Log: /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/logs/tls-issue-cert-manager-8-0.log Warning: version difference between client (1.35) and server (1.32) exceeds the supported minor version skew of +/-1 Warning: version difference between client (1.35) and server (1.32) exceeds the supported minor version skew of +/-1 + main + create_infra tls-issue-cert-manager-19988 + local ns=tls-issue-cert-manager-19988 + '[' -n pxc-operator ']' + kubectl get pxc --all-namespaces -o wide + grep -v NAMESPACE + xargs -L 1 sh -xc 'kubectl patch pxc -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' + kubectl patch pxc -n tls-issue-cert-manager-22424 some-name-tls-issue --type=merge -p '{"metadata":{"finalizers":[]}}' perconaxtradbcluster.pxc.percona.com/some-name-tls-issue patched + kubectl_bin delete pxc --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.qlYTXj9twB ++ mktemp + local LAST_ERR=/tmp/tmp.GUDAtYIF9H + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.qlYTXj9twB perconaxtradbcluster.pxc.percona.com "some-name-tls-issue" deleted from tls-issue-cert-manager-22424 namespace + cat /tmp/tmp.GUDAtYIF9H + rm /tmp/tmp.qlYTXj9twB /tmp/tmp.GUDAtYIF9H + return 0 + kubectl_bin delete pxc-backup --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.yg5hXpKo0D ++ mktemp + local LAST_ERR=/tmp/tmp.wsNI16y53C + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-backup --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.yg5hXpKo0D No resources found + cat /tmp/tmp.wsNI16y53C + rm /tmp/tmp.yg5hXpKo0D /tmp/tmp.wsNI16y53C + return 0 + kubectl_bin delete pxc-restore --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.QnE3mjxPLv ++ mktemp + local LAST_ERR=/tmp/tmp.h3lNDIulee + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-restore --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.QnE3mjxPLv No resources found + cat /tmp/tmp.h3lNDIulee + rm /tmp/tmp.QnE3mjxPLv /tmp/tmp.h3lNDIulee + return 0 + create_namespace pxc-operator + local namespace=pxc-operator + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ helm list --all-namespaces --filter chaos-mesh ++ awk '-F ' '{print $2}' ++ sed s/NAMESPACE// ++ tail -n1 + local chaos_mesh_ns= + '[' -n '' ']' ++ awk '{print $1}' ++ grep chaos-mesh ++ kubectl get MutatingWebhookConfiguration + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ awk '{print $1}' ++ grep chaos-mesh + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ awk '{print $1}' ++ grep validate-auth + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ awk '{print $1}' ++ kubectl api-resources ++ grep chaos-mesh ++ kubectl get crd ++ grep chaos-mesh.org ++ awk '{print $1}' + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrolebinding ++ awk '{print $1}' ++ grep chaos-mesh + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ awk '{print $1}' ++ grep chaos-mesh ++ kubectl get clusterrole + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + grep -E -v '^kube-|^default|Terminating|pxc-operator|openshift|^gke-|^gmp-|^NAME' + '[' -n '' ']' + desc 'cleaned up old namespaces pxc-operator' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up old namespaces pxc-operator ----------------------------------------------------------------------------------- + kubectl_bin delete namespace pxc-operator ++ mktemp + kubectl_bin get ns ++ mktemp + local LAST_OUT=/tmp/tmp.WYxH9SYW7O + local LAST_OUT=/tmp/tmp.VrVBG95zaP ++ mktemp + xargs kubectl delete ns + local LAST_ERR=/tmp/tmp.k9HtzyPlXM + local exit_status=0 ++ mktemp + local LAST_ERR=/tmp/tmp.4UtWVP4g60 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get ns ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace pxc-operator + awk '{print$1}' + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.WYxH9SYW7O + cat /tmp/tmp.k9HtzyPlXM + rm /tmp/tmp.WYxH9SYW7O /tmp/tmp.k9HtzyPlXM + return 0 namespace "cert-manager" deleted namespace "tls-issue-cert-manager-22424" deleted + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.VrVBG95zaP namespace "pxc-operator" deleted + cat /tmp/tmp.4UtWVP4g60 + rm /tmp/tmp.VrVBG95zaP /tmp/tmp.4UtWVP4g60 + return 0 + wait_for_delete namespace/pxc-operator + local res=namespace/pxc-operator + echo -n 'waiting for namespace/pxc-operator to be deleted' waiting for namespace/pxc-operator to be deleted+ set +o xtrace Error from server (NotFound): namespaces "pxc-operator" not found + desc 'create namespace pxc-operator' + set +o xtrace ----------------------------------------------------------------------------------- create namespace pxc-operator ----------------------------------------------------------------------------------- + kubectl_bin create namespace pxc-operator ++ mktemp + local LAST_OUT=/tmp/tmp.p1T10jcf49 ++ mktemp + local LAST_ERR=/tmp/tmp.jafkg6UZ6g + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace pxc-operator + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.p1T10jcf49 namespace/pxc-operator created + cat /tmp/tmp.jafkg6UZ6g + rm /tmp/tmp.p1T10jcf49 /tmp/tmp.jafkg6UZ6g + return 0 ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.k7GB2g4Bxw +++ mktemp ++ local LAST_ERR=/tmp/tmp.qiIgctQYgE ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.k7GB2g4Bxw ++ cat /tmp/tmp.qiIgctQYgE ++ rm /tmp/tmp.k7GB2g4Bxw /tmp/tmp.qiIgctQYgE ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2409-b0dcc5e6-2-cluster6 --namespace=pxc-operator ++ mktemp + local LAST_OUT=/tmp/tmp.0kkCyk5MO9 ++ mktemp + local LAST_ERR=/tmp/tmp.KtYmrRkGUj + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2409-b0dcc5e6-2-cluster6 --namespace=pxc-operator + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.0kkCyk5MO9 Context "gke_cloud-dev-112233_us-central1-a_jen-pxc-2409-b0dcc5e6-2-cluster6" modified. + cat /tmp/tmp.KtYmrRkGUj + rm /tmp/tmp.0kkCyk5MO9 /tmp/tmp.KtYmrRkGUj + return 0 + deploy_operator + desc 'start PXC operator' + set +o xtrace ----------------------------------------------------------------------------------- start PXC operator ----------------------------------------------------------------------------------- + kubectl_bin apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/deploy/crd.yaml ++ mktemp + local LAST_OUT=/tmp/tmp.wAncJwwVvd ++ mktemp + local LAST_ERR=/tmp/tmp.wmXcv57bNy + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply --server-side --force-conflicts -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/deploy/crd.yaml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.wAncJwwVvd customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusterbackups.pxc.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusterrestores.pxc.percona.com serverside-applied customresourcedefinition.apiextensions.k8s.io/perconaxtradbclusters.pxc.percona.com serverside-applied + cat /tmp/tmp.wmXcv57bNy + rm /tmp/tmp.wAncJwwVvd /tmp/tmp.wmXcv57bNy + return 0 + '[' -n pxc-operator ']' + apply_rbac cw-rbac + local operator_namespace=pxc-operator + local rbac=cw-rbac + sed -e 's^namespace: .*^namespace: pxc-operator^' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/deploy/cw-rbac.yaml + kubectl_bin apply -f - ++ mktemp + local LAST_OUT=/tmp/tmp.aM6DuCV4eB ++ mktemp + local LAST_ERR=/tmp/tmp.FVQz6kb0dW + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.aM6DuCV4eB clusterrole.rbac.authorization.k8s.io/percona-xtradb-cluster-operator unchanged serviceaccount/percona-xtradb-cluster-operator created clusterrolebinding.rbac.authorization.k8s.io/service-account-percona-xtradb-cluster-operator unchanged + cat /tmp/tmp.FVQz6kb0dW + rm /tmp/tmp.aM6DuCV4eB /tmp/tmp.FVQz6kb0dW + return 0 + kubectl_bin apply -f - + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "PXCO_FEATURE_GATES").value) = ""' - + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "LOG_LEVEL").value) = "VERBOSE"' - + sed -e 's^image: .*^image: perconalab/percona-xtradb-cluster-operator:PR-2409-b0dcc5e6^' + yq eval '(select(.kind == "Deployment").spec.template.spec.containers[] | select(.name == "percona-xtradb-cluster-operator").env[] | select(.name == "DISABLE_TELEMETRY").value) = "true"' - + sed -e 's^failureThreshold: .*^failureThreshold: 10^' ++ mktemp + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/deploy/cw-operator.yaml + local LAST_OUT=/tmp/tmp.k0aUcCAeOP ++ mktemp + local LAST_ERR=/tmp/tmp.Nray2hvYm0 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.k0aUcCAeOP deployment.apps/percona-xtradb-cluster-operator created service/percona-xtradb-cluster-operator created + cat /tmp/tmp.Nray2hvYm0 + rm /tmp/tmp.k0aUcCAeOP /tmp/tmp.Nray2hvYm0 + return 0 + sleep 10 + kubectl_bin wait --for=condition=Ready pods -l app.kubernetes.io/component=operator,app.kubernetes.io/instance=percona-xtradb-cluster-operator,app.kubernetes.io/name=percona-xtradb-cluster-operator --timeout=30s ++ mktemp + local LAST_OUT=/tmp/tmp.qKcIfbxfzy ++ mktemp + local LAST_ERR=/tmp/tmp.ONyMKXeup5 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pods -l app.kubernetes.io/component=operator,app.kubernetes.io/instance=percona-xtradb-cluster-operator,app.kubernetes.io/name=percona-xtradb-cluster-operator --timeout=30s + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.qKcIfbxfzy pod/percona-xtradb-cluster-operator-564876bfd9-c99mt condition met + cat /tmp/tmp.ONyMKXeup5 + rm /tmp/tmp.qKcIfbxfzy /tmp/tmp.ONyMKXeup5 + return 0 ++ get_operator_pod ++ local label_prefix=app.kubernetes.io/ +++ grep -c percona-xtradb-cluster-operator +++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -n pxc-operator ++ local check_label=1 ++ [[ 1 -eq 0 ]] ++ kubectl_bin get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator +++ mktemp ++ local LAST_OUT=/tmp/tmp.bj0wLnBZpq +++ mktemp ++ head -1 ++ local LAST_ERR=/tmp/tmp.k4nUImi3JI ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator ++ jq -r '.items[] | select(.metadata.deletionTimestamp == null) | .metadata.name' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.bj0wLnBZpq ++ cat /tmp/tmp.k4nUImi3JI ++ rm /tmp/tmp.bj0wLnBZpq /tmp/tmp.k4nUImi3JI ++ return 0 + wait_pod percona-xtradb-cluster-operator-564876bfd9-c99mt 480 pxc-operator + local pod=percona-xtradb-cluster-operator-564876bfd9-c99mt + local max_retry=480 + local ns=pxc-operator ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' ++ echo percona-xtradb-cluster-operator-564876bfd9-c99mt + local container= + set +o xtrace pod/percona-xtradb-cluster-operator-564876bfd9-c99mt condition met waiting for pod/percona-xtradb-cluster-operator-564876bfd9-c99mt to become Ready.Ok + sleep 3 + create_namespace tls-issue-cert-manager-19988 + local namespace=tls-issue-cert-manager-19988 + local skip_clean_namespace= + [[ 1 == 1 ]] + [[ -z '' ]] + destroy_chaos_mesh ++ helm list --all-namespaces --filter chaos-mesh ++ tail -n1 ++ awk '-F ' '{print $2}' ++ sed s/NAMESPACE// + local chaos_mesh_ns= + '[' -n '' ']' ++ grep chaos-mesh ++ awk '{print $1}' ++ kubectl get MutatingWebhookConfiguration + timeout 30 kubectl delete MutatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ kubectl get ValidatingWebhookConfiguration ++ grep validate-auth ++ awk '{print $1}' + timeout 30 kubectl delete ValidatingWebhookConfiguration error: resource(s) were provided, but no name was specified + : ++ awk '{print $1}' ++ kubectl api-resources ++ grep chaos-mesh ++ grep chaos-mesh.org ++ kubectl get crd ++ awk '{print $1}' + timeout 30 kubectl delete crd error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrolebinding ++ awk '{print $1}' ++ grep chaos-mesh + timeout 30 kubectl delete clusterrolebinding error: resource(s) were provided, but no name was specified + : ++ kubectl get clusterrole ++ grep chaos-mesh ++ awk '{print $1}' + timeout 30 kubectl delete clusterrole error: resource(s) were provided, but no name was specified + : + desc 'cleaned up all old namespaces' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up all old namespaces ----------------------------------------------------------------------------------- + '[' -n '' ']' + desc 'cleaned up old namespaces tls-issue-cert-manager-19988' + set +o xtrace ----------------------------------------------------------------------------------- cleaned up old namespaces tls-issue-cert-manager-19988 ----------------------------------------------------------------------------------- + kubectl_bin delete namespace tls-issue-cert-manager-19988 + kubectl_bin get ns + grep -E -v '^kube-|^default|Terminating|pxc-operator|openshift|^gke-|^gmp-|^NAME' + xargs kubectl delete ns + awk '{print$1}' ++ mktemp + local LAST_OUT=/tmp/tmp.XNzPka2YJR ++ mktemp + local LAST_OUT=/tmp/tmp.ZW1ReULsaK ++ mktemp ++ mktemp + local LAST_ERR=/tmp/tmp.uRLelndnw9 + local exit_status=0 + local LAST_ERR=/tmp/tmp.cVCbdc9HRx + local exit_status=0 ++ seq 0 2 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get ns + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-19988 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-19988 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.ZW1ReULsaK + cat /tmp/tmp.cVCbdc9HRx + rm /tmp/tmp.ZW1ReULsaK /tmp/tmp.cVCbdc9HRx + return 0 error: resource(s) were provided, but no name was specified + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl delete namespace tls-issue-cert-manager-19988 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + cat /tmp/tmp.XNzPka2YJR + cat /tmp/tmp.uRLelndnw9 Error from server (NotFound): namespaces "tls-issue-cert-manager-19988" not found + rm /tmp/tmp.XNzPka2YJR /tmp/tmp.uRLelndnw9 + return 1 + : + wait_for_delete namespace/tls-issue-cert-manager-19988 + local res=namespace/tls-issue-cert-manager-19988 + echo -n 'waiting for namespace/tls-issue-cert-manager-19988 to be deleted' waiting for namespace/tls-issue-cert-manager-19988 to be deleted+ set +o xtrace Error from server (NotFound): namespaces "tls-issue-cert-manager-19988" not found + desc 'create namespace tls-issue-cert-manager-19988' + set +o xtrace ----------------------------------------------------------------------------------- create namespace tls-issue-cert-manager-19988 ----------------------------------------------------------------------------------- + kubectl_bin create namespace tls-issue-cert-manager-19988 ++ mktemp + local LAST_OUT=/tmp/tmp.Xwt8bzt29U ++ mktemp + local LAST_ERR=/tmp/tmp.Tvl3CvCLCp + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace tls-issue-cert-manager-19988 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.Xwt8bzt29U namespace/tls-issue-cert-manager-19988 created + cat /tmp/tmp.Tvl3CvCLCp + rm /tmp/tmp.Xwt8bzt29U /tmp/tmp.Tvl3CvCLCp + return 0 ++ kubectl_bin config current-context +++ mktemp ++ local LAST_OUT=/tmp/tmp.0i2ZSONLYB +++ mktemp ++ local LAST_ERR=/tmp/tmp.rI6kFag2IX ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl config current-context ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.0i2ZSONLYB ++ cat /tmp/tmp.rI6kFag2IX ++ rm /tmp/tmp.0i2ZSONLYB /tmp/tmp.rI6kFag2IX ++ return 0 + kubectl_bin config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2409-b0dcc5e6-2-cluster6 --namespace=tls-issue-cert-manager-19988 ++ mktemp + local LAST_OUT=/tmp/tmp.ABqIRv1PC3 ++ mktemp + local LAST_ERR=/tmp/tmp.0b58Gh1Jvt + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl config set-context gke_cloud-dev-112233_us-central1-a_jen-pxc-2409-b0dcc5e6-2-cluster6 --namespace=tls-issue-cert-manager-19988 + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.ABqIRv1PC3 Context "gke_cloud-dev-112233_us-central1-a_jen-pxc-2409-b0dcc5e6-2-cluster6" modified. + cat /tmp/tmp.0b58Gh1Jvt + rm /tmp/tmp.ABqIRv1PC3 /tmp/tmp.0b58Gh1Jvt + return 0 + apply_secrets + desc 'create secrets for cloud storages' + set +o xtrace ----------------------------------------------------------------------------------- create secrets for cloud storages ----------------------------------------------------------------------------------- + '[' -z '' ']' + kubectl_bin apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/minio-secret.yml -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/cloud-secret.yml ++ mktemp + local LAST_OUT=/tmp/tmp.bA3ofd6fvy ++ mktemp + local LAST_ERR=/tmp/tmp.RJZZ5TMKgC + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/minio-secret.yml -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/cloud-secret.yml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.bA3ofd6fvy secret/minio-secret created secret/aws-s3-secret created secret/do-spaces-secret created secret/gcp-cs-secret created secret/azure-secret created + cat /tmp/tmp.RJZZ5TMKgC + rm /tmp/tmp.bA3ofd6fvy /tmp/tmp.RJZZ5TMKgC + return 0 + cluster=some-name-tls-issue + deploy_cert_manager + desc 'deploy cert manager' + set +o xtrace ----------------------------------------------------------------------------------- deploy cert manager ----------------------------------------------------------------------------------- + kubectl_bin create namespace cert-manager ++ mktemp + local LAST_OUT=/tmp/tmp.HTwCztwcQ4 ++ mktemp + local LAST_ERR=/tmp/tmp.33MqLFICM9 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl create namespace cert-manager + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.HTwCztwcQ4 namespace/cert-manager created + cat /tmp/tmp.33MqLFICM9 + rm /tmp/tmp.HTwCztwcQ4 /tmp/tmp.33MqLFICM9 + return 0 + kubectl_bin label namespace cert-manager certmanager.k8s.io/disable-validation=true ++ mktemp + local LAST_OUT=/tmp/tmp.7SyS7p3eBH ++ mktemp + local LAST_ERR=/tmp/tmp.ECNayuZ8vy + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl label namespace cert-manager certmanager.k8s.io/disable-validation=true + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.7SyS7p3eBH namespace/cert-manager labeled + cat /tmp/tmp.ECNayuZ8vy + rm /tmp/tmp.7SyS7p3eBH /tmp/tmp.ECNayuZ8vy + return 0 + kubectl_bin apply -f https://github.com/jetstack/cert-manager/releases/download/v1.19.2/cert-manager.yaml --validate=false ++ mktemp + local LAST_OUT=/tmp/tmp.VBnyo7o0oc ++ mktemp + local LAST_ERR=/tmp/tmp.t2aHV4WXJF + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f https://github.com/jetstack/cert-manager/releases/download/v1.19.2/cert-manager.yaml --validate=false + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.VBnyo7o0oc namespace/cert-manager configured customresourcedefinition.apiextensions.k8s.io/challenges.acme.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/orders.acme.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/certificaterequests.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/certificates.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/clusterissuers.cert-manager.io unchanged customresourcedefinition.apiextensions.k8s.io/issuers.cert-manager.io unchanged serviceaccount/cert-manager-cainjector created serviceaccount/cert-manager created serviceaccount/cert-manager-webhook created clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-cluster-view unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-view unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-edit unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests unchanged clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests unchanged clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews unchanged role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection unchanged role.rbac.authorization.k8s.io/cert-manager:leaderelection unchanged role.rbac.authorization.k8s.io/cert-manager-tokenrequest created role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving created rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection unchanged rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection unchanged rolebinding.rbac.authorization.k8s.io/cert-manager-tokenrequest created rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving created service/cert-manager-cainjector created service/cert-manager created service/cert-manager-webhook created deployment.apps/cert-manager-cainjector created deployment.apps/cert-manager created deployment.apps/cert-manager-webhook created mutatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook configured validatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook configured + cat /tmp/tmp.t2aHV4WXJF Warning: resource namespaces/cert-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by kubectl apply. kubectl apply should only be used on resources created declaratively by either kubectl create --save-config or kubectl apply. The missing annotation will be patched automatically. + rm /tmp/tmp.VBnyo7o0oc /tmp/tmp.t2aHV4WXJF + return 0 + '[' '' == 4.10 ']' + sleep 70 + desc 'create pxc cluster' + set +o xtrace ----------------------------------------------------------------------------------- create pxc cluster ----------------------------------------------------------------------------------- + spinup_pxc some-name-tls-issue /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml 3 10 /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/secrets_without_tls.yml /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/client.yml + local cluster=some-name-tls-issue + local config=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local size=3 + local sleep=10 + local secretsFile=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/secrets_without_tls.yml + local pxcClientFile=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/client.yml + local port=3306 + desc 'create first PXC cluster' + set +o xtrace ----------------------------------------------------------------------------------- create first PXC cluster ----------------------------------------------------------------------------------- + kubectl_bin apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/secrets_without_tls.yml ++ mktemp + local LAST_OUT=/tmp/tmp.bmbxj43SFx ++ mktemp + local LAST_ERR=/tmp/tmp.pTwZkrSMlo + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/conf/secrets_without_tls.yml + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.bmbxj43SFx secret/my-cluster-secrets created + cat /tmp/tmp.pTwZkrSMlo + rm /tmp/tmp.bmbxj43SFx /tmp/tmp.pTwZkrSMlo + return 0 + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/client.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/client.yml + local pvc_name= + '[' -z '' ']' + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/client.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/client.yml + local pvc_name= + kubectl_bin apply -f - + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/client.yml ++ mktemp + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' + local LAST_OUT=/tmp/tmp.dIrFNg1spQ + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2409-b0dcc5e6#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' ++ mktemp + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-19988~ + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + local LAST_ERR=/tmp/tmp.44aST0MMfv + local exit_status=0 + /usr/bin/sed -e 's#apply:.*#apply: Never#' ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.dIrFNg1spQ deployment.apps/pxc-client created + cat /tmp/tmp.44aST0MMfv + rm /tmp/tmp.dIrFNg1spQ /tmp/tmp.44aST0MMfv + return 0 + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local pvc_name= + '[' -z '' ']' + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + local pvc_name= + kubectl_bin apply -f - + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue.yml + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' ++ mktemp + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2409-b0dcc5e6#' + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-19988~ + /usr/bin/sed -e 's#apply:.*#apply: Never#' + local LAST_OUT=/tmp/tmp.fz0LylJGlV + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' ++ mktemp + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' + local LAST_ERR=/tmp/tmp.JbEhlulvgF + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.fz0LylJGlV perconaxtradbcluster.pxc.percona.com/some-name-tls-issue created + cat /tmp/tmp.JbEhlulvgF + rm /tmp/tmp.fz0LylJGlV /tmp/tmp.JbEhlulvgF + return 0 + desc 'check if all 3 Pods started' + set +o xtrace ----------------------------------------------------------------------------------- check if all 3 Pods started ----------------------------------------------------------------------------------- ++ get_proxy some-name-tls-issue ++ local target_cluster=some-name-tls-issue +++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++ mktemp +++ local LAST_OUT=/tmp/tmp.XZmnxOeYI2 ++++ mktemp +++ local LAST_ERR=/tmp/tmp.eAKnuvQfFR +++ local exit_status=0 ++++ seq 0 2 +++ for i in '$(seq 0 2)' +++ set +e +++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++ exit_status=0 +++ set -e +++ '[' 0 '!=' 0 ']' +++ break +++ cat /tmp/tmp.XZmnxOeYI2 +++ cat /tmp/tmp.eAKnuvQfFR +++ rm /tmp/tmp.XZmnxOeYI2 /tmp/tmp.eAKnuvQfFR +++ return 0 ++ [[ false == \t\r\u\e ]] +++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' ++++ mktemp +++ local LAST_OUT=/tmp/tmp.E341gRpp10 ++++ mktemp +++ local LAST_ERR=/tmp/tmp.4N0RbjZZYQ +++ local exit_status=0 ++++ seq 0 2 +++ for i in '$(seq 0 2)' +++ set +e +++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' +++ exit_status=0 +++ set -e +++ '[' 0 '!=' 0 ']' +++ break +++ cat /tmp/tmp.E341gRpp10 +++ cat /tmp/tmp.4N0RbjZZYQ +++ rm /tmp/tmp.E341gRpp10 /tmp/tmp.4N0RbjZZYQ +++ return 0 ++ [[ true == \t\r\u\e ]] ++ echo some-name-tls-issue-proxysql ++ return + local proxy=some-name-tls-issue-proxysql + kubectl_bin wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-19988 ++ mktemp + local LAST_OUT=/tmp/tmp.xuF3lokxti ++ mktemp + local LAST_ERR=/tmp/tmp.NUjZqO1IuJ + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-19988 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-19988 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + for i in '$(seq 0 2)' + set +e + kubectl wait --for=condition=Ready pod -l app.kubernetes.io/instance=monitoring,app.kubernetes.io/managed-by=percona-xtradb-cluster-operator --timeout=300s -n tls-issue-cert-manager-19988 + exit_status=1 + set -e + '[' 1 '!=' 0 ']' + '[' 1 == 1 ']' + sleep 0 + cat /tmp/tmp.xuF3lokxti + cat /tmp/tmp.NUjZqO1IuJ error: no matching resources found + rm /tmp/tmp.xuF3lokxti /tmp/tmp.NUjZqO1IuJ + return 1 + true + wait_for_running some-name-tls-issue-proxysql 1 + local name=some-name-tls-issue-proxysql + let last_pod=0 + : + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 0 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-proxysql-0 480 + local pod=some-name-tls-issue-proxysql-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-proxysql-0 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=proxysql + set +o xtrace pod/some-name-tls-issue-proxysql-0 condition met waiting for pod/some-name-tls-issue-proxysql-0 to become Ready.Ok + wait_for_running some-name-tls-issue-pxc 3 + local name=some-name-tls-issue-pxc + let last_pod=2 + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 2 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-0 480 + local pod=some-name-tls-issue-pxc-0 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-0 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-0 condition met waiting for pod/some-name-tls-issue-pxc-0 to become Ready.Ok + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-1 480 + local pod=some-name-tls-issue-pxc-1 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-1 ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-1 condition met waiting for pod/some-name-tls-issue-pxc-1 to become Ready.Ok + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-pxc-2 480 + local pod=some-name-tls-issue-pxc-2 + local max_retry=480 + local ns= ++ echo some-name-tls-issue-pxc-2 ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container=pxc + set +o xtrace pod/some-name-tls-issue-pxc-2 condition met waiting for pod/some-name-tls-issue-pxc-2 to become Ready.Ok + sleep 10 ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.secretsName}' + local secret_name=my-cluster-secrets ++ getSecretData my-cluster-secrets root ++ local secretName=my-cluster-secrets ++ local dataKey=root ++ base64 --decode ++ kubectl_bin get secrets/my-cluster-secrets '--template={{.data.root}}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.SV9p8ZWdOE +++ mktemp ++ local LAST_ERR=/tmp/tmp.RpKPIFGsgL ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/my-cluster-secrets '--template={{.data.root}}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.SV9p8ZWdOE ++ cat /tmp/tmp.RpKPIFGsgL ++ rm /tmp/tmp.SV9p8ZWdOE /tmp/tmp.RpKPIFGsgL ++ return 0 + local root_pass=root_password + desc 'write data' + set +o xtrace ----------------------------------------------------------------------------------- write data ----------------------------------------------------------------------------------- + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'CREATE DATABASE IF NOT EXISTS myApp; use myApp; CREATE TABLE IF NOT EXISTS myApp (id int PRIMARY KEY) ;' '-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' + local 'command=CREATE DATABASE IF NOT EXISTS myApp; use myApp; CREATE TABLE IF NOT EXISTS myApp (id int PRIMARY KEY) ;' + local 'uri=-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.bIJSJz7dz9 +++ mktemp ++ local LAST_ERR=/tmp/tmp.H0NyWSS9Xn ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.bIJSJz7dz9 ++ cat /tmp/tmp.H0NyWSS9Xn ++ rm /tmp/tmp.bIJSJz7dz9 /tmp/tmp.H0NyWSS9Xn ++ return 0 + client_pod=pxc-client-64c657cf9f-2w2qq + wait_pod pxc-client-64c657cf9f-2w2qq + local pod=pxc-client-64c657cf9f-2w2qq + local max_retry=480 + local ns= ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ echo pxc-client-64c657cf9f-2w2qq ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2w2qq condition met waiting for pod/pxc-client-64c657cf9f-2w2qq to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + run_mysql 'INSERT myApp.myApp (id) VALUES (100500)' '-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' + local 'command=INSERT myApp.myApp (id) VALUES (100500)' + local 'uri=-h some-name-tls-issue-proxysql -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.ph7w9mB31L +++ mktemp ++ local LAST_ERR=/tmp/tmp.KzR4U9xMyx ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.ph7w9mB31L ++ cat /tmp/tmp.KzR4U9xMyx ++ rm /tmp/tmp.ph7w9mB31L /tmp/tmp.KzR4U9xMyx ++ return 0 + client_pod=pxc-client-64c657cf9f-2w2qq + wait_pod pxc-client-64c657cf9f-2w2qq + local pod=pxc-client-64c657cf9f-2w2qq + local max_retry=480 + local ns= ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' ++ echo pxc-client-64c657cf9f-2w2qq + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2w2qq condition met waiting for pod/pxc-client-64c657cf9f-2w2qq to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + sleep 30 ++ seq 0 2 + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-0.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.VKL6odZhnf +++ mktemp ++ local LAST_ERR=/tmp/tmp.QlmyOHmsz3 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.VKL6odZhnf ++ cat /tmp/tmp.QlmyOHmsz3 ++ rm /tmp/tmp.VKL6odZhnf /tmp/tmp.QlmyOHmsz3 ++ return 0 + client_pod=pxc-client-64c657cf9f-2w2qq + wait_pod pxc-client-64c657cf9f-2w2qq + local pod=pxc-client-64c657cf9f-2w2qq + local max_retry=480 + local ns= ++ echo pxc-client-64c657cf9f-2w2qq ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2w2qq condition met waiting for pod/pxc-client-64c657cf9f-2w2qq to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + [[ ! -s /tmp/tmp.60LnyDgxdf/select-1.sql ]] ++ grep 'Unknown MySQL server host' /tmp/tmp.60LnyDgxdf/select-1.sql + [[ -n '' ]] + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.60LnyDgxdf/select-1.sql + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-1.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.K2ACP88n2f +++ mktemp ++ local LAST_ERR=/tmp/tmp.ldIW5ReUjK ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.K2ACP88n2f ++ cat /tmp/tmp.ldIW5ReUjK ++ rm /tmp/tmp.K2ACP88n2f /tmp/tmp.ldIW5ReUjK ++ return 0 + client_pod=pxc-client-64c657cf9f-2w2qq + wait_pod pxc-client-64c657cf9f-2w2qq + local pod=pxc-client-64c657cf9f-2w2qq + local max_retry=480 + local ns= ++ echo pxc-client-64c657cf9f-2w2qq ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2w2qq condition met waiting for pod/pxc-client-64c657cf9f-2w2qq to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + [[ ! -s /tmp/tmp.60LnyDgxdf/select-1.sql ]] ++ grep 'Unknown MySQL server host' /tmp/tmp.60LnyDgxdf/select-1.sql + [[ -n '' ]] + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.60LnyDgxdf/select-1.sql + for i in '$(seq 0 $((size - 1)))' + compare_mysql_cmd select-1 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local command_id=select-1 + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1.sql + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + [[ -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1-80.sql ]] + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 5\.7 ]] + run_mysql 'SELECT * from myApp.myApp;' '-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' + local 'command=SELECT * from myApp.myApp;' + local 'uri=-h some-name-tls-issue-pxc-2.some-name-tls-issue-pxc -uroot -p'\''root_password'\'' -P3306' ++ get_client_pod ++ kubectl_bin get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.aoYVw4lj9w +++ mktemp ++ local LAST_ERR=/tmp/tmp.qQrTqssIkL ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=name=pxc-client -o 'jsonpath={.items[].metadata.name}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.aoYVw4lj9w ++ cat /tmp/tmp.qQrTqssIkL ++ rm /tmp/tmp.aoYVw4lj9w /tmp/tmp.qQrTqssIkL ++ return 0 + client_pod=pxc-client-64c657cf9f-2w2qq + wait_pod pxc-client-64c657cf9f-2w2qq + local pod=pxc-client-64c657cf9f-2w2qq + local max_retry=480 + local ns= ++ echo pxc-client-64c657cf9f-2w2qq ++ grep -E '^(pxc|proxysql)$' ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' + local container= + set +o xtrace pod/pxc-client-64c657cf9f-2w2qq condition met waiting for pod/pxc-client-64c657cf9f-2w2qq to become ReadyDefaulted container "pxc-client" out of: pxc-client, backup .Ok + set +o xtrace + [[ ! -s /tmp/tmp.60LnyDgxdf/select-1.sql ]] ++ grep 'Unknown MySQL server host' /tmp/tmp.60LnyDgxdf/select-1.sql + [[ -n '' ]] + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/select-1.sql /tmp/tmp.60LnyDgxdf/select-1.sql + is_keyring_plugin_in_use some-name-tls-issue + local cluster=some-name-tls-issue + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + kubectl exec some-name-tls-issue-pxc-0 -c pxc -- bash -c 'cat /etc/mysql/node.cnf' + grep -E -o 'early-plugin-load=keyring_\w+.so' + return 1 + wait_cluster_consistency some-name-tls-issue 3 2 + local cluster_name=some-name-tls-issue + local cluster_size=3 + local proxy_size=2 + '[' -z 2 ']' + desc 'wait cluster consistency' + set +o xtrace ----------------------------------------------------------------------------------- wait cluster consistency ----------------------------------------------------------------------------------- + local i=0 + local max=300 + sleep 7 + echo -n 'waiting for pxc/some-name-tls-issue to be ready' waiting for pxc/some-name-tls-issue to be ready++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.ta5s7w4AEJ +++ mktemp ++ local LAST_ERR=/tmp/tmp.WtXGM2fEC7 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.ta5s7w4AEJ ++ cat /tmp/tmp.WtXGM2fEC7 ++ rm /tmp/tmp.ta5s7w4AEJ /tmp/tmp.WtXGM2fEC7 ++ return 0 + [[ ready == \r\e\a\d\y ]] ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.hASbj3GkZw +++ mktemp ++ local LAST_ERR=/tmp/tmp.DtYdm9F9Fa ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.hASbj3GkZw ++ cat /tmp/tmp.DtYdm9F9Fa ++ rm /tmp/tmp.hASbj3GkZw /tmp/tmp.DtYdm9F9Fa ++ return 0 + [[ 3 == \3 ]] +++ get_proxy_engine some-name-tls-issue +++ local cluster_name=some-name-tls-issue ++++ get_proxy some-name-tls-issue ++++ local target_cluster=some-name-tls-issue +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.CwdvBdqyTT ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.9eghz2rqy3 +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.CwdvBdqyTT +++++ cat /tmp/tmp.9eghz2rqy3 +++++ rm /tmp/tmp.CwdvBdqyTT /tmp/tmp.9eghz2rqy3 +++++ return 0 ++++ [[ false == \t\r\u\e ]] +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.yevMnKHhWj ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.4Q1qFgJ5sU +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.proxysql.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.yevMnKHhWj +++++ cat /tmp/tmp.4Q1qFgJ5sU +++++ rm /tmp/tmp.yevMnKHhWj /tmp/tmp.4Q1qFgJ5sU +++++ return 0 ++++ [[ true == \t\r\u\e ]] ++++ echo some-name-tls-issue-proxysql ++++ return +++ local cluster_proxy=some-name-tls-issue-proxysql +++ echo proxysql ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.proxysql.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.HDNy4hEHCm +++ mktemp ++ local LAST_ERR=/tmp/tmp.L0MBX1LD92 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.proxysql.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.HDNy4hEHCm ++ cat /tmp/tmp.L0MBX1LD92 ++ rm /tmp/tmp.HDNy4hEHCm /tmp/tmp.L0MBX1LD92 ++ return 0 + [[ 2 == \2 ]] + echo + desc 'check if certificates issued with certmanager' + set +o xtrace ----------------------------------------------------------------------------------- check if certificates issued with certmanager ----------------------------------------------------------------------------------- + tlsSecretsShouldExist some-name-tls-issue-ssl + local secretName=some-name-tls-issue-ssl + checkTLSSecret some-name-tls-issue-ssl ca.crt + local secretName=some-name-tls-issue-ssl + local dataKey=ca.crt ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json +++ mktemp ++ jq '.data["ca.crt"]' ++ local LAST_OUT=/tmp/tmp.elwWhXCG02 +++ mktemp ++ local LAST_ERR=/tmp/tmp.dmz7ScG086 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.elwWhXCG02 ++ cat /tmp/tmp.dmz7ScG086 ++ rm /tmp/tmp.elwWhXCG02 /tmp/tmp.dmz7ScG086 ++ return 0 + local 'secretData="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"' + '[' -z '"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"' ']' + checkTLSSecret some-name-tls-issue-ssl tls.crt + local secretName=some-name-tls-issue-ssl + local dataKey=tls.crt ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json ++ jq '.data["tls.crt"]' +++ mktemp ++ local LAST_OUT=/tmp/tmp.0x9zGdefD5 +++ mktemp ++ local LAST_ERR=/tmp/tmp.JQzLinIqOw ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.0x9zGdefD5 ++ cat /tmp/tmp.JQzLinIqOw ++ rm /tmp/tmp.0x9zGdefD5 /tmp/tmp.JQzLinIqOw ++ return 0 + local 'secretData="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"' + '[' -z '"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"' ']' + checkTLSSecret some-name-tls-issue-ssl tls.key + local secretName=some-name-tls-issue-ssl + local dataKey=tls.key ++ kubectl_bin get secrets/some-name-tls-issue-ssl -o json +++ mktemp ++ jq '.data["tls.key"]' ++ local LAST_OUT=/tmp/tmp.bAFF3kDhXA +++ mktemp ++ local LAST_ERR=/tmp/tmp.QL0faslLY6 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get secrets/some-name-tls-issue-ssl -o json ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.bAFF3kDhXA ++ cat /tmp/tmp.QL0faslLY6 ++ rm /tmp/tmp.bAFF3kDhXA /tmp/tmp.QL0faslLY6 ++ return 0 + local 'secretData="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"' + '[' -z '"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"' ']' + desc 'check if CA issuer created' + set +o xtrace ----------------------------------------------------------------------------------- check if CA issuer created ----------------------------------------------------------------------------------- + compare_kubectl issuer/some-name-tls-issue-pxc-ca-issuer + local resource=issuer/some-name-tls-issue-pxc-ca-issuer + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer.yml + local new_result=/tmp/tmp.60LnyDgxdf/issuer_some-name-tls-issue-pxc-ca-issuer.yml + desc 'compare issuer/some-name-tls-issue-pxc-ca-issuer-' + set +o xtrace ----------------------------------------------------------------------------------- compare issuer/some-name-tls-issue-pxc-ca-issuer- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.32 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k129.yml ']' + version_gt 1.27 ++ echo '1.32 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k127.yml ']' + version_gt 1.24 ++ echo '1.32 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k124.yml ']' + version_gt 1.22 ++ echo '1.32 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k122.yml ']' + version_gt 1.21 ++ echo '1.32 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-oc.yml ']' + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer-aks.yml ']' + kubectl_bin get -o yaml issuer/some-name-tls-issue-pxc-ca-issuer ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.spec.template.spec.containers[].env[] | select(.name == "XTRABACKUP_ENABLED")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.metadata.annotations."kubernetes.digitalocean.com/load-balancer-id") | del(.metadata.annotations."service.beta.kubernetes.io/do-loadbalancer-type") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-19988", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.J9zXxUH7yN ++ mktemp + local LAST_ERR=/tmp/tmp.rWbiKnqARG + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml issuer/some-name-tls-issue-pxc-ca-issuer + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.J9zXxUH7yN + cat /tmp/tmp.rWbiKnqARG + rm /tmp/tmp.J9zXxUH7yN /tmp/tmp.rWbiKnqARG + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-ca-issuer.yml /tmp/tmp.60LnyDgxdf/issuer_some-name-tls-issue-pxc-ca-issuer.yml + log 'compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2026-03-27T15:52:36+0000]' compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK [2026-03-27T15:52:36+0000] compare_kubectl: issuer/some-name-tls-issue-pxc-ca-issuer OK + desc 'check if issuer created' + set +o xtrace ----------------------------------------------------------------------------------- check if issuer created ----------------------------------------------------------------------------------- + compare_kubectl issuer/some-name-tls-issue-pxc-issuer + local resource=issuer/some-name-tls-issue-pxc-issuer + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer.yml + local new_result=/tmp/tmp.60LnyDgxdf/issuer_some-name-tls-issue-pxc-issuer.yml + desc 'compare issuer/some-name-tls-issue-pxc-issuer-' + set +o xtrace ----------------------------------------------------------------------------------- compare issuer/some-name-tls-issue-pxc-issuer- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.32 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k129.yml ']' + version_gt 1.27 ++ echo '1.32 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k127.yml ']' + version_gt 1.24 ++ bc -l ++ echo '1.32 >= 1.24' + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k124.yml ']' + version_gt 1.22 ++ echo '1.32 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k122.yml ']' + version_gt 1.21 ++ echo '1.32 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-oc.yml ']' + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer-aks.yml ']' + kubectl_bin get -o yaml issuer/some-name-tls-issue-pxc-issuer ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.spec.template.spec.containers[].env[] | select(.name == "XTRABACKUP_ENABLED")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.metadata.annotations."kubernetes.digitalocean.com/load-balancer-id") | del(.metadata.annotations."service.beta.kubernetes.io/do-loadbalancer-type") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-19988", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.31lnsHH3pg ++ mktemp + local LAST_ERR=/tmp/tmp.iRslWQJELb + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml issuer/some-name-tls-issue-pxc-issuer + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.31lnsHH3pg + cat /tmp/tmp.iRslWQJELb + rm /tmp/tmp.31lnsHH3pg /tmp/tmp.iRslWQJELb + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/issuer_some-name-tls-issue-pxc-issuer.yml /tmp/tmp.60LnyDgxdf/issuer_some-name-tls-issue-pxc-issuer.yml + log 'compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2026-03-27T15:52:37+0000]' compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK [2026-03-27T15:52:37+0000] compare_kubectl: issuer/some-name-tls-issue-pxc-issuer OK + desc 'check if certificate issued' + set +o xtrace ----------------------------------------------------------------------------------- check if certificate issued ----------------------------------------------------------------------------------- + compare_kubectl certificate/some-name-tls-issue-ssl + local resource=certificate/some-name-tls-issue-ssl + local postfix= + local expected_result=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl.yml + local new_result=/tmp/tmp.60LnyDgxdf/certificate_some-name-tls-issue-ssl.yml + desc 'compare certificate/some-name-tls-issue-ssl-' + set +o xtrace ----------------------------------------------------------------------------------- compare certificate/some-name-tls-issue-ssl- ----------------------------------------------------------------------------------- + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-eks.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.0 ]] + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-80.yml ']' + [[ perconalab/percona-xtradb-cluster-operator:main-pxc8.0 =~ 8\.4 ]] + version_gt 1.33 ++ echo '1.32 >= 1.33' ++ bc -l + '[' 0 -eq 1 ']' + return 1 + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k129.yml ']' + version_gt 1.27 ++ echo '1.32 >= 1.27' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k127.yml ']' + version_gt 1.24 ++ echo '1.32 >= 1.24' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k124.yml ']' + version_gt 1.22 ++ echo '1.32 >= 1.22' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k122.yml ']' + version_gt 1.21 ++ echo '1.32 >= 1.21' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k121.yml ']' + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-oc.yml ']' + version_gt 1.29 ++ echo '1.32 >= 1.29' ++ bc -l + '[' 1 -eq 1 ']' + return 0 + '[' '!' -z '' -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-k129-oc.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-eks.yml ']' + '[' 0 = 1 -a -f /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl-aks.yml ']' + kubectl_bin get -o yaml certificate/some-name-tls-issue-ssl ++ mktemp + yq eval ' del(.metadata.managedFields) | del(.. | select(has("creationTimestamp")).creationTimestamp) | del(.. | select(has("namespace")).namespace) | del(.. | select(has("uid")).uid) | del(.metadata.resourceVersion) | del(.spec.template.spec.containers[].env[] | select(.name == "CLUSTER_HASH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "BACKUP_PATH")) | del(.spec.template.spec.containers[].env[] | select(.name == "S3_BUCKET_URL")) | del(.spec.template.spec.containers[].env[] | select(.name == "AZURE_CONTAINER_NAME")) | del(.spec.template.spec.containers[].env[] | select(.name == "XTRABACKUP_ENABLED")) | del(.metadata.selfLink) | del(.metadata.deletionTimestamp) | del(.metadata.annotations."kubectl.kubernetes.io/last-applied-configuration") | del(.metadata.annotations."kubernetes.io/psp") | del(.metadata.annotations."batch.kubernetes.io/job-tracking") | del(.metadata.labels."batch.kubernetes.io/job-name") | del(.metadata.labels."job-name") | del(.metadata.annotations."cloud.google.com/neg") | del(.metadata.annotations."k8s.v1.cni.cncf.io*") | del(.metadata.annotations."k8s.ovn.org/pod-networks") | del(.metadata.annotations."kubernetes.digitalocean.com/load-balancer-id") | del(.metadata.annotations."service.beta.kubernetes.io/do-loadbalancer-type") | del(.spec.template.metadata.annotations."last-applied-secret") | del(.spec.template.metadata.labels."batch.kubernetes.io/job-name") | del(.spec.template.metadata.labels."job-name") | del(.. | select(has("batch.kubernetes.io/controller-uid"))."batch.kubernetes.io/controller-uid") | del(.. | select(has("image")).image) | del(.. | select(has("clusterIP")).clusterIP) | del(.. | select(has("clusterIPs")).clusterIPs) | del(.. | select(has("dataSource")).dataSource) | del(.. | select(has("procMount")).procMount) | del(.. | select(has("storageClassName")).storageClassName) | del(.. | select(has("finalizers")).finalizers) | del(.. | select(has("kubernetes.io/pvc-protection"))."kubernetes.io/pvc-protection") | del(.. | select(has("volumeName")).volumeName) | del(.. | select(has("volume.beta.kubernetes.io/storage-provisioner"))."volume.beta.kubernetes.io/storage-provisioner") | del(.. | select(has("volume.kubernetes.io/storage-provisioner"))."volume.kubernetes.io/storage-provisioner") | del(.spec.volumeMode) | del(.spec.nodeName) | del(.. | select(has("volume.kubernetes.io/selected-node"))."volume.kubernetes.io/selected-node") | del(.. | select(has("percona.com/last-config-hash"))."percona.com/last-config-hash") | del(.. | select(has("percona.com/configuration-hash"))."percona.com/configuration-hash") | del(.. | select(has("percona.com/env-secret-config-hash"))."percona.com/env-secret-config-hash") | del(.. | select(has("percona.com/ssl-hash"))."percona.com/ssl-hash") | del(.. | select(has("percona.com/ssl-internal-hash"))."percona.com/ssl-internal-hash") | del(.. | select(has("kubectl.kubernetes.io/default-container"))."kubectl.kubernetes.io/default-container") | del(.spec.volumeClaimTemplates[].spec.volumeMode | select(. == "Filesystem")) | del(.. | select(has("healthCheckNodePort")).healthCheckNodePort) | del(.. | select(has("nodePort")).nodePort) | del(.. | select(has("imagePullSecrets")).imagePullSecrets) | del(.. | select(has("enableServiceLinks")).enableServiceLinks) | del(.status) | del(.spec.volumeClaimTemplates[].apiVersion) | del(.spec.volumeClaimTemplates[].kind) | del(.metadata.ownerReferences[].apiVersion) | del(.. | select(has("controller-uid")).controller-uid) | del(.. | select(has("preemptionPolicy")).preemptionPolicy) | del(.spec.ipFamilies) | del(.spec.ipFamilyPolicy) | (.. | select(. == "policy/v1beta1")) = "policy/v1" | del(.. | select(has("kubernetes.io/hostname"))."kubernetes.io/hostname") | (.. | select(tag == "!!str")) |= sub("tls-issue-cert-manager-19988", "namespace") | (.. | select(tag == "!!str")) |= sub("kube-api-access-.*", "kube-api-access") | del(.. | select(has("annotations")).annotations | select(length==0)) | del(.spec.crVersion) | del(.. | select(.[] == "percona-xtradb-cluster-operator-workload-token*"))' - + local LAST_OUT=/tmp/tmp.yMMhyyPh0B ++ mktemp + local LAST_ERR=/tmp/tmp.CTPvKQR343 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl get -o yaml certificate/some-name-tls-issue-ssl + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.yMMhyyPh0B + cat /tmp/tmp.CTPvKQR343 + rm /tmp/tmp.yMMhyyPh0B /tmp/tmp.CTPvKQR343 + return 0 + [[ 0 -eq 0 ]] + diff -u /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/compare/certificate_some-name-tls-issue-ssl.yml /tmp/tmp.60LnyDgxdf/certificate_some-name-tls-issue-ssl.yml + log 'compare_kubectl: certificate/some-name-tls-issue-ssl OK' ++ date +%Y-%m-%dT%H:%M:%S%z + echo '[2026-03-27T15:52:38+0000]' compare_kubectl: certificate/some-name-tls-issue-ssl OK [2026-03-27T15:52:38+0000] compare_kubectl: certificate/some-name-tls-issue-ssl OK + apply_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local config_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local pvc_name= + '[' -z '' ']' + cat_config /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml '' + local input_file=/mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + local pvc_name= + kubectl_bin apply -f - + /usr/bin/sed -e 's#image:.*-pxc\([0-9]*.[0-9]*\)\{0,1\}$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + cat /mnt/jenkins/workspace/cloud-pxc-operator_PR-2409/e2e-tests/tls-issue-cert-manager/conf/some-name-tls-issue-haproxy.yml + /usr/bin/sed -e 's#apiVersion: pxc.percona.com/v.*$#apiVersion: pxc.percona.com/v1#' + /usr/bin/sed -e 's#image:.*-init$#image: perconalab/percona-xtradb-cluster-operator:PR-2409-b0dcc5e6#' + /usr/bin/sed -e 's#image:.*-pmm$#image: perconalab/pmm-client:dev-latest#' + /usr/bin/sed -e 's#image:.*-backup$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0-backup#' + /usr/bin/sed -e 's#image:.*-proxysql$#image: perconalab/percona-xtradb-cluster-operator:main-proxysql#' + /usr/bin/sed -e 's#image:.*-haproxy$#image: perconalab/percona-xtradb-cluster-operator:main-haproxy#' + /usr/bin/sed -e 's#image:.*-logcollector$#image: perconalab/fluentbit:main-logcollector#' + /usr/bin/sed -e s~minio-service.#namespace~minio-service.tls-issue-cert-manager-19988~ + /usr/bin/sed -e 's#apply:.*#apply: Never#' + /usr/bin/sed -e 's#claimName:..*-backup-pvc$#claimName: #' ++ mktemp + /usr/bin/sed -e 's#image:.*\/percona-xtradb-cluster:.*$#image: perconalab/percona-xtradb-cluster-operator:main-pxc8.0#' + local LAST_OUT=/tmp/tmp.N6Jwp2Fhvs ++ mktemp + local LAST_ERR=/tmp/tmp.ekdM5ka7MZ + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl apply -f - + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.N6Jwp2Fhvs perconaxtradbcluster.pxc.percona.com/some-name-tls-issue configured + cat /tmp/tmp.ekdM5ka7MZ + rm /tmp/tmp.N6Jwp2Fhvs /tmp/tmp.ekdM5ka7MZ + return 0 + wait_for_running some-name-tls-issue-haproxy 1 + local name=some-name-tls-issue-haproxy + let last_pod=0 + : + local max_retry=480 + desc 'wait for running cluster' + set +o xtrace ----------------------------------------------------------------------------------- wait for running cluster ----------------------------------------------------------------------------------- ++ seq 0 0 + for i in '$(seq 0 $last_pod)' + wait_pod some-name-tls-issue-haproxy-0 480 + local pod=some-name-tls-issue-haproxy-0 + local max_retry=480 + local ns= ++ /usr/bin/sed -E 's/.*-(pxc|proxysql)-[0-9]/\1/' ++ grep -E '^(pxc|proxysql)$' ++ echo some-name-tls-issue-haproxy-0 + local container= + set +o xtrace pod/some-name-tls-issue-haproxy-0 condition met waiting for pod/some-name-tls-issue-haproxy-0 to become Ready.Ok + wait_cluster_consistency some-name-tls-issue 3 2 + local cluster_name=some-name-tls-issue + local cluster_size=3 + local proxy_size=2 + '[' -z 2 ']' + desc 'wait cluster consistency' + set +o xtrace ----------------------------------------------------------------------------------- wait cluster consistency ----------------------------------------------------------------------------------- + local i=0 + local max=300 + sleep 7 + echo -n 'waiting for pxc/some-name-tls-issue to be ready' waiting for pxc/some-name-tls-issue to be ready++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.Y4QQwEvkhf +++ mktemp ++ local LAST_ERR=/tmp/tmp.zH02AFga7l ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.Y4QQwEvkhf ++ cat /tmp/tmp.zH02AFga7l ++ rm /tmp/tmp.Y4QQwEvkhf /tmp/tmp.zH02AFga7l ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 0 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.ncNMJBrydT +++ mktemp ++ local LAST_ERR=/tmp/tmp.dKOOGuBAt8 ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.ncNMJBrydT ++ cat /tmp/tmp.dKOOGuBAt8 ++ rm /tmp/tmp.ncNMJBrydT /tmp/tmp.dKOOGuBAt8 ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 1 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.OmjBucDp3G +++ mktemp ++ local LAST_ERR=/tmp/tmp.XorMqcSLfP ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.OmjBucDp3G ++ cat /tmp/tmp.XorMqcSLfP ++ rm /tmp/tmp.OmjBucDp3G /tmp/tmp.XorMqcSLfP ++ return 0 + [[ initializing == \r\e\a\d\y ]] + echo -n . .+ sleep 5 + [[ 2 -ge 300 ]] + let i+=1 ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.state}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.GDBu4TkPI4 +++ mktemp ++ local LAST_ERR=/tmp/tmp.GMOUN1qCCh ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.state}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.GDBu4TkPI4 ++ cat /tmp/tmp.GMOUN1qCCh ++ rm /tmp/tmp.GDBu4TkPI4 /tmp/tmp.GMOUN1qCCh ++ return 0 + [[ ready == \r\e\a\d\y ]] ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.MG7dpTxJ65 +++ mktemp ++ local LAST_ERR=/tmp/tmp.ZOxep7tQpR ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.pxc.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.MG7dpTxJ65 ++ cat /tmp/tmp.ZOxep7tQpR ++ rm /tmp/tmp.MG7dpTxJ65 /tmp/tmp.ZOxep7tQpR ++ return 0 + [[ 3 == \3 ]] +++ get_proxy_engine some-name-tls-issue +++ local cluster_name=some-name-tls-issue ++++ get_proxy some-name-tls-issue ++++ local target_cluster=some-name-tls-issue +++++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' ++++++ mktemp +++++ local LAST_OUT=/tmp/tmp.OXfJcMflxO ++++++ mktemp +++++ local LAST_ERR=/tmp/tmp.8HI7DYj9BA +++++ local exit_status=0 ++++++ seq 0 2 +++++ for i in '$(seq 0 2)' +++++ set +e +++++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.spec.haproxy.enabled}' +++++ exit_status=0 +++++ set -e +++++ '[' 0 '!=' 0 ']' +++++ break +++++ cat /tmp/tmp.OXfJcMflxO +++++ cat /tmp/tmp.8HI7DYj9BA +++++ rm /tmp/tmp.OXfJcMflxO /tmp/tmp.8HI7DYj9BA +++++ return 0 ++++ [[ true == \t\r\u\e ]] ++++ echo some-name-tls-issue-haproxy ++++ return +++ local cluster_proxy=some-name-tls-issue-haproxy +++ echo haproxy ++ kubectl_bin get pxc some-name-tls-issue -o 'jsonpath={.status.haproxy.ready}' +++ mktemp ++ local LAST_OUT=/tmp/tmp.rY0tPt59MQ +++ mktemp ++ local LAST_ERR=/tmp/tmp.fqao4btKpD ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pxc some-name-tls-issue -o 'jsonpath={.status.haproxy.ready}' ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.rY0tPt59MQ ++ cat /tmp/tmp.fqao4btKpD ++ rm /tmp/tmp.rY0tPt59MQ /tmp/tmp.fqao4btKpD ++ return 0 + [[ 2 == \2 ]] + echo + desc 'check ssl-internal certificate using PXC' + set +o xtrace ----------------------------------------------------------------------------------- check ssl-internal certificate using PXC ----------------------------------------------------------------------------------- + check_verify_identity some-name-tls-issue-pxc + local host=some-name-tls-issue-pxc + local command=exit + local 'args=--ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' + kubectl_bin exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' ++ mktemp + local LAST_OUT=/tmp/tmp.4m01dAGAEY ++ mktemp + local LAST_ERR=/tmp/tmp.oTKfnokBWZ + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-pxc' + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.4m01dAGAEY + cat /tmp/tmp.oTKfnokBWZ mysql: [Warning] Using a password on the command line interface can be insecure. + rm /tmp/tmp.4m01dAGAEY /tmp/tmp.oTKfnokBWZ + return 0 + desc 'check ssl-internal certificate using HAProxy' + set +o xtrace ----------------------------------------------------------------------------------- check ssl-internal certificate using HAProxy ----------------------------------------------------------------------------------- + check_verify_identity some-name-tls-issue-haproxy + local host=some-name-tls-issue-haproxy + local command=exit + local 'args=--ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' + kubectl_bin exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' ++ mktemp + local LAST_OUT=/tmp/tmp.EaHaURt0Pg ++ mktemp + local LAST_ERR=/tmp/tmp.5XAp829A4r + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl exec some-name-tls-issue-pxc-0 -- bash -c 'printf '\''%s\n'\'' "exit" | mysql -sN --ssl-ca=/etc/mysql/ssl-internal/ca.crt --ssl-mode=VERIFY_IDENTITY --protocol=tcp -uroot -proot_password --host=some-name-tls-issue-haproxy' + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.EaHaURt0Pg + cat /tmp/tmp.5XAp829A4r mysql: [Warning] Using a password on the command line interface can be insecure. + rm /tmp/tmp.EaHaURt0Pg /tmp/tmp.5XAp829A4r + return 0 + destroy tls-issue-cert-manager-19988 + local namespace=tls-issue-cert-manager-19988 + local ignore_logs=true + [[ 0 == 1 ]] + desc 'destroy cluster/operator and all other resources' + set +o xtrace ----------------------------------------------------------------------------------- destroy cluster/operator and all other resources ----------------------------------------------------------------------------------- + '[' true == false -o 1 == 1 ']' + grep -v level=info + tee /tmp/tmp.60LnyDgxdf/operator.log + sort -u + grep -v 'get backup status: Job.batch' + /usr/bin/sed -r 's/"ts":[0-9.]+//; s^limits-[0-9.]+/^^g' + grep -v 'the object has been modified' ++ get_operator_pod ++ local label_prefix=app.kubernetes.io/ +++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator -n pxc-operator +++ grep -c percona-xtradb-cluster-operator ++ local check_label=1 ++ [[ 1 -eq 0 ]] ++ jq -r '.items[] | select(.metadata.deletionTimestamp == null) | .metadata.name' ++ kubectl_bin get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator +++ mktemp ++ head -1 ++ local LAST_OUT=/tmp/tmp.UMpsNEFWfu +++ mktemp ++ local LAST_ERR=/tmp/tmp.aNUpD2jozN ++ local exit_status=0 +++ seq 0 2 ++ for i in '$(seq 0 2)' ++ set +e ++ kubectl get pods --selector=app.kubernetes.io/name=percona-xtradb-cluster-operator --field-selector=status.phase=Running -o json -n pxc-operator ++ exit_status=0 ++ set -e ++ '[' 0 '!=' 0 ']' ++ break ++ cat /tmp/tmp.UMpsNEFWfu ++ cat /tmp/tmp.aNUpD2jozN ++ rm /tmp/tmp.UMpsNEFWfu /tmp/tmp.aNUpD2jozN ++ return 0 + kubectl_bin logs -n pxc-operator percona-xtradb-cluster-operator-564876bfd9-c99mt ++ mktemp + local LAST_OUT=/tmp/tmp.18bNhWlc1o ++ mktemp + local LAST_ERR=/tmp/tmp.pXWyaVdTnA + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl logs -n pxc-operator percona-xtradb-cluster-operator-564876bfd9-c99mt + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.18bNhWlc1o + cat /tmp/tmp.pXWyaVdTnA + rm /tmp/tmp.18bNhWlc1o /tmp/tmp.pXWyaVdTnA + return 0 2026-03-27T15:44:28.986Z INFO setup Feature gates {"PXCO_FEATURE_GATES": "", "enabled": ""} 2026-03-27T15:44:28.986Z INFO setup Manager starting up {"gitCommit": "b0dcc5e6e895efe0fb508bc482fac0d411e33cdd", "gitBranch": "PR-2409-b0dcc5e6", "buildTime": "2026-03-27T12:18:16Z", "goVersion": "go1.25.8", "os": "linux", "arch": "amd64"} 2026-03-27T15:44:28.986Z INFO setup Runs on {"platform": "kubernetes", "version": "v1.32.13-gke.1090000"} 2026-03-27T15:44:28.989Z INFO setup Registering Components. 2026-03-27T15:44:29.870Z INFO controller-runtime.metrics Starting metrics server 2026-03-27T15:44:29.870Z INFO controller-runtime.webhook Registering webhook {"path": "/validate-percona-xtradbcluster"} 2026-03-27T15:44:29.870Z INFO setup Starting the Cmd. 2026-03-27T15:44:29.871Z INFO controller-runtime.certwatcher Starting certificate poll+watcher {"cert": "/tmp/k8s-webhook-server/serving-certs/tls.crt", "key": "/tmp/k8s-webhook-server/serving-certs/tls.key", "interval": "10s"} 2026-03-27T15:44:29.871Z INFO controller-runtime.certwatcher Updated current TLS certificate {"cert": "/tmp/k8s-webhook-server/serving-certs/tls.crt", "key": "/tmp/k8s-webhook-server/serving-certs/tls.key"} 2026-03-27T15:44:29.871Z INFO controller-runtime.metrics Serving metrics server {"bindAddress": ":8080", "secure": false} 2026-03-27T15:44:29.871Z INFO controller-runtime.webhook Serving webhook server {"host": "", "port": 9443} 2026-03-27T15:44:29.871Z INFO controller-runtime.webhook Starting webhook server 2026-03-27T15:44:29.871Z INFO starting server {"name": "health probe", "addr": "[::]:8081"} 2026-03-27T15:44:29.972Z INFO Attempting to acquire leader lease... {"lock": "pxc-operator/08db1feb.percona.com"} 2026-03-27T15:44:30.009Z INFO Successfully acquired lease {"lock": "pxc-operator/08db1feb.percona.com"} 2026-03-27T15:44:30.010Z DEBUG events percona-xtradb-cluster-operator-564876bfd9-c99mt_e7a827a6-19a5-4838-962b-285bf9e8eb32 became leader {"type": "Normal", "object": {"kind":"Lease","namespace":"pxc-operator","name":"08db1feb.percona.com","uid":"e754cb35-c4e1-4785-865f-769982c9ac07","apiVersion":"coordination.k8s.io/v1","resourceVersion":"1774626270000831009"}, "reason": "LeaderElection"} 2026-03-27T15:44:30.010Z INFO Starting EventSource {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup", "source": "kind source: *v1.PerconaXtraDBClusterBackup"} 2026-03-27T15:44:30.010Z INFO Starting EventSource {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "source": "kind source: *v1.PerconaXtraDBCluster"} 2026-03-27T15:44:30.010Z INFO Starting EventSource {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "source": "kind source: *v1.Secret"} 2026-03-27T15:44:30.010Z INFO Starting EventSource {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore", "source": "kind source: *v1.PerconaXtraDBClusterRestore"} 2026-03-27T15:44:30.110Z INFO Starting Controller {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup"} 2026-03-27T15:44:30.110Z INFO Starting Controller {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster"} 2026-03-27T15:44:30.110Z INFO Starting workers {"controller": "pxcbackup-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterBackup", "worker count": 1} 2026-03-27T15:44:30.110Z INFO Starting workers {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "worker count": 1} 2026-03-27T15:44:30.211Z INFO Starting Controller {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore"} 2026-03-27T15:44:30.211Z INFO Starting workers {"controller": "pxcrestore-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBClusterRestore", "worker count": 1} 2026-03-27T15:46:44.382Z INFO Set CR version {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "version": "1.20.0"} 2026-03-27T15:46:44.716Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c"} 2026-03-27T15:46:47.763Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c"} 2026-03-27T15:46:47.789Z INFO spec.privateKey.rotationPolicy: In cert-manager >= v1.18.0, the default value changed from `Never` to `Always`. {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c"} 2026-03-27T15:46:50.890Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "object": "auto-some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:ConfigMap,APIVersion:v1,}"} 2026-03-27T15:46:51.016Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-03-27T15:46:51.065Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-03-27T15:46:51.146Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-03-27T15:46:51.210Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "object": "some-name-tls-issue-pxc-unready", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-03-27T15:46:51.269Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-03-27T15:46:51.623Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e60c0832-7691-4a0b-90fb-289dc58fd79c", "object": "some-name-tls-issue-proxysql-unready", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-03-27T15:46:52.184Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "b7bdbfce-0bf0-48f4-a323-87c68edd763b", "object": "some-name-tls-issue-pxc", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2026-03-27T15:46:52.220Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "b7bdbfce-0bf0-48f4-a323-87c68edd763b", "object": "some-name-tls-issue-proxysql", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2026-03-27T15:48:14.277Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740", "user": "operator"} 2026-03-27T15:48:14.325Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740", "user": "monitor"} 2026-03-27T15:48:14.400Z INFO User monitor: granted privileges {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740"} 2026-03-27T15:48:14.440Z INFO monitor user privileges granted {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740"} 2026-03-27T15:48:14.482Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740", "user": "xtrabackup"} 2026-03-27T15:48:14.547Z INFO User xtrabackup: granted privileges {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740"} 2026-03-27T15:48:14.592Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740", "user": "replication"} 2026-03-27T15:48:14.600Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "774977a0-0362-4752-a3bf-79bb1a059740", "err": "get primary pxc pod: not found"} 2026-03-27T15:48:19.773Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "fc7530ed-7109-46d2-a4bc-1f9355ab9098", "err": "get primary pxc pod: not found"} 2026-03-27T15:48:24.987Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "8f1f304d-9343-4ff2-b5d9-f6c57606cc30", "err": "get primary pxc pod: not found"} 2026-03-27T15:48:30.174Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "0f6a97dc-055d-4cb4-b97a-e2f48321abfa", "err": "get primary pxc pod: not found"} 2026-03-27T15:50:57.817Z INFO Password expiration policy updated {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "871204c4-b762-4a6b-ac1d-ddc7f2f18914", "user": "root"} 2026-03-27T15:50:57.931Z INFO update PXC version (fetched from db) {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "871204c4-b762-4a6b-ac1d-ddc7f2f18914", "new version": "8.0.43-34.1"} 2026-03-27T15:50:59.732Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "871204c4-b762-4a6b-ac1d-ddc7f2f18914"} 2026-03-27T15:51:06.037Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "72b4bd8e-84bf-4640-b37b-bc346d93e32f"} 2026-03-27T15:51:11.440Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "fa4728ce-082e-4eb9-908e-8b24cdddf54a"} 2026-03-27T15:51:17.206Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "4c125a33-f5bc-44b9-a2a1-72fee21511f2"} 2026-03-27T15:51:22.704Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "f9270b9f-b91a-45df-9ea0-46017b05a257"} 2026-03-27T15:51:27.913Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "4daf56c4-cb52-4cfb-80eb-ff8bd9e2fa7f"} 2026-03-27T15:51:33.124Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e730ef3d-21ed-46fb-afe5-2b5a1f1bcffc"} 2026-03-27T15:51:38.631Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "2dcc94c2-fd4f-46e6-b342-84dc74252512"} 2026-03-27T15:51:44.000Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e62a316d-01c0-42ce-8949-08ab2293f54b"} 2026-03-27T15:51:49.325Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "5aa2fa60-436d-42f1-8688-40fc05deec91"} 2026-03-27T15:51:54.626Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "5e742624-323b-48a3-87a5-a9ad89850b33"} 2026-03-27T15:51:59.839Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "69acbeb8-fcd5-4b60-9489-d29633d25a25"} 2026-03-27T15:52:05.001Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "d0764540-f4a9-46a4-af76-86774979ea01"} 2026-03-27T15:52:10.726Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "ba1e96a5-7b48-44fb-b9ca-a897abb6ddc1"} 2026-03-27T15:52:15.739Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "c9ec6a8e-9ad9-400e-b1d8-f6389c55363f"} 2026-03-27T15:52:21.338Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "df7811e8-9421-44b2-8207-edd37fe73509"} 2026-03-27T15:52:26.820Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "965b3d8d-3647-4e47-b724-19b5e1827191"} 2026-03-27T15:52:32.151Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "55d84421-7981-4f1f-9725-c12eb279ad3c"} 2026-03-27T15:52:37.405Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "3d57daed-fe08-4091-ad78-1c0679a9f2dc"} 2026-03-27T15:52:43.476Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "c7f1f157-9f01-4b18-8d9c-6120f66218d8", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-03-27T15:52:43.590Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "c7f1f157-9f01-4b18-8d9c-6120f66218d8", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:StatefulSet,APIVersion:apps/v1,}"} 2026-03-27T15:52:43.711Z DEBUG PXC users synced with ProxySQL {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "b5a056b3-ac9c-4458-80fa-e1a64ad4db65"} 2026-03-27T15:52:43.801Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "c7f1f157-9f01-4b18-8d9c-6120f66218d8", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-03-27T15:52:43.892Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "c7f1f157-9f01-4b18-8d9c-6120f66218d8", "object": "some-name-tls-issue-haproxy-replicas", "kind": "&TypeMeta{Kind:Service,APIVersion:v1,}"} 2026-03-27T15:52:46.372Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "c7f1f157-9f01-4b18-8d9c-6120f66218d8", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.237.74:3306: connect: connection refused"} 2026-03-27T15:52:47.121Z DEBUG Creating object {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "a0ca8f34-a48b-4670-a1ab-5629539f2d1b", "object": "some-name-tls-issue-haproxy", "kind": "&TypeMeta{Kind:PodDisruptionBudget,APIVersion:policy/v1,}"} 2026-03-27T15:52:49.157Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "a0ca8f34-a48b-4670-a1ab-5629539f2d1b", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.237.74:3306: connect: connection refused"} 2026-03-27T15:52:56.407Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "e7e05147-33ac-4669-a63b-84e3adbc8e8d", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.237.74:3306: connect: connection refused"} 2026-03-27T15:53:03.653Z INFO reconcile replication error {"controller": "pxc-controller", "controllerGroup": "pxc.percona.com", "controllerKind": "PerconaXtraDBCluster", "PerconaXtraDBCluster": {"name":"some-name-tls-issue","namespace":"tls-issue-cert-manager-19988"}, "namespace": "tls-issue-cert-manager-19988", "name": "some-name-tls-issue", "reconcileID": "9d2b07f8-bb9e-445c-8eb2-2351195f780b", "err": "get primary pxc pod: failed to get proxy connection: dial tcp 34.118.237.74:3306: connect: connection refused"} + grep -v NAMESPACE + kubectl get pxc --all-namespaces -o wide + xargs -L 1 sh -xc 'kubectl patch pxc -n $0 $1 --type=merge -p "{\"metadata\":{\"finalizers\":[]}}"' + kubectl patch pxc -n tls-issue-cert-manager-19988 some-name-tls-issue --type=merge -p '{"metadata":{"finalizers":[]}}' perconaxtradbcluster.pxc.percona.com/some-name-tls-issue patched + kubectl_bin delete pxc --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.G0J9Brl2G8 ++ mktemp + local LAST_ERR=/tmp/tmp.530Eopo8X6 + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.G0J9Brl2G8 perconaxtradbcluster.pxc.percona.com "some-name-tls-issue" deleted from tls-issue-cert-manager-19988 namespace + cat /tmp/tmp.530Eopo8X6 + rm /tmp/tmp.G0J9Brl2G8 /tmp/tmp.530Eopo8X6 + return 0 + kubectl_bin delete pxc-backup --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.nTl4hcXczS ++ mktemp + local LAST_ERR=/tmp/tmp.QW9TrsmxKW + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-backup --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.nTl4hcXczS No resources found + cat /tmp/tmp.QW9TrsmxKW + rm /tmp/tmp.nTl4hcXczS /tmp/tmp.QW9TrsmxKW + return 0 + kubectl_bin delete pxc-restore --all --all-namespaces ++ mktemp + local LAST_OUT=/tmp/tmp.YCkDtrl9rY ++ mktemp + local LAST_ERR=/tmp/tmp.6fCqeiVTQG + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete pxc-restore --all --all-namespaces + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.YCkDtrl9rY No resources found + cat /tmp/tmp.6fCqeiVTQG + rm /tmp/tmp.YCkDtrl9rY /tmp/tmp.6fCqeiVTQG + return 0 + kubectl_bin delete ValidatingWebhookConfiguration percona-xtradbcluster-webhook ++ mktemp + local LAST_OUT=/tmp/tmp.ujbcQNDdW1 ++ mktemp + local LAST_ERR=/tmp/tmp.K2M4DXkiGH + local exit_status=0 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete ValidatingWebhookConfiguration percona-xtradbcluster-webhook + exit_status=0 + set -e + '[' 0 '!=' 0 ']' + break + cat /tmp/tmp.ujbcQNDdW1 validatingwebhookconfiguration.admissionregistration.k8s.io "percona-xtradbcluster-webhook" deleted + cat /tmp/tmp.K2M4DXkiGH + rm /tmp/tmp.ujbcQNDdW1 /tmp/tmp.K2M4DXkiGH + return 0 + kubectl_bin delete -f https://github.com/jetstack/cert-manager/releases/download/v1.19.2/cert-manager.yaml + : + '[' '!' -z '' ']' + '[' -n pxc-operator ']' + rm -rf /tmp/tmp.60LnyDgxdf + kubectl_bin delete --grace-period=0 --force=true namespace pxc-operator + kubectl_bin delete --grace-period=0 --force=true namespace tls-issue-cert-manager-19988 + desc 'test passed' + set +o xtrace ----------------------------------------------------------------------------------- test passed ----------------------------------------------------------------------------------- ++ mktemp + local LAST_OUT=/tmp/tmp.snbMIojewA ++ mktemp + local LAST_OUT=/tmp/tmp.hRAjJ1ZXgO ++ mktemp ++ mktemp + local LAST_ERR=/tmp/tmp.j7xOy1Zz0b + local exit_status=0 + local LAST_ERR=/tmp/tmp.LGmdmjZftG + local exit_status=0 ++ seq 0 2 ++ seq 0 2 + for i in '$(seq 0 2)' + set +e + kubectl delete --grace-period=0 --force=true namespace tls-issue-cert-manager-19988 + for i in '$(seq 0 2)' + set +e + kubectl delete --grace-period=0 --force=true namespace pxc-operator