09:35:15 STEP: Running BeforeAll block for EntireTestsuite K8sIstioTest
09:35:15 STEP: Ensuring the namespace kube-system exists
09:35:16 STEP: WaitforPods(namespace="kube-system", filter="-l k8s-app=cilium-test-logs")
09:35:16 STEP: WaitforPods(namespace="kube-system", filter="-l k8s-app=cilium-test-logs") => <nil>
09:35:17 STEP: Downloading cilium-istioctl
09:35:18 STEP: Installing Cilium
09:35:26 STEP: Waiting for Cilium to become ready
09:36:17 STEP: Restarting unmanaged pods event-exporter-gke-67986489c8-kcn4z, kube-dns-autoscaler-58cbd4f75c-cjkh6, l7-default-backend-66579f5d7-mdtvk, metrics-server-v0.3.6-6c47ffd7d7-fsqw8, stackdriver-metadata-agent-cluster-level-69b56d776c-77wrz in namespace kube-system
09:38:20 STEP: Validating if Kubernetes DNS is deployed
09:38:20 STEP: Checking if deployment is ready
09:38:20 STEP: Checking if kube-dns service is plumbed correctly
09:38:20 STEP: Checking if DNS can resolve
09:38:20 STEP: Checking if pods have identity
09:38:23 STEP: Kubernetes DNS is up and operational
09:38:23 STEP: Validating Cilium Installation
09:38:23 STEP: Performing Cilium controllers preflight check
09:38:23 STEP: Performing Cilium status preflight check
09:38:23 STEP: Performing Cilium health check
09:38:27 STEP: Performing Cilium service preflight check
09:38:27 STEP: Performing K8s service preflight check
09:38:27 STEP: Waiting for cilium-operator to be ready
09:38:27 STEP: WaitforPods(namespace="kube-system", filter="-l name=cilium-operator")
09:38:28 STEP: WaitforPods(namespace="kube-system", filter="-l name=cilium-operator") => <nil>
09:38:28 STEP: WaitforPods(namespace="kube-system", filter="")
09:38:28 STEP: WaitforPods(namespace="kube-system", filter="") => <nil>
09:38:28 STEP: Labeling default namespace for sidecar injection
09:38:28 STEP: Setting label istio-injection=enabled in namespace default
09:38:28 STEP: Deploying Istio
09:39:10 STEP: Waiting for Istio pods to be ready
09:39:10 STEP: WaitforNPodsRunning(namespace="istio-system", filter="-l istio")
09:39:10 STEP: WaitforNPods(namespace="istio-system", filter="-l istio") => <nil>
09:39:10 STEP: WaitforPods(namespace="istio-system", filter="-l istio")
09:39:10 STEP: WaitforPods(namespace="istio-system", filter="-l istio") => <nil>
09:39:10 STEP: Waiting for Istio service "istio-ingressgateway" to be ready
09:39:11 STEP: Waiting for Istio service "istiod" to be ready
09:39:11 STEP: Waiting for DNS to resolve Istio service "istio-ingressgateway"
09:39:12 STEP: Waiting for DNS to resolve Istio service "istiod"
09:39:13 STEP: Creating policy in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/cnp-specs.yaml"
09:39:19 STEP: Creating resources in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v2.yaml"
09:39:20 STEP: Creating resources in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v1.yaml"
09:39:21 STEP: Waiting for Bookinfo pods to be ready
09:39:21 STEP: WaitforPods(namespace="default", filter="-l zgroup=bookinfo")
09:43:21 STEP: WaitforPods(namespace="default", filter="-l zgroup=bookinfo") => timed out waiting for pods with filter -l zgroup=bookinfo to be ready: 4m0s timeout expired
09:43:22 STEP: cmd: kubectl describe pods -n default -l zgroup=bookinfo
Exitcode: 0
Stdout:
Name: details-v1-7979fc5975-6dpbt
Namespace: default
Priority: 0
Node: gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv/10.128.0.8
Start Time: Mon, 30 Aug 2021 09:39:20 +0000
Labels: app=details
istio.io/rev=default
pod-template-hash=7979fc5975
security.istio.io/tlsMode=istio
service.istio.io/canonical-name=details
service.istio.io/canonical-revision=v1
track=stable
version=v1
zgroup=bookinfo
Annotations: kubectl.kubernetes.io/default-container: details
kubectl.kubernetes.io/default-logs-container: details
prometheus.io/path: /stats/prometheus
prometheus.io/port: 15020
prometheus.io/scrape: true
sidecar.istio.io/status:
{"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
Status: Running
IP: 10.136.2.212
IPs:
IP: 10.136.2.212
Controlled By: ReplicaSet/details-v1-7979fc5975
Init Containers:
dns-probe:
Container ID: containerd://40c8cabae2e6bf2b6c23578a21a3c5e3f3f2bd8e28cf1e56745e58e36a2f7780
Image: busybox:1.31.1
Image ID: docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
Port: <none>
Host Port: <none>
Command:
sh
-c
max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:23 +0000
Finished: Mon, 30 Aug 2021 09:39:28 +0000
Ready: True
Restart Count: 0
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-init:
Container ID: containerd://caba608d4d865baf49598fec4af4621a9efbdbe43ea0dddd4cc76003466884d3
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: <none>
Host Port: <none>
Args:
istio-iptables
-p
15001
-z
15006
-u
1337
-m
TPROXY
-i
*
-x
-b
*
-d
15090,15021,15020
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:34 +0000
Finished: Mon, 30 Aug 2021 09:39:34 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
Containers:
details:
Container ID: containerd://eff5cc26423cea4044e6f615257bc0d17defabc542584efbcef4a9aeb51a4643
Image: docker.io/istio/examples-bookinfo-details-v1:1.16.2
Image ID: docker.io/istio/examples-bookinfo-details-v1@sha256:18e54f81689035019e1ac78f6d2e6483fcf1d94072d047315ab193cb2ab89ae5
Port: 9080/TCP
Host Port: 0/TCP
State: Running
Started: Mon, 30 Aug 2021 09:39:59 +0000
Ready: True
Restart Count: 0
Readiness: http-get http://:15020/app-health/details/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-proxy:
Container ID: containerd://1a31d91535fb3f43d27fa825c1cdfcecdb080a6422e92286196549c54dbc5d19
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: 15090/TCP
Host Port: 0/TCP
Args:
proxy
sidecar
--domain
$(POD_NAMESPACE).svc.cluster.local
--serviceCluster
details.$(POD_NAMESPACE)
--proxyLogLevel=warning
--proxyComponentLogLevel=misc:error
--log_output_level=default:info
--concurrency
2
State: Running
Started: Mon, 30 Aug 2021 09:39:59 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Readiness: http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
Environment:
JWT_POLICY: third-party-jwt
PILOT_CERT_PROVIDER: istiod
CA_ADDR: istiod.istio-system.svc:15012
POD_NAME: details-v1-7979fc5975-6dpbt (v1:metadata.name)
POD_NAMESPACE: default (v1:metadata.namespace)
INSTANCE_IP: (v1:status.podIP)
SERVICE_ACCOUNT: (v1:spec.serviceAccountName)
HOST_IP: (v1:status.hostIP)
CANONICAL_SERVICE: (v1:metadata.labels['service.istio.io/canonical-name'])
CANONICAL_REVISION: (v1:metadata.labels['service.istio.io/canonical-revision'])
PROXY_CONFIG: {"interceptionMode":"TPROXY"}
ISTIO_META_POD_PORTS: [
{"containerPort":9080,"protocol":"TCP"}
]
ISTIO_META_APP_CONTAINERS: details
ISTIO_META_CLUSTER_ID: Kubernetes
ISTIO_META_INTERCEPTION_MODE: TPROXY
ISTIO_META_WORKLOAD_NAME: details-v1
ISTIO_META_OWNER: kubernetes://apis/apps/v1/namespaces/default/deployments/details-v1
ISTIO_META_MESH_ID: cluster.local
TRUST_DOMAIN: cluster.local
ISTIO_KUBE_APP_PROBERS: {"/app-health/details/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
Mounts:
/etc/istio/pod from istio-podinfo (rw)
/etc/istio/proxy from istio-envoy (rw)
/var/lib/istio/data from istio-data (rw)
/var/run/cilium from cilium-unix-sock-dir (rw)
/var/run/secrets/istio from istiod-ca-cert (rw)
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
/var/run/secrets/tokens from istio-token (rw)
Conditions:
Type Status
Initialized True
Ready True
ContainersReady True
PodScheduled True
Volumes:
cilium-unix-sock-dir:
Type: HostPath (bare host directory volume)
Path: /var/run/cilium
HostPathType:
istio-envoy:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium: Memory
SizeLimit: <unset>
istio-data:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium:
SizeLimit: <unset>
istio-podinfo:
Type: DownwardAPI (a volume populated by information about the pod)
Items:
metadata.labels -> labels
metadata.annotations -> annotations
limits.cpu -> cpu-limit
requests.cpu -> cpu-request
istio-token:
Type: Projected (a volume that contains injected data from multiple sources)
TokenExpirationSeconds: 43200
istiod-ca-cert:
Type: ConfigMap (a volume populated by a ConfigMap)
Name: istio-ca-root-cert
Optional: false
default-token-sx44r:
Type: Secret (a volume populated by a Secret)
SecretName: default-token-sx44r
Optional: false
QoS Class: Burstable
Node-Selectors: <none>
Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
Type Reason Age From Message
---- ------ ---- ---- -------
Normal Scheduled 4m1s default-scheduler Successfully assigned default/details-v1-7979fc5975-6dpbt to gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv
Normal Pulling 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Pulling image "busybox:1.31.1"
Normal Created 3m58s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container dns-probe
Normal Started 3m58s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container dns-probe
Normal Pulled 3m58s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Successfully pulled image "busybox:1.31.1" in 673.428031ms
Normal Pulling 3m53s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Pulling image "quay.io/cilium/istio_proxy:1.10.3"
Normal Pulled 3m49s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Successfully pulled image "quay.io/cilium/istio_proxy:1.10.3" in 3.553129964s
Normal Pulling 3m47s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Pulling image "docker.io/istio/examples-bookinfo-details-v1:1.16.2"
Normal Created 3m47s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container istio-init
Normal Started 3m47s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container istio-init
Normal Pulled 3m23s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Successfully pulled image "docker.io/istio/examples-bookinfo-details-v1:1.16.2" in 23.487615266s
Normal Created 3m22s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container details
Normal Started 3m22s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container details
Normal Pulled 3m22s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
Normal Created 3m22s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container istio-proxy
Normal Started 3m22s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container istio-proxy
Name: productpage-v1-66b44dc6-8mmp5
Namespace: default
Priority: 0
Node: gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv/10.128.0.8
Start Time: Mon, 30 Aug 2021 09:39:21 +0000
Labels: app=productpage
istio.io/rev=default
pod-template-hash=66b44dc6
security.istio.io/tlsMode=istio
service.istio.io/canonical-name=productpage
service.istio.io/canonical-revision=v1
track=stable
version=v1
zgroup=bookinfo
Annotations: kubectl.kubernetes.io/default-container: productpage
kubectl.kubernetes.io/default-logs-container: productpage
prometheus.io/path: /stats/prometheus
prometheus.io/port: 15020
prometheus.io/scrape: true
sidecar.istio.io/status:
{"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
Status: Running
IP: 10.136.2.134
IPs:
IP: 10.136.2.134
Controlled By: ReplicaSet/productpage-v1-66b44dc6
Init Containers:
dns-probe:
Container ID: containerd://61582796fbc0884269d6459331fb63a81783018e4c648bf2494152e49e8b9fe7
Image: busybox:1.31.1
Image ID: docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
Port: <none>
Host Port: <none>
Command:
sh
-c
max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:23 +0000
Finished: Mon, 30 Aug 2021 09:39:28 +0000
Ready: True
Restart Count: 0
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-init:
Container ID: containerd://90e36f57c2215762b660e1e8cb1834533067399ba44837763d8bd620e424c5ab
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: <none>
Host Port: <none>
Args:
istio-iptables
-p
15001
-z
15006
-u
1337
-m
TPROXY
-i
*
-x
-b
*
-d
15090,15021,15020
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:34 +0000
Finished: Mon, 30 Aug 2021 09:39:34 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
Containers:
productpage:
Container ID: containerd://f578804b347dfda945512660e3e29492b39f50791dc32632aeb4b2aa17d0b477
Image: docker.io/istio/examples-bookinfo-productpage-v1:0.2.3
Image ID: docker.io/istio/examples-bookinfo-productpage-v1@sha256:6b82529eb9a2feb335b6e50b66e73aa9e1aab9d65de7bb0b0a77ed6d559db5df
Port: 9080/TCP
Host Port: 0/TCP
State: Running
Started: Mon, 30 Aug 2021 09:39:55 +0000
Ready: True
Restart Count: 0
Readiness: http-get http://:15020/app-health/productpage/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-proxy:
Container ID: containerd://eec88de5e398ed006f65be3a2b5960d85619bf8bac66691a0cd78991ba543b85
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: 15090/TCP
Host Port: 0/TCP
Args:
proxy
sidecar
--domain
$(POD_NAMESPACE).svc.cluster.local
--serviceCluster
productpage.$(POD_NAMESPACE)
--proxyLogLevel=warning
--proxyComponentLogLevel=misc:error
--log_output_level=default:info
--concurrency
2
State: Running
Started: Mon, 30 Aug 2021 09:39:55 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Readiness: http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
Environment:
JWT_POLICY: third-party-jwt
PILOT_CERT_PROVIDER: istiod
CA_ADDR: istiod.istio-system.svc:15012
POD_NAME: productpage-v1-66b44dc6-8mmp5 (v1:metadata.name)
POD_NAMESPACE: default (v1:metadata.namespace)
INSTANCE_IP: (v1:status.podIP)
SERVICE_ACCOUNT: (v1:spec.serviceAccountName)
HOST_IP: (v1:status.hostIP)
CANONICAL_SERVICE: (v1:metadata.labels['service.istio.io/canonical-name'])
CANONICAL_REVISION: (v1:metadata.labels['service.istio.io/canonical-revision'])
PROXY_CONFIG: {"interceptionMode":"TPROXY"}
ISTIO_META_POD_PORTS: [
{"containerPort":9080,"protocol":"TCP"}
]
ISTIO_META_APP_CONTAINERS: productpage
ISTIO_META_CLUSTER_ID: Kubernetes
ISTIO_META_INTERCEPTION_MODE: TPROXY
ISTIO_META_WORKLOAD_NAME: productpage-v1
ISTIO_META_OWNER: kubernetes://apis/apps/v1/namespaces/default/deployments/productpage-v1
ISTIO_META_MESH_ID: cluster.local
TRUST_DOMAIN: cluster.local
ISTIO_KUBE_APP_PROBERS: {"/app-health/productpage/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
Mounts:
/etc/istio/pod from istio-podinfo (rw)
/etc/istio/proxy from istio-envoy (rw)
/var/lib/istio/data from istio-data (rw)
/var/run/cilium from cilium-unix-sock-dir (rw)
/var/run/secrets/istio from istiod-ca-cert (rw)
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
/var/run/secrets/tokens from istio-token (rw)
Conditions:
Type Status
Initialized True
Ready True
ContainersReady True
PodScheduled True
Volumes:
cilium-unix-sock-dir:
Type: HostPath (bare host directory volume)
Path: /var/run/cilium
HostPathType:
istio-envoy:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium: Memory
SizeLimit: <unset>
istio-data:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium:
SizeLimit: <unset>
istio-podinfo:
Type: DownwardAPI (a volume populated by information about the pod)
Items:
metadata.labels -> labels
metadata.annotations -> annotations
limits.cpu -> cpu-limit
requests.cpu -> cpu-request
istio-token:
Type: Projected (a volume that contains injected data from multiple sources)
TokenExpirationSeconds: 43200
istiod-ca-cert:
Type: ConfigMap (a volume populated by a ConfigMap)
Name: istio-ca-root-cert
Optional: false
default-token-sx44r:
Type: Secret (a volume populated by a Secret)
SecretName: default-token-sx44r
Optional: false
QoS Class: Burstable
Node-Selectors: <none>
Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
Type Reason Age From Message
---- ------ ---- ---- -------
Normal Scheduled 4m default-scheduler Successfully assigned default/productpage-v1-66b44dc6-8mmp5 to gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv
Normal Pulling 3m58s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Pulling image "busybox:1.31.1"
Normal Created 3m58s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container dns-probe
Normal Started 3m58s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container dns-probe
Normal Pulled 3m58s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Successfully pulled image "busybox:1.31.1" in 581.181427ms
Normal Pulling 3m52s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Pulling image "quay.io/cilium/istio_proxy:1.10.3"
Normal Pulled 3m48s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Successfully pulled image "quay.io/cilium/istio_proxy:1.10.3" in 3.519294081s
Normal Pulling 3m47s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Pulling image "docker.io/istio/examples-bookinfo-productpage-v1:0.2.3"
Normal Created 3m47s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container istio-init
Normal Started 3m47s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container istio-init
Normal Pulled 3m33s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Successfully pulled image "docker.io/istio/examples-bookinfo-productpage-v1:0.2.3" in 14.150746571s
Normal Created 3m26s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container productpage
Normal Started 3m26s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container productpage
Normal Pulled 3m26s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
Normal Created 3m26s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Created container istio-proxy
Normal Started 3m26s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv Started container istio-proxy
Name: ratings-v1-6c5dd8d8f9-b2dgf
Namespace: default
Priority: 0
Node: gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5/10.128.0.9
Start Time: Mon, 30 Aug 2021 09:39:20 +0000
Labels: app=ratings
istio.io/rev=default
pod-template-hash=6c5dd8d8f9
security.istio.io/tlsMode=istio
service.istio.io/canonical-name=ratings
service.istio.io/canonical-revision=v1
version=v1
zgroup=bookinfo
Annotations: kubectl.kubernetes.io/default-container: ratings
kubectl.kubernetes.io/default-logs-container: ratings
prometheus.io/path: /stats/prometheus
prometheus.io/port: 15020
prometheus.io/scrape: true
sidecar.istio.io/status:
{"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
Status: Pending
IP: 10.136.1.1
IPs:
IP: 10.136.1.1
Controlled By: ReplicaSet/ratings-v1-6c5dd8d8f9
Init Containers:
dns-probe:
Container ID: containerd://0eecb28146b5a2055088d295ca4e907ef7732b9c968261864de403d8c14a1ef2
Image: busybox:1.31.1
Image ID: docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
Port: <none>
Host Port: <none>
Command:
sh
-c
max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done
State: Running
Started: Mon, 30 Aug 2021 09:39:23 +0000
Ready: False
Restart Count: 0
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-init:
Container ID:
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID:
Port: <none>
Host Port: <none>
Args:
istio-iptables
-p
15001
-z
15006
-u
1337
-m
TPROXY
-i
*
-x
-b
*
-d
15090,15021,15020
State: Waiting
Reason: PodInitializing
Ready: False
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
Containers:
ratings:
Container ID:
Image: docker.io/istio/examples-bookinfo-ratings-v1:1.16.2
Image ID:
Port: 9080/TCP
Host Port: 0/TCP
State: Waiting
Reason: PodInitializing
Ready: False
Restart Count: 0
Readiness: http-get http://:15020/app-health/ratings/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-proxy:
Container ID:
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID:
Port: 15090/TCP
Host Port: 0/TCP
Args:
proxy
sidecar
--domain
$(POD_NAMESPACE).svc.cluster.local
--serviceCluster
ratings.$(POD_NAMESPACE)
--proxyLogLevel=warning
--proxyComponentLogLevel=misc:error
--log_output_level=default:info
--concurrency
2
State: Waiting
Reason: PodInitializing
Ready: False
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Readiness: http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
Environment:
JWT_POLICY: third-party-jwt
PILOT_CERT_PROVIDER: istiod
CA_ADDR: istiod.istio-system.svc:15012
POD_NAME: ratings-v1-6c5dd8d8f9-b2dgf (v1:metadata.name)
POD_NAMESPACE: default (v1:metadata.namespace)
INSTANCE_IP: (v1:status.podIP)
SERVICE_ACCOUNT: (v1:spec.serviceAccountName)
HOST_IP: (v1:status.hostIP)
CANONICAL_SERVICE: (v1:metadata.labels['service.istio.io/canonical-name'])
CANONICAL_REVISION: (v1:metadata.labels['service.istio.io/canonical-revision'])
PROXY_CONFIG: {"interceptionMode":"TPROXY"}
ISTIO_META_POD_PORTS: [
{"containerPort":9080,"protocol":"TCP"}
]
ISTIO_META_APP_CONTAINERS: ratings
ISTIO_META_CLUSTER_ID: Kubernetes
ISTIO_META_INTERCEPTION_MODE: TPROXY
ISTIO_META_WORKLOAD_NAME: ratings-v1
ISTIO_META_OWNER: kubernetes://apis/apps/v1/namespaces/default/deployments/ratings-v1
ISTIO_META_MESH_ID: cluster.local
TRUST_DOMAIN: cluster.local
ISTIO_KUBE_APP_PROBERS: {"/app-health/ratings/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
Mounts:
/etc/istio/pod from istio-podinfo (rw)
/etc/istio/proxy from istio-envoy (rw)
/var/lib/istio/data from istio-data (rw)
/var/run/cilium from cilium-unix-sock-dir (rw)
/var/run/secrets/istio from istiod-ca-cert (rw)
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
/var/run/secrets/tokens from istio-token (rw)
Conditions:
Type Status
Initialized False
Ready False
ContainersReady False
PodScheduled True
Volumes:
cilium-unix-sock-dir:
Type: HostPath (bare host directory volume)
Path: /var/run/cilium
HostPathType:
istio-envoy:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium: Memory
SizeLimit: <unset>
istio-data:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium:
SizeLimit: <unset>
istio-podinfo:
Type: DownwardAPI (a volume populated by information about the pod)
Items:
metadata.labels -> labels
metadata.annotations -> annotations
limits.cpu -> cpu-limit
requests.cpu -> cpu-request
istio-token:
Type: Projected (a volume that contains injected data from multiple sources)
TokenExpirationSeconds: 43200
istiod-ca-cert:
Type: ConfigMap (a volume populated by a ConfigMap)
Name: istio-ca-root-cert
Optional: false
default-token-sx44r:
Type: Secret (a volume populated by a Secret)
SecretName: default-token-sx44r
Optional: false
QoS Class: Burstable
Node-Selectors: <none>
Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
Type Reason Age From Message
---- ------ ---- ---- -------
Normal Scheduled 4m2s default-scheduler Successfully assigned default/ratings-v1-6c5dd8d8f9-b2dgf to gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5
Normal Pulling 4m kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Pulling image "busybox:1.31.1"
Normal Pulled 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Successfully pulled image "busybox:1.31.1" in 715.749162ms
Normal Created 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container dns-probe
Normal Started 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container dns-probe
Name: reviews-v1-858cfcc657-vlm67
Namespace: default
Priority: 0
Node: gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5/10.128.0.9
Start Time: Mon, 30 Aug 2021 09:39:21 +0000
Labels: app=reviews
istio.io/rev=default
pod-template-hash=858cfcc657
security.istio.io/tlsMode=istio
service.istio.io/canonical-name=reviews
service.istio.io/canonical-revision=v1
track=stable
version=v1
zgroup=bookinfo
Annotations: kubectl.kubernetes.io/default-container: reviews
kubectl.kubernetes.io/default-logs-container: reviews
prometheus.io/path: /stats/prometheus
prometheus.io/port: 15020
prometheus.io/scrape: true
sidecar.istio.io/status:
{"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
Status: Running
IP: 10.136.1.127
IPs:
IP: 10.136.1.127
Controlled By: ReplicaSet/reviews-v1-858cfcc657
Init Containers:
dns-probe:
Container ID: containerd://344e3ee4351c7c07fd14ad612460afd1883102b50b4cb3b26609f39fdae788fb
Image: busybox:1.31.1
Image ID: docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
Port: <none>
Host Port: <none>
Command:
sh
-c
max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:23 +0000
Finished: Mon, 30 Aug 2021 09:39:28 +0000
Ready: True
Restart Count: 0
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-init:
Container ID: containerd://e6a08095281dc9e5a21de3667319977c0f626a577ab914ba70f6f62c791ad5aa
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: <none>
Host Port: <none>
Args:
istio-iptables
-p
15001
-z
15006
-u
1337
-m
TPROXY
-i
*
-x
-b
*
-d
15090,15021,15020
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:29 +0000
Finished: Mon, 30 Aug 2021 09:39:29 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
Containers:
reviews:
Container ID: containerd://33389a800a44a02272e0c564e82a8b206343a4a5a15c5a4b1089acfcebc095c5
Image: docker.io/istio/examples-bookinfo-reviews-v1:1.6.0
Image ID: docker.io/istio/examples-bookinfo-reviews-v1@sha256:e0b652146ca2f3dacc176a65f1f00bad2dc22bfbdcda29a0f328ac81fb010aa5
Port: 9080/TCP
Host Port: 0/TCP
State: Running
Started: Mon, 30 Aug 2021 09:39:45 +0000
Ready: True
Restart Count: 0
Readiness: http-get http://:15020/app-health/reviews/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-proxy:
Container ID: containerd://21bb2a2951582dfa1445a40560781d89bdd9cace9e93c5916b511e72696c457d
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: 15090/TCP
Host Port: 0/TCP
Args:
proxy
sidecar
--domain
$(POD_NAMESPACE).svc.cluster.local
--serviceCluster
reviews.$(POD_NAMESPACE)
--proxyLogLevel=warning
--proxyComponentLogLevel=misc:error
--log_output_level=default:info
--concurrency
2
State: Running
Started: Mon, 30 Aug 2021 09:39:45 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Readiness: http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
Environment:
JWT_POLICY: third-party-jwt
PILOT_CERT_PROVIDER: istiod
CA_ADDR: istiod.istio-system.svc:15012
POD_NAME: reviews-v1-858cfcc657-vlm67 (v1:metadata.name)
POD_NAMESPACE: default (v1:metadata.namespace)
INSTANCE_IP: (v1:status.podIP)
SERVICE_ACCOUNT: (v1:spec.serviceAccountName)
HOST_IP: (v1:status.hostIP)
CANONICAL_SERVICE: (v1:metadata.labels['service.istio.io/canonical-name'])
CANONICAL_REVISION: (v1:metadata.labels['service.istio.io/canonical-revision'])
PROXY_CONFIG: {"interceptionMode":"TPROXY"}
ISTIO_META_POD_PORTS: [
{"containerPort":9080,"protocol":"TCP"}
]
ISTIO_META_APP_CONTAINERS: reviews
ISTIO_META_CLUSTER_ID: Kubernetes
ISTIO_META_INTERCEPTION_MODE: TPROXY
ISTIO_META_WORKLOAD_NAME: reviews-v1
ISTIO_META_OWNER: kubernetes://apis/apps/v1/namespaces/default/deployments/reviews-v1
ISTIO_META_MESH_ID: cluster.local
TRUST_DOMAIN: cluster.local
ISTIO_KUBE_APP_PROBERS: {"/app-health/reviews/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
Mounts:
/etc/istio/pod from istio-podinfo (rw)
/etc/istio/proxy from istio-envoy (rw)
/var/lib/istio/data from istio-data (rw)
/var/run/cilium from cilium-unix-sock-dir (rw)
/var/run/secrets/istio from istiod-ca-cert (rw)
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
/var/run/secrets/tokens from istio-token (rw)
Conditions:
Type Status
Initialized True
Ready True
ContainersReady True
PodScheduled True
Volumes:
cilium-unix-sock-dir:
Type: HostPath (bare host directory volume)
Path: /var/run/cilium
HostPathType:
istio-envoy:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium: Memory
SizeLimit: <unset>
istio-data:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium:
SizeLimit: <unset>
istio-podinfo:
Type: DownwardAPI (a volume populated by information about the pod)
Items:
metadata.labels -> labels
metadata.annotations -> annotations
limits.cpu -> cpu-limit
requests.cpu -> cpu-request
istio-token:
Type: Projected (a volume that contains injected data from multiple sources)
TokenExpirationSeconds: 43200
istiod-ca-cert:
Type: ConfigMap (a volume populated by a ConfigMap)
Name: istio-ca-root-cert
Optional: false
default-token-sx44r:
Type: Secret (a volume populated by a Secret)
SecretName: default-token-sx44r
Optional: false
QoS Class: Burstable
Node-Selectors: <none>
Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
Type Reason Age From Message
---- ------ ---- ---- -------
Normal Scheduled 4m1s default-scheduler Successfully assigned default/reviews-v1-858cfcc657-vlm67 to gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5
Normal Pulled 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Container image "busybox:1.31.1" already present on machine
Normal Created 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container dns-probe
Normal Started 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container dns-probe
Normal Pulled 3m54s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
Normal Created 3m53s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container istio-init
Normal Started 3m53s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container istio-init
Normal Pulling 3m53s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Pulling image "docker.io/istio/examples-bookinfo-reviews-v1:1.6.0"
Normal Pulled 3m37s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Successfully pulled image "docker.io/istio/examples-bookinfo-reviews-v1:1.6.0" in 15.031598703s
Normal Created 3m37s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container reviews
Normal Started 3m37s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container reviews
Normal Pulled 3m37s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
Normal Created 3m37s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container istio-proxy
Normal Started 3m37s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container istio-proxy
Name: reviews-v2-57fcb764c-xlllp
Namespace: default
Priority: 0
Node: gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5/10.128.0.9
Start Time: Mon, 30 Aug 2021 09:39:20 +0000
Labels: app=reviews
istio.io/rev=default
pod-template-hash=57fcb764c
security.istio.io/tlsMode=istio
service.istio.io/canonical-name=reviews
service.istio.io/canonical-revision=v2
version=v2
zgroup=bookinfo
Annotations: kubectl.kubernetes.io/default-container: reviews
kubectl.kubernetes.io/default-logs-container: reviews
prometheus.io/path: /stats/prometheus
prometheus.io/port: 15020
prometheus.io/scrape: true
sidecar.istio.io/status:
{"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
Status: Running
IP: 10.136.1.250
IPs:
IP: 10.136.1.250
Controlled By: ReplicaSet/reviews-v2-57fcb764c
Init Containers:
dns-probe:
Container ID: containerd://df403098c6af5929447564870039d0b1ed0c25867ea674860d5d6df5d33fead5
Image: busybox:1.31.1
Image ID: docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
Port: <none>
Host Port: <none>
Command:
sh
-c
max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:23 +0000
Finished: Mon, 30 Aug 2021 09:39:28 +0000
Ready: True
Restart Count: 0
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-init:
Container ID: containerd://931de76ed271b52342c53f30e772e9a604eb135ed15d12f8441c72f5f1792275
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: <none>
Host Port: <none>
Args:
istio-iptables
-p
15001
-z
15006
-u
1337
-m
TPROXY
-i
*
-x
-b
*
-d
15090,15021,15020
State: Terminated
Reason: Completed
Exit Code: 0
Started: Mon, 30 Aug 2021 09:39:29 +0000
Finished: Mon, 30 Aug 2021 09:39:29 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
Containers:
reviews:
Container ID: containerd://f0300058a97062999575bd8e36952a9bdbbe45a4720bb264b46f73721962e665
Image: docker.io/istio/examples-bookinfo-reviews-v2:1.6.0
Image ID: docker.io/istio/examples-bookinfo-reviews-v2@sha256:b42f897f98b57d018a2e436ac612dd4b6d0c0324e263ff11cf2be2366164b592
Port: 9080/TCP
Host Port: 0/TCP
State: Running
Started: Mon, 30 Aug 2021 09:39:44 +0000
Ready: True
Restart Count: 0
Readiness: http-get http://:15020/app-health/reviews/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
Environment: <none>
Mounts:
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
istio-proxy:
Container ID: containerd://b838b310a497cf33c94bc2fe5b003e276e2dad5ad2bf31722a26e7a20b7bc787
Image: quay.io/cilium/istio_proxy:1.10.3
Image ID: quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
Port: 15090/TCP
Host Port: 0/TCP
Args:
proxy
sidecar
--domain
$(POD_NAMESPACE).svc.cluster.local
--serviceCluster
reviews.$(POD_NAMESPACE)
--proxyLogLevel=warning
--proxyComponentLogLevel=misc:error
--log_output_level=default:info
--concurrency
2
State: Running
Started: Mon, 30 Aug 2021 09:39:44 +0000
Ready: True
Restart Count: 0
Limits:
cpu: 2
memory: 1Gi
Requests:
cpu: 100m
memory: 128Mi
Readiness: http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
Environment:
JWT_POLICY: third-party-jwt
PILOT_CERT_PROVIDER: istiod
CA_ADDR: istiod.istio-system.svc:15012
POD_NAME: reviews-v2-57fcb764c-xlllp (v1:metadata.name)
POD_NAMESPACE: default (v1:metadata.namespace)
INSTANCE_IP: (v1:status.podIP)
SERVICE_ACCOUNT: (v1:spec.serviceAccountName)
HOST_IP: (v1:status.hostIP)
CANONICAL_SERVICE: (v1:metadata.labels['service.istio.io/canonical-name'])
CANONICAL_REVISION: (v1:metadata.labels['service.istio.io/canonical-revision'])
PROXY_CONFIG: {"interceptionMode":"TPROXY"}
ISTIO_META_POD_PORTS: [
{"containerPort":9080,"protocol":"TCP"}
]
ISTIO_META_APP_CONTAINERS: reviews
ISTIO_META_CLUSTER_ID: Kubernetes
ISTIO_META_INTERCEPTION_MODE: TPROXY
ISTIO_META_WORKLOAD_NAME: reviews-v2
ISTIO_META_OWNER: kubernetes://apis/apps/v1/namespaces/default/deployments/reviews-v2
ISTIO_META_MESH_ID: cluster.local
TRUST_DOMAIN: cluster.local
ISTIO_KUBE_APP_PROBERS: {"/app-health/reviews/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
Mounts:
/etc/istio/pod from istio-podinfo (rw)
/etc/istio/proxy from istio-envoy (rw)
/var/lib/istio/data from istio-data (rw)
/var/run/cilium from cilium-unix-sock-dir (rw)
/var/run/secrets/istio from istiod-ca-cert (rw)
/var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
/var/run/secrets/tokens from istio-token (rw)
Conditions:
Type Status
Initialized True
Ready True
ContainersReady True
PodScheduled True
Volumes:
cilium-unix-sock-dir:
Type: HostPath (bare host directory volume)
Path: /var/run/cilium
HostPathType:
istio-envoy:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium: Memory
SizeLimit: <unset>
istio-data:
Type: EmptyDir (a temporary directory that shares a pod's lifetime)
Medium:
SizeLimit: <unset>
istio-podinfo:
Type: DownwardAPI (a volume populated by information about the pod)
Items:
metadata.labels -> labels
metadata.annotations -> annotations
limits.cpu -> cpu-limit
requests.cpu -> cpu-request
istio-token:
Type: Projected (a volume that contains injected data from multiple sources)
TokenExpirationSeconds: 43200
istiod-ca-cert:
Type: ConfigMap (a volume populated by a ConfigMap)
Name: istio-ca-root-cert
Optional: false
default-token-sx44r:
Type: Secret (a volume populated by a Secret)
SecretName: default-token-sx44r
Optional: false
QoS Class: Burstable
Node-Selectors: <none>
Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
Type Reason Age From Message
---- ------ ---- ---- -------
Normal Scheduled 4m2s default-scheduler Successfully assigned default/reviews-v2-57fcb764c-xlllp to gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5
Normal Pulling 4m kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Pulling image "busybox:1.31.1"
Normal Pulled 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Successfully pulled image "busybox:1.31.1" in 500.350364ms
Normal Created 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container dns-probe
Normal Started 3m59s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container dns-probe
Normal Pulled 3m54s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
Normal Created 3m53s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container istio-init
Normal Started 3m53s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container istio-init
Normal Pulling 3m53s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Pulling image "docker.io/istio/examples-bookinfo-reviews-v2:1.6.0"
Normal Pulled 3m42s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Successfully pulled image "docker.io/istio/examples-bookinfo-reviews-v2:1.6.0" in 10.260389189s
Normal Created 3m38s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container reviews
Normal Started 3m38s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container reviews
Normal Pulled 3m38s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
Normal Created 3m38s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Created container istio-proxy
Normal Started 3m38s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Started container istio-proxy
Warning Unhealthy 3m30s kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 Readiness probe failed: HTTP probe failed with statuscode: 404
Stderr:
FAIL: Pods are not ready after timeout
Expected
<*errors.errorString | 0xc000b720e0>: {
s: "timed out waiting for pods with filter -l zgroup=bookinfo to be ready: 4m0s timeout expired",
}
to be nil
=== Test Finished at 2021-08-30T09:43:22Z====
09:43:22 STEP: Running JustAfterEach block for EntireTestsuite K8sIstioTest
===================== TEST FAILED =====================
09:43:23 STEP: Running AfterFailed block for EntireTestsuite K8sIstioTest
cmd: kubectl get pods -o wide --all-namespaces
Exitcode: 0
Stdout:
NAMESPACE NAME READY STATUS RESTARTS AGE IP NODE NOMINATED NODE READINESS GATES
cilium-monitoring grafana-d69c97b9b-qnxvn 1/1 Running 0 8m14s 10.136.1.6 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
cilium-monitoring prometheus-655fb888d7-bw757 1/1 Running 0 8m14s 10.136.2.7 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
default details-v1-7979fc5975-6dpbt 2/2 Running 0 4m7s 10.136.2.212 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
default productpage-v1-66b44dc6-8mmp5 2/2 Running 0 4m6s 10.136.2.134 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
default ratings-v1-6c5dd8d8f9-b2dgf 0/2 Init:0/2 0 4m7s 10.136.1.1 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
default reviews-v1-858cfcc657-vlm67 2/2 Running 0 4m6s 10.136.1.127 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
default reviews-v2-57fcb764c-xlllp 2/2 Running 0 4m7s 10.136.1.250 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
istio-system istio-ingressgateway-764c665bbf-s279m 1/1 Running 0 4m32s 10.136.1.33 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
istio-system istiod-9f4b7b45f-6xbxn 1/1 Running 0 4m46s 10.136.2.194 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system cilium-bwbnh 1/1 Running 0 8m2s 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system cilium-g8xhz 1/1 Running 0 8m1s 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system cilium-node-init-cvsx7 1/1 Running 0 8m1s 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system cilium-node-init-qj86n 1/1 Running 0 8m1s 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system cilium-operator-864c96b5dd-9fkb8 1/1 Running 0 8m1s 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system cilium-operator-864c96b5dd-hngxn 1/1 Running 0 8m1s 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system event-exporter-gke-67986489c8-4b7hk 2/2 Running 0 7m10s 10.136.1.229 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system fluentbit-gke-r7brl 2/2 Running 0 10m 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system fluentbit-gke-z9csb 2/2 Running 0 10m 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system gke-metrics-agent-mhdfr 1/1 Running 0 10m 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system gke-metrics-agent-mtvhc 1/1 Running 0 10m 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system kube-dns-6c7b8dc9f9-ghdw8 4/4 Running 0 7m34s 10.136.2.23 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system kube-dns-6c7b8dc9f9-rd8kp 4/4 Running 0 7m19s 10.136.1.8 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system kube-dns-autoscaler-58cbd4f75c-dwpxs 1/1 Running 0 7m10s 10.136.2.169 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system kube-proxy-gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 1/1 Running 0 10m 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system kube-proxy-gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv 1/1 Running 0 10m 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system l7-default-backend-66579f5d7-w85z5 1/1 Running 0 7m9s 10.136.2.71 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system log-gatherer-f6nch 1/1 Running 0 8m31s 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system log-gatherer-wc67q 1/1 Running 0 8m31s 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system metrics-server-v0.3.6-6c47ffd7d7-xcl9l 2/2 Running 0 7m9s 10.136.2.124 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system pdcsi-node-rsbfn 2/2 Running 0 10m 10.128.0.8 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
kube-system pdcsi-node-xclw6 2/2 Running 0 10m 10.128.0.9 gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5 <none> <none>
kube-system stackdriver-metadata-agent-cluster-level-69b56d776c-6j87c 2/2 Running 0 7m9s 10.136.2.4 gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv <none> <none>
Stderr:
Fetching command output from pods [cilium-bwbnh cilium-g8xhz]
cmd: kubectl exec -n kube-system cilium-bwbnh -c cilium-agent -- cilium endpoint list
Exitcode: 0
Stdout:
ENDPOINT POLICY (ingress) POLICY (egress) IDENTITY LABELS (source:key[=value]) IPv6 IPv4 STATUS
ENFORCEMENT ENFORCEMENT
73 Disabled Disabled 37794 k8s:app=stackdriver-metadata-agent 10.136.2.4 ready
k8s:cluster-level=true
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.serviceaccount=metadata-agent
k8s:io.kubernetes.pod.namespace=kube-system
346 Disabled Disabled 42005 k8s:app=productpage 10.136.2.134 ready
k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.istiosidecarproxy=true
k8s:io.cilium.k8s.policy.serviceaccount=default
k8s:io.kubernetes.pod.namespace=default
k8s:istio.io/rev=default
k8s:security.istio.io/tlsMode=istio
k8s:service.istio.io/canonical-name=productpage
k8s:service.istio.io/canonical-revision=v1
k8s:track=stable
k8s:version=v1
k8s:zgroup=bookinfo
1239 Disabled Disabled 1 k8s:cilium.io/ci-node=k8s2 ready
k8s:cloud.google.com/gke-boot-disk=pd-standard
k8s:cloud.google.com/gke-container-runtime=containerd
k8s:cloud.google.com/gke-nodepool=cilium-ci-1
k8s:cloud.google.com/gke-os-distribution=cos
k8s:cloud.google.com/machine-family=n1
k8s:node.kubernetes.io/instance-type=n1-standard-4
k8s:topology.gke.io/zone=us-west1-b
k8s:topology.kubernetes.io/region=us-west1
k8s:topology.kubernetes.io/zone=us-west1-b
reserved:host
2346 Enabled Disabled 4776 k8s:app=details 10.136.2.212 ready
k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.istiosidecarproxy=true
k8s:io.cilium.k8s.policy.serviceaccount=default
k8s:io.kubernetes.pod.namespace=default
k8s:istio.io/rev=default
k8s:security.istio.io/tlsMode=istio
k8s:service.istio.io/canonical-name=details
k8s:service.istio.io/canonical-revision=v1
k8s:track=stable
k8s:version=v1
k8s:zgroup=bookinfo
2385 Disabled Disabled 39878 k8s:io.cilium.k8s.policy.cluster=default 10.136.2.124 ready
k8s:io.cilium.k8s.policy.serviceaccount=metrics-server
k8s:io.kubernetes.pod.namespace=kube-system
k8s:k8s-app=metrics-server
k8s:version=v0.3.6
2498 Disabled Disabled 23965 k8s:io.cilium.k8s.policy.cluster=default 10.136.2.71 ready
k8s:io.cilium.k8s.policy.serviceaccount=default
k8s:io.kubernetes.pod.namespace=kube-system
k8s:k8s-app=glbc
k8s:name=glbc
2545 Disabled Disabled 57976 k8s:app=istiod 10.136.2.194 ready
k8s:install.operator.istio.io/owning-resource=unknown
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.serviceaccount=istiod-service-account
k8s:io.kubernetes.pod.namespace=istio-system
k8s:istio.io/rev=default
k8s:istio=pilot
k8s:operator.istio.io/component=Pilot
k8s:sidecar.istio.io/inject=false
2977 Disabled Disabled 4 reserved:health 10.136.2.97 ready
3180 Disabled Disabled 14780 k8s:io.cilium.k8s.policy.cluster=default 10.136.2.23 ready
k8s:io.cilium.k8s.policy.serviceaccount=kube-dns
k8s:io.kubernetes.pod.namespace=kube-system
k8s:k8s-app=kube-dns
3774 Disabled Disabled 65174 k8s:io.cilium.k8s.policy.cluster=default 10.136.2.169 ready
k8s:io.cilium.k8s.policy.serviceaccount=kube-dns-autoscaler
k8s:io.kubernetes.pod.namespace=kube-system
k8s:k8s-app=kube-dns-autoscaler
Stderr:
cmd: kubectl exec -n kube-system cilium-g8xhz -c cilium-agent -- cilium endpoint list
Exitcode: 0
Stdout:
ENDPOINT POLICY (ingress) POLICY (egress) IDENTITY LABELS (source:key[=value]) IPv6 IPv4 STATUS
ENFORCEMENT ENFORCEMENT
215 Disabled Disabled 24165 k8s:app=reviews 10.136.1.127 ready
k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.istiosidecarproxy=true
k8s:io.cilium.k8s.policy.serviceaccount=default
k8s:io.kubernetes.pod.namespace=default
k8s:istio.io/rev=default
k8s:security.istio.io/tlsMode=istio
k8s:service.istio.io/canonical-name=reviews
k8s:service.istio.io/canonical-revision=v1
k8s:track=stable
k8s:version=v1
k8s:zgroup=bookinfo
226 Disabled Disabled 47715 k8s:app=istio-ingressgateway 10.136.1.33 ready
k8s:chart=gateways
k8s:heritage=Tiller
k8s:install.operator.istio.io/owning-resource=unknown
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.serviceaccount=istio-ingressgateway-service-account
k8s:io.kubernetes.pod.namespace=istio-system
k8s:istio.io/rev=default
k8s:istio=ingressgateway
k8s:operator.istio.io/component=IngressGateways
k8s:release=istio
k8s:service.istio.io/canonical-name=istio-ingressgateway
k8s:service.istio.io/canonical-revision=latest
k8s:sidecar.istio.io/inject=false
658 Disabled Disabled 11815 k8s:io.cilium.k8s.policy.cluster=default 10.136.1.229 ready
k8s:io.cilium.k8s.policy.serviceaccount=event-exporter-sa
k8s:io.kubernetes.pod.namespace=kube-system
k8s:k8s-app=event-exporter
k8s:version=v0.3.4
714 Disabled Disabled 4 reserved:health 10.136.1.237 ready
1399 Disabled Disabled 25557 k8s:app=ratings 10.136.1.1 waiting-to-regenerate
k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.istiosidecarproxy=true
k8s:io.cilium.k8s.policy.serviceaccount=default
k8s:io.kubernetes.pod.namespace=default
k8s:istio.io/rev=default
k8s:security.istio.io/tlsMode=istio
k8s:service.istio.io/canonical-name=ratings
k8s:service.istio.io/canonical-revision=v1
k8s:version=v1
k8s:zgroup=bookinfo
2115 Disabled Disabled 1 k8s:cilium.io/ci-node=k8s1 ready
k8s:cloud.google.com/gke-boot-disk=pd-standard
k8s:cloud.google.com/gke-container-runtime=containerd
k8s:cloud.google.com/gke-nodepool=cilium-ci-1
k8s:cloud.google.com/gke-os-distribution=cos
k8s:cloud.google.com/machine-family=n1
k8s:node.kubernetes.io/instance-type=n1-standard-4
k8s:topology.gke.io/zone=us-west1-b
k8s:topology.kubernetes.io/region=us-west1
k8s:topology.kubernetes.io/zone=us-west1-b
reserved:host
2820 Disabled Disabled 14780 k8s:io.cilium.k8s.policy.cluster=default 10.136.1.8 ready
k8s:io.cilium.k8s.policy.serviceaccount=kube-dns
k8s:io.kubernetes.pod.namespace=kube-system
k8s:k8s-app=kube-dns
3059 Disabled Disabled 1708 k8s:app=reviews 10.136.1.250 ready
k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled
k8s:io.cilium.k8s.policy.cluster=default
k8s:io.cilium.k8s.policy.istiosidecarproxy=true
k8s:io.cilium.k8s.policy.serviceaccount=default
k8s:io.kubernetes.pod.namespace=default
k8s:istio.io/rev=default
k8s:security.istio.io/tlsMode=istio
k8s:service.istio.io/canonical-name=reviews
k8s:service.istio.io/canonical-revision=v2
k8s:version=v2
k8s:zgroup=bookinfo
Stderr:
===================== Exiting AfterFailed =====================
09:44:07 STEP: Running AfterEach for block EntireTestsuite K8sIstioTest Istio Bookinfo Demo
09:44:07 STEP: Deleting resource in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v2.yaml"
09:44:07 STEP: Deleting resource in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v1.yaml"
09:44:09 STEP: Deleting policy in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/cnp-specs.yaml"
09:44:09 STEP: Running AfterEach for block EntireTestsuite
[[ATTACHMENT|0fa09605_K8sIstioTest_Istio_Bookinfo_Demo_Tests_bookinfo_inter-service_connectivity.zip]]
09:44:11 STEP: Running AfterAll block for EntireTestsuite K8sIstioTest
09:44:11 STEP: Deleting default namespace sidecar injection label
09:44:11 STEP: Setting label istio-injection- in namespace default
09:44:12 STEP: Deleting the Istio resources
09:44:20 STEP: Waiting all terminating PODs to disappear
09:45:00 STEP: Deleting the istio-system namespace
09:45:00 STEP: Deleting namespace istio-system
09:45:16 STEP: Removing Cilium installation using generated helm manifest
Test Name
Failure Output
Stacktrace
Click to show.
Standard Output
Click to show.
Standard Error
Click to show.
ZIP Links:
Click to show.
https://jenkins.cilium.io/job/Cilium-PR-K8s-GKE//6306/artifact/src/github.com/cilium/cilium/0fa09605_K8sIstioTest_Istio_Bookinfo_Demo_Tests_bookinfo_inter-service_connectivity.zip
https://jenkins.cilium.io/job/Cilium-PR-K8s-GKE//6306/artifact/src/github.com/cilium/cilium/test_results_Cilium-PR-K8s-GKE_6306_BDD-Test-PR.zip
Jenkins URL: https://jenkins.cilium.io/job/Cilium-PR-K8s-GKE/6306/
If this is a duplicate of an existing flake, comment 'Duplicate of #<issue-number>' and close this issue.