Log: /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/logs/tls-issue-cert-manager-8-0.log Warning: version difference between client (1.35) and server (1.32) exceeds the supported minor version skew of +/-1 Warning: version difference between client (1.35) and server (1.32) exceeds the supported minor version skew of +/-1 + main + create_infra tls-issue-cert-manager-25495 + local ns=tls-issue-cert-manager-25495 + '[' -n pxc-operator ']' + kubectl get pxc --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch pxc -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' + kubectl patch pxc -n tls-issue-cert-manager-9229 some-name-tls-issue --type=merge -p '{"metadata":{"finalizers":[]}}' perconaxtradbcluster.pxc.percona.com/some-name-tls-issue patched + kubectl_bin delete pxc --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.F3MtpZyWXy ++ mktemp + local LAST_ERR=/tmp/tmp.ff2jRLOWaU + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.F3MtpZyWXy perconaxtradbcluster.pxc.percona.com "some-name-tls-issue" deleted from tls-issue-cert-manager-9229 namespace + cat /tmp/tmp.ff2jRLOWaU + rm /tmp/tmp.F3MtpZyWXy /tmp/tmp.ff2jRLOWaU + return 0 + kubectl_bin delete pxc-backup --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.mF4JX1Np3C ++ mktemp + local LAST_ERR=/tmp/tmp.pMxHdWq7Mm + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-backup --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.mF4JX1Np3C No resources found + cat /tmp/tmp.pMxHdWq7Mm + rm /tmp/tmp.mF4JX1Np3C /tmp/tmp.pMxHdWq7Mm + return 0 + kubectl_bin delete pxc-restore --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.2DbNw3IJQq ++ mktemp + local LAST_ERR=/tmp/tmp.K3ZKepAO3u + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-restore --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.2DbNw3IJQq No resources found + cat /tmp/tmp.K3ZKepAO3u + rm /tmp/tmp.2DbNw3IJQq /tmp/tmp.K3ZKepAO3u + return 0 + create_namespace pxc-operator + local namespace=pxc-operator + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ helm list --all-namespaces --filter chaos-mesh ++ sed s/NAMESPACE// ++ tail -n1 ++ awk '-F ' '{print $2}' + local chaos_mesh_ns= + '[' -n '' ']' ++ awk '{print $1}' ++ grep chaos-mesh ++ kubectl get MutatingWebhookConfiguration + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get ValidatingWebhookConfiguration + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep validate-auth ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ awk '{print $1}' ++ kubectl api-resources ++ grep chaos-mesh ++ kubectl get crd ++ awk '{print $1}' ++ grep chaos-mesh.org + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrolebinding ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrole ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + '[' -n '' ']' + desc 'cleaned up old namespaces pxc-operator' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up old namespaces pxc-operator ----------------------------------------------------------------------------------- + kubectl_bin delete namespace pxc-operator + xargs kubectl delete ns + grep -E -v '^kube-|^default|Terminating|pxc-operator|openshift|^gke-|^gmp-|^NAME' + kubectl_bin get ns + awk '{print$1}' ++ mktemp + local LAST_OUT=/tmp/tmp.dJbQl2SDY8 ++ mktemp ++ mktemp + local LAST_OUT=/tmp/tmp.nvXLM5sprl + local LAST_ERR=/tmp/tmp.h84CydjKMQ + local exit_status=0 ++ mktemp + local LAST_ERR=/tmp/tmp.Ckkb7XDa4A + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace pxc-operator ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get ns + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.nvXLM5sprl + cat /tmp/tmp.Ckkb7XDa4A + rm /tmp/tmp.nvXLM5sprl /tmp/tmp.Ckkb7XDa4A + return 0 namespace "cert-manager" deleted namespace "tls-issue-cert-manager-9229" deleted + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.dJbQl2SDY8 namespace "pxc-operator" deleted + cat /tmp/tmp.h84CydjKMQ + rm /tmp/tmp.dJbQl2SDY8 /tmp/tmp.h84CydjKMQ + return 0 + wait_for_delete namespace/pxc-operator + local res=namespace/pxc-operator + echo -n 'waiting for namespace/pxc-operator to be deleted' waiting for namespace/pxc-operator to be deleted+ set +o xtrace Error from server (NotFound): namespaces "pxc-operator" not found + desc 'create namespace pxc-operator' + set +o xtrace ----------------------------------------------------------------------------------- create namespace pxc-operator ----------------------------------------------------------------------------------- + kubectl_bin create namespace pxc-operator ++ mktemp + local LAST_OUT=/tmp/tmp.OjOAIl1eRJ ++ mktemp + local LAST_ERR=/tmp/tmp.UBFT28JpKP + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace pxc-operator + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.OjOAIl1eRJ namespace/pxc-operator created + cat /tmp/tmp.UBFT28JpKP + rm /tmp/tmp.OjOAIl1eRJ /tmp/tmp.UBFT28JpKP + return 0 ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.xHrQpbQmDz +++ mktemp ++ local LAST_ERR=/tmp/tmp.E5Ow2FNeLA ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.xHrQpbQmDz ++ cat /tmp/tmp.E5Ow2FNeLA ++ rm /tmp/tmp.xHrQpbQmDz /tmp/tmp.E5Ow2FNeLA ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2374-cdb67eb7-7-cluster4 --namespace=pxc-operator ++ mktemp + local LAST_OUT=/tmp/tmp.hsv4UWvnV0 ++ mktemp + local LAST_ERR=/tmp/tmp.R69lOy3vof + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2374-cdb67eb7-7-cluster4 --namespace=pxc-operator + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.hsv4UWvnV0 Context "gke_cloud-dev-112233_us-central1-a_jen-pxc-2374-cdb67eb7-7-cluster4" modified. + cat /tmp/tmp.R69lOy3vof + rm /tmp/tmp.hsv4UWvnV0 /tmp/tmp.R69lOy3vof + return 0 + deploy_operator + desc 'start PXC operator' + set +o xtrace ----------------------------------------------------------------------------------- start PXC operator ----------------------------------------------------------------------------------- + kubectl_bin apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/deploy/crd.yaml ++ mktemp + local LAST_OUT=/tmp/tmp.OqTXdJVu2N ++ mktemp + local LAST_ERR=/tmp/tmp.GCrXCOlvrR + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/deploy/crd.yaml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.OqTXdJVu2N customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusterbackups.pxc.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusterrestores.pxc.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusters.pxc.percona.com serverside-applied + cat /tmp/tmp.GCrXCOlvrR + rm /tmp/tmp.OqTXdJVu2N /tmp/tmp.GCrXCOlvrR + return 0 + '[' -n pxc-operator ']' + apply_rbac cw-rbac + local operator_namespace=pxc-operator + local rbac=cw-rbac + sed -e 's^namespace: .*^namespace: pxc-operator^' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/deploy/cw-rbac.yaml + kubectl_bin apply -f - ++ mktemp + local LAST_OUT=/tmp/tmp.LDjtoB645b ++ mktemp + local LAST_ERR=/tmp/tmp.eVNFsvV1ZH + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.LDjtoB645b clusterrole.rbac.authorization.k8s.io/percona-xtradb-cluster-operator unchanged serviceaccount/percona-xtradb-cluster-operator created clusterrolebinding.rbac.authorization.k8s.io/service-account-percona-xtradb-cluster-operator unchanged + cat /tmp/tmp.eVNFsvV1ZH + rm /tmp/tmp.LDjtoB645b /tmp/tmp.eVNFsvV1ZH + return 0 + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "LOG_LEVEL").value) = "VERBOSE"' - + sed -e 's^failureThreshold: .*^failureThreshold: 10^' + sed -e 's^image: .*^image: perconalab/percona-xtradb-cluster-operator:PR-2374-cdb67eb7^' + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "DISABLE_TELEMETRY").value) = "true"' - + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "PXCO_FEATURE_GATES").value) = ""' - + kubectl_bin apply -f - + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/deploy/cw-operator.yaml ++ mktemp + local LAST_OUT=/tmp/tmp.vFHkHAP32y ++ mktemp + local LAST_ERR=/tmp/tmp.hxvkaZUsDV + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.vFHkHAP32y deployment.apps/percona-xtradb-cluster-operator created service/percona-xtradb-cluster-operator created + cat /tmp/tmp.hxvkaZUsDV + rm /tmp/tmp.vFHkHAP32y /tmp/tmp.hxvkaZUsDV + return 0 + sleep 10 + kubectl_bin wait --for=condition=Ready pods -l app.kubernetes.io/component=operator,app.kubernetes.io/instance=percona-xtradb-cluster-operator,app.kubernetes.io/name=percona-xtradb-cluster-operator --timeout=30s ++ mktemp + local LAST_OUT=/tmp/tmp.XUUXdnv9ct ++ mktemp + local LAST_ERR=/tmp/tmp.ULHwz01Y1n + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pods -l app.kubernetes.io/component=operator,app.kubernetes.io/instance=percona-xtradb-cluster-operator,app.kubernetes.io/name=percona-xtradb-cluster-operator --timeout=30s + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.XUUXdnv9ct pod/percona-xtradb-cluster-operator-79cdd6b76b-k8rvr condition met + cat /tmp/tmp.ULHwz01Y1n + rm /tmp/tmp.XUUXdnv9ct /tmp/tmp.ULHwz01Y1n + return 0 ++ get_operator_pod ++ local label_prefix=app.kubernetes.io/ +++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -n pxc-operator +++ grep -c percona-xtradb-cluster-operator ++ local check_label=1 ++ [[ 1 -eq 0 ]] ++ jq -r '.items[] | select(.metadata.deletionTimestamp == null) | .metadata.name' ++ head -1 ++ kubectl_bin get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator +++ mktemp ++ local LAST_OUT=/tmp/tmp.Tl71uVsiEQ +++ mktemp ++ local LAST_ERR=/tmp/tmp.R7e3E612O3 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.Tl71uVsiEQ ++ cat /tmp/tmp.R7e3E612O3 ++ rm /tmp/tmp.Tl71uVsiEQ /tmp/tmp.R7e3E612O3 ++ return 0 + wait_pod percona-xtradb-cluster-operator-79cdd6b76b-k8rvr 480 pxc-operator + local pod=percona-xtradb-cluster-operator-79cdd6b76b-k8rvr + local max_retry=480 + local ns=pxc-operator ++ echo percona-xtradb-cluster-operator-79cdd6b76b-k8rvr ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/percona-xtradb-cluster-operator-79cdd6b76b-k8rvr condition met waiting for pod/percona-xtradb-cluster-operator-79cdd6b76b-k8rvr to become Ready.Ok + sleep 3 + create_namespace tls-issue-cert-manager-25495 + local namespace=tls-issue-cert-manager-25495 + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ helm list --all-namespaces --filter chaos-mesh ++ tail -n1 ++ awk '-F ' '{print $2}' ++ sed s/NAMESPACE// + local chaos_mesh_ns= + '[' -n '' ']' ++ awk '{print $1}' ++ grep chaos-mesh ++ kubectl get MutatingWebhookConfiguration + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep validate-auth ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl api-resources ++ awk '{print $1}' ++ grep chaos-mesh ++ grep chaos-mesh.org ++ kubectl get crd ++ awk '{print $1}' + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get clusterrolebinding + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get clusterrole + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + grep -E -v '^kube-|^default|Terminating|pxc-operator|openshift|^gke-|^gmp-|^NAME' + '[' -n '' ']' + desc 'cleaned up old namespaces tls-issue-cert-manager-25495' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up old namespaces tls-issue-cert-manager-25495 ----------------------------------------------------------------------------------- + kubectl_bin delete namespace tls-issue-cert-manager-25495 ++ mktemp + awk '{print$1}' + local LAST_OUT=/tmp/tmp.nVA2JON25V + kubectl_bin get ns ++ mktemp ++ mktemp + local LAST_ERR=/tmp/tmp.iL3URwBe85 + local exit_status=0 ++ seq 0 2 + local LAST_OUT=/tmp/tmp.WRcUQL1H0w ++ mktemp + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-25495 + local LAST_ERR=/tmp/tmp.wd0wy5XpSL + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get ns + xargs kubectl delete ns + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-25495 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.WRcUQL1H0w + cat /tmp/tmp.wd0wy5XpSL + rm /tmp/tmp.WRcUQL1H0w /tmp/tmp.wd0wy5XpSL + return 0 error: resource(s) were provided, but no name was specified + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-25495 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + cat /tmp/tmp.nVA2JON25V + cat /tmp/tmp.iL3URwBe85 Error from server (NotFound): namespaces "tls-issue-cert-manager-25495" not found + rm /tmp/tmp.nVA2JON25V /tmp/tmp.iL3URwBe85 + return 1 + : + wait_for_delete namespace/tls-issue-cert-manager-25495 + local res=namespace/tls-issue-cert-manager-25495 + echo -n 'waiting for namespace/tls-issue-cert-manager-25495 to be deleted' waiting for namespace/tls-issue-cert-manager-25495 to be deleted+ set +o xtrace Error from server (NotFound): namespaces "tls-issue-cert-manager-25495" not found + desc 'create namespace tls-issue-cert-manager-25495' + set +o xtrace ----------------------------------------------------------------------------------- create namespace tls-issue-cert-manager-25495 ----------------------------------------------------------------------------------- + kubectl_bin create namespace tls-issue-cert-manager-25495 ++ mktemp + local LAST_OUT=/tmp/tmp.V1us7kPBJl ++ mktemp + local LAST_ERR=/tmp/tmp.1khMdqxzt5 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace tls-issue-cert-manager-25495 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.V1us7kPBJl namespace/tls-issue-cert-manager-25495 created + cat /tmp/tmp.1khMdqxzt5 + rm /tmp/tmp.V1us7kPBJl /tmp/tmp.1khMdqxzt5 + return 0 ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.m8XuIboec8 +++ mktemp ++ local LAST_ERR=/tmp/tmp.PaGfrEOAeH ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.m8XuIboec8 ++ cat /tmp/tmp.PaGfrEOAeH ++ rm /tmp/tmp.m8XuIboec8 /tmp/tmp.PaGfrEOAeH ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2374-cdb67eb7-7-cluster4 --namespace=tls-issue-cert-manager-25495 ++ mktemp + local LAST_OUT=/tmp/tmp.BecESVU3hZ ++ mktemp + local LAST_ERR=/tmp/tmp.bAzxo00US6 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2374-cdb67eb7-7-cluster4 --namespace=tls-issue-cert-manager-25495 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.BecESVU3hZ Context "gke_cloud-dev-112233_us-central1-a_jen-pxc-2374-cdb67eb7-7-cluster4" modified. + cat /tmp/tmp.bAzxo00US6 + rm /tmp/tmp.BecESVU3hZ /tmp/tmp.bAzxo00US6 + return 0 + apply_secrets + desc 'create secrets for cloud storages' + set +o xtrace ----------------------------------------------------------------------------------- create secrets for cloud storages ----------------------------------------------------------------------------------- + '[' -z '' ']' + kubectl_bin apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/minio-secret.yml -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/cloud-secret.yml ++ mktemp + local LAST_OUT=/tmp/tmp.5CmKulNLjR ++ mktemp + local LAST_ERR=/tmp/tmp.RIJB6URpAc + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/minio-secret.yml -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/cloud-secret.yml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.5CmKulNLjR secret/minio-secret created secret/aws-s3-secret created secret/do-spaces-secret created secret/gcp-cs-secret created secret/azure-secret created + cat /tmp/tmp.RIJB6URpAc + rm /tmp/tmp.5CmKulNLjR /tmp/tmp.RIJB6URpAc + return 0 + cluster=some-name-tls-issue + deploy_cert_manager + desc 'deploy cert manager' + set +o xtrace ----------------------------------------------------------------------------------- deploy cert manager ----------------------------------------------------------------------------------- + kubectl_bin create namespace cert-manager ++ mktemp + local LAST_OUT=/tmp/tmp.Juq1jzl8EJ ++ mktemp + local LAST_ERR=/tmp/tmp.gZG3TaV1iX + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace cert-manager + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.Juq1jzl8EJ namespace/cert-manager created + cat /tmp/tmp.gZG3TaV1iX + rm /tmp/tmp.Juq1jzl8EJ /tmp/tmp.gZG3TaV1iX + return 0 + kubectl_bin label namespace cert-manager certmanager.k8s.io/disable-validation=true ++ mktemp + local LAST_OUT=/tmp/tmp.KjMIiZoXWu ++ mktemp + local LAST_ERR=/tmp/tmp.uPmYu1CQAG + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl label namespace cert-manager certmanager.k8s.io/disable-validation=true + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.KjMIiZoXWu namespace/cert-manager labeled + cat /tmp/tmp.uPmYu1CQAG + rm /tmp/tmp.KjMIiZoXWu /tmp/tmp.uPmYu1CQAG + return 0 + kubectl_bin apply -f https://github.com/jetstack/cert-manager/releases/download/v1.19.2/cert-manager.yaml --validate=false ++ mktemp + local LAST_OUT=/tmp/tmp.AvNAqhCWDZ ++ mktemp + local LAST_ERR=/tmp/tmp.6IYJftVDu0 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f https://github.com/jetstack/cert-manager/releases/download/v1.19.2/cert-manager.yaml --validate=false + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.AvNAqhCWDZ namespace/cert-manager configured customresourcedefinition.apiextensions.k8s.io/challenges.acme.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/orders.acme.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/certificaterequests.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/certificates.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/clusterissuers.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/issuers.cert-manager.io unchanged serviceaccount/cert-manager-cainjector created serviceaccount/cert-manager created serviceaccount/cert-manager-webhook created clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-cluster-view unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-view unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-edit unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews unchanged role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection unchanged role.rbac.authorization.k8s.io/cert-manager:leaderelection unchanged role.rbac.authorization.k8s.io/cert-manager-tokenrequest created role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving created rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection unchanged rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection unchanged rolebinding.rbac.authorization.k8s.io/cert-manager-tokenrequest created rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving created service/cert-manager-cainjector created service/cert-manager created service/cert-manager-webhook created deployment.apps/cert-manager-cainjector created deployment.apps/cert-manager created deployment.apps/cert-manager-webhook created mutatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook configured validatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook configured + cat /tmp/tmp.6IYJftVDu0 Warning: resource namespaces/cert-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by kubectl apply. kubectl apply should only be used on resources created declaratively by either kubectl create --save-config or kubectl apply. The missing annotation will be patched automatically. + rm /tmp/tmp.AvNAqhCWDZ /tmp/tmp.6IYJftVDu0 + return 0 + '[' '' == 4.10 ']' + sleep 70 + desc 'create pxc cluster' + set +o xtrace ----------------------------------------------------------------------------------- create pxc cluster ----------------------------------------------------------------------------------- + spinup_pxc some-name-tls-issue /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml 3 10 /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/secrets_without_tls.yml /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/client.yml + local cluster=some-name-tls-issue + local config=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local size=3 + local sleep=10 + local secretsFile=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/secrets_without_tls.yml + local pxcClientFile=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/client.yml + local port=3306 + desc 'create first PXC cluster' + set +o xtrace ----------------------------------------------------------------------------------- create first PXC cluster ----------------------------------------------------------------------------------- + kubectl_bin apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/secrets_without_tls.yml ++ mktemp + local LAST_OUT=/tmp/tmp.bWRCAQjFD5 ++ mktemp + local LAST_ERR=/tmp/tmp.gmm0U5wmYd + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/conf/secrets_without_tls.yml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.bWRCAQjFD5 secret/my-cluster-secrets created + cat /tmp/tmp.gmm0U5wmYd + rm /tmp/tmp.bWRCAQjFD5 /tmp/tmp.gmm0U5wmYd + return 0 + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/client.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/client.yml + local pvc_name= + '[' -z '' ']' + kubectl_bin apply -f - + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/client.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/client.yml + local pvc_name= + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' + /usr/bin/sed -e 's#apply:.*#apply: Never#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-25495~ + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2374-cdb67eb7#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/client.yml ++ mktemp + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + local LAST_OUT=/tmp/tmp.roMoIVyTon + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' ++ mktemp + local LAST_ERR=/tmp/tmp.2fr2tcxnbH + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.roMoIVyTon deployment.apps/pxc-client created + cat /tmp/tmp.2fr2tcxnbH + rm /tmp/tmp.roMoIVyTon /tmp/tmp.2fr2tcxnbH + return 0 + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local pvc_name= + '[' -z '' ']' + kubectl_bin apply -f - + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local pvc_name= + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' + /usr/bin/sed -e 's#apply:.*#apply: Never#' + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-25495~ + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2374-cdb67eb7#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' ++ mktemp + local LAST_OUT=/tmp/tmp.VW918QN9lI ++ mktemp + local LAST_ERR=/tmp/tmp.fGrV1OLLlx + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.VW918QN9lI perconaxtradbcluster.pxc.percona.com/some-name-tls-issue created + cat /tmp/tmp.fGrV1OLLlx + rm /tmp/tmp.VW918QN9lI /tmp/tmp.fGrV1OLLlx + return 0 + desc 'check if all 3 Pods started' + set +o xtrace ----------------------------------------------------------------------------------- check if all 3 Pods started ----------------------------------------------------------------------------------- ++ get_proxy some-name-tls-issue ++ local target_cluster=some-name-tls-issue +++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++ mktemp +++ local LAST_OUT=/tmp/tmp.iY5sKUeEtA ++++ mktemp +++ local LAST_ERR=/tmp/tmp.cRiy3QsXvB +++ local exit_status=0 ++++ seq 0 2 +++ for i in '$(seq 0 2)' +++ set +e +++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++ exit_status=0 +++ set -e +++ '[' 0 '!=' 0 ']' +++ break +++ cat /tmp/tmp.iY5sKUeEtA +++ cat /tmp/tmp.cRiy3QsXvB +++ rm /tmp/tmp.iY5sKUeEtA /tmp/tmp.cRiy3QsXvB +++ return 0 ++ [[ false == \t\r\u\e ]] +++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' ++++ mktemp +++ local LAST_OUT=/tmp/tmp.nMW5Dtrkjx ++++ mktemp +++ local LAST_ERR=/tmp/tmp.XhwZRPs4xc +++ local exit_status=0 ++++ seq 0 2 +++ for i in '$(seq 0 2)' +++ set +e +++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' +++ exit_status=0 +++ set -e +++ '[' 0 '!=' 0 ']' +++ break +++ cat /tmp/tmp.nMW5Dtrkjx +++ cat /tmp/tmp.XhwZRPs4xc +++ rm /tmp/tmp.nMW5Dtrkjx /tmp/tmp.XhwZRPs4xc +++ return 0 ++ [[ true == \t\r\u\e ]] ++ echo some-name-tls-issue-proxysql ++ return + local proxy=some-name-tls-issue-proxysql + kubectl_bin wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-25495 ++ mktemp + local LAST_OUT=/tmp/tmp.I0hMFZI0W8 ++ mktemp + local LAST_ERR=/tmp/tmp.UGURrVdWYB + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-25495 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-25495 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-25495 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + cat /tmp/tmp.I0hMFZI0W8 + cat /tmp/tmp.UGURrVdWYB error: no matching resources found + rm /tmp/tmp.I0hMFZI0W8 /tmp/tmp.UGURrVdWYB + return 1 + true + wait_for_running some-name-tls-issue-proxysql 1 + local name=some-name-tls-issue-proxysql + let last_pod=0 + : + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 0 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-proxysql-0 480 + local pod=some-name-tls-issue-proxysql-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-proxysql-0 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=proxysql + set +o xtrace pod/some-name-tls-issue-proxysql-0 condition met waiting for pod/some-name-tls-issue-proxysql-0 to become Ready.Ok + wait_for_running some-name-tls-issue-pxc 3 + local name=some-name-tls-issue-pxc + let last_pod=2 + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 2 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-0 480 + local pod=some-name-tls-issue-pxc-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-0 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-0 condition met waiting for pod/some-name-tls-issue-pxc-0 to become Ready.Ok + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-1 480 + local pod=some-name-tls-issue-pxc-1 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-1 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-1 condition met waiting for pod/some-name-tls-issue-pxc-1 to become Ready.Ok + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-2 480 + local pod=some-name-tls-issue-pxc-2 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-2 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-2 condition met waiting for pod/some-name-tls-issue-pxc-2 to become Ready.Ok + sleep 10 ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.secretsName}' + local secret_name=my-cluster-secrets ++ getSecretData my-cluster-secrets root ++ local secretName=my-cluster-secrets ++ local dataKey=root ++ kubectl_bin get secrets/my-cluster-secrets '--template={{.data.root}}' +++ mktemp ++ base64 --decode ++ local LAST_OUT=/tmp/tmp.xPadJvU58Z +++ mktemp ++ local LAST_ERR=/tmp/tmp.8l1hrVakDh ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/my-cluster-secrets '--template={{.data.root}}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.xPadJvU58Z ++ cat /tmp/tmp.8l1hrVakDh ++ rm /tmp/tmp.xPadJvU58Z /tmp/tmp.8l1hrVakDh ++ return 0 + local root_pass=root_password + desc 'write data' + set +o xtrace ----------------------------------------------------------------------------------- write data ----------------------------------------------------------------------------------- + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'CREATE DATABASE IF NOT EXISTS myApp; use myApp; CREATE TABLE IF NOT EXISTS myApp (id int PRIMARY KEY) ;' '-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' + local 'command=CREATE DATABASE IF NOT EXISTS myApp; use myApp; CREATE TABLE IF NOT EXISTS myApp (id int PRIMARY KEY) ;' + local 'uri=-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.2D3PDt5cKK +++ mktemp ++ local LAST_ERR=/tmp/tmp.of83soA0zy ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.2D3PDt5cKK ++ cat /tmp/tmp.of83soA0zy ++ rm /tmp/tmp.2D3PDt5cKK /tmp/tmp.of83soA0zy ++ return 0 + client_pod=pxc-client-64c657cf9f-2dq27 + wait_pod pxc-client-64c657cf9f-2dq27 + local pod=pxc-client-64c657cf9f-2dq27 + local max_retry=480 + local ns= ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ echo pxc-client-64c657cf9f-2dq27 ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2dq27 condition met waiting for pod/pxc-client-64c657cf9f-2dq27 to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + run_mysql 'INSERT myApp.myApp (id) VALUES (100500)' '-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' + local 'command=INSERT myApp.myApp (id) VALUES (100500)' + local 'uri=-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.x2cy0Lnd99 +++ mktemp ++ local LAST_ERR=/tmp/tmp.Feg39zYbA7 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.x2cy0Lnd99 ++ cat /tmp/tmp.Feg39zYbA7 ++ rm /tmp/tmp.x2cy0Lnd99 /tmp/tmp.Feg39zYbA7 ++ return 0 + client_pod=pxc-client-64c657cf9f-2dq27 + wait_pod pxc-client-64c657cf9f-2dq27 + local pod=pxc-client-64c657cf9f-2dq27 + local max_retry=480 + local ns= ++ echo pxc-client-64c657cf9f-2dq27 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2dq27 condition met waiting for pod/pxc-client-64c657cf9f-2dq27 to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + sleep 30 ++ seq 0 2 + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.ULyrgTIDno +++ mktemp ++ local LAST_ERR=/tmp/tmp.PQb8qjgK7Z ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.ULyrgTIDno ++ cat /tmp/tmp.PQb8qjgK7Z ++ rm /tmp/tmp.ULyrgTIDno /tmp/tmp.PQb8qjgK7Z ++ return 0 + client_pod=pxc-client-64c657cf9f-2dq27 + wait_pod pxc-client-64c657cf9f-2dq27 + local pod=pxc-client-64c657cf9f-2dq27 + local max_retry=480 + local ns= ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' ++ echo pxc-client-64c657cf9f-2dq27 + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2dq27 condition met waiting for pod/pxc-client-64c657cf9f-2dq27 to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + [[ ! -s /tmp/tmp.7ZtiCZI4Qw/select-1.sql ]] ++ grep 'Unknown MySQL server host' /tmp/tmp.7ZtiCZI4Qw/select-1.sql + [[ -n '' ]] + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.7ZtiCZI4Qw/select-1.sql + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.vqC8iaPqEx +++ mktemp ++ local LAST_ERR=/tmp/tmp.CTX2QF4oKf ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.vqC8iaPqEx ++ cat /tmp/tmp.CTX2QF4oKf ++ rm /tmp/tmp.vqC8iaPqEx /tmp/tmp.CTX2QF4oKf ++ return 0 + client_pod=pxc-client-64c657cf9f-2dq27 + wait_pod pxc-client-64c657cf9f-2dq27 + local pod=pxc-client-64c657cf9f-2dq27 + local max_retry=480 + local ns= ++ echo pxc-client-64c657cf9f-2dq27 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2dq27 condition met waiting for pod/pxc-client-64c657cf9f-2dq27 to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + [[ ! -s /tmp/tmp.7ZtiCZI4Qw/select-1.sql ]] ++ grep 'Unknown MySQL server host' /tmp/tmp.7ZtiCZI4Qw/select-1.sql + [[ -n '' ]] + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.7ZtiCZI4Qw/select-1.sql + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.87xjOSKd1G +++ mktemp ++ local LAST_ERR=/tmp/tmp.MuuZzvVG1q ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.87xjOSKd1G ++ cat /tmp/tmp.MuuZzvVG1q ++ rm /tmp/tmp.87xjOSKd1G /tmp/tmp.MuuZzvVG1q ++ return 0 + client_pod=pxc-client-64c657cf9f-2dq27 + wait_pod pxc-client-64c657cf9f-2dq27 + local pod=pxc-client-64c657cf9f-2dq27 + local max_retry=480 + local ns= ++ echo pxc-client-64c657cf9f-2dq27 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2dq27 condition met waiting for pod/pxc-client-64c657cf9f-2dq27 to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + [[ ! -s /tmp/tmp.7ZtiCZI4Qw/select-1.sql ]] ++ grep 'Unknown MySQL server host' /tmp/tmp.7ZtiCZI4Qw/select-1.sql + [[ -n '' ]] + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.7ZtiCZI4Qw/select-1.sql + is_keyring_plugin_in_use some-name-tls-issue + local cluster=some-name-tls-issue + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + grep -E -o 'early-plugin-load=keyring_\w+.so' + kubectl exec some-name-tls-issue-pxc-0 -c pxc -- bash -c 'cat /etc/mysql/node.cnf' + return 1 + wait_cluster_consistency some-name-tls-issue 3 2 + local cluster_name=some-name-tls-issue + local cluster_size=3 + local proxy_size=2 + '[' -z 2 ']' + desc 'wait cluster consistency' + set +o xtrace ----------------------------------------------------------------------------------- wait cluster consistency ----------------------------------------------------------------------------------- + local i=0 + local max=300 + sleep 7 + echo -n 'waiting for pxc/some-name-tls-issue to be ready' waiting for pxc/some-name-tls-issue to be ready++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.g6rjTqqE06 +++ mktemp ++ local LAST_ERR=/tmp/tmp.4i3sYojH6t ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.g6rjTqqE06 ++ cat /tmp/tmp.4i3sYojH6t ++ rm /tmp/tmp.g6rjTqqE06 /tmp/tmp.4i3sYojH6t ++ return 0 + [[ ready == \r\e\a\d\y ]] ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.eKmketedPg +++ mktemp ++ local LAST_ERR=/tmp/tmp.CJSXFFvb75 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.eKmketedPg ++ cat /tmp/tmp.CJSXFFvb75 ++ rm /tmp/tmp.eKmketedPg /tmp/tmp.CJSXFFvb75 ++ return 0 + [[ 3 == \3 ]] +++ get_proxy_engine some-name-tls-issue +++ local cluster_name=some-name-tls-issue ++++ get_proxy some-name-tls-issue ++++ local target_cluster=some-name-tls-issue +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.5035MDflOg ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.S3ys1EEKxO +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.5035MDflOg +++++ cat /tmp/tmp.S3ys1EEKxO +++++ rm /tmp/tmp.5035MDflOg /tmp/tmp.S3ys1EEKxO +++++ return 0 ++++ [[ false == \t\r\u\e ]] +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.7G7K1s3Y2I ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.8VysUjnSrY +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.7G7K1s3Y2I +++++ cat /tmp/tmp.8VysUjnSrY +++++ rm /tmp/tmp.7G7K1s3Y2I /tmp/tmp.8VysUjnSrY +++++ return 0 ++++ [[ true == \t\r\u\e ]] ++++ echo some-name-tls-issue-proxysql ++++ return +++ local cluster_proxy=some-name-tls-issue-proxysql +++ echo proxysql ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.proxysql.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.NLgBYo5ozY +++ mktemp ++ local LAST_ERR=/tmp/tmp.YZlCQ3QxB8 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.proxysql.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.NLgBYo5ozY ++ cat /tmp/tmp.YZlCQ3QxB8 ++ rm /tmp/tmp.NLgBYo5ozY /tmp/tmp.YZlCQ3QxB8 ++ return 0 + [[ 2 == \2 ]] + echo + desc 'check if certificates issued with certmanager' + set +o xtrace ----------------------------------------------------------------------------------- check if certificates issued with certmanager ----------------------------------------------------------------------------------- + tlsSecretsShouldExist some-name-tls-issue-ssl + local secretName=some-name-tls-issue-ssl + checkTLSSecret some-name-tls-issue-ssl ca.crt + local secretName=some-name-tls-issue-ssl + local dataKey=ca.crt ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json ++ jq '.data["ca.crt"]' +++ mktemp ++ local LAST_OUT=/tmp/tmp.61vl5JT09m +++ mktemp ++ local LAST_ERR=/tmp/tmp.gcHY081wbZ ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.61vl5JT09m ++ cat /tmp/tmp.gcHY081wbZ ++ rm /tmp/tmp.61vl5JT09m /tmp/tmp.gcHY081wbZ ++ return 0 + local 'secretData="LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURFakNDQWZxZ0F3SUJBZ0lVWUtQcUdtamhhc3pXWmdVNXdhQW1DVjliTjQ4d0RRWUpLb1pJaHZjTkFRRUwKQlFBd0lURWZNQjBHQTFVRUF4TVdjMjl0WlMxdVlXMWxMWFJzY3kxcGMzTjFaUzFqWVRBZUZ3MHlOakEwTURNeApOakkwTlROYUZ3MHlPREF5TVRFd01ESTBOVE5hTUNFeEh6QWRCZ05WQkFNVEZuTnZiV1V0Ym1GdFpTMTBiSE10CmFYTnpkV1V0WTJFd2dnRWlNQTBHQ1NxR1NJYjNEUUVCQVFVQUE0SUJEd0F3Z2dFS0FvSUJBUURKY0dMbXhwVEsKZ3pxNlIvYnI2TkVtUVVKY0ZiN3RKVWEzOEpGcGRqVXM2dWYveHZtY256R3V1ZG9JVktxQnJHWFZyYUpHUlhqYQpMTTFmQ00xem1IMmtPNWJ2Rk1oODF1TTNlZ3UyenBCNnlsUC9SaStEWmhYbmVYMlVuVzBHYnZvenZDdmhGeDRPCno0OUJzVkRJWnNMYm82Q3pWOVgyazRjSnZnTGt5OEJENzVramNmUnV5Zk1KZ3hPc2YweW91Y1JkQkQvUXR0WjIKSVZNM3duVFl1NllPSFNyT0VwMTIwK0sraWZqdk5ibHN2L3JzMDVlby9seHJHQnlaVGdBaVhQc2tsRTdyK0QwUwpZdUhtS0dlRUYweFE1ZTBqUk5ueG9qVkVWdjE5MDM0cVJXOWdLWk51UjVCcFN5dm5OWFJsYmJKb1haYyt1c3N3CkVvQkJYbEVSRUhpM0FnTUJBQUdqUWpCQU1BNEdBMVVkRHdFQi93UUVBd0lDcERBUEJnTlZIUk1CQWY4RUJUQUQKQVFIL01CMEdBMVVkRGdRV0JCUTRmR1hPWGl1RzNoa2JIL1R5SkdEZjVqSmZmREFOQmdrcWhraUc5dzBCQVFzRgpBQU9DQVFFQXdoMmlHdlBLNVZXN1ZVNVkvS2M0TWlCZTJaOTBJU2g2WHc5YXU3WHVXaDBqdlFENFh4SjdZL2QxCkxJbGo4MWg2cUJwZHVqbTd1c2RTQWZwWndJaDdHei9CdDIrdUtIMU5TYStaSjFmYWk2bzd4eFZMMU9IQy9VT00KU3hqdUVvbGJVZlJjQjJQdXh1YmI4bE96Y2NlSDRtM2VMSGhGNWtvK0t1QlVwWUo0TW9mNkJVcUNjZkcxTWJhWQo1Sml3TWdYWi8yWit1ME9tdEF4WjFrWmtVb09uKzY5bk5kNDdkSDMvbExJcVNzc05oZVk1REl2RURPUmtvS0dyCksxcTZHNmk5cUJWUmkrcDhnbVV6dHVLOWtsOTcyNVNpejZnVExiaHpEWldBQkNXeWFnNUhkVXRyWHZnbDl0NHYKeVUzTlB2K1N6aVJ6UlRzcjdGZXAxbXphV2ZVMmlRPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo="' + '[' -z '"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"' ']' + checkTLSSecret some-name-tls-issue-ssl tls.crt + local secretName=some-name-tls-issue-ssl + local dataKey=tls.crt ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json +++ mktemp ++ local LAST_OUT=/tmp/tmp.vFK3wG3osl +++ mktemp ++ local LAST_ERR=/tmp/tmp.lcLdz4Ta7v ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ jq '.data["tls.crt"]' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.vFK3wG3osl ++ cat /tmp/tmp.lcLdz4Ta7v ++ rm /tmp/tmp.vFK3wG3osl /tmp/tmp.lcLdz4Ta7v ++ return 0 + local 'secretData="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"' + '[' -z '"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"' ']' + checkTLSSecret some-name-tls-issue-ssl tls.key + local secretName=some-name-tls-issue-ssl + local dataKey=tls.key ++ jq '.data["tls.key"]' ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json +++ mktemp ++ local LAST_OUT=/tmp/tmp.0U2inouSh7 +++ mktemp ++ local LAST_ERR=/tmp/tmp.A1m5puz7H0 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.0U2inouSh7 ++ cat /tmp/tmp.A1m5puz7H0 ++ rm /tmp/tmp.0U2inouSh7 /tmp/tmp.A1m5puz7H0 ++ return 0 + local 'secretData="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"' + '[' -z '"LS0tLS1CRUdJTiBSU0EgUFJJVkFURSBLRVktLS0tLQpNSUlFb1FJQkFBS0NBUUVBcXhaRG1ud2N6emk1VUpMZnRoMU5iUlRXV1V5ak14Q2JEa1BTZVIwOWQwWDZ5SFIzCk5rbkRtanlOZGw1RlJUU0NvRC9LZHNLK3JnNW0wMzRTU1h1R0l6d2VDVEhFSlNtdzZwWmx0QmY0aCtkKzAxRHYKdUMrcUw4d2hzbExTcnNtQ1htNVRGUmtSL0hrTkE1SjNXakl0KzU3WEkwYzNRd3pic2c1OUpOY2RlT1pYb0pxWQpEK0lkZ3p6dFkwT0pJOWxuZzFGWFNBZkgyaTVNWXlLOEdmajlOeXdDak4rcGZiNk5yTWxDNjdvdi8rQ2cxUUQ2CkhQS2lEY2ZrQ3l3RFhqd1RYUnAxVXNTejN4S3U1THBzNDdVNlRGL0xvSEFoQWpTVDBYZjJqQjFqc1Q5NXkyUTkKb1JldE9Cd3RkQmlYT05QQUpRaTJjWDJ3N055RG5xdlloWjZUN3dJREFRQUJBb0gvQlBRSmVYNlczbmdSUDh0NQpSVFh1VXpvcEdLa0JQY1NJbXBYVWtUU2gzanVSMmYralZkRHJCZ1NjcW5aTWZBN001b3VJMkp3V0ZsMWpiNDdyCmp6VVRZZE9uQ3ZkMDhvOXZudUtkdE5WWEw0a0x5Sm40c1NBM3J3eDJLWVphZFE5Z2VxYTNERjNMa08wZGMxZGcKMGZCbHZzVVd3TUdMVUlQRGZqY0xTbUFkTHdoL0lha3BOTGZDUDNSK0pCZ0RodUVyM1pQU1dCMWh2UW05Wi9yRwpxNHcyR2dHUmNQRE8zMitJMWx4Y2hMcm04QlRyWk1YZXJhVWptbWZoYkNCZDF5Q1lIUVNXNDhZRTNhb1JzQ0lVCitMOUdOZytKaS91ZDRvNFNlVVE5RTVydlRYQVVNbkM2NU83TStpdnRCb3h3STN6S2JVaHBQRngxd3dYSDlCSkUKcEU5aEFvR0JBTVh6Qyt0MUIzVzc0Q0MwNFJldjZld01ORG1mYXBkZkg2WDFFRStuYTZrSlY0eG9nRzgyOFNHcwpmOStkREZ4SmRWRk9nR1A4LzNzUjQ0NHFFRzA5emFBdGdoTWZuZ0RhdlRETVVUTDlWMWhrdThWQXZUWWhBRVFqCnhYWW9vYVQ0aTlRVVE3MHpwZExZVTNHNmx5TVVhSHE3T0xhNHpQRm5QeU1sVW55bi9DYTVBb0dCQU4xQ2lLTDgKZ0hJYlo4cGhQSmJ2ZmZnVUc3ckhRUkQ2eDBYUktKTDFsNFRkTFJOa0VZbmMyOHc0dW1WeUgwemx0VkZrYlZPKwo3VVVEZkVOdkZxK253UGNRUzBqeHlsdnFzeXJRYVF1ZENDNkV0TmI2YmtqWE5jcWY5MXduM09CaXNLSVM2Qmx3Cjlrc3lBdS9WME82eEpwbWtPU2F5VmFzRk0wTFR4NHhnQXp2bkFvR0FJV0R4Y3B2Q1RVVUg3eHZ4Rk5oeC9uNjAKVTc4Zzd6TjRGN2p5TGl4U0NDZnVIbHdFeER3a2Z3UWliK2VBalJOSitCTGZyWHljNi9qQlFWaXdlbXRBZ0RFTQpUUU00MW5ZTUR1MTFCNzhXZW01S0IySDZSZVZjc1NERERFQ2Z1VHk3LzJBSGFDRU1aamhhSWNSUDlmZGNBczROCkt5cVFUR2lYaWVxaU5TanlhT2tDZ1lFQWhkdjMwQ3RWQmpQQVVqY0xzZ0VJUStyZWI5eVdaOUJnZU1PMmVWcHQKcGFzdDF4cG1aZktoWTJjNmxaODZnb3BDYlJDRjkvRjltSkFvUUovWHFNT2p3WlV4QnR1SllweVdjcU9OdWNIeQpManFKTWJwbXVGakRLV2duL2EvOE9DQmMzbUR6M0ZoMEdVQVRlTWZ4MUVhR3BOTXU1Rk5sOHNaOW9jT0FhVk81CkFTY0NnWUFUR3c5Uk1rQkxaald3cW1maDB5K2JTaW51N0JrM0ZrZWcrT0crM2Zlc0tUcGthZnN3TnFLUUVWR2wKN1I4QUlnQzZRNFJlUnlkTEVKdFNHdmFTV0VpSFlyTHJuRkxsRlZNQ1gzL0V6NHF1M0lyUHZRd01pRFZzWjlqaQo2YWFPSnNaUXdNak9CNWRSUFc2WXplS2d0NmxCVHVKWDg0YVJsblgxY0FQZjRNQTRGUT09Ci0tLS0tRU5EIFJTQSBQUklWQVRFIEtFWS0tLS0tCg=="' ']' + desc 'check if CA issuer created' + set +o xtrace ----------------------------------------------------------------------------------- check if CA issuer created ----------------------------------------------------------------------------------- + compare_kubectl issuer/some-name-tls-issue-pxc-ca-issuer + local resource=issuer/some-name-tls-issue-pxc-ca-issuer + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer.yml + local new_result=/tmp/tmp.7ZtiCZI4Qw/issuer_some-name-tls-issue-pxc-ca-issuer.yml + desc 'compare issuer/some-name-tls-issue-pxc-ca-issuer-' + set +o xtrace ----------------------------------------------------------------------------------- compare issuer/some-name-tls-issue-pxc-ca-issuer- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.32 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k129.yml ']' + version_gt 1.27 ++ echo '1.32 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k127.yml ']' + version_gt 1.24 ++ echo '1.32 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k124.yml ']' + version_gt 1.22 ++ echo '1.32 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k122.yml ']' + version_gt 1.21 ++ echo '1.32 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-oc.yml ']' + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-aks.yml ']' + kubectl_bin get -o yaml issuer/some-name-tls-issue-pxc-ca-issuer ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.spec.template.spec.containers[].env[] | select(.name == "XTRABACKUP_ENABLED")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.metadata.annotations."kubernetes.digitalocean.com/load-balancer-id") | del(.metadata.annotations."service.beta.kubernetes.io/do-loadbalancer-type") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-25495", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.mbYIudYF02 ++ mktemp + local LAST_ERR=/tmp/tmp.UWXYdstKav + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml issuer/some-name-tls-issue-pxc-ca-issuer + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.mbYIudYF02 + cat /tmp/tmp.UWXYdstKav + rm /tmp/tmp.mbYIudYF02 /tmp/tmp.UWXYdstKav + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer.yml /tmp/tmp.7ZtiCZI4Qw/issuer_some-name-tls-issue-pxc-ca-issuer.yml + log 'compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2026-04-03T16:30:43+0000]' compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK [2026-04-03T16:30:43+0000] compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK + desc 'check if issuer created' + set +o xtrace ----------------------------------------------------------------------------------- check if issuer created ----------------------------------------------------------------------------------- + compare_kubectl issuer/some-name-tls-issue-pxc-issuer + local resource=issuer/some-name-tls-issue-pxc-issuer + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer.yml + local new_result=/tmp/tmp.7ZtiCZI4Qw/issuer_some-name-tls-issue-pxc-issuer.yml + desc 'compare issuer/some-name-tls-issue-pxc-issuer-' + set +o xtrace ----------------------------------------------------------------------------------- compare issuer/some-name-tls-issue-pxc-issuer- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ bc -l ++ echo '1.32 >= 1.33' + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ bc -l ++ echo '1.32 >= 1.29' + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k129.yml ']' + version_gt 1.27 ++ bc -l ++ echo '1.32 >= 1.27' + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k127.yml ']' + version_gt 1.24 ++ echo '1.32 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k124.yml ']' + version_gt 1.22 ++ echo '1.32 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k122.yml ']' + version_gt 1.21 ++ bc -l ++ echo '1.32 >= 1.21' + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-oc.yml ']' + version_gt 1.29 ++ bc -l ++ echo '1.32 >= 1.29' + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-aks.yml ']' + kubectl_bin get -o yaml issuer/some-name-tls-issue-pxc-issuer ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.spec.template.spec.containers[].env[] | select(.name == "XTRABACKUP_ENABLED")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.metadata.annotations."kubernetes.digitalocean.com/load-balancer-id") | del(.metadata.annotations."service.beta.kubernetes.io/do-loadbalancer-type") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-25495", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.iVEZwaAWnO ++ mktemp + local LAST_ERR=/tmp/tmp.TOgMfGcqmC + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml issuer/some-name-tls-issue-pxc-issuer + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.iVEZwaAWnO + cat /tmp/tmp.TOgMfGcqmC + rm /tmp/tmp.iVEZwaAWnO /tmp/tmp.TOgMfGcqmC + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer.yml /tmp/tmp.7ZtiCZI4Qw/issuer_some-name-tls-issue-pxc-issuer.yml + log 'compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2026-04-03T16:30:44+0000]' compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK [2026-04-03T16:30:44+0000] compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK + desc 'check if certificate issued' + set +o xtrace ----------------------------------------------------------------------------------- check if certificate issued ----------------------------------------------------------------------------------- + compare_kubectl certificate/some-name-tls-issue-ssl + local resource=certificate/some-name-tls-issue-ssl + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl.yml + local new_result=/tmp/tmp.7ZtiCZI4Qw/certificate_some-name-tls-issue-ssl.yml + desc 'compare certificate/some-name-tls-issue-ssl-' + set +o xtrace ----------------------------------------------------------------------------------- compare certificate/some-name-tls-issue-ssl- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.32 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k129.yml ']' + version_gt 1.27 ++ echo '1.32 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k127.yml ']' + version_gt 1.24 ++ echo '1.32 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k124.yml ']' + version_gt 1.22 ++ echo '1.32 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k122.yml ']' + version_gt 1.21 ++ echo '1.32 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-oc.yml ']' + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-aks.yml ']' + kubectl_bin get -o yaml certificate/some-name-tls-issue-ssl ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.spec.template.spec.containers[].env[] | select(.name == "XTRABACKUP_ENABLED")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.metadata.annotations."kubernetes.digitalocean.com/load-balancer-id") | del(.metadata.annotations."service.beta.kubernetes.io/do-loadbalancer-type") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-25495", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.dK2P1VnmKq ++ mktemp + local LAST_ERR=/tmp/tmp.fQTPlAdxr3 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml certificate/some-name-tls-issue-ssl + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.dK2P1VnmKq + cat /tmp/tmp.fQTPlAdxr3 + rm /tmp/tmp.dK2P1VnmKq /tmp/tmp.fQTPlAdxr3 + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl.yml /tmp/tmp.7ZtiCZI4Qw/certificate_some-name-tls-issue-ssl.yml + log 'compare_kubectl: certificate/some-name-tls-issue-ssl OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2026-04-03T16:30:45+0000]' compare_kubectl: certificate/some-name-tls-issue-ssl OK [2026-04-03T16:30:45+0000] compare_kubectl: certificate/some-name-tls-issue-ssl OK + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local pvc_name= + '[' -z '' ']' + kubectl_bin apply -f - + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local pvc_name= + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2374/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml ++ mktemp + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + local LAST_OUT=/tmp/tmp.vhGAwClObv + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' ++ mktemp + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2374-cdb67eb7#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-25495~ + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' + /usr/bin/sed -e 's#apply:.*#apply: Never#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' + local LAST_ERR=/tmp/tmp.j8l5l5vO71 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.vhGAwClObv perconaxtradbcluster.pxc.percona.com/some-name-tls-issue configured + cat /tmp/tmp.j8l5l5vO71 + rm /tmp/tmp.vhGAwClObv /tmp/tmp.j8l5l5vO71 + return 0 + wait_for_running some-name-tls-issue-haproxy 1 + local name=some-name-tls-issue-haproxy + let last_pod=0 + : + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 0 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-haproxy-0 480 + local pod=some-name-tls-issue-haproxy-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-haproxy-0 ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' + local container= + set +o xtrace pod/some-name-tls-issue-haproxy-0 condition met waiting for pod/some-name-tls-issue-haproxy-0 to become Ready.Ok + wait_cluster_consistency some-name-tls-issue 3 2 + local cluster_name=some-name-tls-issue + local cluster_size=3 + local proxy_size=2 + '[' -z 2 ']' + desc 'wait cluster consistency' + set +o xtrace ----------------------------------------------------------------------------------- wait cluster consistency ----------------------------------------------------------------------------------- + local i=0 + local max=300 + sleep 7 + echo -n 'waiting for pxc/some-name-tls-issue to be ready' waiting for pxc/some-name-tls-issue to be ready++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.D2W70qgR4D +++ mktemp ++ local LAST_ERR=/tmp/tmp.GeGdHCY0f9 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.D2W70qgR4D ++ cat /tmp/tmp.GeGdHCY0f9 ++ rm /tmp/tmp.D2W70qgR4D /tmp/tmp.GeGdHCY0f9 ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 0 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.yzMr01dng8 +++ mktemp ++ local LAST_ERR=/tmp/tmp.uyFBrBNyzv ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.yzMr01dng8 ++ cat /tmp/tmp.uyFBrBNyzv ++ rm /tmp/tmp.yzMr01dng8 /tmp/tmp.uyFBrBNyzv ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 1 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.9p4PrtwqzG +++ mktemp ++ local LAST_ERR=/tmp/tmp.1CysvLDd4q ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.9p4PrtwqzG ++ cat /tmp/tmp.1CysvLDd4q ++ rm /tmp/tmp.9p4PrtwqzG /tmp/tmp.1CysvLDd4q ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 2 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.wMimINTip2 +++ mktemp ++ local LAST_ERR=/tmp/tmp.X6AJZP1Wkz ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.wMimINTip2 ++ cat /tmp/tmp.X6AJZP1Wkz ++ rm /tmp/tmp.wMimINTip2 /tmp/tmp.X6AJZP1Wkz ++ return 0 + [[ ready == \r\e\a\d\y ]] ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.DtpDXsSJQK +++ mktemp ++ local LAST_ERR=/tmp/tmp.KWZdOMl4Hy ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.DtpDXsSJQK ++ cat /tmp/tmp.KWZdOMl4Hy ++ rm /tmp/tmp.DtpDXsSJQK /tmp/tmp.KWZdOMl4Hy ++ return 0 + [[ 3 == \3 ]] +++ get_proxy_engine some-name-tls-issue +++ local cluster_name=some-name-tls-issue ++++ get_proxy some-name-tls-issue ++++ local target_cluster=some-name-tls-issue +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.wjiNvzoBdL ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.j703BL1tUq +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.wjiNvzoBdL +++++ cat /tmp/tmp.j703BL1tUq +++++ rm /tmp/tmp.wjiNvzoBdL /tmp/tmp.j703BL1tUq +++++ return 0 ++++ [[ true == \t\r\u\e ]] ++++ echo some-name-tls-issue-haproxy ++++ return +++ local cluster_proxy=some-name-tls-issue-haproxy +++ echo haproxy ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.haproxy.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.ZSDgB9RkYq +++ mktemp ++ local LAST_ERR=/tmp/tmp.lla8Y6H2xw ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.haproxy.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.ZSDgB9RkYq ++ cat /tmp/tmp.lla8Y6H2xw ++ rm /tmp/tmp.ZSDgB9RkYq /tmp/tmp.lla8Y6H2xw ++ return 0 + [[ 2 == \2 ]] + echo + desc 'check ssl-internal certificate using PXC' + set +o xtrace ----------------------------------------------------------------------------------- check ssl-internal certificate using PXC ----------------------------------------------------------------------------------- + check_verify_identity some-name-tls-issue-pxc + local host=some-name-tls-issue-pxc + local command=exit + local 'args=--ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' + kubectl_bin exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' ++ mktemp + local LAST_OUT=/tmp/tmp.QGQSy7miNe ++ mktemp + local LAST_ERR=/tmp/tmp.XC36f0puGB + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.QGQSy7miNe + cat /tmp/tmp.XC36f0puGB mysql: [Warning] Using a password on the command line interface can be insecure. + rm /tmp/tmp.QGQSy7miNe /tmp/tmp.XC36f0puGB + return 0 + desc 'check ssl-internal certificate using HAProxy' + set +o xtrace ----------------------------------------------------------------------------------- check ssl-internal certificate using HAProxy ----------------------------------------------------------------------------------- + check_verify_identity some-name-tls-issue-haproxy + local host=some-name-tls-issue-haproxy + local command=exit + local 'args=--ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' + kubectl_bin exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' ++ mktemp + local LAST_OUT=/tmp/tmp.Y0tjJyjadQ ++ mktemp + local LAST_ERR=/tmp/tmp.nNd37yoFBs + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.Y0tjJyjadQ + cat /tmp/tmp.nNd37yoFBs mysql: [Warning] Using a password on the command line interface can be insecure. + rm /tmp/tmp.Y0tjJyjadQ /tmp/tmp.nNd37yoFBs + return 0 + destroy tls-issue-cert-manager-25495 + local namespace=tls-issue-cert-manager-25495 + local ignore_logs=true + [[ 0 == 1 ]] + desc 'destroy cluster/operator and all other resources' + set +o xtrace ----------------------------------------------------------------------------------- destroy cluster/operator and all other resources ----------------------------------------------------------------------------------- + '[' true == false -o 1 == 1 ']' + grep -v level=info ++ get_operator_pod + grep -v 'the object has been modified' ++ local label_prefix=app.kubernetes.io/ + /usr/bin/sed -r 's/"ts":[0-9.]+//; s^limits-[0-9.]+/^^g' + tee /tmp/tmp.7ZtiCZI4Qw/operator.log + sort -u +++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -n pxc-operator +++ grep -c percona-xtradb-cluster-operator + grep -v 'get backup status: Job.batch' ++ local check_label=1 ++ [[ 1 -eq 0 ]] ++ kubectl_bin get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator ++ head -1 +++ mktemp ++ jq -r '.items[] | select(.metadata.deletionTimestamp == null) | .metadata.name' ++ local LAST_OUT=/tmp/tmp.0K1mnFCxVv +++ mktemp ++ local LAST_ERR=/tmp/tmp.45YRinlWnA ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.0K1mnFCxVv ++ cat /tmp/tmp.45YRinlWnA ++ rm /tmp/tmp.0K1mnFCxVv /tmp/tmp.45YRinlWnA ++ return 0 + kubectl_bin logs -n pxc-operator percona-xtradb-cluster-operator-79cdd6b76b-k8rvr ++ mktemp + local LAST_OUT=/tmp/tmp.QYbKEdDe8F ++ mktemp + local LAST_ERR=/tmp/tmp.jo9PbxyWSN + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl logs -n pxc-operator percona-xtradb-cluster-operator-79cdd6b76b-k8rvr + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.QYbKEdDe8F + cat /tmp/tmp.jo9PbxyWSN + rm /tmp/tmp.QYbKEdDe8F /tmp/tmp.jo9PbxyWSN + return 0 2026-04-03T16:22:41.746Z INFO setup Manager starting up {"gitCommit": "cdb67eb70ed5b83303e7584784bb6b0df0ec26aa", "gitBranch": "PR-2374-cdb67eb7", "buildTime": "2026-04-03T12:54:08Z", "goVersion": "go1.25.8", "os": "linux", "arch": "amd64"} 2026-04-03T16:22:41.746Z INFO setup Runs on {"platform": "kubernetes", "version": "v1.32.13-gke.1147000"} 2026-04-03T16:22:41.747Z INFO setup Feature gates {"PXCO_FEATURE_GATES": "", "enabled": ""} 2026-04-03T16:22:41.750Z INFO setup Registering Components. 2026-04-03T16:22:42.520Z INFO controller-runtime.metrics Serving metrics server {"bindAddress": ":8080", "secure": false} 2026-04-03T16:22:42.520Z INFO controller-runtime.metrics Starting metrics server 2026-04-03T16:22:42.520Z INFO controller-runtime.webhook Registering webhook {"path": "/validate-percona-xtradbcluster"} 2026-04-03T16:22:42.520Z INFO setup Starting the Cmd. 2026-04-03T16:22:42.520Z INFO starting server {"name": "health probe", "addr": "[::]:8081"} 2026-04-03T16:22:42.521Z INFO controller-runtime.certwatcher Starting certificate poll+watcher {"cert": "/tmp/k8s-webhook-server/serving-certs/tls.crt", "key": "/tmp/k8s-webhook-server/serving-certs/tls.key", "interval": "10s"} 2026-04-03T16:22:42.521Z INFO controller-runtime.certwatcher Updated current TLS certificate {"cert": "/tmp/k8s-webhook-server/serving-certs/tls.crt", "key": "/tmp/k8s-webhook-server/serving-certs/tls.key"} 2026-04-03T16:22:42.521Z INFO controller-runtime.webhook Serving webhook server {"host": "", "port": 9443} 2026-04-03T16:22:42.521Z INFO controller-runtime.webhook Starting webhook server 2026-04-03T16:22:42.721Z INFO Attempting to acquire leader lease... {"lock": "pxc-operator/08db1feb.percona.com"} 2026-04-03T16:22:42.851Z DEBUG events percona-xtradb-cluster-operator-79cdd6b76b-k8rvr_0ce7aa88-56da-4582-bdb2-b2a782216d8f became leader {"type": "Normal", "object": {"kind":"Lease","namespace":"pxc-operator","name":"08db1feb.percona.com","uid":"c08bb8b0-1baa-4177-aa6d-898788b82e4e","apiVersion":"coordination.k8s.io/v1","resourceVersion":"1775233362840191009"}, "reason": "LeaderElection"} 2026-04-03T16:22:42.851Z INFO Starting EventSource {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "source": "kind source: *v1.Secret"} 2026-04-03T16:22:42.851Z INFO Successfully acquired lease {"lock": "pxc-operator/08db1feb.percona.com"} 2026-04-03T16:22:42.852Z INFO Starting EventSource {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup", "source": "kind source: *v1.PerconaXtraDBClusterBackup"} 2026-04-03T16:22:42.852Z INFO Starting EventSource {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "source": "kind source: *v1.PerconaXtraDBCluster"} 2026-04-03T16:22:42.852Z INFO Starting EventSource {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore", "source": "kind source: *v1.PerconaXtraDBClusterRestore"} 2026-04-03T16:22:43.052Z INFO Starting Controller {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster"} 2026-04-03T16:22:43.052Z INFO Starting Controller {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore"} 2026-04-03T16:22:43.052Z INFO Starting workers {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "worker count": 1} 2026-04-03T16:22:43.052Z INFO Starting workers {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore", "worker count": 1} 2026-04-03T16:22:43.053Z INFO Starting Controller {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup"} 2026-04-03T16:22:43.053Z INFO Starting workers {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup", "worker count": 1} 2026-04-03T16:24:52.857Z INFO Set CR version {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "version": "1.20.0"} 2026-04-03T16:24:53.154Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf"} 2026-04-03T16:24:56.204Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf"} 2026-04-03T16:24:56.239Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf"} 2026-04-03T16:24:59.341Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "object": "auto-some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:ConfigMap,APIVersion:v1,}"} 2026-04-03T16:24:59.470Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-04-03T16:24:59.519Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-04-03T16:24:59.576Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-04-03T16:24:59.637Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "object": "some-name-tls-issue-pxc-unready", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-04-03T16:24:59.711Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-04-03T16:24:59.825Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "1d6af837-6f88-4e87-a338-a16fcf577adf", "object": "some-name-tls-issue-proxysql-unready", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-04-03T16:25:00.731Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "2f5a9125-330b-4e73-8946-eb50f17f78de", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2026-04-03T16:25:00.763Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "2f5a9125-330b-4e73-8946-eb50f17f78de", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2026-04-03T16:26:27.926Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6", "user": "operator"} 2026-04-03T16:26:27.970Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6", "user": "monitor"} 2026-04-03T16:26:28.034Z INFO User monitor: granted privileges {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6"} 2026-04-03T16:26:28.077Z INFO monitor user privileges granted {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6"} 2026-04-03T16:26:28.130Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6", "user": "xtrabackup"} 2026-04-03T16:26:28.203Z INFO User xtrabackup: granted privileges {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6"} 2026-04-03T16:26:28.265Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6", "user": "replication"} 2026-04-03T16:26:28.274Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "72c590db-6286-4001-9337-bea0e66710e6", "err": "get primary pxc pod: not found"} 2026-04-03T16:26:33.487Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "24fd37c8-b145-4b8e-83e5-0242abdbceb8", "err": "get primary pxc pod: not found"} 2026-04-03T16:26:38.698Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "0b1699e3-e136-480b-aaf7-b2e04f83a2af", "err": "get primary pxc pod: not found"} 2026-04-03T16:29:00.414Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "4db6c19b-8bff-450e-807d-28be579f00c8", "user": "root"} 2026-04-03T16:29:00.578Z INFO update PXC version (fetched from db) {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "4db6c19b-8bff-450e-807d-28be579f00c8", "new version": "8.0.43-34.1"} 2026-04-03T16:29:02.342Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "4db6c19b-8bff-450e-807d-28be579f00c8"} 2026-04-03T16:29:08.744Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "05da06c5-4224-4425-a554-3b69fa1952aa"} 2026-04-03T16:29:14.222Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "9d850960-0bc1-4e03-b766-5ceb1ae2843c"} 2026-04-03T16:29:19.249Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "fa8a6dbd-d0cf-44e6-8e08-9f75d1b4d699"} 2026-04-03T16:29:24.950Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "c0bfeddd-fb34-4b0b-8e5f-a4f13caf2268"} 2026-04-03T16:29:30.345Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "a8d9c318-4f02-4d62-8476-974fd31df93f"} 2026-04-03T16:29:35.532Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "68da6e0c-ad88-4d5f-9a3a-4f1e12f0e57d"} 2026-04-03T16:29:40.735Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "ca36f7f7-c62b-4d7d-a9a1-e51e124d9b26"} 2026-04-03T16:29:45.923Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "cea94c40-0a92-4b15-94fd-0a36fbf239f5"} 2026-04-03T16:29:51.238Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "44653228-2af8-4617-9ac5-f77de119f14d"} 2026-04-03T16:29:56.646Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "85db26c6-e614-4c78-bdb1-a842d4397f9f"} 2026-04-03T16:30:01.943Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "5edba2ba-bfff-43cc-85be-b062d69dc6a6"} 2026-04-03T16:30:07.434Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "562e5f23-bc47-4efc-b137-9dcb61b9088b"} 2026-04-03T16:30:12.658Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "850c1d96-c87e-419d-9298-0601a71f55d2"} 2026-04-03T16:30:17.746Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "2e6c3368-0807-4a25-b111-5150f8b4a1e3"} 2026-04-03T16:30:23.241Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "0760f6db-8917-4cea-aeb3-8f642baf0971"} 2026-04-03T16:30:29.120Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "bf296043-ac02-45a3-bcf4-8159408cabbc"} 2026-04-03T16:30:33.823Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "bded19e1-03c7-457c-9435-4cc386583bf9"} 2026-04-03T16:30:39.121Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "3b1e6245-c3ba-45f9-9daa-fd08eabcfe2f"} 2026-04-03T16:30:44.443Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "e251297e-3368-460d-982e-f3f59a644e04"} 2026-04-03T16:30:50.219Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "550fa664-3885-48cc-8033-52baa2a2c737"} 2026-04-03T16:30:50.679Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "ea6a7ad4-744e-4659-a87a-0da1330b0957", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-04-03T16:30:50.731Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "ea6a7ad4-744e-4659-a87a-0da1330b0957", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-04-03T16:30:50.792Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "ea6a7ad4-744e-4659-a87a-0da1330b0957", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-04-03T16:30:50.855Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "ea6a7ad4-744e-4659-a87a-0da1330b0957", "object": "some-name-tls-issue-haproxy-replicas", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-04-03T16:30:53.374Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "ea6a7ad4-744e-4659-a87a-0da1330b0957", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.227.3:3306: connect: connection refused"} 2026-04-03T16:30:54.072Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "df96e531-c444-48ec-a071-d0e83c5706df", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2026-04-03T16:30:56.102Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "df96e531-c444-48ec-a071-d0e83c5706df", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.227.3:3306: connect: connection refused"} 2026-04-03T16:31:08.325Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-25495"}, "namespace": "tls-issue-cert-manager-25495", "name": "some-name-tls-issue", "reconcileID": "696385f8-80f1-45f6-98fa-a523beef6e0b", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.227.3:3306: connect: connection refused"} + kubectl get pxc --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch pxc -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' + kubectl patch pxc -n tls-issue-cert-manager-25495 some-name-tls-issue --type=merge -p '{"metadata":{"finalizers":[]}}' perconaxtradbcluster.pxc.percona.com/some-name-tls-issue patched + kubectl_bin delete pxc --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.BJWSipfREx ++ mktemp + local LAST_ERR=/tmp/tmp.n3dYsJ0IKJ + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.BJWSipfREx perconaxtradbcluster.pxc.percona.com "some-name-tls-issue" deleted from tls-issue-cert-manager-25495 namespace + cat /tmp/tmp.n3dYsJ0IKJ + rm /tmp/tmp.BJWSipfREx /tmp/tmp.n3dYsJ0IKJ + return 0 + kubectl_bin delete pxc-backup --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.EF6tX6kAOk ++ mktemp + local LAST_ERR=/tmp/tmp.ZMFZjpJikC + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-backup --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.EF6tX6kAOk No resources found + cat /tmp/tmp.ZMFZjpJikC + rm /tmp/tmp.EF6tX6kAOk /tmp/tmp.ZMFZjpJikC + return 0 + kubectl_bin delete pxc-restore --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.PdpCTdZ3WA ++ mktemp + local LAST_ERR=/tmp/tmp.2UAhBy14jf + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-restore --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.PdpCTdZ3WA No resources found + cat /tmp/tmp.2UAhBy14jf + rm /tmp/tmp.PdpCTdZ3WA /tmp/tmp.2UAhBy14jf + return 0 + kubectl_bin delete ValidatingWebhookConfiguration percona-xtradbcluster-webhook ++ mktemp + local LAST_OUT=/tmp/tmp.8BFZVDtRn3 ++ mktemp + local LAST_ERR=/tmp/tmp.BWpurHdBoP + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete ValidatingWebhookConfiguration percona-xtradbcluster-webhook + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.8BFZVDtRn3 validatingwebhookconfiguration.admissionregistration.k8s.io "percona-xtradbcluster-webhook" deleted + cat /tmp/tmp.BWpurHdBoP + rm /tmp/tmp.8BFZVDtRn3 /tmp/tmp.BWpurHdBoP + return 0 + kubectl_bin delete -f https://github.com/jetstack/cert-manager/releases/download/v1.19.2/cert-manager.yaml namespace "cert-manager" deleted + : + '[' '!' -z '' ']' + '[' -n pxc-operator ']' + kubectl_bin delete --grace-period=0 --force=true namespace tls-issue-cert-manager-25495 + rm -rf /tmp/tmp.7ZtiCZI4Qw + kubectl_bin delete --grace-period=0 --force=true namespace pxc-operator ++ mktemp ++ mktemp + desc 'test passed' + set +o xtrace ----------------------------------------------------------------------------------- test passed ----------------------------------------------------------------------------------- + local LAST_OUT=/tmp/tmp.ev9FLUFEe5 + local LAST_OUT=/tmp/tmp.USgXH1pdPc ++ mktemp ++ mktemp + local LAST_ERR=/tmp/tmp.VFRfEWfJm2 + local exit_status=0 + local LAST_ERR=/tmp/tmp.BWZgeoRwac + local exit_status=0 ++ seq 0 2 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + for i in '$(seq 0 2)' + set +e + kubectl delete --grace-period=0 --force=true namespace tls-issue-cert-manager-25495 + kubectl delete --grace-period=0 --force=true namespace pxc-operator