourcedefinitions.apiextensions.k8s.io "null" not found ++ rm /tmp/tmp.z4HoL2tcgx /tmp/tmp.tNOP2PWNca ++ return 1 + [[ '' == Terminating ]] + '[' -n psmdb-operator ']' + create_namespace psmdb-operator + local namespace=psmdb-operator + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ helm list --all-namespaces --filter chaos-mesh ++ tail -n1 ++ sed s/NAMESPACE// ++ awk '-F ' '{print $2}' + local chaos_mesh_ns= + desc 'destroy chaos-mesh' + set +o xtrace ----------------------------------------------------------------------------------- destroy chaos-mesh ----------------------------------------------------------------------------------- + '[' -n '' ']' ++ kubectl get MutatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep validate-auth ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl api-resources ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get crd ++ grep chaos-mesh.org ++ awk '{print $1}' + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrolebinding ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrole ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + kubectl_bin get ns + grep -E -v '^kube-|^default|Terminating|psmdb-operator|openshift|^gke-|^gmp-|^NAME' + awk '{print$1}' + '[' -n '' ']' + desc 'cleaned up old namespaces psmdb-operator' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up old namespaces psmdb-operator ----------------------------------------------------------------------------------- + kubectl_bin delete namespace psmdb-operator --ignore-not-found + xargs kubectl delete ns ++ mktemp ++ mktemp + local LAST_OUT=/tmp/tmp.hK8DZz6oW8 + local LAST_OUT=/tmp/tmp.ceZfQ9xHc7 ++ mktemp ++ mktemp + local LAST_ERR=/tmp/tmp.XjdSwDByqC + local exit_status=0 + local timeout=4 ++ seq 0 2 + local LAST_ERR=/tmp/tmp.WHoxrmzFkU + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl get ns + for i in $(seq 0 2) + set +e + kubectl delete namespace psmdb-operator --ignore-not-found + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.ceZfQ9xHc7 + cat /tmp/tmp.XjdSwDByqC + rm /tmp/tmp.ceZfQ9xHc7 /tmp/tmp.XjdSwDByqC + return 0 namespace "split-horizon-manual-tls-23405" deleted + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.hK8DZz6oW8 namespace "psmdb-operator" deleted + cat /tmp/tmp.WHoxrmzFkU + rm /tmp/tmp.hK8DZz6oW8 /tmp/tmp.WHoxrmzFkU + return 0 + kubectl_bin wait --for=delete namespace psmdb-operator ++ mktemp + local LAST_OUT=/tmp/tmp.3AbcW8Ipc5 ++ mktemp + local LAST_ERR=/tmp/tmp.WuQHyr2lgz + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete namespace psmdb-operator + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.3AbcW8Ipc5 + cat /tmp/tmp.WuQHyr2lgz + rm /tmp/tmp.3AbcW8Ipc5 /tmp/tmp.WuQHyr2lgz + return 0 + desc 'create namespace psmdb-operator' + set +o xtrace ----------------------------------------------------------------------------------- create namespace psmdb-operator ----------------------------------------------------------------------------------- + kubectl_bin create namespace psmdb-operator ++ mktemp + local LAST_OUT=/tmp/tmp.g067J5kK3p ++ mktemp + local LAST_ERR=/tmp/tmp.UxTGUgmhU8 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl create namespace psmdb-operator + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.g067J5kK3p namespace/psmdb-operator created + cat /tmp/tmp.UxTGUgmhU8 + rm /tmp/tmp.g067J5kK3p /tmp/tmp.UxTGUgmhU8 + return 0 + set_kube_ctx psmdb-operator + local namespace=psmdb-operator ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.5wfKe7xSU0 +++ mktemp ++ local LAST_ERR=/tmp/tmp.9PQoVIHadl ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.5wfKe7xSU0 ++ cat /tmp/tmp.9PQoVIHadl ++ rm /tmp/tmp.5wfKe7xSU0 /tmp/tmp.9PQoVIHadl ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-psmdb-2389-136576e0b-30-cluster6 --namespace=psmdb-operator ++ mktemp + local LAST_OUT=/tmp/tmp.KsKeZBChFq ++ mktemp + local LAST_ERR=/tmp/tmp.ko8NU4GBQl + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-psmdb-2389-136576e0b-30-cluster6 --namespace=psmdb-operator + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.KsKeZBChFq Context "gke_cloud-dev-112233_us-central1-a_jen-psmdb-2389-136576e0b-30-cluster6" modified. + cat /tmp/tmp.ko8NU4GBQl + rm /tmp/tmp.KsKeZBChFq /tmp/tmp.ko8NU4GBQl + return 0 + deploy_operator + desc 'start PSMDB operator: docker.io/perconalab/percona-server-mongodb-operator:PR-2389-136576e0b' + set +o xtrace ----------------------------------------------------------------------------------- start PSMDB operator: docker.io/perconalab/percona-server-mongodb-operator:PR-2389-136576e0b ----------------------------------------------------------------------------------- + local cr_file + '[' -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/crd.yaml ']' + cr_file=/mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml + kubectl_bin apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml ++ mktemp + local LAST_OUT=/tmp/tmp.v3uXg0q7gc ++ mktemp + local LAST_ERR=/tmp/tmp.VpUU7X3DBU + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.v3uXg0q7gc customresourcedefinition.apiextensions.k8s.io/perconaservermongodbbackups.psmdb.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaservermongodbrestores.psmdb.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaservermongodbs.psmdb.percona.com serverside-applied + cat /tmp/tmp.VpUU7X3DBU + rm /tmp/tmp.v3uXg0q7gc /tmp/tmp.VpUU7X3DBU + return 0 + '[' -n psmdb-operator ']' + apply_rbac cw-rbac + local operator_namespace=psmdb-operator + local rbac=cw-rbac + cat /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/cw-rbac.yaml + sed -e 's^namespace: .*^namespace: psmdb-operator^' + kubectl_bin apply -n psmdb-operator -f - ++ mktemp + local LAST_OUT=/tmp/tmp.hRKtIkOp02 ++ mktemp + local LAST_ERR=/tmp/tmp.iQ7kFaKlrL + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl apply -n psmdb-operator -f - + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.hRKtIkOp02 clusterrole.rbac.authorization.k8s.io/percona-server-mongodb-operator created serviceaccount/percona-server-mongodb-operator created clusterrolebinding.rbac.authorization.k8s.io/service-account-percona-server-mongodb-operator created + cat /tmp/tmp.iQ7kFaKlrL + rm /tmp/tmp.hRKtIkOp02 /tmp/tmp.iQ7kFaKlrL + return 0 + yq eval $'\n\t\t\t(.spec.template.spec.containers[].image = "docker.io/perconalab/percona-server-mongodb-operator:PR-2389-136576e0b") |\n\t\t\t((.. | select(.[] == "DISABLE_TELEMETRY")) |= .value="true") |\n\t\t\t((.. | select(.[] == "LOG_LEVEL")) |= .value="DEBUG")' /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/cw-operator.yaml + kubectl_bin apply -n psmdb-operator -f - ++ mktemp + local LAST_OUT=/tmp/tmp.Zxpw8xN2XF ++ mktemp + local LAST_ERR=/tmp/tmp.79PhUzYdNj + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl apply -n psmdb-operator -f - + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.Zxpw8xN2XF deployment.apps/percona-server-mongodb-operator created + cat /tmp/tmp.79PhUzYdNj + rm /tmp/tmp.Zxpw8xN2XF /tmp/tmp.79PhUzYdNj + return 0 + sleep 20 ++ get_operator_pod ++ kubectl_bin get pods --selector=name=percona-server-mongodb-operator -o 'jsonpath={.items[].metadata.name}' -n psmdb-operator +++ mktemp ++ local LAST_OUT=/tmp/tmp.cTRM471Ohz +++ mktemp ++ local LAST_ERR=/tmp/tmp.Lmgf5N7mLr ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get pods --selector=name=percona-server-mongodb-operator -o 'jsonpath={.items[].metadata.name}' -n psmdb-operator ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.cTRM471Ohz ++ cat /tmp/tmp.Lmgf5N7mLr ++ rm /tmp/tmp.cTRM471Ohz /tmp/tmp.Lmgf5N7mLr ++ return 0 + wait_operator_pod percona-server-mongodb-operator-7b6f468b76-skmrg + local pod=percona-server-mongodb-operator-7b6f468b76-skmrg + set +o xtrace waiting for pod/percona-server-mongodb-operator-7b6f468b76-skmrg to be ready.OK + echo 'Print operator info from log' Print operator info from log + grep 'Manager starting up' ++ get_operator_pod ++ kubectl_bin get pods --selector=name=percona-server-mongodb-operator -o 'jsonpath={.items[].metadata.name}' -n psmdb-operator +++ mktemp ++ local LAST_OUT=/tmp/tmp.xlo8wj1FSr +++ mktemp ++ local LAST_ERR=/tmp/tmp.J290bhVZ2K ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get pods --selector=name=percona-server-mongodb-operator -o 'jsonpath={.items[].metadata.name}' -n psmdb-operator ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.xlo8wj1FSr ++ cat /tmp/tmp.J290bhVZ2K ++ rm /tmp/tmp.xlo8wj1FSr /tmp/tmp.J290bhVZ2K ++ return 0 + kubectl_bin logs -n psmdb-operator percona-server-mongodb-operator-7b6f468b76-skmrg ++ mktemp + local LAST_OUT=/tmp/tmp.znQFdd5TSu ++ mktemp + local LAST_ERR=/tmp/tmp.iWtXLeI255 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl logs -n psmdb-operator percona-server-mongodb-operator-7b6f468b76-skmrg + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.znQFdd5TSu + cat /tmp/tmp.iWtXLeI255 + rm /tmp/tmp.znQFdd5TSu /tmp/tmp.iWtXLeI255 + return 0 2026-06-16T07:09:01.198Z INFO setup Manager starting up {"gitCommit": "136576e0b191ed0a50d69334a6dd7c5f0df7aec3", "gitBranch": "PR-2389-136576e0b", "buildTime": "", "goVersion": "go1.26.4", "os": "linux", "arch": "amd64"} + create_namespace split-horizon-manual-tls-3794 + local namespace=split-horizon-manual-tls-3794 + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ helm list --all-namespaces --filter chaos-mesh ++ tail -n1 ++ awk '-F ' '{print $2}' ++ sed s/NAMESPACE// + local chaos_mesh_ns= + desc 'destroy chaos-mesh' + set +o xtrace ----------------------------------------------------------------------------------- destroy chaos-mesh ----------------------------------------------------------------------------------- + '[' -n '' ']' ++ kubectl get MutatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ grep chaos-mesh ++ kubectl get ValidatingWebhookConfiguration ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep validate-auth ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl api-resources ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get crd ++ grep chaos-mesh.org ++ awk '{print $1}' + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrolebinding ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrole ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + kubectl_bin get ns + grep -E -v '^kube-|^default|Terminating|psmdb-operator|openshift|^gke-|^gmp-|^NAME' ++ mktemp + awk '{print$1}' + '[' -n '' ']' + desc 'cleaned up old namespaces split-horizon-manual-tls-3794' + set +o xtrace + xargs kubectl delete ns ----------------------------------------------------------------------------------- cleaned up old namespaces split-horizon-manual-tls-3794 ----------------------------------------------------------------------------------- + kubectl_bin delete namespace split-horizon-manual-tls-3794 --ignore-not-found ++ mktemp + local LAST_OUT=/tmp/tmp.jF6BqChhhU ++ mktemp + local LAST_OUT=/tmp/tmp.fac0DmzkOD ++ mktemp + local LAST_ERR=/tmp/tmp.Rqc0JvoZNz + local exit_status=0 + local timeout=4 ++ seq 0 2 + local LAST_ERR=/tmp/tmp.i2wwwNfwsh + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl get ns + for i in $(seq 0 2) + set +e + kubectl delete namespace split-horizon-manual-tls-3794 --ignore-not-found + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.jF6BqChhhU + cat /tmp/tmp.Rqc0JvoZNz + rm /tmp/tmp.jF6BqChhhU /tmp/tmp.Rqc0JvoZNz + return 0 error: resource(s) were provided, but no name was specified + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.fac0DmzkOD + cat /tmp/tmp.i2wwwNfwsh + rm /tmp/tmp.fac0DmzkOD /tmp/tmp.i2wwwNfwsh + return 0 + kubectl_bin wait --for=delete namespace split-horizon-manual-tls-3794 ++ mktemp + local LAST_OUT=/tmp/tmp.5fa4uLdL36 ++ mktemp + local LAST_ERR=/tmp/tmp.dLwLkjDjm8 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete namespace split-horizon-manual-tls-3794 + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.5fa4uLdL36 + cat /tmp/tmp.dLwLkjDjm8 + rm /tmp/tmp.5fa4uLdL36 /tmp/tmp.dLwLkjDjm8 + return 0 + desc 'create namespace split-horizon-manual-tls-3794' + set +o xtrace ----------------------------------------------------------------------------------- create namespace split-horizon-manual-tls-3794 ----------------------------------------------------------------------------------- + kubectl_bin create namespace split-horizon-manual-tls-3794 ++ mktemp + local LAST_OUT=/tmp/tmp.i6RjooJH6g ++ mktemp + local LAST_ERR=/tmp/tmp.oRzcqDVO4u + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl create namespace split-horizon-manual-tls-3794 + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.i6RjooJH6g namespace/split-horizon-manual-tls-3794 created + cat /tmp/tmp.oRzcqDVO4u + rm /tmp/tmp.i6RjooJH6g /tmp/tmp.oRzcqDVO4u + return 0 + set_kube_ctx split-horizon-manual-tls-3794 + local namespace=split-horizon-manual-tls-3794 ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.4gesmf6eDe +++ mktemp ++ local LAST_ERR=/tmp/tmp.wpt11oQ1mO ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.4gesmf6eDe ++ cat /tmp/tmp.wpt11oQ1mO ++ rm /tmp/tmp.4gesmf6eDe /tmp/tmp.wpt11oQ1mO ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-psmdb-2389-136576e0b-30-cluster6 --namespace=split-horizon-manual-tls-3794 ++ mktemp + local LAST_OUT=/tmp/tmp.UxLScC4pir ++ mktemp + local LAST_ERR=/tmp/tmp.eqARBa8wU7 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-psmdb-2389-136576e0b-30-cluster6 --namespace=split-horizon-manual-tls-3794 + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.UxLScC4pir Context "gke_cloud-dev-112233_us-central1-a_jen-psmdb-2389-136576e0b-30-cluster6" modified. + cat /tmp/tmp.eqARBa8wU7 + rm /tmp/tmp.UxLScC4pir /tmp/tmp.eqARBa8wU7 + return 0 + destroy_cert_manager + kubectl_bin delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml ++ mktemp + local LAST_OUT=/tmp/tmp.IKXOswQ9H9 ++ mktemp + local LAST_ERR=/tmp/tmp.6Sh8cqvmRa + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml + exit_status=1 + set -e + '[' 1 '!=' 0 -a -n 1 ']' + cat /tmp/tmp.IKXOswQ9H9 + cat /tmp/tmp.6Sh8cqvmRa Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + sleep 0 + for i in $(seq 0 2) + set +e + kubectl delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml + exit_status=1 + set -e + '[' 1 '!=' 0 -a -n 1 ']' + cat /tmp/tmp.IKXOswQ9H9 + cat /tmp/tmp.6Sh8cqvmRa Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + sleep 4 + for i in $(seq 0 2) + set +e + kubectl delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml + exit_status=1 + set -e + '[' 1 '!=' 0 -a -n 1 ']' + cat /tmp/tmp.IKXOswQ9H9 + cat /tmp/tmp.6Sh8cqvmRa Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + sleep 8 + cat /tmp/tmp.IKXOswQ9H9 + cat /tmp/tmp.6Sh8cqvmRa Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + rm /tmp/tmp.IKXOswQ9H9 /tmp/tmp.6Sh8cqvmRa + return 1 + true + cluster=some-name + kubectl_bin apply -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/conf/secrets.yml -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/conf/client_with_tls.yml ++ mktemp + local LAST_OUT=/tmp/tmp.WGy03yVVgq ++ mktemp + local LAST_ERR=/tmp/tmp.j5gNFHguFT + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl apply -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/conf/secrets.yml -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/conf/client_with_tls.yml + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.WGy03yVVgq secret/some-users created deployment.apps/psmdb-client created + cat /tmp/tmp.j5gNFHguFT + rm /tmp/tmp.WGy03yVVgq /tmp/tmp.j5gNFHguFT + return 0 + desc 'deploy cluster with 3 split horizons (manual TLS)' + set +o xtrace ----------------------------------------------------------------------------------- deploy cluster with 3 split horizons (manual TLS) ----------------------------------------------------------------------------------- + apply_cluster /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name-3horizons.yml + '[' -z '' ']' + cat_config /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name-3horizons.yml + kubectl_bin apply -f - + cat /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name-3horizons.yml ++ mktemp + yq eval '(.spec | select(.image == null)).image = "docker.io/perconalab/percona-server-mongodb-operator:main-mongod8.0"' + yq eval '(.spec | select(has("pmm"))).pmm.image = "docker.io/percona/pmm-client:2.44.1-1"' + yq eval '(.spec | select(has("initImage"))).initImage = "docker.io/perconalab/percona-server-mongodb-operator:PR-2389-136576e0b"' + yq eval '(.spec | select(has("backup"))).backup.image = "docker.io/perconalab/percona-server-mongodb-operator:main-backup"' + local LAST_OUT=/tmp/tmp.E2MiA0ngwO ++ mktemp + /usr/sbin/sed -e s/NAME_SPACE/split-horizon-manual-tls-3794/g + local LAST_ERR=/tmp/tmp.EoCD9oG3q9 + local exit_status=0 + local timeout=4 ++ seq 0 2 + yq eval '.spec.upgradeOptions.apply="Never"' + for i in $(seq 0 2) + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.E2MiA0ngwO perconaservermongodb.psmdb.percona.com/some-name created + cat /tmp/tmp.EoCD9oG3q9 + rm /tmp/tmp.E2MiA0ngwO /tmp/tmp.EoCD9oG3q9 + return 0 + wait_for_running some-name-rs0 3 + local name=some-name-rs0 + let last_pod=2 + local check_cluster_readyness=true + set_debug + [[ 1 == 1 ]] + set -o xtrace + local rs_name=rs0 + local cluster_name=some-name ++ seq 0 2 + for i in $(seq 0 $last_pod) + [[ 0 -eq 2 ]] + wait_pod some-name-rs0-0 + local pod=some-name-rs0-0 + set +o xtrace waiting for pod/some-name-rs0-0 to be ready............OK + for i in $(seq 0 $last_pod) + [[ 1 -eq 2 ]] + wait_pod some-name-rs0-1 + local pod=some-name-rs0-1 + set +o xtrace waiting for pod/some-name-rs0-1 to be ready............OK + for i in $(seq 0 $last_pod) + [[ 2 -eq 2 ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.NRSRw5tVws +++ mktemp ++ local LAST_ERR=/tmp/tmp.wllxyG92mg ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.NRSRw5tVws ++ cat /tmp/tmp.wllxyG92mg ++ rm /tmp/tmp.NRSRw5tVws /tmp/tmp.wllxyG92mg ++ return 0 + [[ '' == true ]] + wait_pod some-name-rs0-2 + local pod=some-name-rs0-2 + set +o xtrace waiting for pod/some-name-rs0-2 to be ready..................OK ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.bxuIIJPlyf +++ mktemp ++ local LAST_ERR=/tmp/tmp.IwTzc9J5og ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.bxuIIJPlyf ++ cat /tmp/tmp.IwTzc9J5og ++ rm /tmp/tmp.bxuIIJPlyf /tmp/tmp.IwTzc9J5og ++ return 0 + [[ '' == true ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.vD7PQgn8To +++ mktemp ++ local LAST_ERR=/tmp/tmp.hNo919Zhny ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.vD7PQgn8To ++ cat /tmp/tmp.hNo919Zhny ++ rm /tmp/tmp.vD7PQgn8To /tmp/tmp.hNo919Zhny ++ return 0 + [[ '' == true ]] + sleep 10 + [[ true == true ]] + set +x Waiting for cluster readyness + wait_cluster_consistency some-name + local cluster_name=some-name + local wait_time=32 + retry=0 + sleep 7 + echo -n 'waiting for cluster readyness' waiting for cluster readyness++ kubectl_bin get psmdb some-name -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.1vkFKecckb +++ mktemp ++ local LAST_ERR=/tmp/tmp.A6oKJgYzbB ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.1vkFKecckb ++ cat /tmp/tmp.A6oKJgYzbB ++ rm /tmp/tmp.1vkFKecckb /tmp/tmp.A6oKJgYzbB ++ return 0 + [[ ready == ready ]] + echo .OK .OK + desc 'verify CA secret exists with ca.crt and ca.key' + set +o xtrace ----------------------------------------------------------------------------------- verify CA secret exists with ca.crt and ca.key ----------------------------------------------------------------------------------- + verify_ca_secret_exists some-name-ca-cert + local secret_name=some-name-ca-cert + kubectl_bin get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' + kubectl_bin get secret some-name-ca-cert -o 'jsonpath={.data.ca\.key}' + echo 'OK: CA secret '\''some-name-ca-cert'\'' exists with ca.crt and ca.key' OK: CA secret 'some-name-ca-cert' exists with ca.crt and ca.key + desc 'verify TLS secrets are signed by the CA' + set +o xtrace ----------------------------------------------------------------------------------- verify TLS secrets are signed by the CA ----------------------------------------------------------------------------------- + verify_cert_signed_by_ca some-name-ssl some-name-ca-cert + local tls_secret_name=some-name-ssl + local ca_secret_name=some-name-ca-cert + local ca_crt ++ kubectl_bin get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ base64 -d +++ mktemp ++ local LAST_OUT=/tmp/tmp.zOQMLoNhRU +++ mktemp ++ local LAST_ERR=/tmp/tmp.Z5WGUKmtgX ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.zOQMLoNhRU ++ cat /tmp/tmp.Z5WGUKmtgX ++ rm /tmp/tmp.zOQMLoNhRU /tmp/tmp.Z5WGUKmtgX ++ return 0 + ca_crt=$'-----BEGIN CERTIFICATE-----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\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + local tls_crt ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' +++ mktemp ++ base64 -d ++ local LAST_OUT=/tmp/tmp.rPiCpGwssn +++ mktemp ++ local LAST_ERR=/tmp/tmp.GmwLq3TVHx ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.rPiCpGwssn ++ cat /tmp/tmp.GmwLq3TVHx ++ rm /tmp/tmp.rPiCpGwssn /tmp/tmp.GmwLq3TVHx ++ return 0 + tls_crt=$'-----BEGIN CERTIFICATE-----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\nJKUC4hV8MNYzIvrrcPUKczw+eG8oo+HetFpxoA3b1Jchr+o=\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----\nMIIDHDCCAgSgAwIBAgIRAKJTPAmZHDMnxPdWvdU13mQwDQYJKoZIhvcNAQELBQAw\nEjEQMA4GA1UEChMHUm9vdCBDQTAgFw0yNjA2MTYwNzEwMTJaGA85OTk5MTIzMTIz\nNTk1OVowEjEQMA4GA1UEChMHUm9vdCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEP\nADCCAQoCggEBAMdByv1e9/7zF+gdhUwwJPLKe5OJWLyublTa/YRXfgW5cW5Aq0my\nG0CGxqUwsqQTgL7H5MWvfYtTeJokWerIP+oLAQv9l1Y/2CxL4ajnVCSk5lR9PQ5M\nrCbVA/fYE0GfqRl7fEqyMhaVr8zYb+ehU/hCHC78B0O6/ZDdiZ6ruA1F95WVKjyH\nRyY5eOanxDuiwKF0KO6EO2E+uGAJaKmcddU5QQRu9ssDA1ZR2/dng4NZT3YgwrZN\nI1D415mxhxedxQp6AY0T89JAbChq/lrS4NelzTUwd51WXvivQ+hWPHfcUQxKuXtX\nFYLgtA294m8cU57Lyv1xLpy6VT5rSVN3zEECAwEAAaNrMGkwDgYDVR0PAQH/BAQD\nAgIkMCcGA1UdJQQgMB4GCCsGAQUFBwMBBggrBgEFBQcDAgYIKwYBBQUHAwMwDwYD\nVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUZV3e+BiEkwoGwbLv+DhmAd3rVVowDQYJ\nKoZIhvcNAQELBQADggEBAK60N5mGgn8afz+I2mvODW9n1FBy6QgMZphq4qEwFmv0\n1vS9wdwSqKPCbpc2F+4nwIw3zHLw1/hUBX+HTRu15crFGvrjyO3Km9bovSOkuwid\nyZ3oBGrqaxCkMv3hc5edzxuNprYDZZn4QO13NfM6PwDWx5TFejlThAa7ndLnZOQC\nUv3INYXahMOGkS6fEqfTqLpgKNbuOulutPhehixzQa+l55x2wTKpajC/95Jf+BbD\nJcoB2RhPOyHKY9C+FqEyR/COSlRpcmIicVwMQVq+oLZJftEMPc1gttLjlOOSwDJ0\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----\nMIIIXzCCB0egAwIBAgIQEqAIjwL+P20cjcbDxVx9DjANBgkqhkiG9w0BAQsFADAS\nMRAwDgYDVQQKEwdSb290IENBMCAXDTI2MDYxNjA3MTAxMloYDzk5OTkxMjMxMjM1\nOTU5WjAQMQ4wDAYDVQQKEwVQU01EQjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCC\nAQoCggEBAL43WjcCdTDmvRlar6VQ/hWT8jcLJZgkpSDDkAQ7VH9WgF8clYIx8MJr\nCT+HSmIZ7rKGVeSkB6cZNZVt0kpE1rcQocvO56S46b2TnyoyiY6VJkSSMTiO0C6F\nAZwPE63F/6xN9Jnu04wlmkkzloId6wdW/xaVmIODcrAWj9+LSfHcvp/HVW7vCVdt\nFMUpth11CpeoFkwZTeONHilEnD65qk7XVUHc5uSBiyIPs9UHCv2cDX+nISstlIFZ\nR5d7t0sJoboJNmkZ69yHoJtpLqocfiyVjEsiObZH3TDuABFut/WxkBwwbZCTafWD\n/lMm6YFtwtUisTog3uTySh13pzaTmPkCAwEAAaOCBa8wggWrMA4GA1UdDwEB/wQE\nAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDAYDVR0TAQH/BAIw\nADAfBgNVHSMEGDAWgBRlXd74GISTCgbBsu/4OGYB3etVWjCCBUkGA1UdEQSCBUAw\nggU8gglsb2NhbGhvc3SCDXNvbWUtbmFtZS1yczCCK3NvbWUtbmFtZS1yczAuc3Bs\naXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTSCPXNvbWUtbmFtZS1yczAuc3BsaXQt\naG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXIubG9jYWyCDyouc29t\nZS1uYW1lLXJzMIItKi5zb21lLW5hbWUtcnMwLnNwbGl0LWhvcml6b24tbWFudWFs\nLXRscy0zNzk0gj8qLnNvbWUtbmFtZS1yczAuc3BsaXQtaG9yaXpvbi1tYW51YWwt\ndGxzLTM3OTQuc3ZjLmNsdXN0ZXIubG9jYWyCQHNvbWUtbmFtZS1yczAuc3BsaXQt\naG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXJzZXQubG9jYWyCQiou\nc29tZS1uYW1lLXJzMC5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMu\nY2x1c3RlcnNldC5sb2NhbIIdc29tZS1uYW1lLXJzMC0wLmNsb3VkZGVtby54eXqC\nHXNvbWUtbmFtZS1yczAtMS5jbG91ZGRlbW8ueHl6gh1zb21lLW5hbWUtcnMwLTIu\nY2xvdWRkZW1vLnh5eoI0Ki5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5z\ndmMuY2x1c3RlcnNldC5sb2NhbIIQc29tZS1uYW1lLW1vbmdvc4Iuc29tZS1uYW1l\nLW1vbmdvcy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NIJAc29tZS1uYW1l\nLW1vbmdvcy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMuY2x1c3Rl\nci5sb2NhbIISKi5zb21lLW5hbWUtbW9uZ29zgjAqLnNvbWUtbmFtZS1tb25nb3Mu\nc3BsaXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTSCQiouc29tZS1uYW1lLW1vbmdv\ncy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMuY2x1c3Rlci5sb2Nh\nbIINc29tZS1uYW1lLWNmZ4Irc29tZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1h\nbnVhbC10bHMtMzc5NII9c29tZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1hbnVh\nbC10bHMtMzc5NC5zdmMuY2x1c3Rlci5sb2NhbIIPKi5zb21lLW5hbWUtY2Zngi0q\nLnNvbWUtbmFtZS1jZmcuc3BsaXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTSCPyou\nc29tZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMu\nY2x1c3Rlci5sb2NhbIJDc29tZS1uYW1lLW1vbmdvcy5zcGxpdC1ob3Jpem9uLW1h\nbnVhbC10bHMtMzc5NC5zdmMuY2x1c3RlcnNldC5sb2NhbIJFKi5zb21lLW5hbWUt\nbW9uZ29zLnNwbGl0LWhvcml6b24tbWFudWFsLXRscy0zNzk0LnN2Yy5jbHVzdGVy\nc2V0LmxvY2FsgkBzb21lLW5hbWUtY2ZnLnNwbGl0LWhvcml6b24tbWFudWFsLXRs\ncy0zNzk0LnN2Yy5jbHVzdGVyc2V0LmxvY2FsgkIqLnNvbWUtbmFtZS1jZmcuc3Bs\naXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXJzZXQubG9jYWww\nDQYJKoZIhvcNAQELBQADggEBAI/hcTGPoKNwNsA2WSpNP5kUCeni5P2XYhfQGm2R\nRLqODg7wkvSgW+2yYL2X7eJ1tPj/lX2o1FMlyGbrgevX9yJrBkWPZTpxHAXk8lUL\nTvaVCBIvn3nyTWiEomzugWH/Saekkz878VDZTG98aX4wOBcvyPFXpPMyntqCIiCE\nQton/PdCfdOQ7RbgWlJDTu9Rfc+jaqlg10Va0LDLBUB1OjS1hEUJsl/Tj1qQI0se\n60n+s3kFRWQ5/DKgXpldFpz4Q4hpHt1WlDojH/A8mHeLLAecnO53kz1e/tu7qSOW\nJKUC4hV8MNYzIvrrcPUKczw+eG8oo+HetFpxoA3b1Jchr+o=\n-----END CERTIFICATE-----' + openssl verify -CAfile /tmp/tmp.sqGj2RlTFG/ca.crt /tmp/tmp.sqGj2RlTFG/tls.crt + echo 'OK: '\''some-name-ssl'\'' is signed by CA in '\''some-name-ca-cert'\''' OK: 'some-name-ssl' is signed by CA in 'some-name-ca-cert' + verify_cert_signed_by_ca some-name-ssl-internal some-name-ca-cert + local tls_secret_name=some-name-ssl-internal + local ca_secret_name=some-name-ca-cert + local ca_crt ++ kubectl_bin get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ base64 -d +++ mktemp ++ local LAST_OUT=/tmp/tmp.28XIPjiogb +++ mktemp ++ local LAST_ERR=/tmp/tmp.w36c6pAKdP ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.28XIPjiogb ++ cat /tmp/tmp.w36c6pAKdP ++ rm /tmp/tmp.28XIPjiogb /tmp/tmp.w36c6pAKdP ++ return 0 + ca_crt=$'-----BEGIN CERTIFICATE-----\nMIIDHDCCAgSgAwIBAgIRAKJTPAmZHDMnxPdWvdU13mQwDQYJKoZIhvcNAQELBQAw\nEjEQMA4GA1UEChMHUm9vdCBDQTAgFw0yNjA2MTYwNzEwMTJaGA85OTk5MTIzMTIz\nNTk1OVowEjEQMA4GA1UEChMHUm9vdCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEP\nADCCAQoCggEBAMdByv1e9/7zF+gdhUwwJPLKe5OJWLyublTa/YRXfgW5cW5Aq0my\nG0CGxqUwsqQTgL7H5MWvfYtTeJokWerIP+oLAQv9l1Y/2CxL4ajnVCSk5lR9PQ5M\nrCbVA/fYE0GfqRl7fEqyMhaVr8zYb+ehU/hCHC78B0O6/ZDdiZ6ruA1F95WVKjyH\nRyY5eOanxDuiwKF0KO6EO2E+uGAJaKmcddU5QQRu9ssDA1ZR2/dng4NZT3YgwrZN\nI1D415mxhxedxQp6AY0T89JAbChq/lrS4NelzTUwd51WXvivQ+hWPHfcUQxKuXtX\nFYLgtA294m8cU57Lyv1xLpy6VT5rSVN3zEECAwEAAaNrMGkwDgYDVR0PAQH/BAQD\nAgIkMCcGA1UdJQQgMB4GCCsGAQUFBwMBBggrBgEFBQcDAgYIKwYBBQUHAwMwDwYD\nVR0TAQH/BAUwAwEB/zAdBgNVHQ4EFgQUZV3e+BiEkwoGwbLv+DhmAd3rVVowDQYJ\nKoZIhvcNAQELBQADggEBAK60N5mGgn8afz+I2mvODW9n1FBy6QgMZphq4qEwFmv0\n1vS9wdwSqKPCbpc2F+4nwIw3zHLw1/hUBX+HTRu15crFGvrjyO3Km9bovSOkuwid\nyZ3oBGrqaxCkMv3hc5edzxuNprYDZZn4QO13NfM6PwDWx5TFejlThAa7ndLnZOQC\nUv3INYXahMOGkS6fEqfTqLpgKNbuOulutPhehixzQa+l55x2wTKpajC/95Jf+BbD\nJcoB2RhPOyHKY9C+FqEyR/COSlRpcmIicVwMQVq+oLZJftEMPc1gttLjlOOSwDJ0\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + local tls_crt ++ kubectl_bin get secret some-name-ssl-internal -o 'jsonpath={.data.tls\.crt}' ++ base64 -d +++ mktemp ++ local LAST_OUT=/tmp/tmp.WhyHVzRPb8 +++ mktemp ++ local LAST_ERR=/tmp/tmp.ChmGo83nqE ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl-internal -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.WhyHVzRPb8 ++ cat /tmp/tmp.ChmGo83nqE ++ rm /tmp/tmp.WhyHVzRPb8 /tmp/tmp.ChmGo83nqE ++ return 0 + tls_crt=$'-----BEGIN CERTIFICATE-----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\nQthpNygTxNbj/cuCeuLSeCvcG1IkZCU+A/4cpRGBGNRKRF0=\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----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\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----\nMIIIXzCCB0egAwIBAgIQXvrZgeIQF/xtJelY7k2NYjANBgkqhkiG9w0BAQsFADAS\nMRAwDgYDVQQKEwdSb290IENBMCAXDTI2MDYxNjA3MTAxMloYDzk5OTkxMjMxMjM1\nOTU5WjAQMQ4wDAYDVQQKEwVQU01EQjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCC\nAQoCggEBAMCB/JpuFGSpOvOxRMHcbnDrhZMmdzfTgem51BhYjrb7Rts9ABH6KEMU\nRxxkjlSeLan43DzyBt6mRZvdixGVp6D3ZqwdxpV8QKG9649djE8aR6jaq8ENnFtd\nx+dPeTYBGrA8bTpQqzXM0b/eOE6FNkOI1uTuDqhtRPjIZwQBIpv0+kmN9+BqU6w8\nPXgaTrTCt6Gmno/yBwtDQl+2isbzjSLPBr6XDg95hRA2p3yxk6LFfp/4fjMkGT6g\n2d0M4jXopvodO2jrc0r8r7LkMWaWJ4UF7OrycSSgdoPL/1TeMkrWP78MN2FYJVND\nJumUNiTDl1BL/t6Uc0UKWKrVhMnZUA0CAwEAAaOCBa8wggWrMA4GA1UdDwEB/wQE\nAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDAYDVR0TAQH/BAIw\nADAfBgNVHSMEGDAWgBRlXd74GISTCgbBsu/4OGYB3etVWjCCBUkGA1UdEQSCBUAw\nggU8gglsb2NhbGhvc3SCDXNvbWUtbmFtZS1yczCCK3NvbWUtbmFtZS1yczAuc3Bs\naXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTSCPXNvbWUtbmFtZS1yczAuc3BsaXQt\naG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXIubG9jYWyCDyouc29t\nZS1uYW1lLXJzMIItKi5zb21lLW5hbWUtcnMwLnNwbGl0LWhvcml6b24tbWFudWFs\nLXRscy0zNzk0gj8qLnNvbWUtbmFtZS1yczAuc3BsaXQtaG9yaXpvbi1tYW51YWwt\ndGxzLTM3OTQuc3ZjLmNsdXN0ZXIubG9jYWyCQHNvbWUtbmFtZS1yczAuc3BsaXQt\naG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXJzZXQubG9jYWyCQiou\nc29tZS1uYW1lLXJzMC5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMu\nY2x1c3RlcnNldC5sb2NhbIIdc29tZS1uYW1lLXJzMC0wLmNsb3VkZGVtby54eXqC\nHXNvbWUtbmFtZS1yczAtMS5jbG91ZGRlbW8ueHl6gh1zb21lLW5hbWUtcnMwLTIu\nY2xvdWRkZW1vLnh5eoI0Ki5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5z\ndmMuY2x1c3RlcnNldC5sb2NhbIIQc29tZS1uYW1lLW1vbmdvc4Iuc29tZS1uYW1l\nLW1vbmdvcy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NIJAc29tZS1uYW1l\nLW1vbmdvcy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMuY2x1c3Rl\nci5sb2NhbIISKi5zb21lLW5hbWUtbW9uZ29zgjAqLnNvbWUtbmFtZS1tb25nb3Mu\nc3BsaXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTSCQiouc29tZS1uYW1lLW1vbmdv\ncy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMuY2x1c3Rlci5sb2Nh\nbIINc29tZS1uYW1lLWNmZ4Irc29tZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1h\nbnVhbC10bHMtMzc5NII9c29tZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1hbnVh\nbC10bHMtMzc5NC5zdmMuY2x1c3Rlci5sb2NhbIIPKi5zb21lLW5hbWUtY2Zngi0q\nLnNvbWUtbmFtZS1jZmcuc3BsaXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTSCPyou\nc29tZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMu\nY2x1c3Rlci5sb2NhbIJDc29tZS1uYW1lLW1vbmdvcy5zcGxpdC1ob3Jpem9uLW1h\nbnVhbC10bHMtMzc5NC5zdmMuY2x1c3RlcnNldC5sb2NhbIJFKi5zb21lLW5hbWUt\nbW9uZ29zLnNwbGl0LWhvcml6b24tbWFudWFsLXRscy0zNzk0LnN2Yy5jbHVzdGVy\nc2V0LmxvY2FsgkBzb21lLW5hbWUtY2ZnLnNwbGl0LWhvcml6b24tbWFudWFsLXRs\ncy0zNzk0LnN2Yy5jbHVzdGVyc2V0LmxvY2FsgkIqLnNvbWUtbmFtZS1jZmcuc3Bs\naXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXJzZXQubG9jYWww\nDQYJKoZIhvcNAQELBQADggEBABSf1Fr7vHGH+LRGpo+ZPXXR7qdnTLkygQy1ezmE\nuszhDYllJMcQLsTisax2AM0wW8DPFMNV2qyvz2QXF8NQTyHR1yST1aW6nJ3ElbZq\nUiYL16RrX43o2DLW8zxykK4NvduOjhjIoXCewGFYPuqReqITHux57JoKRM3RJ1u9\nyqPnDjzwryS7+7VLbVM2tK16ykZW66aa2YETtI0WUZAoZ7MwBiZj1yEnfWJKAMx2\nHQHA+GkIMxCVcocTsqzYYC/Ip5mnS1sLgEYFsUFzuSvRaUXdIbyNoC0w6+8uy2Fr\nQthpNygTxNbj/cuCeuLSeCvcG1IkZCU+A/4cpRGBGNRKRF0=\n-----END CERTIFICATE-----' + openssl verify -CAfile /tmp/tmp.sqGj2RlTFG/ca.crt /tmp/tmp.sqGj2RlTFG/tls.crt + echo 'OK: '\''some-name-ssl-internal'\'' is signed by CA in '\''some-name-ca-cert'\''' OK: 'some-name-ssl-internal' is signed by CA in 'some-name-ca-cert' + desc 'verify split-horizon DNS names are in certificate SANs' + set +o xtrace ----------------------------------------------------------------------------------- verify split-horizon DNS names are in certificate SANs ----------------------------------------------------------------------------------- + verify_cert_san some-name-ssl some-name-rs0-0.clouddemo.xyz + local secret_name=some-name-ssl + local expected_san=some-name-rs0-0.clouddemo.xyz + local san_list ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ openssl x509 -text -noout ++ base64 -d +++ mktemp ++ grep DNS: ++ tr , '\n' ++ local LAST_OUT=/tmp/tmp.yh5DqhQQAu ++ sed 's/.*DNS://g' ++ xargs +++ mktemp ++ local LAST_ERR=/tmp/tmp.jMP6ZLPXRb ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.yh5DqhQQAu ++ cat /tmp/tmp.jMP6ZLPXRb ++ rm /tmp/tmp.yh5DqhQQAu /tmp/tmp.jMP6ZLPXRb ++ return 0 + san_list='localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + echo 'localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + grep -q some-name-rs0-0.clouddemo.xyz + echo 'OK: SAN '\''some-name-rs0-0.clouddemo.xyz'\'' found in secret '\''some-name-ssl'\''' OK: SAN 'some-name-rs0-0.clouddemo.xyz' found in secret 'some-name-ssl' + verify_cert_san some-name-ssl some-name-rs0-1.clouddemo.xyz + local secret_name=some-name-ssl + local expected_san=some-name-rs0-1.clouddemo.xyz + local san_list ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ base64 -d ++ openssl x509 -text -noout +++ mktemp ++ grep DNS: ++ tr , '\n' ++ sed 's/.*DNS://g' ++ xargs ++ local LAST_OUT=/tmp/tmp.zbnZdXFzoh +++ mktemp ++ local LAST_ERR=/tmp/tmp.9CVJUzpave ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.zbnZdXFzoh ++ cat /tmp/tmp.9CVJUzpave ++ rm /tmp/tmp.zbnZdXFzoh /tmp/tmp.9CVJUzpave ++ return 0 + san_list='localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + grep -q some-name-rs0-1.clouddemo.xyz + echo 'localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + echo 'OK: SAN '\''some-name-rs0-1.clouddemo.xyz'\'' found in secret '\''some-name-ssl'\''' OK: SAN 'some-name-rs0-1.clouddemo.xyz' found in secret 'some-name-ssl' + verify_cert_san some-name-ssl some-name-rs0-2.clouddemo.xyz + local secret_name=some-name-ssl + local expected_san=some-name-rs0-2.clouddemo.xyz + local san_list ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ base64 -d +++ mktemp ++ openssl x509 -text -noout ++ grep DNS: ++ tr , '\n' ++ sed 's/.*DNS://g' ++ xargs ++ local LAST_OUT=/tmp/tmp.0vLZtY4mRF +++ mktemp ++ local LAST_ERR=/tmp/tmp.N9aZ1Y1XcF ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.0vLZtY4mRF ++ cat /tmp/tmp.N9aZ1Y1XcF ++ rm /tmp/tmp.0vLZtY4mRF /tmp/tmp.N9aZ1Y1XcF ++ return 0 + san_list='localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + echo 'localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + grep -q some-name-rs0-2.clouddemo.xyz + echo 'OK: SAN '\''some-name-rs0-2.clouddemo.xyz'\'' found in secret '\''some-name-ssl'\''' OK: SAN 'some-name-rs0-2.clouddemo.xyz' found in secret 'some-name-ssl' + verify_cert_san some-name-ssl-internal some-name-rs0-0.clouddemo.xyz + local secret_name=some-name-ssl-internal + local expected_san=some-name-rs0-0.clouddemo.xyz + local san_list ++ kubectl_bin get secret some-name-ssl-internal -o 'jsonpath={.data.tls\.crt}' ++ base64 -d ++ openssl x509 -text -noout ++ grep DNS: ++ tr , '\n' ++ sed 's/.*DNS://g' ++ xargs +++ mktemp ++ local LAST_OUT=/tmp/tmp.rDW8ZFSxLR +++ mktemp ++ local LAST_ERR=/tmp/tmp.SC2dHSx0FI ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl-internal -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.rDW8ZFSxLR ++ cat /tmp/tmp.SC2dHSx0FI ++ rm /tmp/tmp.rDW8ZFSxLR /tmp/tmp.SC2dHSx0FI ++ return 0 + san_list='localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + grep -q some-name-rs0-0.clouddemo.xyz + echo 'localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + echo 'OK: SAN '\''some-name-rs0-0.clouddemo.xyz'\'' found in secret '\''some-name-ssl-internal'\''' OK: SAN 'some-name-rs0-0.clouddemo.xyz' found in secret 'some-name-ssl-internal' + desc 'save certificate fingerprint before horizon update' + set +o xtrace ----------------------------------------------------------------------------------- save certificate fingerprint before horizon update ----------------------------------------------------------------------------------- ++ save_cert_hash some-name-ssl ++ local secret_name=some-name-ssl ++ local output_var= ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ base64 -d ++ openssl x509 -fingerprint -noout +++ mktemp ++ local LAST_OUT=/tmp/tmp.R1V7RFWyj2 +++ mktemp ++ local LAST_ERR=/tmp/tmp.obl6B6BPGs ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.R1V7RFWyj2 ++ cat /tmp/tmp.obl6B6BPGs ++ rm /tmp/tmp.R1V7RFWyj2 /tmp/tmp.obl6B6BPGs ++ return 0 + cert_hash_before='SHA1 Fingerprint=72:24:3B:43:D8:B1:18:4A:58:FC:FA:45:F1:C3:DA:6A:A4:49:0F:79' + configure_client_hostAliases + local 'hostAliasesJson=[]' ++ kubectl get svc ++ awk '{print $3 "|" $1}' ++ grep -E '^[0-9].*' + for svc in $(kubectl get svc | awk '{print $3 "|" $1}' | grep -E '^[0-9].*') ++ echo '34.118.231.201|some-name-rs0-0' ++ awk -F '|' '{print $2}' + hostname=some-name-rs0-0 ++ echo '34.118.231.201|some-name-rs0-0' ++ awk -F '|' '{print $1}' + ip=34.118.231.201 + hostAlias='{"ip": "34.118.231.201", "hostnames": ["some-name-rs0-0.clouddemo.xyz"]}' ++ echo '[]' ++ jq --argjson newAlias '{"ip": "34.118.231.201", "hostnames": ["some-name-rs0-0.clouddemo.xyz"]}' '. += [$newAlias]' + hostAliasesJson=$'[\n {\n "ip": "34.118.231.201",\n "hostnames": [\n "some-name-rs0-0.clouddemo.xyz"\n ]\n }\n]' + for svc in $(kubectl get svc | awk '{print $3 "|" $1}' | grep -E '^[0-9].*') ++ echo '34.118.234.20|some-name-rs0-1' ++ awk -F '|' '{print $2}' + hostname=some-name-rs0-1 ++ echo '34.118.234.20|some-name-rs0-1' ++ awk -F '|' '{print $1}' + ip=34.118.234.20 + hostAlias='{"ip": "34.118.234.20", "hostnames": ["some-name-rs0-1.clouddemo.xyz"]}' ++ echo $'[\n {\n "ip": "34.118.231.201",\n "hostnames": [\n "some-name-rs0-0.clouddemo.xyz"\n ]\n }\n]' ++ jq --argjson newAlias '{"ip": "34.118.234.20", "hostnames": ["some-name-rs0-1.clouddemo.xyz"]}' '. += [$newAlias]' + hostAliasesJson=$'[\n {\n "ip": "34.118.231.201",\n "hostnames": [\n "some-name-rs0-0.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.234.20",\n "hostnames": [\n "some-name-rs0-1.clouddemo.xyz"\n ]\n }\n]' + for svc in $(kubectl get svc | awk '{print $3 "|" $1}' | grep -E '^[0-9].*') ++ echo '34.118.231.179|some-name-rs0-2' ++ awk -F '|' '{print $2}' + hostname=some-name-rs0-2 ++ echo '34.118.231.179|some-name-rs0-2' ++ awk -F '|' '{print $1}' + ip=34.118.231.179 + hostAlias='{"ip": "34.118.231.179", "hostnames": ["some-name-rs0-2.clouddemo.xyz"]}' ++ echo $'[\n {\n "ip": "34.118.231.201",\n "hostnames": [\n "some-name-rs0-0.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.234.20",\n "hostnames": [\n "some-name-rs0-1.clouddemo.xyz"\n ]\n }\n]' ++ jq --argjson newAlias '{"ip": "34.118.231.179", "hostnames": ["some-name-rs0-2.clouddemo.xyz"]}' '. += [$newAlias]' + hostAliasesJson=$'[\n {\n "ip": "34.118.231.201",\n "hostnames": [\n "some-name-rs0-0.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.234.20",\n "hostnames": [\n "some-name-rs0-1.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.231.179",\n "hostnames": [\n "some-name-rs0-2.clouddemo.xyz"\n ]\n }\n]' + kubectl_bin patch deployment psmdb-client --type=json '-p=[{'\''op'\'': '\''replace'\'', '\''path'\'': '\''/spec/replicas'\'', '\''value'\'': 0}]' ++ mktemp + local LAST_OUT=/tmp/tmp.0rTfXjrMla ++ mktemp + local LAST_ERR=/tmp/tmp.zlCU5e5jux + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl patch deployment psmdb-client --type=json '-p=[{'\''op'\'': '\''replace'\'', '\''path'\'': '\''/spec/replicas'\'', '\''value'\'': 0}]' + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.0rTfXjrMla deployment.apps/psmdb-client patched + cat /tmp/tmp.zlCU5e5jux + rm /tmp/tmp.0rTfXjrMla /tmp/tmp.zlCU5e5jux + return 0 ++ kubectl_bin get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.biVsc8Cfcv +++ mktemp ++ local LAST_ERR=/tmp/tmp.UifunwaCtR ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.biVsc8Cfcv ++ cat /tmp/tmp.UifunwaCtR ++ rm /tmp/tmp.biVsc8Cfcv /tmp/tmp.UifunwaCtR ++ return 0 + wait_for_delete pod/psmdb-client-5649fbb65f-zdcpk + local res=pod/psmdb-client-5649fbb65f-zdcpk + local wait_time=60 + set +o xtrace waiting for pod/psmdb-client-5649fbb65f-zdcpk to be deleted.....Error from server (NotFound): pods "psmdb-client-5649fbb65f-zdcpk" not found Error from server (NotFound): pods "psmdb-client-5649fbb65f-zdcpk" not found Error from server (NotFound): pods "psmdb-client-5649fbb65f-zdcpk" not found Error from server (NotFound): pods "psmdb-client-5649fbb65f-zdcpk" not found + kubectl_bin patch deployment psmdb-client --type=json $'-p=[{\'op\': \'replace\', \'path\': \'/spec/template/spec/hostAliases\', \'value\': [\n {\n "ip": "34.118.231.201",\n "hostnames": [\n "some-name-rs0-0.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.234.20",\n "hostnames": [\n "some-name-rs0-1.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.231.179",\n "hostnames": [\n "some-name-rs0-2.clouddemo.xyz"\n ]\n }\n]}, {\'op\': \'replace\', \'path\': \'/spec/replicas\', \'value\': 1}]' ++ mktemp + local LAST_OUT=/tmp/tmp.Pg4Mvi4qXS ++ mktemp + local LAST_ERR=/tmp/tmp.3uII0YuK5n + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl patch deployment psmdb-client --type=json $'-p=[{\'op\': \'replace\', \'path\': \'/spec/template/spec/hostAliases\', \'value\': [\n {\n "ip": "34.118.231.201",\n "hostnames": [\n "some-name-rs0-0.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.234.20",\n "hostnames": [\n "some-name-rs0-1.clouddemo.xyz"\n ]\n },\n {\n "ip": "34.118.231.179",\n "hostnames": [\n "some-name-rs0-2.clouddemo.xyz"\n ]\n }\n]}, {\'op\': \'replace\', \'path\': \'/spec/replicas\', \'value\': 1}]' + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.Pg4Mvi4qXS deployment.apps/psmdb-client patched + cat /tmp/tmp.3uII0YuK5n + rm /tmp/tmp.Pg4Mvi4qXS /tmp/tmp.3uII0YuK5n + return 0 ++ kubectl_bin get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.2O7YxgDSeU +++ mktemp ++ local LAST_ERR=/tmp/tmp.KWV0EJVEJp ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.2O7YxgDSeU ++ cat /tmp/tmp.KWV0EJVEJp ++ rm /tmp/tmp.2O7YxgDSeU /tmp/tmp.KWV0EJVEJp ++ return 0 + wait_pod psmdb-client-7f78db585b-lb27z + local pod=psmdb-client-7f78db585b-lb27z + set +o xtrace waiting for pod/psmdb-client-7f78db585b-lb27z to be ready.OK + sleep 10 + desc 'verify horizons via rs.conf()' + set +o xtrace ----------------------------------------------------------------------------------- verify horizons via rs.conf() ----------------------------------------------------------------------------------- + run_mongo_tls 'rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))' clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz mongodb '' --quiet + local 'command=rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))' + local uri=clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz + local driver=mongodb + local suffix=.svc.cluster.local + grep -E -v 'I NETWORK|W NETWORK|Error saving history file|Percona Server for MongoDB|connecting to:|Unable to reach primary for set|Implicit session:|versions do not match|Error saving history file:|does not match the remote host name' ++ kubectl_bin get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.fJwnBVn0bg +++ mktemp ++ local LAST_ERR=/tmp/tmp.OcV8tBRe5R ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.fJwnBVn0bg ++ cat /tmp/tmp.OcV8tBRe5R ++ rm /tmp/tmp.fJwnBVn0bg /tmp/tmp.OcV8tBRe5R ++ return 0 + local client_container=psmdb-client-7f78db585b-lb27z + local mongo_flag=--quiet + local port=27017 ++ echo .svc.cluster.local ++ awk -F: '{print $2}' + suffix_port= + [[ -z '' ]] + suffix=.svc.cluster.local:27017 + [[ clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz == *cfg* ]] + replica_set=rs0 + kubectl_bin exec psmdb-client-7f78db585b-lb27z -- bash -c 'printf '\''rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))\n'\'' | mongo mongodb://clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz.svc.cluster.local:27017/admin?replicaSet=rs0 --tls --tlsCAFile /etc/mongodb-ssl/ca.crt --tlsCertificateKeyFile /tmp/tls.pem --tlsAllowInvalidHostnames --quiet' ++ mktemp + local LAST_OUT=/tmp/tmp.d58ha42sJP ++ mktemp + local LAST_ERR=/tmp/tmp.pLvbq16Hvg + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl exec psmdb-client-7f78db585b-lb27z -- bash -c 'printf '\''rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))\n'\'' | mongo mongodb://clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz.svc.cluster.local:27017/admin?replicaSet=rs0 --tls --tlsCAFile /etc/mongodb-ssl/ca.crt --tlsCertificateKeyFile /tmp/tls.pem --tlsAllowInvalidHostnames --quiet' + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.d58ha42sJP + cat /tmp/tmp.pLvbq16Hvg + rm /tmp/tmp.d58ha42sJP /tmp/tmp.pLvbq16Hvg + return 0 + diff /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/compare/horizons-3.json /tmp/tmp.sqGj2RlTFG/horizons-3.json + desc 'update to 5 horizons (triggers SAN change and cert re-signing)' + set +o xtrace ----------------------------------------------------------------------------------- update to 5 horizons (triggers SAN change and cert re-signing) ----------------------------------------------------------------------------------- + apply_cluster /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name-5horizons.yml + '[' -z '' ']' + cat_config /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name-5horizons.yml + kubectl_bin apply -f - ++ mktemp + cat /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name-5horizons.yml + yq eval '(.spec | select(.image == null)).image = "docker.io/perconalab/percona-server-mongodb-operator:main-mongod8.0"' + yq eval '(.spec | select(has("pmm"))).pmm.image = "docker.io/percona/pmm-client:2.44.1-1"' + yq eval '(.spec | select(has("initImage"))).initImage = "docker.io/perconalab/percona-server-mongodb-operator:PR-2389-136576e0b"' + local LAST_OUT=/tmp/tmp.LAHiQH3OYT + yq eval '(.spec | select(has("backup"))).backup.image = "docker.io/perconalab/percona-server-mongodb-operator:main-backup"' + /usr/sbin/sed -e s/NAME_SPACE/split-horizon-manual-tls-3794/g ++ mktemp + yq eval '.spec.upgradeOptions.apply="Never"' + local LAST_ERR=/tmp/tmp.lTihA1bff2 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.LAHiQH3OYT perconaservermongodb.psmdb.percona.com/some-name configured + cat /tmp/tmp.lTihA1bff2 + rm /tmp/tmp.LAHiQH3OYT /tmp/tmp.lTihA1bff2 + return 0 + wait_for_running some-name-rs0 3 + local name=some-name-rs0 + let last_pod=2 + local check_cluster_readyness=true + set_debug + [[ 1 == 1 ]] + set -o xtrace + local rs_name=rs0 + local cluster_name=some-name ++ seq 0 2 + for i in $(seq 0 $last_pod) + [[ 0 -eq 2 ]] + wait_pod some-name-rs0-0 + local pod=some-name-rs0-0 + set +o xtrace waiting for pod/some-name-rs0-0 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 1 -eq 2 ]] + wait_pod some-name-rs0-1 + local pod=some-name-rs0-1 + set +o xtrace waiting for pod/some-name-rs0-1 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 2 -eq 2 ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.8UC2tbtRmc +++ mktemp ++ local LAST_ERR=/tmp/tmp.g8P5CqfFaA ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.8UC2tbtRmc ++ cat /tmp/tmp.g8P5CqfFaA ++ rm /tmp/tmp.8UC2tbtRmc /tmp/tmp.g8P5CqfFaA ++ return 0 + [[ '' == true ]] + wait_pod some-name-rs0-2 + local pod=some-name-rs0-2 + set +o xtrace waiting for pod/some-name-rs0-2 to be ready.OK ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.eEjUlzvsZU +++ mktemp ++ local LAST_ERR=/tmp/tmp.TjlZR3hkRw ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.eEjUlzvsZU ++ cat /tmp/tmp.TjlZR3hkRw ++ rm /tmp/tmp.eEjUlzvsZU /tmp/tmp.TjlZR3hkRw ++ return 0 + [[ '' == true ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.HGqJo7mbd0 +++ mktemp ++ local LAST_ERR=/tmp/tmp.eLqw0Der7h ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.HGqJo7mbd0 ++ cat /tmp/tmp.eLqw0Der7h ++ rm /tmp/tmp.HGqJo7mbd0 /tmp/tmp.eLqw0Der7h ++ return 0 + [[ '' == true ]] + sleep 10 + [[ true == true ]] + set +x Waiting for cluster readyness............................................................... + wait_cluster_consistency some-name + local cluster_name=some-name + local wait_time=32 + retry=0 + sleep 7 + echo -n 'waiting for cluster readyness' waiting for cluster readyness++ kubectl_bin get psmdb some-name -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.IunaYxwhZW +++ mktemp ++ local LAST_ERR=/tmp/tmp.5Ib3uOsFfm ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.IunaYxwhZW ++ cat /tmp/tmp.5Ib3uOsFfm ++ rm /tmp/tmp.IunaYxwhZW /tmp/tmp.5Ib3uOsFfm ++ return 0 + [[ ready == ready ]] + echo .OK .OK + desc 'verify new horizon DNS names are in certificate SANs after re-signing' + set +o xtrace ----------------------------------------------------------------------------------- verify new horizon DNS names are in certificate SANs after re-signing ----------------------------------------------------------------------------------- + verify_cert_san some-name-ssl some-name-rs0-3.clouddemo.xyz + local secret_name=some-name-ssl + local expected_san=some-name-rs0-3.clouddemo.xyz + local san_list ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ base64 -d ++ openssl x509 -text -noout +++ mktemp ++ grep DNS: ++ local LAST_OUT=/tmp/tmp.XzElKwUhxV ++ tr , '\n' +++ mktemp ++ xargs ++ sed 's/.*DNS://g' ++ local LAST_ERR=/tmp/tmp.FlVn5rK31u ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.XzElKwUhxV ++ cat /tmp/tmp.FlVn5rK31u ++ rm /tmp/tmp.XzElKwUhxV /tmp/tmp.FlVn5rK31u ++ return 0 + san_list='localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz some-name-rs0-3.clouddemo.xyz some-name-rs0-4.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + echo 'localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz some-name-rs0-3.clouddemo.xyz some-name-rs0-4.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + grep -q some-name-rs0-3.clouddemo.xyz + echo 'OK: SAN '\''some-name-rs0-3.clouddemo.xyz'\'' found in secret '\''some-name-ssl'\''' OK: SAN 'some-name-rs0-3.clouddemo.xyz' found in secret 'some-name-ssl' + verify_cert_san some-name-ssl some-name-rs0-4.clouddemo.xyz + local secret_name=some-name-ssl + local expected_san=some-name-rs0-4.clouddemo.xyz + local san_list ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ base64 -d ++ openssl x509 -text -noout ++ grep DNS: +++ mktemp ++ tr , '\n' ++ sed 's/.*DNS://g' ++ xargs ++ local LAST_OUT=/tmp/tmp.wbdCD46lri +++ mktemp ++ local LAST_ERR=/tmp/tmp.CZBPXXuYUS ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.wbdCD46lri ++ cat /tmp/tmp.CZBPXXuYUS ++ rm /tmp/tmp.wbdCD46lri /tmp/tmp.CZBPXXuYUS ++ return 0 + san_list='localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz some-name-rs0-3.clouddemo.xyz some-name-rs0-4.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + echo 'localhost some-name-rs0 some-name-rs0.split-horizon-manual-tls-3794 some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-rs0 *.some-name-rs0.split-horizon-manual-tls-3794 *.some-name-rs0.split-horizon-manual-tls-3794.svc.cluster.local some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-rs0.split-horizon-manual-tls-3794.svc.clusterset.local some-name-rs0-0.clouddemo.xyz some-name-rs0-1.clouddemo.xyz some-name-rs0-2.clouddemo.xyz some-name-rs0-3.clouddemo.xyz some-name-rs0-4.clouddemo.xyz *.split-horizon-manual-tls-3794.svc.clusterset.local some-name-mongos some-name-mongos.split-horizon-manual-tls-3794 some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-mongos *.some-name-mongos.split-horizon-manual-tls-3794 *.some-name-mongos.split-horizon-manual-tls-3794.svc.cluster.local some-name-cfg some-name-cfg.split-horizon-manual-tls-3794 some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local *.some-name-cfg *.some-name-cfg.split-horizon-manual-tls-3794 *.some-name-cfg.split-horizon-manual-tls-3794.svc.cluster.local some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-mongos.split-horizon-manual-tls-3794.svc.clusterset.local some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local *.some-name-cfg.split-horizon-manual-tls-3794.svc.clusterset.local' + grep -q some-name-rs0-4.clouddemo.xyz + echo 'OK: SAN '\''some-name-rs0-4.clouddemo.xyz'\'' found in secret '\''some-name-ssl'\''' OK: SAN 'some-name-rs0-4.clouddemo.xyz' found in secret 'some-name-ssl' + desc 'verify certificate was re-signed (fingerprint changed)' + set +o xtrace ----------------------------------------------------------------------------------- verify certificate was re-signed (fingerprint changed) ----------------------------------------------------------------------------------- ++ save_cert_hash some-name-ssl ++ local secret_name=some-name-ssl ++ local output_var= ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ base64 -d ++ openssl x509 -fingerprint -noout +++ mktemp ++ local LAST_OUT=/tmp/tmp.GbUsYgQdhk +++ mktemp ++ local LAST_ERR=/tmp/tmp.okEdtTjmSo ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.GbUsYgQdhk ++ cat /tmp/tmp.okEdtTjmSo ++ rm /tmp/tmp.GbUsYgQdhk /tmp/tmp.okEdtTjmSo ++ return 0 + cert_hash_after='SHA1 Fingerprint=9E:63:B9:40:C2:BA:F2:9C:CE:C4:25:C6:BB:4F:4B:46:8F:1F:AE:1E' + '[' 'SHA1 Fingerprint=72:24:3B:43:D8:B1:18:4A:58:FC:FA:45:F1:C3:DA:6A:A4:49:0F:79' = 'SHA1 Fingerprint=9E:63:B9:40:C2:BA:F2:9C:CE:C4:25:C6:BB:4F:4B:46:8F:1F:AE:1E' ']' + echo 'OK: certificate was re-signed after horizon update' OK: certificate was re-signed after horizon update + desc 'verify TLS secrets are still signed by the SAME CA' + set +o xtrace ----------------------------------------------------------------------------------- verify TLS secrets are still signed by the SAME CA ----------------------------------------------------------------------------------- + verify_cert_signed_by_ca some-name-ssl some-name-ca-cert + local tls_secret_name=some-name-ssl + local ca_secret_name=some-name-ca-cert + local ca_crt ++ kubectl_bin get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ base64 -d +++ mktemp ++ local LAST_OUT=/tmp/tmp.HeRH3YDqII +++ mktemp ++ local LAST_ERR=/tmp/tmp.VpYn4N1ZMC ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.HeRH3YDqII ++ cat /tmp/tmp.VpYn4N1ZMC ++ rm /tmp/tmp.HeRH3YDqII /tmp/tmp.VpYn4N1ZMC ++ return 0 + ca_crt=$'-----BEGIN CERTIFICATE-----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\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + local tls_crt ++ kubectl_bin get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ base64 -d +++ mktemp ++ local LAST_OUT=/tmp/tmp.hHXIjlUFy7 +++ mktemp ++ local LAST_ERR=/tmp/tmp.OxF5X9TbXp ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.hHXIjlUFy7 ++ cat /tmp/tmp.OxF5X9TbXp ++ rm /tmp/tmp.hHXIjlUFy7 /tmp/tmp.OxF5X9TbXp ++ return 0 + tls_crt=$'-----BEGIN CERTIFICATE-----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\nwoo=\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----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\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----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\nwoo=\n-----END CERTIFICATE-----' + openssl verify -CAfile /tmp/tmp.sqGj2RlTFG/ca.crt /tmp/tmp.sqGj2RlTFG/tls.crt + echo 'OK: '\''some-name-ssl'\'' is signed by CA in '\''some-name-ca-cert'\''' OK: 'some-name-ssl' is signed by CA in 'some-name-ca-cert' + verify_cert_signed_by_ca some-name-ssl-internal some-name-ca-cert + local tls_secret_name=some-name-ssl-internal + local ca_secret_name=some-name-ca-cert + local ca_crt ++ kubectl_bin get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ base64 -d +++ mktemp ++ local LAST_OUT=/tmp/tmp.7nuRnKaKC3 +++ mktemp ++ local LAST_ERR=/tmp/tmp.D88IwJLHqh ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ca-cert -o 'jsonpath={.data.ca\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.7nuRnKaKC3 ++ cat /tmp/tmp.D88IwJLHqh ++ rm /tmp/tmp.7nuRnKaKC3 /tmp/tmp.D88IwJLHqh ++ return 0 + ca_crt=$'-----BEGIN CERTIFICATE-----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\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + local tls_crt ++ kubectl_bin get secret some-name-ssl-internal -o 'jsonpath={.data.tls\.crt}' ++ base64 -d +++ mktemp ++ local LAST_OUT=/tmp/tmp.bwNao9x2ic +++ mktemp ++ local LAST_ERR=/tmp/tmp.w1fjRa2bsY ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get secret some-name-ssl-internal -o 'jsonpath={.data.tls\.crt}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.bwNao9x2ic ++ cat /tmp/tmp.w1fjRa2bsY ++ rm /tmp/tmp.bwNao9x2ic /tmp/tmp.w1fjRa2bsY ++ return 0 + tls_crt=$'-----BEGIN CERTIFICATE-----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\neQ==\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----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\n4cJNoWlF/6EQI4dmdZQArjWGVl4Jym6OI+BrQEDlrUs=\n-----END CERTIFICATE-----' + echo $'-----BEGIN CERTIFICATE-----\nMIIInTCCB4WgAwIBAgIQAx82xFUZEXJPEdq5FQzdwTANBgkqhkiG9w0BAQsFADAS\nMRAwDgYDVQQKEwdSb290IENBMCAXDTI2MDYxNjA3MTI1OVoYDzk5OTkxMjMxMjM1\nOTU5WjAQMQ4wDAYDVQQKEwVQU01EQjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCC\nAQoCggEBAMbqeRN7CcD5VH9VwhIEMadl+E4efaBEBcfRAUwpkIBt9bbzb4dxvgVq\nn6Jl5+00l9pwS1OBn46WYXyi032JSUmmY6xMZfPGi1//3+Cg7iLlHbwOAKCUm0W4\nAHaQwcVq/VZheNm28Bozy9v9m7aj7tnP4nqXo3hALd0gJWUVwyAYHB3lzN9nwkSj\nPIOgP9QswdQoJgkl1PZN+yJCqC2po3zV416LfrGG4fKDKjhq36RhwKWnH6/p88wl\nz1kEu/QrXsyrALiGGOhOJNwEQUG0xgTI5GmTGga63ANUy+AvkcLsZDaNRG94ljXL\n3pOhxcpe3ad8UTFbhidyqLNIgUiGRo8CAwEAAaOCBe0wggXpMA4GA1UdDwEB/wQE\nAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDAYDVR0TAQH/BAIw\nADAfBgNVHSMEGDAWgBRlXd74GISTCgbBsu/4OGYB3etVWjCCBYcGA1UdEQSCBX4w\nggV6gglsb2NhbGhvc3SCDXNvbWUtbmFtZS1yczCCK3NvbWUtbmFtZS1yczAuc3Bs\naXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3OTSCPXNvbWUtbmFtZS1yczAuc3BsaXQt\naG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXIubG9jYWyCDyouc29t\nZS1uYW1lLXJzMIItKi5zb21lLW5hbWUtcnMwLnNwbGl0LWhvcml6b24tbWFudWFs\nLXRscy0zNzk0gj8qLnNvbWUtbmFtZS1yczAuc3BsaXQtaG9yaXpvbi1tYW51YWwt\ndGxzLTM3OTQuc3ZjLmNsdXN0ZXIubG9jYWyCQHNvbWUtbmFtZS1yczAuc3BsaXQt\naG9yaXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXJzZXQubG9jYWyCQiou\nc29tZS1uYW1lLXJzMC5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMu\nY2x1c3RlcnNldC5sb2NhbIIdc29tZS1uYW1lLXJzMC0wLmNsb3VkZGVtby54eXqC\nHXNvbWUtbmFtZS1yczAtMS5jbG91ZGRlbW8ueHl6gh1zb21lLW5hbWUtcnMwLTIu\nY2xvdWRkZW1vLnh5eoIdc29tZS1uYW1lLXJzMC0zLmNsb3VkZGVtby54eXqCHXNv\nbWUtbmFtZS1yczAtNC5jbG91ZGRlbW8ueHl6gjQqLnNwbGl0LWhvcml6b24tbWFu\ndWFsLXRscy0zNzk0LnN2Yy5jbHVzdGVyc2V0LmxvY2FsghBzb21lLW5hbWUtbW9u\nZ29zgi5zb21lLW5hbWUtbW9uZ29zLnNwbGl0LWhvcml6b24tbWFudWFsLXRscy0z\nNzk0gkBzb21lLW5hbWUtbW9uZ29zLnNwbGl0LWhvcml6b24tbWFudWFsLXRscy0z\nNzk0LnN2Yy5jbHVzdGVyLmxvY2FsghIqLnNvbWUtbmFtZS1tb25nb3OCMCouc29t\nZS1uYW1lLW1vbmdvcy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NIJCKi5z\nb21lLW5hbWUtbW9uZ29zLnNwbGl0LWhvcml6b24tbWFudWFsLXRscy0zNzk0LnN2\nYy5jbHVzdGVyLmxvY2Fsgg1zb21lLW5hbWUtY2Zngitzb21lLW5hbWUtY2ZnLnNw\nbGl0LWhvcml6b24tbWFudWFsLXRscy0zNzk0gj1zb21lLW5hbWUtY2ZnLnNwbGl0\nLWhvcml6b24tbWFudWFsLXRscy0zNzk0LnN2Yy5jbHVzdGVyLmxvY2Fsgg8qLnNv\nbWUtbmFtZS1jZmeCLSouc29tZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1hbnVh\nbC10bHMtMzc5NII/Ki5zb21lLW5hbWUtY2ZnLnNwbGl0LWhvcml6b24tbWFudWFs\nLXRscy0zNzk0LnN2Yy5jbHVzdGVyLmxvY2FsgkNzb21lLW5hbWUtbW9uZ29zLnNw\nbGl0LWhvcml6b24tbWFudWFsLXRscy0zNzk0LnN2Yy5jbHVzdGVyc2V0LmxvY2Fs\ngkUqLnNvbWUtbmFtZS1tb25nb3Muc3BsaXQtaG9yaXpvbi1tYW51YWwtdGxzLTM3\nOTQuc3ZjLmNsdXN0ZXJzZXQubG9jYWyCQHNvbWUtbmFtZS1jZmcuc3BsaXQtaG9y\naXpvbi1tYW51YWwtdGxzLTM3OTQuc3ZjLmNsdXN0ZXJzZXQubG9jYWyCQiouc29t\nZS1uYW1lLWNmZy5zcGxpdC1ob3Jpem9uLW1hbnVhbC10bHMtMzc5NC5zdmMuY2x1\nc3RlcnNldC5sb2NhbDANBgkqhkiG9w0BAQsFAAOCAQEAeocqmT9nQNTxg2PIZxKC\nCPAajsBcI3Ihd20QN9jkUdnTowWryq9ZyPy4R0xbXCZhOiJcRdH7AAjN09i/BUfE\n9TQiqeFg9/Mz2R56S9fJgnZeCno2M79bY5ZMBfpt0juSGjVXjO6s+o2brhh+Kov3\nkgGn4D9rBCNetblNIHNBDpRWatu4USPNAIFKPEHkLkD4DgjZzTm+Ya0KTRA66pEw\nHBhFMc9I+h7VE4w5lLzzBMdMUdX6T5I68ZHifnwDDHHC6WR1VS1KkCJX9H1lBo6N\n4lQ0qlNuW8TSyNnPHl36EAQHAWNiKdN8l//zbfeiPbNHYLFTN7cHT8ityeTQB31h\neQ==\n-----END CERTIFICATE-----' + openssl verify -CAfile /tmp/tmp.sqGj2RlTFG/ca.crt /tmp/tmp.sqGj2RlTFG/tls.crt + echo 'OK: '\''some-name-ssl-internal'\'' is signed by CA in '\''some-name-ca-cert'\''' OK: 'some-name-ssl-internal' is signed by CA in 'some-name-ca-cert' + desc 'scale up to 5 members' + set +o xtrace ----------------------------------------------------------------------------------- scale up to 5 members ----------------------------------------------------------------------------------- + kubectl_bin patch psmdb some-name --type=json '-p=[{"op": "replace", "path": "/spec/replsets/0/size", "value": 5}]' ++ mktemp + local LAST_OUT=/tmp/tmp.M65Jh5eKEd ++ mktemp + local LAST_ERR=/tmp/tmp.1UYyl1A7tb + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl patch psmdb some-name --type=json '-p=[{"op": "replace", "path": "/spec/replsets/0/size", "value": 5}]' + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.M65Jh5eKEd perconaservermongodb.psmdb.percona.com/some-name patched + cat /tmp/tmp.1UYyl1A7tb + rm /tmp/tmp.M65Jh5eKEd /tmp/tmp.1UYyl1A7tb + return 0 + wait_for_running some-name-rs0 5 + local name=some-name-rs0 + let last_pod=4 + local check_cluster_readyness=true + set_debug + [[ 1 == 1 ]] + set -o xtrace + local rs_name=rs0 + local cluster_name=some-name ++ seq 0 4 + for i in $(seq 0 $last_pod) + [[ 0 -eq 4 ]] + wait_pod some-name-rs0-0 + local pod=some-name-rs0-0 + set +o xtrace waiting for pod/some-name-rs0-0 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 1 -eq 4 ]] + wait_pod some-name-rs0-1 + local pod=some-name-rs0-1 + set +o xtrace waiting for pod/some-name-rs0-1 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 2 -eq 4 ]] + wait_pod some-name-rs0-2 + local pod=some-name-rs0-2 + set +o xtrace waiting for pod/some-name-rs0-2 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 3 -eq 4 ]] + wait_pod some-name-rs0-3 + local pod=some-name-rs0-3 + set +o xtrace waiting for pod/some-name-rs0-3 to be ready.............OK + for i in $(seq 0 $last_pod) + [[ 4 -eq 4 ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.4IvJcpSeFb +++ mktemp ++ local LAST_ERR=/tmp/tmp.VHqYuNpeld ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.4IvJcpSeFb ++ cat /tmp/tmp.VHqYuNpeld ++ rm /tmp/tmp.4IvJcpSeFb /tmp/tmp.VHqYuNpeld ++ return 0 + [[ '' == true ]] + wait_pod some-name-rs0-4 + local pod=some-name-rs0-4 + set +o xtrace waiting for pod/some-name-rs0-4 to be ready.............OK ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.cyqYK2HhbR +++ mktemp ++ local LAST_ERR=/tmp/tmp.X5kLy8FkDE ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.cyqYK2HhbR ++ cat /tmp/tmp.X5kLy8FkDE ++ rm /tmp/tmp.cyqYK2HhbR /tmp/tmp.X5kLy8FkDE ++ return 0 + [[ '' == true ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.gC1FkzlX1e +++ mktemp ++ local LAST_ERR=/tmp/tmp.5R8GAHSJM3 ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.gC1FkzlX1e ++ cat /tmp/tmp.5R8GAHSJM3 ++ rm /tmp/tmp.gC1FkzlX1e /tmp/tmp.5R8GAHSJM3 ++ return 0 + [[ '' == true ]] + sleep 10 + [[ true == true ]] + set +x Waiting for cluster readyness + wait_cluster_consistency some-name + local cluster_name=some-name + local wait_time=32 + retry=0 + sleep 7 + echo -n 'waiting for cluster readyness' waiting for cluster readyness++ kubectl_bin get psmdb some-name -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.rPGOnxotYP +++ mktemp ++ local LAST_ERR=/tmp/tmp.Qx5DOnqbQO ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.rPGOnxotYP ++ cat /tmp/tmp.Qx5DOnqbQO ++ rm /tmp/tmp.rPGOnxotYP /tmp/tmp.Qx5DOnqbQO ++ return 0 + [[ ready == ready ]] + echo .OK .OK + desc 'verify horizons after scale up' + set +o xtrace ----------------------------------------------------------------------------------- verify horizons after scale up ----------------------------------------------------------------------------------- + run_mongo_tls 'rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))' clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz mongodb '' --quiet + grep -E -v 'I NETWORK|W NETWORK|Error saving history file|Percona Server for MongoDB|connecting to:|Unable to reach primary for set|Implicit session:|versions do not match|Error saving history file:|does not match the remote host name' + local 'command=rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))' + local uri=clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz + local driver=mongodb + local suffix=.svc.cluster.local ++ kubectl_bin get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.MkUsVIcAgz +++ mktemp ++ local LAST_ERR=/tmp/tmp.RB17EraYOT ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.MkUsVIcAgz ++ cat /tmp/tmp.RB17EraYOT ++ rm /tmp/tmp.MkUsVIcAgz /tmp/tmp.RB17EraYOT ++ return 0 + local client_container=psmdb-client-7f78db585b-lb27z + local mongo_flag=--quiet + local port=27017 ++ echo .svc.cluster.local ++ awk -F: '{print $2}' + suffix_port= + [[ -z '' ]] + suffix=.svc.cluster.local:27017 + [[ clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz == *cfg* ]] + replica_set=rs0 + kubectl_bin exec psmdb-client-7f78db585b-lb27z -- bash -c 'printf '\''rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))\n'\'' | mongo mongodb://clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz.svc.cluster.local:27017/admin?replicaSet=rs0 --tls --tlsCAFile /etc/mongodb-ssl/ca.crt --tlsCertificateKeyFile /tmp/tls.pem --tlsAllowInvalidHostnames --quiet' ++ mktemp + local LAST_OUT=/tmp/tmp.Q9BobNui24 ++ mktemp + local LAST_ERR=/tmp/tmp.nQjx6kZG0y + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl exec psmdb-client-7f78db585b-lb27z -- bash -c 'printf '\''rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))\n'\'' | mongo mongodb://clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz.svc.cluster.local:27017/admin?replicaSet=rs0 --tls --tlsCAFile /etc/mongodb-ssl/ca.crt --tlsCertificateKeyFile /tmp/tls.pem --tlsAllowInvalidHostnames --quiet' + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.Q9BobNui24 + cat /tmp/tmp.nQjx6kZG0y + rm /tmp/tmp.Q9BobNui24 /tmp/tmp.nQjx6kZG0y + return 0 + diff /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/compare/horizons-5.json /tmp/tmp.sqGj2RlTFG/horizons-5.json + desc 'scale down to 3 members' + set +o xtrace ----------------------------------------------------------------------------------- scale down to 3 members ----------------------------------------------------------------------------------- + kubectl_bin patch psmdb some-name --type=json '-p=[{"op": "replace", "path": "/spec/replsets/0/size", "value": 3}]' ++ mktemp + local LAST_OUT=/tmp/tmp.y1GC4lQOQs ++ mktemp + local LAST_ERR=/tmp/tmp.4lKzIFWblO + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl patch psmdb some-name --type=json '-p=[{"op": "replace", "path": "/spec/replsets/0/size", "value": 3}]' + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.y1GC4lQOQs perconaservermongodb.psmdb.percona.com/some-name patched + cat /tmp/tmp.4lKzIFWblO + rm /tmp/tmp.y1GC4lQOQs /tmp/tmp.4lKzIFWblO + return 0 + wait_for_running some-name-rs0 3 + local name=some-name-rs0 + let last_pod=2 + local check_cluster_readyness=true + set_debug + [[ 1 == 1 ]] + set -o xtrace + local rs_name=rs0 + local cluster_name=some-name ++ seq 0 2 + for i in $(seq 0 $last_pod) + [[ 0 -eq 2 ]] + wait_pod some-name-rs0-0 + local pod=some-name-rs0-0 + set +o xtrace waiting for pod/some-name-rs0-0 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 1 -eq 2 ]] + wait_pod some-name-rs0-1 + local pod=some-name-rs0-1 + set +o xtrace waiting for pod/some-name-rs0-1 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 2 -eq 2 ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.oJORTmOh3w +++ mktemp ++ local LAST_ERR=/tmp/tmp.0CC7JxrsLL ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.oJORTmOh3w ++ cat /tmp/tmp.0CC7JxrsLL ++ rm /tmp/tmp.oJORTmOh3w /tmp/tmp.0CC7JxrsLL ++ return 0 + [[ '' == true ]] + wait_pod some-name-rs0-2 + local pod=some-name-rs0-2 + set +o xtrace waiting for pod/some-name-rs0-2 to be ready.OK ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.fN4WfCvThj +++ mktemp ++ local LAST_ERR=/tmp/tmp.wrg2Pw7j12 ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.fN4WfCvThj ++ cat /tmp/tmp.wrg2Pw7j12 ++ rm /tmp/tmp.fN4WfCvThj /tmp/tmp.wrg2Pw7j12 ++ return 0 + [[ '' == true ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.2DcyNvmpRo +++ mktemp ++ local LAST_ERR=/tmp/tmp.7cXEYJJamF ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.2DcyNvmpRo ++ cat /tmp/tmp.7cXEYJJamF ++ rm /tmp/tmp.2DcyNvmpRo /tmp/tmp.7cXEYJJamF ++ return 0 + [[ '' == true ]] + sleep 10 + [[ true == true ]] + set +x Waiting for cluster readyness... + wait_cluster_consistency some-name + local cluster_name=some-name + local wait_time=32 + retry=0 + sleep 7 + echo -n 'waiting for cluster readyness' waiting for cluster readyness++ kubectl_bin get psmdb some-name -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.EqRwHONMjj +++ mktemp ++ local LAST_ERR=/tmp/tmp.GpykrRNu0A ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.EqRwHONMjj ++ cat /tmp/tmp.GpykrRNu0A ++ rm /tmp/tmp.EqRwHONMjj /tmp/tmp.GpykrRNu0A ++ return 0 + [[ ready == ready ]] + echo .OK .OK + desc 'verify horizons after scale down' + set +o xtrace ----------------------------------------------------------------------------------- verify horizons after scale down ----------------------------------------------------------------------------------- + run_mongo_tls 'rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))' clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz mongodb '' --quiet + grep -E -v 'I NETWORK|W NETWORK|Error saving history file|Percona Server for MongoDB|connecting to:|Unable to reach primary for set|Implicit session:|versions do not match|Error saving history file:|does not match the remote host name' + local 'command=rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))' + local uri=clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz + local driver=mongodb + local suffix=.svc.cluster.local ++ kubectl_bin get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.Im0rbjMibR +++ mktemp ++ local LAST_ERR=/tmp/tmp.X96f13lZm3 ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get pods --selector=name=psmdb-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.Im0rbjMibR ++ cat /tmp/tmp.X96f13lZm3 ++ rm /tmp/tmp.Im0rbjMibR /tmp/tmp.X96f13lZm3 ++ return 0 + local client_container=psmdb-client-7f78db585b-lb27z + local mongo_flag=--quiet + local port=27017 ++ echo .svc.cluster.local ++ awk -F: '{print $2}' + suffix_port= + [[ -z '' ]] + suffix=.svc.cluster.local:27017 + [[ clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz == *cfg* ]] + replica_set=rs0 + kubectl_bin exec psmdb-client-7f78db585b-lb27z -- bash -c 'printf '\''rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))\n'\'' | mongo mongodb://clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz.svc.cluster.local:27017/admin?replicaSet=rs0 --tls --tlsCAFile /etc/mongodb-ssl/ca.crt --tlsCertificateKeyFile /tmp/tls.pem --tlsAllowInvalidHostnames --quiet' ++ mktemp + local LAST_OUT=/tmp/tmp.MX60b1F6oQ ++ mktemp + local LAST_ERR=/tmp/tmp.MbKfyLvwxW + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl exec psmdb-client-7f78db585b-lb27z -- bash -c 'printf '\''rs.conf().members.map(function(member) { return member.horizons }).sort((a, b) => a.external.localeCompare(b.external))\n'\'' | mongo mongodb://clusterAdmin:clusterAdmin123456@some-name-rs0-0.clouddemo.xyz,some-name-rs0-1.clouddemo.xyz,some-name-rs0-2.clouddemo.xyz.svc.cluster.local:27017/admin?replicaSet=rs0 --tls --tlsCAFile /etc/mongodb-ssl/ca.crt --tlsCertificateKeyFile /tmp/tls.pem --tlsAllowInvalidHostnames --quiet' + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.MX60b1F6oQ + cat /tmp/tmp.MbKfyLvwxW + rm /tmp/tmp.MX60b1F6oQ /tmp/tmp.MbKfyLvwxW + return 0 + diff /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/compare/horizons-3.json /tmp/tmp.sqGj2RlTFG/horizons.json + desc 'remove horizon configuration' + set +o xtrace ----------------------------------------------------------------------------------- remove horizon configuration ----------------------------------------------------------------------------------- + apply_cluster /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name.yml + '[' -z '' ']' + cat_config /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name.yml + kubectl_bin apply -f - + cat /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/e2e-tests/split-horizon-manual-tls/conf/some-name.yml ++ mktemp + yq eval '(.spec | select(.image == null)).image = "docker.io/perconalab/percona-server-mongodb-operator:main-mongod8.0"' + yq eval '(.spec | select(has("pmm"))).pmm.image = "docker.io/percona/pmm-client:2.44.1-1"' + yq eval '(.spec | select(has("initImage"))).initImage = "docker.io/perconalab/percona-server-mongodb-operator:PR-2389-136576e0b"' + yq eval '(.spec | select(has("backup"))).backup.image = "docker.io/perconalab/percona-server-mongodb-operator:main-backup"' + local LAST_OUT=/tmp/tmp.Ige1nuZ23C + /usr/sbin/sed -e s/NAME_SPACE/split-horizon-manual-tls-3794/g + yq eval '.spec.upgradeOptions.apply="Never"' ++ mktemp + local LAST_ERR=/tmp/tmp.fRTadv83NB + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.Ige1nuZ23C perconaservermongodb.psmdb.percona.com/some-name configured + cat /tmp/tmp.fRTadv83NB + rm /tmp/tmp.Ige1nuZ23C /tmp/tmp.fRTadv83NB + return 0 + wait_for_running some-name-rs0 3 + local name=some-name-rs0 + let last_pod=2 + local check_cluster_readyness=true + set_debug + [[ 1 == 1 ]] + set -o xtrace + local rs_name=rs0 + local cluster_name=some-name ++ seq 0 2 + for i in $(seq 0 $last_pod) + [[ 0 -eq 2 ]] + wait_pod some-name-rs0-0 + local pod=some-name-rs0-0 + set +o xtrace waiting for pod/some-name-rs0-0 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 1 -eq 2 ]] + wait_pod some-name-rs0-1 + local pod=some-name-rs0-1 + set +o xtrace waiting for pod/some-name-rs0-1 to be ready.OK + for i in $(seq 0 $last_pod) + [[ 2 -eq 2 ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.JrcGME4pTp +++ mktemp ++ local LAST_ERR=/tmp/tmp.RD3vOAEbAI ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].arbiter.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.JrcGME4pTp ++ cat /tmp/tmp.RD3vOAEbAI ++ rm /tmp/tmp.JrcGME4pTp /tmp/tmp.RD3vOAEbAI ++ return 0 + [[ '' == true ]] + wait_pod some-name-rs0-2 + local pod=some-name-rs0-2 + set +o xtrace waiting for pod/some-name-rs0-2 to be ready.OK ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.JL55CyqmKC +++ mktemp ++ local LAST_ERR=/tmp/tmp.76TWJc02ca ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].nonvoting.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.JL55CyqmKC ++ cat /tmp/tmp.76TWJc02ca ++ rm /tmp/tmp.JL55CyqmKC /tmp/tmp.76TWJc02ca ++ return 0 + [[ '' == true ]] ++ kubectl_bin get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.bFWZKASmjF +++ mktemp ++ local LAST_ERR=/tmp/tmp.xjdMZBdy46 ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.spec.replsets[?(@.name=="rs0")].hidden.enabled}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.bFWZKASmjF ++ cat /tmp/tmp.xjdMZBdy46 ++ rm /tmp/tmp.bFWZKASmjF /tmp/tmp.xjdMZBdy46 ++ return 0 + [[ '' == true ]] + sleep 10 + [[ true == true ]] + set +x Waiting for cluster readyness........................................................... + wait_cluster_consistency some-name + local cluster_name=some-name + local wait_time=32 + retry=0 + sleep 7 + echo -n 'waiting for cluster readyness' waiting for cluster readyness++ kubectl_bin get psmdb some-name -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.Wpoooanjuz +++ mktemp ++ local LAST_ERR=/tmp/tmp.FsOl9fcknH ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb some-name -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.Wpoooanjuz ++ cat /tmp/tmp.FsOl9fcknH ++ rm /tmp/tmp.Wpoooanjuz /tmp/tmp.FsOl9fcknH ++ return 0 + [[ ready == ready ]] + echo .OK .OK + destroy split-horizon-manual-tls-3794 + local namespace=split-horizon-manual-tls-3794 + local ignore_logs=true + [[ 0 == 1 ]] + desc 'destroy cluster/operator and all other resources' + set +o xtrace ----------------------------------------------------------------------------------- destroy cluster/operator and all other resources ----------------------------------------------------------------------------------- + '[' true == false ']' + delete_backups + desc 'Delete psmdb-backup' + set +o xtrace ----------------------------------------------------------------------------------- Delete psmdb-backup ----------------------------------------------------------------------------------- ++ kubectl_bin get psmdb-backup --no-headers ++ wc -l +++ mktemp ++ local LAST_OUT=/tmp/tmp.ywKIkdYAH5 +++ mktemp ++ local LAST_ERR=/tmp/tmp.UT0lXiGv42 ++ local exit_status=0 ++ local timeout=4 +++ seq 0 2 ++ for i in $(seq 0 2) ++ set +e ++ kubectl get psmdb-backup --no-headers ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 -a -n 1 ']' ++ break ++ cat /tmp/tmp.ywKIkdYAH5 ++ cat /tmp/tmp.UT0lXiGv42 No resources found in split-horizon-manual-tls-3794 namespace. ++ rm /tmp/tmp.ywKIkdYAH5 /tmp/tmp.UT0lXiGv42 ++ return 0 + '[' 0 '!=' 0 ']' + delete_crd + desc 'get and delete old CRDs and RBAC' + set +o xtrace ----------------------------------------------------------------------------------- get and delete old CRDs and RBAC ----------------------------------------------------------------------------------- + kubectl_bin delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml --ignore-not-found --wait=false ++ mktemp + local LAST_OUT=/tmp/tmp.CxuVlwQIJ9 ++ mktemp + local LAST_ERR=/tmp/tmp.mdxIc860r2 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml --ignore-not-found --wait=false + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.CxuVlwQIJ9 customresourcedefinition.apiextensions.k8s.io "perconaservermongodbbackups.psmdb.percona.com" deleted customresourcedefinition.apiextensions.k8s.io "perconaservermongodbrestores.psmdb.percona.com" deleted customresourcedefinition.apiextensions.k8s.io "perconaservermongodbs.psmdb.percona.com" deleted + cat /tmp/tmp.mdxIc860r2 + rm /tmp/tmp.CxuVlwQIJ9 /tmp/tmp.mdxIc860r2 + return 0 ++ yq eval .metadata.name /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/crd.yaml ++ grep -v '\-\-\-' grep: warning: stray \ before - grep: warning: stray \ before - + for crd_name in $(yq eval '.metadata.name' "${src_dir}/deploy/crd.yaml" | grep -v '\-\-\-') + kubectl get perconaservermongodbbackups.psmdb.percona.com --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch perconaservermongodbbackups.psmdb.percona.com -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' error: the server doesn't have a resource type "perconaservermongodbbackups" + kubectl patch perconaservermongodbbackups.psmdb.percona.com -n sh --type=merge -p '{"metadata":{"finalizers":[]}}' error: the server doesn't have a resource type "perconaservermongodbbackups" + : + kubectl_bin wait --for=delete crd perconaservermongodbbackups.psmdb.percona.com ++ mktemp + local LAST_OUT=/tmp/tmp.LMTVm4SPHr ++ mktemp + local LAST_ERR=/tmp/tmp.QCi5ybjVr4 + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete crd perconaservermongodbbackups.psmdb.percona.com + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.LMTVm4SPHr + cat /tmp/tmp.QCi5ybjVr4 + rm /tmp/tmp.LMTVm4SPHr /tmp/tmp.QCi5ybjVr4 + return 0 + for crd_name in $(yq eval '.metadata.name' "${src_dir}/deploy/crd.yaml" | grep -v '\-\-\-') + kubectl get perconaservermongodbrestores.psmdb.percona.com --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch perconaservermongodbrestores.psmdb.percona.com -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' error: the server doesn't have a resource type "perconaservermongodbrestores" + kubectl patch perconaservermongodbrestores.psmdb.percona.com -n sh --type=merge -p '{"metadata":{"finalizers":[]}}' error: the server doesn't have a resource type "perconaservermongodbrestores" + : + kubectl_bin wait --for=delete crd perconaservermongodbrestores.psmdb.percona.com ++ mktemp + local LAST_OUT=/tmp/tmp.UGoUh3h1gT ++ mktemp + local LAST_ERR=/tmp/tmp.HI9ql69saM + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete crd perconaservermongodbrestores.psmdb.percona.com + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.UGoUh3h1gT + cat /tmp/tmp.HI9ql69saM + rm /tmp/tmp.UGoUh3h1gT /tmp/tmp.HI9ql69saM + return 0 + for crd_name in $(yq eval '.metadata.name' "${src_dir}/deploy/crd.yaml" | grep -v '\-\-\-') + kubectl get perconaservermongodbs.psmdb.percona.com --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch perconaservermongodbs.psmdb.percona.com -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' error: the server doesn't have a resource type "perconaservermongodbs" + kubectl patch perconaservermongodbs.psmdb.percona.com -n sh --type=merge -p '{"metadata":{"finalizers":[]}}' error: the server doesn't have a resource type "perconaservermongodbs" + : + kubectl_bin wait --for=delete crd perconaservermongodbs.psmdb.percona.com ++ mktemp + local LAST_OUT=/tmp/tmp.NzcBNhft3h ++ mktemp + local LAST_ERR=/tmp/tmp.9wyA0K2ThU + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl wait --for=delete crd perconaservermongodbs.psmdb.percona.com + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.NzcBNhft3h + cat /tmp/tmp.9wyA0K2ThU + rm /tmp/tmp.NzcBNhft3h /tmp/tmp.9wyA0K2ThU + return 0 + local rbac_yaml=rbac.yaml + '[' -n psmdb-operator ']' + rbac_yaml=cw-rbac.yaml + kubectl_bin delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/cw-rbac.yaml --ignore-not-found ++ mktemp + local LAST_OUT=/tmp/tmp.cJZ3hhaMqX ++ mktemp + local LAST_ERR=/tmp/tmp.BAkmdWXvYv + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl delete -f /mnt/jenkins/workspace/cloud-psmdb-operator_PR-2389/deploy/cw-rbac.yaml --ignore-not-found + exit_status=0 + set -e + '[' 0 '!=' 0 -a -n 1 ']' + break + cat /tmp/tmp.cJZ3hhaMqX clusterrole.rbac.authorization.k8s.io "percona-server-mongodb-operator" deleted clusterrolebinding.rbac.authorization.k8s.io "service-account-percona-server-mongodb-operator" deleted + cat /tmp/tmp.BAkmdWXvYv + rm /tmp/tmp.cJZ3hhaMqX /tmp/tmp.BAkmdWXvYv + return 0 + destroy_cert_manager + kubectl_bin delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml ++ mktemp + local LAST_OUT=/tmp/tmp.SgIK3WVB0X ++ mktemp + local LAST_ERR=/tmp/tmp.KQ57RyNSiN + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml + exit_status=1 + set -e + '[' 1 '!=' 0 -a -n 1 ']' + cat /tmp/tmp.SgIK3WVB0X + cat /tmp/tmp.KQ57RyNSiN Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + sleep 0 + for i in $(seq 0 2) + set +e + kubectl delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml + exit_status=1 + set -e + '[' 1 '!=' 0 -a -n 1 ']' + cat /tmp/tmp.SgIK3WVB0X + cat /tmp/tmp.KQ57RyNSiN Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + sleep 4 + for i in $(seq 0 2) + set +e + kubectl delete -f https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml + exit_status=1 + set -e + '[' 1 '!=' 0 -a -n 1 ']' + cat /tmp/tmp.SgIK3WVB0X + cat /tmp/tmp.KQ57RyNSiN Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + sleep 8 + cat /tmp/tmp.SgIK3WVB0X + cat /tmp/tmp.KQ57RyNSiN Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": namespaces "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "challenges.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "orders.acme.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificaterequests.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "certificates.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "clusterissuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": customresourcedefinitions.apiextensions.k8s.io "issuers.cert-manager.io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": serviceaccounts "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-cluster-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-view" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-edit" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterroles.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-issuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-clusterissuers" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificates" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-orders" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-challenges" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-ingress-shim" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-approve:cert-manager-io" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-controller-certificatesigningrequests" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": clusterrolebindings.rbac.authorization.k8s.io "cert-manager-webhook:subjectaccessreviews" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": roles.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-cainjector:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager:leaderelection" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-tokenrequest" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": rolebindings.rbac.authorization.k8s.io "cert-manager-webhook:dynamic-serving" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": services "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-cainjector" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": deployments.apps "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": mutatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found Error from server (NotFound): error when deleting "https://github.com/cert-manager/cert-manager/releases/download/v1.19.3/cert-manager.yaml": validatingwebhookconfigurations.admissionregistration.k8s.io "cert-manager-webhook" not found + rm /tmp/tmp.SgIK3WVB0X /tmp/tmp.KQ57RyNSiN + return 1 + true + '[' -n '' ']' + '[' -n psmdb-operator ']' + kubectl_bin delete --grace-period=0 --force=true namespace split-horizon-manual-tls-3794 + rm -rf /tmp/tmp.sqGj2RlTFG + kubectl_bin delete --grace-period=0 --force=true namespace psmdb-operator ++ mktemp ++ mktemp + local LAST_OUT=/tmp/tmp.Nkeq3abO6R ++ mktemp + desc 'test passed' + set +o xtrace ----------------------------------------------------------------------------------- test passed ----------------------------------------------------------------------------------- + local LAST_OUT=/tmp/tmp.s99sB9nqfW + local LAST_ERR=/tmp/tmp.JnhY7wITrJ + local exit_status=0 + local timeout=4 ++ mktemp ++ seq 0 2 + local LAST_ERR=/tmp/tmp.CfdQLhuRvl + local exit_status=0 + local timeout=4 ++ seq 0 2 + for i in $(seq 0 2) + set +e + kubectl delete --grace-period=0 --force=true namespace split-horizon-manual-tls-3794 + for i in $(seq 0 2) + set +e + kubectl delete --grace-period=0 --force=true namespace psmdb-operator