Log: /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/logs/tls-issue-cert-manager-8-0.log Warning: version difference between client (1.34) and server (1.31) exceeds the supported minor version skew of +/-1 Warning: version difference between client (1.34) and server (1.31) exceeds the supported minor version skew of +/-1 + main + create_infra tls-issue-cert-manager-5478 + local ns=tls-issue-cert-manager-5478 + '[' -n pxc-operator ']' + grep -v NAMESPACE + kubectl get pxc --all-namespaces -o wide + xargs -L 1 sh -xc 'kubectl patch pxc -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' + kubectl patch pxc -n tls-issue-cert-manager-21287 some-name-tls-issue --type=merge -p '{"metadata":{"finalizers":[]}}' perconaxtradbcluster.pxc.percona.com/some-name-tls-issue patched + kubectl_bin delete pxc --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.M8Rnr6qAKC ++ mktemp + local LAST_ERR=/tmp/tmp.4yEwHuKMgG + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.M8Rnr6qAKC perconaxtradbcluster.pxc.percona.com "some-name-tls-issue" deleted from tls-issue-cert-manager-21287 namespace + cat /tmp/tmp.4yEwHuKMgG + rm /tmp/tmp.M8Rnr6qAKC /tmp/tmp.4yEwHuKMgG + return 0 + kubectl_bin delete pxc-backup --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.tM2FZzsZ3T ++ mktemp + local LAST_ERR=/tmp/tmp.OUSFR80sy7 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-backup --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.tM2FZzsZ3T No resources found + cat /tmp/tmp.OUSFR80sy7 + rm /tmp/tmp.tM2FZzsZ3T /tmp/tmp.OUSFR80sy7 + return 0 + kubectl_bin delete pxc-restore --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.UhqLGntZ3n ++ mktemp + local LAST_ERR=/tmp/tmp.3igZ0KQxDE + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-restore --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.UhqLGntZ3n No resources found + cat /tmp/tmp.3igZ0KQxDE + rm /tmp/tmp.UhqLGntZ3n /tmp/tmp.3igZ0KQxDE + return 0 + create_namespace pxc-operator + local namespace=pxc-operator + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ sed s/NAMESPACE// ++ helm list --all-namespaces --filter chaos-mesh ++ awk '-F ' '{print $2}' ++ tail -n1 + local chaos_mesh_ns= + '[' -n '' ']' ++ kubectl get MutatingWebhookConfiguration ++ awk '{print $1}' ++ grep chaos-mesh + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ awk '{print $1}' ++ kubectl get ValidatingWebhookConfiguration ++ grep validate-auth + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl api-resources ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get crd ++ awk '{print $1}' ++ grep chaos-mesh.org + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrolebinding ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrole ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + grep -E -v '^kube-|^default|Terminating|pxc-operator|openshift|^gke-|^gmp-|^NAME' + awk '{print$1}' + '[' -n '' ']' + desc 'cleaned up old namespaces pxc-operator' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up old namespaces pxc-operator ----------------------------------------------------------------------------------- + kubectl_bin delete namespace pxc-operator + kubectl_bin get ns ++ mktemp ++ mktemp + local LAST_OUT=/tmp/tmp.CYjBc5BMJs + local LAST_OUT=/tmp/tmp.h9mPk3aALx ++ mktemp ++ mktemp + local LAST_ERR=/tmp/tmp.bpiBZonm6v + local exit_status=0 ++ seq 0 2 + local LAST_ERR=/tmp/tmp.6bz6M4Yq6a + local exit_status=0 + for i in '$(seq 0 2)' + set +e + kubectl get ns ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace pxc-operator + xargs kubectl delete ns + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.CYjBc5BMJs + cat /tmp/tmp.bpiBZonm6v + rm /tmp/tmp.CYjBc5BMJs /tmp/tmp.bpiBZonm6v + return 0 namespace "cert-manager" deleted namespace "tls-issue-cert-manager-21287" deleted + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.h9mPk3aALx namespace "pxc-operator" deleted + cat /tmp/tmp.6bz6M4Yq6a + rm /tmp/tmp.h9mPk3aALx /tmp/tmp.6bz6M4Yq6a + return 0 + wait_for_delete namespace/pxc-operator + local res=namespace/pxc-operator + echo -n 'waiting for namespace/pxc-operator to be deleted' waiting for namespace/pxc-operator to be deleted+ set +o xtrace Error from server (NotFound): namespaces "pxc-operator" not found + desc 'create namespace pxc-operator' + set +o xtrace ----------------------------------------------------------------------------------- create namespace pxc-operator ----------------------------------------------------------------------------------- + kubectl_bin create namespace pxc-operator ++ mktemp + local LAST_OUT=/tmp/tmp.rQK2sTl5HI ++ mktemp + local LAST_ERR=/tmp/tmp.OB69HTIKbP + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace pxc-operator + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.rQK2sTl5HI namespace/pxc-operator created + cat /tmp/tmp.OB69HTIKbP + rm /tmp/tmp.rQK2sTl5HI /tmp/tmp.OB69HTIKbP + return 0 ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.NlYeqAGz6a +++ mktemp ++ local LAST_ERR=/tmp/tmp.y4JV2OvR9I ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.NlYeqAGz6a ++ cat /tmp/tmp.y4JV2OvR9I ++ rm /tmp/tmp.NlYeqAGz6a /tmp/tmp.y4JV2OvR9I ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2221-abd79966-3-cluster2 --namespace=pxc-operator ++ mktemp + local LAST_OUT=/tmp/tmp.q4SpzRNhdG ++ mktemp + local LAST_ERR=/tmp/tmp.fSo6Evf2Cl + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2221-abd79966-3-cluster2 --namespace=pxc-operator + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.q4SpzRNhdG Context "gke_cloud-dev-112233_us-central1-a_jen-pxc-2221-abd79966-3-cluster2" modified. + cat /tmp/tmp.fSo6Evf2Cl + rm /tmp/tmp.q4SpzRNhdG /tmp/tmp.fSo6Evf2Cl + return 0 + deploy_operator + desc 'start PXC operator' + set +o xtrace ----------------------------------------------------------------------------------- start PXC operator ----------------------------------------------------------------------------------- + kubectl_bin apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/deploy/crd.yaml ++ mktemp + local LAST_OUT=/tmp/tmp.jQyrS6WDJz ++ mktemp + local LAST_ERR=/tmp/tmp.nKrC6Jtp73 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/deploy/crd.yaml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.jQyrS6WDJz customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusterbackups.pxc.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusterrestores.pxc.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusters.pxc.percona.com serverside-applied + cat /tmp/tmp.nKrC6Jtp73 + rm /tmp/tmp.jQyrS6WDJz /tmp/tmp.nKrC6Jtp73 + return 0 + '[' -n pxc-operator ']' + apply_rbac cw-rbac + local operator_namespace=pxc-operator + local rbac=cw-rbac + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/deploy/cw-rbac.yaml + sed -e 's^namespace: .*^namespace: pxc-operator^' + kubectl_bin apply -f - ++ mktemp + local LAST_OUT=/tmp/tmp.ReWt0ZA9w7 ++ mktemp + local LAST_ERR=/tmp/tmp.6XoArAQtDn + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.ReWt0ZA9w7 clusterrole.rbac.authorization.k8s.io/percona-xtradb-cluster-operator unchanged serviceaccount/percona-xtradb-cluster-operator created clusterrolebinding.rbac.authorization.k8s.io/service-account-percona-xtradb-cluster-operator unchanged + cat /tmp/tmp.6XoArAQtDn + rm /tmp/tmp.ReWt0ZA9w7 /tmp/tmp.6XoArAQtDn + return 0 + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "DISABLE_TELEMETRY").value) = "true"' - + sed -e 's^failureThreshold: .*^failureThreshold: 10^' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/deploy/cw-operator.yaml + sed -e 's^image: .*^image: perconalab/percona-xtradb-cluster-operator:PR-2221-abd79966^' + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "LOG_LEVEL").value) = "VERBOSE"' - + kubectl_bin apply -f - ++ mktemp + local LAST_OUT=/tmp/tmp.cEB1iinCQl ++ mktemp + local LAST_ERR=/tmp/tmp.pWoZWqNFx3 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.cEB1iinCQl deployment.apps/percona-xtradb-cluster-operator created service/percona-xtradb-cluster-operator created + cat /tmp/tmp.pWoZWqNFx3 + rm /tmp/tmp.cEB1iinCQl /tmp/tmp.pWoZWqNFx3 + return 0 + sleep 10 + kubectl_bin wait --for=condition=Ready pods -l app.kubernetes.io/component=operator,app.kubernetes.io/instance=percona-xtradb-cluster-operator,app.kubernetes.io/name=percona-xtradb-cluster-operator --timeout=30s ++ mktemp + local LAST_OUT=/tmp/tmp.w27H8KEHMp ++ mktemp + local LAST_ERR=/tmp/tmp.0qnXb7vxUo + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pods -l app.kubernetes.io/component=operator,app.kubernetes.io/instance=percona-xtradb-cluster-operator,app.kubernetes.io/name=percona-xtradb-cluster-operator --timeout=30s + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.w27H8KEHMp pod/percona-xtradb-cluster-operator-bbcb56d74-47rtz condition met + cat /tmp/tmp.0qnXb7vxUo + rm /tmp/tmp.w27H8KEHMp /tmp/tmp.0qnXb7vxUo + return 0 ++ get_operator_pod ++ local label_prefix=app.kubernetes.io/ +++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -n pxc-operator +++ grep -c percona-xtradb-cluster-operator ++ local check_label=1 ++ [[ 1 -eq 0 ]] ++ kubectl_bin get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -o 'jsonpath={.items[].metadata.name}' -n pxc-operator +++ mktemp ++ local LAST_OUT=/tmp/tmp.tXEdnRRD7R +++ mktemp ++ local LAST_ERR=/tmp/tmp.CifsiX4fLE ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -o 'jsonpath={.items[].metadata.name}' -n pxc-operator ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.tXEdnRRD7R ++ cat /tmp/tmp.CifsiX4fLE ++ rm /tmp/tmp.tXEdnRRD7R /tmp/tmp.CifsiX4fLE ++ return 0 + wait_pod percona-xtradb-cluster-operator-bbcb56d74-47rtz 480 pxc-operator + local pod=percona-xtradb-cluster-operator-bbcb56d74-47rtz + local max_retry=480 + local ns=pxc-operator ++ echo percona-xtradb-cluster-operator-bbcb56d74-47rtz ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/percona-xtradb-cluster-operator-bbcb56d74-47rtz condition met waiting for pod/percona-xtradb-cluster-operator-bbcb56d74-47rtz to become Ready.Ok + sleep 3 + create_namespace tls-issue-cert-manager-5478 + local namespace=tls-issue-cert-manager-5478 + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ helm list --all-namespaces --filter chaos-mesh ++ awk '-F ' '{print $2}' ++ tail -n1 ++ sed s/NAMESPACE// + local chaos_mesh_ns= + '[' -n '' ']' ++ kubectl get MutatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ grep validate-auth ++ awk '{print $1}' ++ kubectl get ValidatingWebhookConfiguration + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl api-resources ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get crd ++ grep chaos-mesh.org ++ awk '{print $1}' + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrolebinding ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrole ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + grep -E -v '^kube-|^default|Terminating|pxc-operator|openshift|^gke-|^gmp-|^NAME' + awk '{print$1}' + '[' -n '' ']' + desc 'cleaned up old namespaces tls-issue-cert-manager-5478' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up old namespaces tls-issue-cert-manager-5478 ----------------------------------------------------------------------------------- + kubectl_bin delete namespace tls-issue-cert-manager-5478 + kubectl_bin get ns + xargs kubectl delete ns ++ mktemp ++ mktemp + local LAST_OUT=/tmp/tmp.WKnpnPI9Ex ++ mktemp + local LAST_OUT=/tmp/tmp.fRiLfmQL6w ++ mktemp + local LAST_ERR=/tmp/tmp.q0JiITrrvl + local exit_status=0 ++ seq 0 2 + local LAST_ERR=/tmp/tmp.QktDAkS0NL + local exit_status=0 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-5478 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get ns + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-5478 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.fRiLfmQL6w + cat /tmp/tmp.QktDAkS0NL + rm /tmp/tmp.fRiLfmQL6w /tmp/tmp.QktDAkS0NL + return 0 error: resource(s) were provided, but no name was specified + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-5478 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + cat /tmp/tmp.WKnpnPI9Ex + cat /tmp/tmp.q0JiITrrvl Error from server (NotFound): namespaces "tls-issue-cert-manager-5478" not found + rm /tmp/tmp.WKnpnPI9Ex /tmp/tmp.q0JiITrrvl + return 1 + : + wait_for_delete namespace/tls-issue-cert-manager-5478 + local res=namespace/tls-issue-cert-manager-5478 + echo -n 'waiting for namespace/tls-issue-cert-manager-5478 to be deleted' waiting for namespace/tls-issue-cert-manager-5478 to be deleted+ set +o xtrace Error from server (NotFound): namespaces "tls-issue-cert-manager-5478" not found + desc 'create namespace tls-issue-cert-manager-5478' + set +o xtrace ----------------------------------------------------------------------------------- create namespace tls-issue-cert-manager-5478 ----------------------------------------------------------------------------------- + kubectl_bin create namespace tls-issue-cert-manager-5478 ++ mktemp + local LAST_OUT=/tmp/tmp.m3d4L2ewMN ++ mktemp + local LAST_ERR=/tmp/tmp.zpZnaaKvFg + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace tls-issue-cert-manager-5478 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.m3d4L2ewMN namespace/tls-issue-cert-manager-5478 created + cat /tmp/tmp.zpZnaaKvFg + rm /tmp/tmp.m3d4L2ewMN /tmp/tmp.zpZnaaKvFg + return 0 ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.HTNhJ21lon +++ mktemp ++ local LAST_ERR=/tmp/tmp.yDBaQYsdwq ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.HTNhJ21lon ++ cat /tmp/tmp.yDBaQYsdwq ++ rm /tmp/tmp.HTNhJ21lon /tmp/tmp.yDBaQYsdwq ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2221-abd79966-3-cluster2 --namespace=tls-issue-cert-manager-5478 ++ mktemp + local LAST_OUT=/tmp/tmp.tVyEmvfIr8 ++ mktemp + local LAST_ERR=/tmp/tmp.sFMwen5H02 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2221-abd79966-3-cluster2 --namespace=tls-issue-cert-manager-5478 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.tVyEmvfIr8 Context "gke_cloud-dev-112233_us-central1-a_jen-pxc-2221-abd79966-3-cluster2" modified. + cat /tmp/tmp.sFMwen5H02 + rm /tmp/tmp.tVyEmvfIr8 /tmp/tmp.sFMwen5H02 + return 0 + apply_secrets + desc 'create secrets for cloud storages' + set +o xtrace ----------------------------------------------------------------------------------- create secrets for cloud storages ----------------------------------------------------------------------------------- + '[' -z '' ']' + kubectl_bin apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/minio-secret.yml -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/cloud-secret.yml ++ mktemp + local LAST_OUT=/tmp/tmp.8OZ382lXAT ++ mktemp + local LAST_ERR=/tmp/tmp.VEH33Z1gME + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/minio-secret.yml -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/cloud-secret.yml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.8OZ382lXAT secret/minio-secret created secret/aws-s3-secret created secret/gcp-cs-secret created secret/azure-secret created + cat /tmp/tmp.VEH33Z1gME + rm /tmp/tmp.8OZ382lXAT /tmp/tmp.VEH33Z1gME + return 0 + cluster=some-name-tls-issue + deploy_cert_manager + desc 'deploy cert manager' + set +o xtrace ----------------------------------------------------------------------------------- deploy cert manager ----------------------------------------------------------------------------------- + kubectl_bin create namespace cert-manager ++ mktemp + local LAST_OUT=/tmp/tmp.XsXEodd1sK ++ mktemp + local LAST_ERR=/tmp/tmp.s0CZH7xq98 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace cert-manager + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.XsXEodd1sK namespace/cert-manager created + cat /tmp/tmp.s0CZH7xq98 + rm /tmp/tmp.XsXEodd1sK /tmp/tmp.s0CZH7xq98 + return 0 + kubectl_bin label namespace cert-manager certmanager.k8s.io/disable-validation=true ++ mktemp + local LAST_OUT=/tmp/tmp.bZE40BlQ9y ++ mktemp + local LAST_ERR=/tmp/tmp.mUEbTiEJ8o + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl label namespace cert-manager certmanager.k8s.io/disable-validation=true + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.bZE40BlQ9y namespace/cert-manager labeled + cat /tmp/tmp.mUEbTiEJ8o + rm /tmp/tmp.bZE40BlQ9y /tmp/tmp.mUEbTiEJ8o + return 0 + kubectl_bin apply -f https://github.com/jetstack/cert-manager/releases/download/v1.18.2/cert-manager.yaml --validate=false ++ mktemp + local LAST_OUT=/tmp/tmp.0mr83vH2bG ++ mktemp + local LAST_ERR=/tmp/tmp.ea6Y647EHq + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f https://github.com/jetstack/cert-manager/releases/download/v1.18.2/cert-manager.yaml --validate=false + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.0mr83vH2bG namespace/cert-manager configured customresourcedefinition.apiextensions.k8s.io/certificaterequests.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/certificates.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/challenges.acme.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/clusterissuers.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/issuers.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/orders.acme.cert-manager.io unchanged serviceaccount/cert-manager-cainjector created serviceaccount/cert-manager created serviceaccount/cert-manager-webhook created clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-cluster-view unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-view unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-edit unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews unchanged role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection unchanged role.rbac.authorization.k8s.io/cert-manager:leaderelection unchanged role.rbac.authorization.k8s.io/cert-manager-tokenrequest created role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving created rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection unchanged rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection unchanged rolebinding.rbac.authorization.k8s.io/cert-manager-cert-manager-tokenrequest created rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving created service/cert-manager-cainjector created service/cert-manager created service/cert-manager-webhook created deployment.apps/cert-manager-cainjector created deployment.apps/cert-manager created deployment.apps/cert-manager-webhook created mutatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook configured validatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook configured + cat /tmp/tmp.ea6Y647EHq Warning: resource namespaces/cert-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by kubectl apply. kubectl apply should only be used on resources created declaratively by either kubectl create --save-config or kubectl apply. The missing annotation will be patched automatically. + rm /tmp/tmp.0mr83vH2bG /tmp/tmp.ea6Y647EHq + return 0 + '[' '' == 4.10 ']' + sleep 70 + desc 'create pxc cluster' + set +o xtrace ----------------------------------------------------------------------------------- create pxc cluster ----------------------------------------------------------------------------------- + spinup_pxc some-name-tls-issue /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml 3 10 /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/secrets_without_tls.yml /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/client.yml + local cluster=some-name-tls-issue + local config=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local size=3 + local sleep=10 + local secretsFile=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/secrets_without_tls.yml + local pxcClientFile=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/client.yml + local port=3306 + desc 'create first PXC cluster' + set +o xtrace ----------------------------------------------------------------------------------- create first PXC cluster ----------------------------------------------------------------------------------- + kubectl_bin apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/secrets_without_tls.yml ++ mktemp + local LAST_OUT=/tmp/tmp.121HqBtlKJ ++ mktemp + local LAST_ERR=/tmp/tmp.ENxOmdNEqR + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/conf/secrets_without_tls.yml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.121HqBtlKJ secret/my-cluster-secrets created + cat /tmp/tmp.ENxOmdNEqR + rm /tmp/tmp.121HqBtlKJ /tmp/tmp.ENxOmdNEqR + return 0 + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/client.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/client.yml + local pvc_name= + '[' -z '' ']' + kubectl_bin apply -f - + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/client.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/client.yml + local pvc_name= ++ mktemp + local LAST_OUT=/tmp/tmp.ZdZw3QoWEM + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-5478~ + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#apply:.*#apply: Never#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2221-abd79966#' + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' ++ mktemp + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/client.yml + local LAST_ERR=/tmp/tmp.onOoH1sxLk + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.ZdZw3QoWEM deployment.apps/pxc-client created + cat /tmp/tmp.onOoH1sxLk + rm /tmp/tmp.ZdZw3QoWEM /tmp/tmp.onOoH1sxLk + return 0 + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local pvc_name= + '[' -z '' ']' + kubectl_bin apply -f - + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local pvc_name= ++ mktemp + local LAST_OUT=/tmp/tmp.53mQWCaZER + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' ++ mktemp + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' + /usr/bin/sed -e 's#apply:.*#apply: Never#' + local LAST_ERR=/tmp/tmp.knTjbkQSqH + local exit_status=0 + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2221-abd79966#' + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-5478~ + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.53mQWCaZER perconaxtradbcluster.pxc.percona.com/some-name-tls-issue created + cat /tmp/tmp.knTjbkQSqH + rm /tmp/tmp.53mQWCaZER /tmp/tmp.knTjbkQSqH + return 0 + desc 'check if all 3 Pods started' + set +o xtrace ----------------------------------------------------------------------------------- check if all 3 Pods started ----------------------------------------------------------------------------------- ++ get_proxy some-name-tls-issue ++ local target_cluster=some-name-tls-issue +++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++ mktemp +++ local LAST_OUT=/tmp/tmp.lU8iGGCloX ++++ mktemp +++ local LAST_ERR=/tmp/tmp.VwRtp0AF9H +++ local exit_status=0 ++++ seq 0 2 +++ for i in '$(seq 0 2)' +++ set +e +++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++ exit_status=0 +++ set -e +++ '[' 0 '!=' 0 ']' +++ break +++ cat /tmp/tmp.lU8iGGCloX +++ cat /tmp/tmp.VwRtp0AF9H +++ rm /tmp/tmp.lU8iGGCloX /tmp/tmp.VwRtp0AF9H +++ return 0 ++ [[ false == \t\r\u\e ]] +++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' ++++ mktemp +++ local LAST_OUT=/tmp/tmp.yHpWKB1GCC ++++ mktemp +++ local LAST_ERR=/tmp/tmp.40sibpP4Qu +++ local exit_status=0 ++++ seq 0 2 +++ for i in '$(seq 0 2)' +++ set +e +++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' +++ exit_status=0 +++ set -e +++ '[' 0 '!=' 0 ']' +++ break +++ cat /tmp/tmp.yHpWKB1GCC +++ cat /tmp/tmp.40sibpP4Qu +++ rm /tmp/tmp.yHpWKB1GCC /tmp/tmp.40sibpP4Qu +++ return 0 ++ [[ true == \t\r\u\e ]] ++ echo some-name-tls-issue-proxysql ++ return + local proxy=some-name-tls-issue-proxysql + kubectl_bin wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-5478 ++ mktemp + local LAST_OUT=/tmp/tmp.Dty34mDSh3 ++ mktemp + local LAST_ERR=/tmp/tmp.qCPUfdZueH + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-5478 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-5478 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-5478 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + cat /tmp/tmp.Dty34mDSh3 + cat /tmp/tmp.qCPUfdZueH error: no matching resources found + rm /tmp/tmp.Dty34mDSh3 /tmp/tmp.qCPUfdZueH + return 1 + true + wait_for_running some-name-tls-issue-proxysql 1 + local name=some-name-tls-issue-proxysql + let last_pod=0 + : + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 0 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-proxysql-0 480 + local pod=some-name-tls-issue-proxysql-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-proxysql-0 ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' + local container=proxysql + set +o xtrace pod/some-name-tls-issue-proxysql-0 condition met waiting for pod/some-name-tls-issue-proxysql-0 to become Ready.Ok + wait_for_running some-name-tls-issue-pxc 3 + local name=some-name-tls-issue-pxc + let last_pod=2 + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 2 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-0 480 + local pod=some-name-tls-issue-pxc-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-0 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-0 condition met waiting for pod/some-name-tls-issue-pxc-0 to become Ready.Ok + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-1 480 + local pod=some-name-tls-issue-pxc-1 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-1 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-1 condition met waiting for pod/some-name-tls-issue-pxc-1 to become Ready.Ok + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-2 480 + local pod=some-name-tls-issue-pxc-2 + local max_retry=480 + local ns= ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ echo some-name-tls-issue-pxc-2 + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-2 condition met waiting for pod/some-name-tls-issue-pxc-2 to become Ready.Ok + sleep 10 ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.secretsName}' + local secret_name=my-cluster-secrets ++ getSecretData my-cluster-secrets root ++ local secretName=my-cluster-secrets ++ local dataKey=root ++ base64 --decode ++ kubectl_bin get secrets/my-cluster-secrets '--template={{.data.root}}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.yf84UiBQsM +++ mktemp ++ local LAST_ERR=/tmp/tmp.hOyRiQljSo ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/my-cluster-secrets '--template={{.data.root}}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.yf84UiBQsM ++ cat /tmp/tmp.hOyRiQljSo ++ rm /tmp/tmp.yf84UiBQsM /tmp/tmp.hOyRiQljSo ++ return 0 + local root_pass=root_password + desc 'write data' + set +o xtrace ----------------------------------------------------------------------------------- write data ----------------------------------------------------------------------------------- + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'CREATE DATABASE IF NOT EXISTS myApp; use myApp; CREATE TABLE IF NOT EXISTS myApp (id int PRIMARY KEY) ;' '-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' + local 'command=CREATE DATABASE IF NOT EXISTS myApp; use myApp; CREATE TABLE IF NOT EXISTS myApp (id int PRIMARY KEY) ;' + local 'uri=-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.qyCIK0epnf +++ mktemp ++ local LAST_ERR=/tmp/tmp.DQ8wpEOIiS ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.qyCIK0epnf ++ cat /tmp/tmp.DQ8wpEOIiS ++ rm /tmp/tmp.qyCIK0epnf /tmp/tmp.DQ8wpEOIiS ++ return 0 + client_pod=pxc-client-7fc6775547-t847f + wait_pod pxc-client-7fc6775547-t847f + local pod=pxc-client-7fc6775547-t847f + local max_retry=480 + local ns= ++ echo pxc-client-7fc6775547-t847f ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-7fc6775547-t847f condition met waiting for pod/pxc-client-7fc6775547-t847f to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + run_mysql 'INSERT myApp.myApp (id) VALUES (100500)' '-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' + local 'command=INSERT myApp.myApp (id) VALUES (100500)' + local 'uri=-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.M21VqiIURq +++ mktemp ++ local LAST_ERR=/tmp/tmp.dfK8H6eGGm ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.M21VqiIURq ++ cat /tmp/tmp.dfK8H6eGGm ++ rm /tmp/tmp.M21VqiIURq /tmp/tmp.dfK8H6eGGm ++ return 0 + client_pod=pxc-client-7fc6775547-t847f + wait_pod pxc-client-7fc6775547-t847f + local pod=pxc-client-7fc6775547-t847f + local max_retry=480 + local ns= ++ echo pxc-client-7fc6775547-t847f ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' + local container= + set +o xtrace pod/pxc-client-7fc6775547-t847f condition met waiting for pod/pxc-client-7fc6775547-t847f to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + sleep 30 ++ seq 0 2 + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.pmEFLSjp90 +++ mktemp ++ local LAST_ERR=/tmp/tmp.KvvPgFPmEi ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.pmEFLSjp90 ++ cat /tmp/tmp.KvvPgFPmEi ++ rm /tmp/tmp.pmEFLSjp90 /tmp/tmp.KvvPgFPmEi ++ return 0 + client_pod=pxc-client-7fc6775547-t847f + wait_pod pxc-client-7fc6775547-t847f + local pod=pxc-client-7fc6775547-t847f + local max_retry=480 + local ns= ++ echo pxc-client-7fc6775547-t847f ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' + local container= + set +o xtrace pod/pxc-client-7fc6775547-t847f condition met waiting for pod/pxc-client-7fc6775547-t847f to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + '[' '!' -s /tmp/tmp.0Cc8ETVdEQ/select-1.sql ']' + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.0Cc8ETVdEQ/select-1.sql + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.GkxPkfZilN +++ mktemp ++ local LAST_ERR=/tmp/tmp.RASR59G1LE ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.GkxPkfZilN ++ cat /tmp/tmp.RASR59G1LE ++ rm /tmp/tmp.GkxPkfZilN /tmp/tmp.RASR59G1LE ++ return 0 + client_pod=pxc-client-7fc6775547-t847f + wait_pod pxc-client-7fc6775547-t847f + local pod=pxc-client-7fc6775547-t847f + local max_retry=480 + local ns= ++ echo pxc-client-7fc6775547-t847f ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-7fc6775547-t847f condition met waiting for pod/pxc-client-7fc6775547-t847f to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + '[' '!' -s /tmp/tmp.0Cc8ETVdEQ/select-1.sql ']' + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.0Cc8ETVdEQ/select-1.sql + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.oodfdbW1mo +++ mktemp ++ local LAST_ERR=/tmp/tmp.VcPtrNliZ8 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.oodfdbW1mo ++ cat /tmp/tmp.VcPtrNliZ8 ++ rm /tmp/tmp.oodfdbW1mo /tmp/tmp.VcPtrNliZ8 ++ return 0 + client_pod=pxc-client-7fc6775547-t847f + wait_pod pxc-client-7fc6775547-t847f + local pod=pxc-client-7fc6775547-t847f + local max_retry=480 + local ns= ++ echo pxc-client-7fc6775547-t847f ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-7fc6775547-t847f condition met waiting for pod/pxc-client-7fc6775547-t847f to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + '[' '!' -s /tmp/tmp.0Cc8ETVdEQ/select-1.sql ']' + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.0Cc8ETVdEQ/select-1.sql ++ is_keyring_plugin_in_use some-name-tls-issue ++ local cluster=some-name-tls-issue ++ kubectl_bin exec -it some-name-tls-issue-pxc-0 -c pxc -- bash -c 'cat /etc/mysql/node.cnf' ++ grep -E -o 'early-plugin-load=keyring_\w+.so' +++ mktemp ++ local LAST_OUT=/tmp/tmp.hmqLI4zMIt +++ mktemp ++ local LAST_ERR=/tmp/tmp.BTRsrcEidg ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl exec -it some-name-tls-issue-pxc-0 -c pxc -- bash -c 'cat /etc/mysql/node.cnf' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.hmqLI4zMIt ++ cat /tmp/tmp.BTRsrcEidg Unable to use a TTY - input is not a terminal or the right kind of file ++ rm /tmp/tmp.hmqLI4zMIt /tmp/tmp.BTRsrcEidg ++ return 0 + '[' '' ']' + wait_cluster_consistency some-name-tls-issue 3 2 + local cluster_name=some-name-tls-issue + local cluster_size=3 + local proxy_size=2 + '[' -z 2 ']' + desc 'wait cluster consistency' + set +o xtrace ----------------------------------------------------------------------------------- wait cluster consistency ----------------------------------------------------------------------------------- + local i=0 + local max=300 + sleep 7 + echo -n 'waiting for pxc/some-name-tls-issue to be ready' waiting for pxc/some-name-tls-issue to be ready++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.bF1iyhNTx9 +++ mktemp ++ local LAST_ERR=/tmp/tmp.yC0BlHtoza ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.bF1iyhNTx9 ++ cat /tmp/tmp.yC0BlHtoza ++ rm /tmp/tmp.bF1iyhNTx9 /tmp/tmp.yC0BlHtoza ++ return 0 + [[ ready == \r\e\a\d\y ]] ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.NqXhHDrQxA +++ mktemp ++ local LAST_ERR=/tmp/tmp.fkj3gCEw0d ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.NqXhHDrQxA ++ cat /tmp/tmp.fkj3gCEw0d ++ rm /tmp/tmp.NqXhHDrQxA /tmp/tmp.fkj3gCEw0d ++ return 0 + [[ 3 == \3 ]] +++ get_proxy_engine some-name-tls-issue +++ local cluster_name=some-name-tls-issue ++++ get_proxy some-name-tls-issue ++++ local target_cluster=some-name-tls-issue +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.VMwhnrgBWn ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.IYJSUVV6ad +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.VMwhnrgBWn +++++ cat /tmp/tmp.IYJSUVV6ad +++++ rm /tmp/tmp.VMwhnrgBWn /tmp/tmp.IYJSUVV6ad +++++ return 0 ++++ [[ false == \t\r\u\e ]] +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.5u5rp6B8pZ ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.vtGkAcOmSP +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.5u5rp6B8pZ +++++ cat /tmp/tmp.vtGkAcOmSP +++++ rm /tmp/tmp.5u5rp6B8pZ /tmp/tmp.vtGkAcOmSP +++++ return 0 ++++ [[ true == \t\r\u\e ]] ++++ echo some-name-tls-issue-proxysql ++++ return +++ local cluster_proxy=some-name-tls-issue-proxysql +++ echo proxysql ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.proxysql.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.CA3zoKV3El +++ mktemp ++ local LAST_ERR=/tmp/tmp.DFM1ky1Ulj ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.proxysql.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.CA3zoKV3El ++ cat /tmp/tmp.DFM1ky1Ulj ++ rm /tmp/tmp.CA3zoKV3El /tmp/tmp.DFM1ky1Ulj ++ return 0 + [[ 2 == \2 ]] + echo + desc 'check if certificates issued with certmanager' + set +o xtrace ----------------------------------------------------------------------------------- check if certificates issued with certmanager ----------------------------------------------------------------------------------- + tlsSecretsShouldExist some-name-tls-issue-ssl + local secretName=some-name-tls-issue-ssl + checkTLSSecret some-name-tls-issue-ssl ca.crt + local secretName=some-name-tls-issue-ssl + local dataKey=ca.crt ++ jq '.data["ca.crt"]' ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json +++ mktemp ++ local LAST_OUT=/tmp/tmp.vLXkhaUC1V +++ mktemp ++ local LAST_ERR=/tmp/tmp.MaRr40Vbar ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.vLXkhaUC1V ++ cat /tmp/tmp.MaRr40Vbar ++ rm /tmp/tmp.vLXkhaUC1V /tmp/tmp.MaRr40Vbar ++ return 0 + local 'secretData="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"' + '[' -z '"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"' ']' + checkTLSSecret some-name-tls-issue-ssl tls.crt + local secretName=some-name-tls-issue-ssl + local dataKey=tls.crt ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json ++ jq '.data["tls.crt"]' +++ mktemp ++ local LAST_OUT=/tmp/tmp.RrzgQ5dL7p +++ mktemp ++ local LAST_ERR=/tmp/tmp.51NCpJLGHq ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.RrzgQ5dL7p ++ cat /tmp/tmp.51NCpJLGHq ++ rm /tmp/tmp.RrzgQ5dL7p /tmp/tmp.51NCpJLGHq ++ return 0 + local 'secretData="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"' + '[' -z '"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"' ']' + checkTLSSecret some-name-tls-issue-ssl tls.key + local secretName=some-name-tls-issue-ssl + local dataKey=tls.key ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json +++ mktemp ++ jq '.data["tls.key"]' ++ local LAST_OUT=/tmp/tmp.8ykyZDUl6j +++ mktemp ++ local LAST_ERR=/tmp/tmp.AFHzxs9hFw ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.8ykyZDUl6j ++ cat /tmp/tmp.AFHzxs9hFw ++ rm /tmp/tmp.8ykyZDUl6j /tmp/tmp.AFHzxs9hFw ++ return 0 + local 'secretData="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"' + '[' -z '"LS0tLS1CRUdJTiBSU0EgUFJJVkFURSBLRVktLS0tLQpNSUlFb3dJQkFBS0NBUUVBd2x3QWd4KzFTYUZzS0hNRnEvNkV5Vk1weDNsTjd4M1MyR2czSSs5aCtTYnhuUE1uCm1jU1hFZU9aQVVOOEl2bllKZ0dLaVZ6elp4bDVGWXZqTmhKcUcyN2FIZjRzWFFiZStONXV6U2Q0UkxJL3FhZHYKZVRBOTZwSFdXOC9jQ21HcjNPQnJVSkQxdFpZT1ZWNlBxbjVTUExDQXpaOWxVYkszelo5UEk1MEM4T0RHSFZwaQplTk5GdzBJL0c0Q0NxQzZUMXhxQjk2cmlJNURIODI4bTNpVUtPeHNYWHZ2RHBmZXczQVhNZ09weU1HM0dyaG9RCmtqZkhBNGRrSE0xTHp0SHF4aGl0VmhoWkhnYWFlUDladVhZVG8ydUFqYldMNXZMdUxBU3lZMmNPR0dRaXd4ZjEKay9UZU9XTnFkdmZmVEpjMTJ0Mml5K1A4eUNWK3Z0TTZnMEtPRFFJREFRQUJBb0lCQUFUcGJ0RGhoUU1jbTM5bApNc1EvUFN0YVdQQ3oyZHFjYWhieWdVdzg4VUNxOFltNkltclNLMUEyTEloNTVHSDg1dS9FODdPWGdBWS93RTNoCldHZG1MVHpPdngvcGE4VVpGcHI3QWhsWXNVTXBMdzh5VGxDbGZiY1hJdS8wajViS2s1MlVKVm9tbzdNSVhRbmUKeHlvem9ZL3JsUUc5VU1IeERwQ1pnVlpBMGxGMGpYdytqVW5MeElDZk1FR2ZJWm9Oa25qRHREam02a3RRNnJXUQpEUGhVMzlGeTdBclUxam8vNEl6TktlaTRLMWZlR2pOMTZDLzZCU3kxMHVNMjVpWFQ4ajB6Sk1lT0FvUWtrNEJjCmlMQk1MRnFBbnVrcFNGekt0SVFwejV0T3hUZEpYQ0JUdXJVbk5nOTMrWThCVHJPV2tYeW9CVW9sMDB2bWpGc2EKVCtVY3RNRUNnWUVBMWF2WW5zVGl0UDJhOWpBamY4ZUQ3VTlzQmRTQUtDci9ub3pSa1F0Zi9kSXRFS1UvdTZENgp6QkRlbWRxc3pHSU93Tm8vSTEvQ2FpRTh6UjdhTDZWaTRwajBwWnF5VlBETVFpa2dJZXBwQkNCOURJOE13S0YxCm0yT2Q3RHZiYkhWbXlYbXFHTTRqZjhxT0kzYUtKQ0c1cWhaR2tpUFRoUWxkZkRZM21WTlRZRUVDZ1lFQTZOekYKSEpBd0M4ajhXb2ZYRlhsdG9ibWVMaVIxbnp2aTlqNGVJL2NLSGNtSSt1YVR5K0ZFVlk5L0NUNW1JbUZ5L1dUYwpMY2o1UXZWaGFXMkFoVVV6MHFLaENlZG50S0Q3elByNG1RU3JDdGpwck1yM080MWFNSE5xdGw3U1lWMzIxUE1NCmpzWVA3Mk5aNUFzNjluK1FoWmJXWGtMaUVXTTVrNGdvSzAyLytzMENnWUJEVjREVE1UdytUTHQ5SWRqZVdkUkQKZzhlSTR0dHRUWGY0MFdydktzV2JLcFdYYkcxMHhoeWxHaC8rSDRSY2VmOHFXdDZSV0luZWh4RXhtS3F0WDVPVgoxUjB0NEY2YUZMWmJsN2lQMStBM004SVZwalFmdGdOcDhQQ0IxcSttTkM0c0M1TkhkQmlPR3huSEpZSU9OeTdiCjQxOWtpYlFOZHRFbTU3T0lPRkhMd1FLQmdRQ3MxN25EVXM4bTREOVgzejVwNVNEWUN4UDdRZnJBZjg0ZVlzc3kKZk5yWWMxQW1rK0dlVW8zTFNHRE45ckFPMHZCc1gySUM1Z3NHaFdhUnY4TEdxVEFuSjZtSzFXV25zRnBXc3U2MQpmYjZMcGFnRkp2NU9DTVNwOC9HQWZtOS84Q1FYdW5SV3dYTHdpSGtmaUtweWJ3dFI3VDBlNkZ3dTljeTEwam1tCnN1Wk4vUUtCZ0NOWUE1STRHYnRmWTI3MFRaeVljK0xSbXkySGI3VHp0ME5hcy9LRC9zRG93SHRCcTFBSzR3NWsKVTdzdnlpRjdab0hGN0tRcFU5M2ZQeW1wZ1BGTnR3U0pWVzVYbFdOcHQrUEdjbGlKMU9xNlNidExweE1OUmk2ego4RzAyTFNGK3lFWm44R2ZjOHcrKzR2NmNFazBLbkZVV0dTWHdZL3RBc2JaMHVGVXFhd3VzCi0tLS0tRU5EIFJTQSBQUklWQVRFIEtFWS0tLS0tCg=="' ']' + desc 'check if CA issuer created' + set +o xtrace ----------------------------------------------------------------------------------- check if CA issuer created ----------------------------------------------------------------------------------- + compare_kubectl issuer/some-name-tls-issue-pxc-ca-issuer + local resource=issuer/some-name-tls-issue-pxc-ca-issuer + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer.yml + local new_result=/tmp/tmp.0Cc8ETVdEQ/issuer_some-name-tls-issue-pxc-ca-issuer.yml + desc 'compare issuer/some-name-tls-issue-pxc-ca-issuer-' + set +o xtrace ----------------------------------------------------------------------------------- compare issuer/some-name-tls-issue-pxc-ca-issuer- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.31 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ echo '1.31 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k129.yml ']' + version_gt 1.27 ++ echo '1.31 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k127.yml ']' + version_gt 1.24 ++ echo '1.31 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k124.yml ']' + version_gt 1.22 ++ echo '1.31 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k122.yml ']' + version_gt 1.21 ++ echo '1.31 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-oc.yml ']' + version_gt 1.29 ++ echo '1.31 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-aks.yml ']' + kubectl_bin get -o yaml issuer/some-name-tls-issue-pxc-ca-issuer ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-5478", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.geiGVKcLTm ++ mktemp + local LAST_ERR=/tmp/tmp.IgBhWGRQO8 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml issuer/some-name-tls-issue-pxc-ca-issuer + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.geiGVKcLTm + cat /tmp/tmp.IgBhWGRQO8 + rm /tmp/tmp.geiGVKcLTm /tmp/tmp.IgBhWGRQO8 + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer.yml /tmp/tmp.0Cc8ETVdEQ/issuer_some-name-tls-issue-pxc-ca-issuer.yml + log 'compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2025-12-01T17:50:16+0000]' compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK [2025-12-01T17:50:16+0000] compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK + desc 'check if issuer created' + set +o xtrace ----------------------------------------------------------------------------------- check if issuer created ----------------------------------------------------------------------------------- + compare_kubectl issuer/some-name-tls-issue-pxc-issuer + local resource=issuer/some-name-tls-issue-pxc-issuer + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer.yml + local new_result=/tmp/tmp.0Cc8ETVdEQ/issuer_some-name-tls-issue-pxc-issuer.yml + desc 'compare issuer/some-name-tls-issue-pxc-issuer-' + set +o xtrace ----------------------------------------------------------------------------------- compare issuer/some-name-tls-issue-pxc-issuer- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.31 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ bc -l ++ echo '1.31 >= 1.29' + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k129.yml ']' + version_gt 1.27 ++ echo '1.31 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k127.yml ']' + version_gt 1.24 ++ echo '1.31 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k124.yml ']' + version_gt 1.22 ++ echo '1.31 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k122.yml ']' + version_gt 1.21 ++ echo '1.31 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-oc.yml ']' + version_gt 1.29 ++ echo '1.31 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-aks.yml ']' + kubectl_bin get -o yaml issuer/some-name-tls-issue-pxc-issuer + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-5478", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - ++ mktemp + local LAST_OUT=/tmp/tmp.tRx8k9Hv4W ++ mktemp + local LAST_ERR=/tmp/tmp.KFS34vVrDS + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml issuer/some-name-tls-issue-pxc-issuer + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.tRx8k9Hv4W + cat /tmp/tmp.KFS34vVrDS + rm /tmp/tmp.tRx8k9Hv4W /tmp/tmp.KFS34vVrDS + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer.yml /tmp/tmp.0Cc8ETVdEQ/issuer_some-name-tls-issue-pxc-issuer.yml + log 'compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2025-12-01T17:50:18+0000]' compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK [2025-12-01T17:50:18+0000] compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK + desc 'check if certificate issued' + set +o xtrace ----------------------------------------------------------------------------------- check if certificate issued ----------------------------------------------------------------------------------- + compare_kubectl certificate/some-name-tls-issue-ssl + local resource=certificate/some-name-tls-issue-ssl + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl.yml + local new_result=/tmp/tmp.0Cc8ETVdEQ/certificate_some-name-tls-issue-ssl.yml + desc 'compare certificate/some-name-tls-issue-ssl-' + set +o xtrace ----------------------------------------------------------------------------------- compare certificate/some-name-tls-issue-ssl- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.31 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ echo '1.31 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k129.yml ']' + version_gt 1.27 ++ echo '1.31 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k127.yml ']' + version_gt 1.24 ++ echo '1.31 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k124.yml ']' + version_gt 1.22 ++ echo '1.31 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k122.yml ']' + version_gt 1.21 ++ echo '1.31 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-oc.yml ']' + version_gt 1.29 ++ echo '1.31 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-aks.yml ']' + kubectl_bin get -o yaml certificate/some-name-tls-issue-ssl ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-5478", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.DRuyA3vHT7 ++ mktemp + local LAST_ERR=/tmp/tmp.S6t3g70XGv + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml certificate/some-name-tls-issue-ssl + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.DRuyA3vHT7 + cat /tmp/tmp.S6t3g70XGv + rm /tmp/tmp.DRuyA3vHT7 /tmp/tmp.S6t3g70XGv + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl.yml /tmp/tmp.0Cc8ETVdEQ/certificate_some-name-tls-issue-ssl.yml + log 'compare_kubectl: certificate/some-name-tls-issue-ssl OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2025-12-01T17:50:19+0000]' compare_kubectl: certificate/some-name-tls-issue-ssl OK [2025-12-01T17:50:19+0000] compare_kubectl: certificate/some-name-tls-issue-ssl OK + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local pvc_name= + '[' -z '' ']' + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local pvc_name= + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + kubectl_bin apply -f - + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2221-abd79966#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' ++ mktemp + local LAST_OUT=/tmp/tmp.qC6evKRAtE + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2221/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-5478~ + /usr/bin/sed -e 's#apply:.*#apply: Never#' + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' ++ mktemp + local LAST_ERR=/tmp/tmp.hXjmBqTpBD + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.qC6evKRAtE perconaxtradbcluster.pxc.percona.com/some-name-tls-issue configured + cat /tmp/tmp.hXjmBqTpBD + rm /tmp/tmp.qC6evKRAtE /tmp/tmp.hXjmBqTpBD + return 0 + wait_for_running some-name-tls-issue-haproxy 1 + local name=some-name-tls-issue-haproxy + let last_pod=0 + : + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 0 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-haproxy-0 480 + local pod=some-name-tls-issue-haproxy-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-haproxy-0 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/some-name-tls-issue-haproxy-0 condition met waiting for pod/some-name-tls-issue-haproxy-0 to become Ready.Ok + wait_cluster_consistency some-name-tls-issue 3 2 + local cluster_name=some-name-tls-issue + local cluster_size=3 + local proxy_size=2 + '[' -z 2 ']' + desc 'wait cluster consistency' + set +o xtrace ----------------------------------------------------------------------------------- wait cluster consistency ----------------------------------------------------------------------------------- + local i=0 + local max=300 + sleep 7 + echo -n 'waiting for pxc/some-name-tls-issue to be ready' waiting for pxc/some-name-tls-issue to be ready++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.PSHkqymdJA +++ mktemp ++ local LAST_ERR=/tmp/tmp.tWMiM36OiK ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.PSHkqymdJA ++ cat /tmp/tmp.tWMiM36OiK ++ rm /tmp/tmp.PSHkqymdJA /tmp/tmp.tWMiM36OiK ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 0 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.7ibaCymMwT +++ mktemp ++ local LAST_ERR=/tmp/tmp.09fSmKF3ai ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.7ibaCymMwT ++ cat /tmp/tmp.09fSmKF3ai ++ rm /tmp/tmp.7ibaCymMwT /tmp/tmp.09fSmKF3ai ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 1 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.iPtuRnE4VA +++ mktemp ++ local LAST_ERR=/tmp/tmp.sBAS2aAqGo ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.iPtuRnE4VA ++ cat /tmp/tmp.sBAS2aAqGo ++ rm /tmp/tmp.iPtuRnE4VA /tmp/tmp.sBAS2aAqGo ++ return 0 + [[ ready == \r\e\a\d\y ]] ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.nrP3ErZpXs +++ mktemp ++ local LAST_ERR=/tmp/tmp.rbIKpYEpaS ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.nrP3ErZpXs ++ cat /tmp/tmp.rbIKpYEpaS ++ rm /tmp/tmp.nrP3ErZpXs /tmp/tmp.rbIKpYEpaS ++ return 0 + [[ 3 == \3 ]] +++ get_proxy_engine some-name-tls-issue +++ local cluster_name=some-name-tls-issue ++++ get_proxy some-name-tls-issue ++++ local target_cluster=some-name-tls-issue +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.5QcgXhqbfK ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.KybRo4Nl3b +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.5QcgXhqbfK +++++ cat /tmp/tmp.KybRo4Nl3b +++++ rm /tmp/tmp.5QcgXhqbfK /tmp/tmp.KybRo4Nl3b +++++ return 0 ++++ [[ true == \t\r\u\e ]] ++++ echo some-name-tls-issue-haproxy ++++ return +++ local cluster_proxy=some-name-tls-issue-haproxy +++ echo haproxy ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.haproxy.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.f6sEmJYZ0w +++ mktemp ++ local LAST_ERR=/tmp/tmp.QA4Bjf7GzZ ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.haproxy.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.f6sEmJYZ0w ++ cat /tmp/tmp.QA4Bjf7GzZ ++ rm /tmp/tmp.f6sEmJYZ0w /tmp/tmp.QA4Bjf7GzZ ++ return 0 + [[ 2 == \2 ]] + echo + desc 'check ssl-internal certificate using PXC' + set +o xtrace ----------------------------------------------------------------------------------- check ssl-internal certificate using PXC ----------------------------------------------------------------------------------- + check_verify_identity some-name-tls-issue-pxc + local host=some-name-tls-issue-pxc + local command=exit + local 'args=--ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' + kubectl_bin exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' ++ mktemp + local LAST_OUT=/tmp/tmp.iKNGJR8Wu8 ++ mktemp + local LAST_ERR=/tmp/tmp.WYvhaCRlaZ + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.iKNGJR8Wu8 + cat /tmp/tmp.WYvhaCRlaZ mysql: [Warning] Using a password on the command line interface can be insecure. + rm /tmp/tmp.iKNGJR8Wu8 /tmp/tmp.WYvhaCRlaZ + return 0 + desc 'check ssl-internal certificate using HAProxy' + set +o xtrace ----------------------------------------------------------------------------------- check ssl-internal certificate using HAProxy ----------------------------------------------------------------------------------- + check_verify_identity some-name-tls-issue-haproxy + local host=some-name-tls-issue-haproxy + local command=exit + local 'args=--ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' + kubectl_bin exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' ++ mktemp + local LAST_OUT=/tmp/tmp.UedEqNP7na ++ mktemp + local LAST_ERR=/tmp/tmp.4jBLyh6HKT + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.UedEqNP7na + cat /tmp/tmp.4jBLyh6HKT mysql: [Warning] Using a password on the command line interface can be insecure. + rm /tmp/tmp.UedEqNP7na /tmp/tmp.4jBLyh6HKT + return 0 + destroy tls-issue-cert-manager-5478 + local namespace=tls-issue-cert-manager-5478 + local ignore_logs=true + desc 'destroy cluster/operator and all other resources' + set +o xtrace ----------------------------------------------------------------------------------- destroy cluster/operator and all other resources ----------------------------------------------------------------------------------- + '[' true == false -o 1 == 1 ']' + grep -v level=info + sort -u + tee /tmp/tmp.0Cc8ETVdEQ/operator.log + /usr/bin/sed -r 's/"ts":[0-9.]+//; s^limits-[0-9.]+/^^g' + grep -v 'the object has been modified' + grep -v 'get backup status: Job.batch' ++ get_operator_pod ++ local label_prefix=app.kubernetes.io/ +++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -n pxc-operator +++ grep -c percona-xtradb-cluster-operator ++ local check_label=1 ++ [[ 1 -eq 0 ]] ++ kubectl_bin get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -o 'jsonpath={.items[].metadata.name}' -n pxc-operator +++ mktemp ++ local LAST_OUT=/tmp/tmp.e6pyms3Df3 +++ mktemp ++ local LAST_ERR=/tmp/tmp.Qg6afSAREw ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -o 'jsonpath={.items[].metadata.name}' -n pxc-operator ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.e6pyms3Df3 ++ cat /tmp/tmp.Qg6afSAREw ++ rm /tmp/tmp.e6pyms3Df3 /tmp/tmp.Qg6afSAREw ++ return 0 + kubectl_bin logs -n pxc-operator percona-xtradb-cluster-operator-bbcb56d74-47rtz ++ mktemp + local LAST_OUT=/tmp/tmp.kRpk761XNE ++ mktemp + local LAST_ERR=/tmp/tmp.dsQjUpHGTE + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl logs -n pxc-operator percona-xtradb-cluster-operator-bbcb56d74-47rtz + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.kRpk761XNE + cat /tmp/tmp.dsQjUpHGTE + rm /tmp/tmp.kRpk761XNE /tmp/tmp.dsQjUpHGTE + return 0 2025-12-01T17:42:40.699Z INFO setup Manager starting up {"gitCommit": "abd799666834bf5ec898319addec65137c9e717f", "gitBranch": "PR-2221-abd79966", "buildTime": "2025-12-01T15:59:26Z", "goVersion": "go1.25.4", "os": "linux", "arch": "amd64"} 2025-12-01T17:42:40.699Z INFO setup Runs on {"platform": "kubernetes", "version": "v1.31.14-gke.1033000"} 2025-12-01T17:42:40.702Z INFO setup Registering Components. 2025-12-01T17:42:41.283Z INFO controller-runtime.metrics Serving metrics server {"bindAddress": ":8080", "secure": false} 2025-12-01T17:42:41.283Z INFO controller-runtime.metrics Starting metrics server 2025-12-01T17:42:41.283Z INFO controller-runtime.webhook Registering webhook {"path": "/validate-percona-xtradbcluster"} 2025-12-01T17:42:41.283Z INFO controller-runtime.webhook Starting webhook server 2025-12-01T17:42:41.283Z INFO setup Starting the Cmd. 2025-12-01T17:42:41.283Z INFO starting server {"name": "health probe", "addr": "[::]:8081"} 2025-12-01T17:42:41.284Z INFO controller-runtime.certwatcher Starting certificate poll+watcher {"cert": "/tmp/k8s-webhook-server/serving-certs/tls.crt", "key": "/tmp/k8s-webhook-server/serving-certs/tls.key", "interval": "10s"} 2025-12-01T17:42:41.284Z INFO controller-runtime.certwatcher Updated current TLS certificate {"cert": "/tmp/k8s-webhook-server/serving-certs/tls.crt", "key": "/tmp/k8s-webhook-server/serving-certs/tls.key"} 2025-12-01T17:42:41.284Z INFO controller-runtime.webhook Serving webhook server {"host": "", "port": 9443} 2025-12-01T17:42:41.384Z INFO attempting to acquire leader lease pxc-operator/08db1feb.percona.com... 2025-12-01T17:42:41.416Z DEBUG events percona-xtradb-cluster-operator-bbcb56d74-47rtz_a57670a0-a502-4e4f-8840-9a47bfb7ebdd became leader {"type": "Normal", "object": {"kind":"Lease","namespace":"pxc-operator","name":"08db1feb.percona.com","uid":"4cdcd74b-cf95-48ea-8add-3a43fb2862f6","apiVersion":"coordination.k8s.io/v1","resourceVersion":"1764610961411119009"}, "reason": "LeaderElection"} 2025-12-01T17:42:41.416Z INFO successfully acquired lease pxc-operator/08db1feb.percona.com 2025-12-01T17:42:41.417Z INFO Starting EventSource {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup", "source": "kind source: *v1.PerconaXtraDBClusterBackup"} 2025-12-01T17:42:41.417Z INFO Starting EventSource {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "source": "kind source: *v1.PerconaXtraDBCluster"} 2025-12-01T17:42:41.417Z INFO Starting EventSource {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "source": "kind source: *v1.Secret"} 2025-12-01T17:42:41.417Z INFO Starting EventSource {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore", "source": "kind source: *v1.PerconaXtraDBClusterRestore"} 2025-12-01T17:42:41.518Z INFO Starting Controller {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup"} 2025-12-01T17:42:41.518Z INFO Starting Controller {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore"} 2025-12-01T17:42:41.518Z INFO Starting workers {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup", "worker count": 1} 2025-12-01T17:42:41.518Z INFO Starting workers {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore", "worker count": 1} 2025-12-01T17:42:41.618Z INFO Starting Controller {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster"} 2025-12-01T17:42:41.618Z INFO Starting workers {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "worker count": 1} 2025-12-01T17:44:53.943Z INFO Set CR version {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "version": "1.19.0"} 2025-12-01T17:44:54.236Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04"} 2025-12-01T17:44:57.273Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04"} 2025-12-01T17:44:57.324Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04"} 2025-12-01T17:45:00.425Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "object": "auto-some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:ConfigMap,APIVersion:v1,}"} 2025-12-01T17:45:00.542Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2025-12-01T17:45:00.580Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2025-12-01T17:45:00.637Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2025-12-01T17:45:00.681Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "object": "some-name-tls-issue-pxc-unready", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2025-12-01T17:45:00.765Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2025-12-01T17:45:00.862Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "1004b625-3670-4c9e-8651-d2930037fb04", "object": "some-name-tls-issue-proxysql-unready", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2025-12-01T17:45:01.348Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "86fe1d18-879e-41d8-b124-c6569114cc30", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2025-12-01T17:45:01.370Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "86fe1d18-879e-41d8-b124-c6569114cc30", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2025-12-01T17:46:17.484Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7", "user": "operator"} 2025-12-01T17:46:17.515Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7", "user": "monitor"} 2025-12-01T17:46:17.567Z INFO User monitor: granted privileges {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7"} 2025-12-01T17:46:17.599Z INFO monitor user privileges granted {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7"} 2025-12-01T17:46:17.627Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7", "user": "xtrabackup"} 2025-12-01T17:46:17.666Z INFO User xtrabackup: granted privileges {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7"} 2025-12-01T17:46:17.694Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7", "user": "replication"} 2025-12-01T17:46:17.702Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2e614310-9f1e-4033-917f-4c19051977e7", "err": "get primary pxc pod: not found"} 2025-12-01T17:46:22.444Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "4e4f360e-bb75-454d-8334-09ed6fd9b6b6", "err": "get primary pxc pod: not found"} 2025-12-01T17:46:27.602Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "239b4beb-07b0-402b-a5ac-858e9931e96c", "err": "get primary pxc pod: not found"} 2025-12-01T17:46:32.723Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "a4226c99-c915-4a15-b676-b36b6d70099f", "err": "get primary pxc pod: not found"} 2025-12-01T17:48:43.947Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2774bf11-1e99-4064-b169-5926055335d1", "user": "root"} 2025-12-01T17:48:44.127Z INFO update PXC version (fetched from db) {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2774bf11-1e99-4064-b169-5926055335d1", "new version": "8.0.43-34.1"} 2025-12-01T17:48:45.675Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "2774bf11-1e99-4064-b169-5926055335d1"} 2025-12-01T17:48:50.078Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "edebd24c-01fa-4f66-ba4b-b61381dc4856"} 2025-12-01T17:48:55.470Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "81d1db52-9579-4340-8239-fb8fa2ee0107"} 2025-12-01T17:49:00.758Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "0bc2afd6-ceb1-413c-838b-cb245ce481c0"} 2025-12-01T17:49:06.173Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "c173e610-b4a0-42fb-aa9b-46bba5f783ee"} 2025-12-01T17:49:11.469Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "7e325889-ea36-4592-9852-e842dc76c0aa"} 2025-12-01T17:49:16.970Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "c72c5a5d-f431-41b0-bc20-4e50eec8eda7"} 2025-12-01T17:49:22.272Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "c38c0f9b-ab00-4641-bfa3-de5eb9464b52"} 2025-12-01T17:49:27.476Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "0a34902a-0acf-44f3-b629-b58ec70f378a"} 2025-12-01T17:49:32.565Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "550948a9-af75-4b6e-b76c-a0672f1f08b9"} 2025-12-01T17:49:37.965Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "603a4efc-1a97-49e4-87ce-3ba7d4169597"} 2025-12-01T17:49:43.062Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "9026b8eb-8fe8-45cf-9d52-a7c42a730698"} 2025-12-01T17:49:48.566Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "eca48e89-3ade-4a89-94b6-a4db67615979"} 2025-12-01T17:49:53.551Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "21ec97ba-b15d-47e5-8143-67989c0de8f7"} 2025-12-01T17:49:59.064Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "3137b88d-160e-4259-808c-5ea4719cccd6"} 2025-12-01T17:50:04.374Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "ee6c24e9-7991-4a6e-ae7a-ecb860718ab9"} 2025-12-01T17:50:09.463Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "fd3bb6c5-b47f-4b04-aeb9-69be1882fd78"} 2025-12-01T17:50:15.494Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "f1edf769-d525-4238-b527-3e76417673c4"} 2025-12-01T17:50:19.980Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "ed7f7495-7de4-4344-b402-3f2a6b04fbe3"} 2025-12-01T17:50:22.774Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "25b35334-8779-4707-9379-cb4fa6949da3", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2025-12-01T17:50:22.809Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "25b35334-8779-4707-9379-cb4fa6949da3", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2025-12-01T17:50:22.864Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "25b35334-8779-4707-9379-cb4fa6949da3", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2025-12-01T17:50:22.923Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "25b35334-8779-4707-9379-cb4fa6949da3", "object": "some-name-tls-issue-haproxy-replicas", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2025-12-01T17:50:25.250Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "25b35334-8779-4707-9379-cb4fa6949da3", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.229.8:3306: connect: connection refused"} 2025-12-01T17:50:25.950Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "6e6e049e-34c2-476e-812d-06d208a8ded6", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2025-12-01T17:50:27.970Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "6e6e049e-34c2-476e-812d-06d208a8ded6", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.229.8:3306: connect: connection refused"} 2025-12-01T17:50:32.969Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "bbe2c6eb-389e-4c11-ac0e-2ff226b212d2", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.229.8:3306: connect: connection refused"} 2025-12-01T17:50:40.180Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-5478"}, "namespace": "tls-issue-cert-manager-5478", "name": "some-name-tls-issue", "reconcileID": "91ff4505-aa9a-471d-bb4f-7d704441a5f9", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.229.8:3306: connect: connection refused"} + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch pxc -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' + kubectl get pxc --all-namespaces -o wide + kubectl patch pxc -n tls-issue-cert-manager-5478 some-name-tls-issue --type=merge -p '{"metadata":{"finalizers":[]}}' perconaxtradbcluster.pxc.percona.com/some-name-tls-issue patched + kubectl_bin delete pxc --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.1AhLRvZPI2 ++ mktemp + local LAST_ERR=/tmp/tmp.lpYA8hnxbj + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.1AhLRvZPI2 perconaxtradbcluster.pxc.percona.com "some-name-tls-issue" deleted from tls-issue-cert-manager-5478 namespace + cat /tmp/tmp.lpYA8hnxbj + rm /tmp/tmp.1AhLRvZPI2 /tmp/tmp.lpYA8hnxbj + return 0 + kubectl_bin delete pxc-backup --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.oNnuGxkHLl ++ mktemp + local LAST_ERR=/tmp/tmp.2mpR8GsdXW + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-backup --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.oNnuGxkHLl No resources found + cat /tmp/tmp.2mpR8GsdXW + rm /tmp/tmp.oNnuGxkHLl /tmp/tmp.2mpR8GsdXW + return 0 + kubectl_bin delete pxc-restore --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.EbRwUlKpqs ++ mktemp + local LAST_ERR=/tmp/tmp.AtNxPZTu6b + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-restore --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.EbRwUlKpqs No resources found + cat /tmp/tmp.AtNxPZTu6b + rm /tmp/tmp.EbRwUlKpqs /tmp/tmp.AtNxPZTu6b + return 0 + kubectl_bin delete ValidatingWebhookConfiguration percona-xtradbcluster-webhook ++ mktemp + local LAST_OUT=/tmp/tmp.ViNemKXLul ++ mktemp + local LAST_ERR=/tmp/tmp.aHvBYB03t5 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete ValidatingWebhookConfiguration percona-xtradbcluster-webhook + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.ViNemKXLul validatingwebhookconfiguration.admissionregistration.k8s.io "percona-xtradbcluster-webhook" deleted + cat /tmp/tmp.aHvBYB03t5 + rm /tmp/tmp.ViNemKXLul /tmp/tmp.aHvBYB03t5 + return 0 + kubectl_bin delete -f https://github.com/jetstack/cert-manager/releases/download/v1.18.2/cert-manager.yaml + : + '[' '!' -z '' ']' + '[' -n pxc-operator ']' + rm -rf /tmp/tmp.0Cc8ETVdEQ + kubectl_bin delete --grace-period=0 --force=true namespace pxc-operator + kubectl_bin delete --grace-period=0 --force=true namespace tls-issue-cert-manager-5478 ++ mktemp + local LAST_OUT=/tmp/tmp.ChwfOsTrdv + desc 'test passed' + set +o xtrace ----------------------------------------------------------------------------------- test passed ----------------------------------------------------------------------------------- ++ mktemp + local LAST_OUT=/tmp/tmp.oQRtppt2Y5 ++ mktemp ++ mktemp + local LAST_ERR=/tmp/tmp.YLOJAZOPPA + local exit_status=0 + local LAST_ERR=/tmp/tmp.RQACzba5q2 + local exit_status=0 ++ seq 0 2 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete --grace-period=0 --force=true namespace pxc-operator + for i in '$(seq 0 2)' + set +e + kubectl delete --grace-period=0 --force=true namespace tls-issue-cert-manager-5478