github.com/verrazzano/verrazzano@v1.7.0/tools/vz/pkg/analysis/test/cluster/problem-pods-install/cluster-snapshot/verrazzano-ingress-nginx/ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m/logs.txt (about) 1 # Copyright (c) 2023, Oracle and/or its affiliates. 2 # Licensed under the Universal Permissive License v 1.0 as shown at https://oss.oracle.com/licenses/upl. 3 4 ==== START logs for container istio-init of pod ingress-nginx/ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m ==== 5 2022-06-16T10:20:30.977179Z info Istio iptables environment: 6 ENVOY_PORT= 7 INBOUND_CAPTURE_PORT= 8 ISTIO_INBOUND_INTERCEPTION_MODE= 9 ISTIO_INBOUND_TPROXY_ROUTE_TABLE= 10 ISTIO_INBOUND_PORTS= 11 ISTIO_OUTBOUND_PORTS= 12 ISTIO_LOCAL_EXCLUDE_PORTS= 13 ISTIO_EXCLUDE_INTERFACES= 14 ISTIO_SERVICE_CIDR= 15 ISTIO_SERVICE_EXCLUDE_CIDR= 16 ISTIO_META_DNS_CAPTURE= 17 INVALID_DROP= 18 19 2022-06-16T10:20:30.977293Z info Istio iptables variables: 20 PROXY_PORT=15001 21 PROXY_INBOUND_CAPTURE_PORT=15006 22 PROXY_TUNNEL_PORT=15008 23 PROXY_UID=1337 24 PROXY_GID=1337 25 INBOUND_INTERCEPTION_MODE=REDIRECT 26 INBOUND_TPROXY_MARK=1337 27 INBOUND_TPROXY_ROUTE_TABLE=133 28 INBOUND_PORTS_INCLUDE=* 29 INBOUND_PORTS_EXCLUDE=15090,15021,8080,15020 30 OUTBOUND_IP_RANGES_INCLUDE=* 31 OUTBOUND_IP_RANGES_EXCLUDE= 32 OUTBOUND_PORTS_INCLUDE= 33 OUTBOUND_PORTS_EXCLUDE= 34 KUBE_VIRT_INTERFACES= 35 ENABLE_INBOUND_IPV6=false 36 DNS_CAPTURE=false 37 DROP_INVALID=false 38 CAPTURE_ALL_DNS=false 39 DNS_SERVERS=[],[] 40 OUTPUT_PATH= 41 NETWORK_NAMESPACE= 42 CNI_MODE=false 43 EXCLUDE_INTERFACES= 44 45 2022-06-16T10:20:30.977539Z info Writing following contents to rules file: /tmp/iptables-rules-1655374830977350058.txt3695617169 46 * nat 47 -N ISTIO_INBOUND 48 -N ISTIO_REDIRECT 49 -N ISTIO_IN_REDIRECT 50 -N ISTIO_OUTPUT 51 -A ISTIO_INBOUND -p tcp --dport 15008 -j RETURN 52 -A ISTIO_REDIRECT -p tcp -j REDIRECT --to-ports 15001 53 -A ISTIO_IN_REDIRECT -p tcp -j REDIRECT --to-ports 15006 54 -A PREROUTING -p tcp -j ISTIO_INBOUND 55 -A ISTIO_INBOUND -p tcp --dport 15090 -j RETURN 56 -A ISTIO_INBOUND -p tcp --dport 15021 -j RETURN 57 -A ISTIO_INBOUND -p tcp --dport 8080 -j RETURN 58 -A ISTIO_INBOUND -p tcp --dport 15020 -j RETURN 59 -A ISTIO_INBOUND -p tcp -j ISTIO_IN_REDIRECT 60 -A OUTPUT -p tcp -j ISTIO_OUTPUT 61 -A ISTIO_OUTPUT -o lo -s REDACTED-IP4-ADDRESS/32 -j RETURN 62 -A ISTIO_OUTPUT -o lo ! -d REDACTED-IP4-ADDRESS/32 -m owner --uid-owner 1337 -j ISTIO_IN_REDIRECT 63 -A ISTIO_OUTPUT -o lo -m owner ! --uid-owner 1337 -j RETURN 64 -A ISTIO_OUTPUT -m owner --uid-owner 1337 -j RETURN 65 -A ISTIO_OUTPUT -o lo ! -d REDACTED-IP4-ADDRESS/32 -m owner --gid-owner 1337 -j ISTIO_IN_REDIRECT 66 -A ISTIO_OUTPUT -o lo -m owner ! --gid-owner 1337 -j RETURN 67 -A ISTIO_OUTPUT -m owner --gid-owner 1337 -j RETURN 68 -A ISTIO_OUTPUT -d REDACTED-IP4-ADDRESS/32 -j RETURN 69 -A ISTIO_OUTPUT -j ISTIO_REDIRECT 70 COMMIT 71 2022-06-16T10:20:30.977586Z info Running command: iptables-restore --noflush /tmp/iptables-rules-1655374830977350058.txt3695617169 72 2022-06-16T10:20:30.991861Z info Writing following contents to rules file: /tmp/ip6tables-rules-1655374830991789955.txt3236266915 73 74 2022-06-16T10:20:30.991913Z info Running command: ip6tables-restore --noflush /tmp/ip6tables-rules-1655374830991789955.txt3236266915 75 2022-06-16T10:20:31.000566Z info Running command: iptables-save 76 2022-06-16T10:20:31.010543Z info Command output: 77 # Generated by iptables-save v1.4.21 on Thu Jun 16 10:20:31 2022 78 *nat 79 :PREROUTING ACCEPT [0:0] 80 :INPUT ACCEPT [0:0] 81 :OUTPUT ACCEPT [0:0] 82 :POSTROUTING ACCEPT [0:0] 83 :ISTIO_INBOUND - [0:0] 84 :ISTIO_IN_REDIRECT - [0:0] 85 :ISTIO_OUTPUT - [0:0] 86 :ISTIO_REDIRECT - [0:0] 87 -A PREROUTING -p tcp -j ISTIO_INBOUND 88 -A OUTPUT -p tcp -j ISTIO_OUTPUT 89 -A ISTIO_INBOUND -p tcp -m tcp --dport 15008 -j RETURN 90 -A ISTIO_INBOUND -p tcp -m tcp --dport 15090 -j RETURN 91 -A ISTIO_INBOUND -p tcp -m tcp --dport 15021 -j RETURN 92 -A ISTIO_INBOUND -p tcp -m tcp --dport 8080 -j RETURN 93 -A ISTIO_INBOUND -p tcp -m tcp --dport 15020 -j RETURN 94 -A ISTIO_INBOUND -p tcp -j ISTIO_IN_REDIRECT 95 -A ISTIO_IN_REDIRECT -p tcp -j REDIRECT --to-ports 15006 96 -A ISTIO_OUTPUT -s REDACTED-IP4-ADDRESS/32 -o lo -j RETURN 97 -A ISTIO_OUTPUT ! -d REDACTED-IP4-ADDRESS/32 -o lo -m owner --uid-owner 1337 -j ISTIO_IN_REDIRECT 98 -A ISTIO_OUTPUT -o lo -m owner ! --uid-owner 1337 -j RETURN 99 -A ISTIO_OUTPUT -m owner --uid-owner 1337 -j RETURN 100 -A ISTIO_OUTPUT ! -d REDACTED-IP4-ADDRESS/32 -o lo -m owner --gid-owner 1337 -j ISTIO_IN_REDIRECT 101 -A ISTIO_OUTPUT -o lo -m owner ! --gid-owner 1337 -j RETURN 102 -A ISTIO_OUTPUT -m owner --gid-owner 1337 -j RETURN 103 -A ISTIO_OUTPUT -d REDACTED-IP4-ADDRESS/32 -j RETURN 104 -A ISTIO_OUTPUT -j ISTIO_REDIRECT 105 -A ISTIO_REDIRECT -p tcp -j REDIRECT --to-ports 15001 106 COMMIT 107 # Completed on Thu Jun 16 10:20:31 2022 108 109 ==== END logs for container istio-init of pod ingress-nginx/ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m ==== 110 ==== START logs for container ingress-nginx-default-backend of pod ingress-nginx/ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m ==== 111 ==== END logs for container ingress-nginx-default-backend of pod ingress-nginx/ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m ==== 112 ==== START logs for container istio-proxy of pod ingress-nginx/ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m ==== 113 2022-06-16T10:20:38.055851Z info FLAG: --concurrency="2" 114 2022-06-16T10:20:38.055887Z info FLAG: --domain="ingress-nginx.svc.cluster.local" 115 2022-06-16T10:20:38.055894Z info FLAG: --help="false" 116 2022-06-16T10:20:38.055898Z info FLAG: --log_as_json="false" 117 2022-06-16T10:20:38.055902Z info FLAG: --log_caller="" 118 2022-06-16T10:20:38.055906Z info FLAG: --log_output_level="default:info" 119 2022-06-16T10:20:38.055910Z info FLAG: --log_rotate="" 120 2022-06-16T10:20:38.055914Z info FLAG: --log_rotate_max_age="30" 121 2022-06-16T10:20:38.055918Z info FLAG: --log_rotate_max_backups="1000" 122 2022-06-16T10:20:38.055922Z info FLAG: --log_rotate_max_size="104857600" 123 2022-06-16T10:20:38.055926Z info FLAG: --log_stacktrace_level="default:none" 124 2022-06-16T10:20:38.055933Z info FLAG: --log_target="[stdout]" 125 2022-06-16T10:20:38.055937Z info FLAG: --meshConfig="./etc/istio/config/mesh" 126 2022-06-16T10:20:38.055941Z info FLAG: --outlierLogPath="" 127 2022-06-16T10:20:38.055945Z info FLAG: --proxyComponentLogLevel="misc:error" 128 2022-06-16T10:20:38.055948Z info FLAG: --proxyLogLevel="warning" 129 2022-06-16T10:20:38.055952Z info FLAG: --serviceCluster="istio-proxy" 130 2022-06-16T10:20:38.055956Z info FLAG: --stsPort="0" 131 2022-06-16T10:20:38.055959Z info FLAG: --templateFile="" 132 2022-06-16T10:20:38.055963Z info FLAG: --tokenManagerPlugin="GoogleTokenExchange" 133 2022-06-16T10:20:38.055968Z info FLAG: --vklog="0" 134 2022-06-16T10:20:38.055974Z info Version 1.13.2-f84f69d1028e874d568f2942c5bab5271fcdeda7-Clean 135 2022-06-16T10:20:38.056255Z info Proxy role ips=[REDACTED-IP4-ADDRESS fe80::84fb:2dff:febe:816f] type=sidecar id=ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m.ingress-nginx domain=ingress-nginx.svc.cluster.local 136 2022-06-16T10:20:38.056344Z info Apply proxy config from env {} 137 138 2022-06-16T10:20:38.057706Z info Effective config: binaryPath: /usr/local/bin/envoy 139 concurrency: 2 140 configPath: ./etc/istio/proxy 141 controlPlaneAuthPolicy: MUTUAL_TLS 142 discoveryAddress: istiod.istio-system.svc:15012 143 drainDuration: 45s 144 parentShutdownDuration: 60s 145 proxyAdminPort: 15000 146 serviceCluster: istio-proxy 147 statNameLength: 189 148 statusPort: 15020 149 terminationDrainDuration: 5s 150 tracing: 151 zipkin: 152 address: zipkin.istio-system:9411 153 154 2022-06-16T10:20:38.057736Z info JWT policy is third-party-jwt 155 2022-06-16T10:20:38.081025Z info CA Endpoint istiod.istio-system.svc:15012, provider Citadel 156 2022-06-16T10:20:38.081083Z info Using CA istiod.istio-system.svc:15012 cert with certs: var/run/secrets/istio/root-cert.pem 157 2022-06-16T10:20:38.081102Z info Opening status port 15020 158 2022-06-16T10:20:38.081206Z info citadelclient Citadel client using custom root cert: var/run/secrets/istio/root-cert.pem 159 2022-06-16T10:20:38.102489Z info ads All caches have been synced up in 57.073125ms, marking server ready 160 2022-06-16T10:20:38.103161Z info sds SDS server for workload certificates started, listening on "etc/istio/proxy/SDS" 161 2022-06-16T10:20:38.103197Z info xdsproxy Initializing with upstream address "istiod.istio-system.svc:15012" and cluster "Kubernetes" 162 2022-06-16T10:20:38.103267Z info sds Starting SDS grpc server 163 2022-06-16T10:20:38.104472Z info starting Http service at REDACTED-IP4-ADDRESS:15004 164 2022-06-16T10:20:38.105203Z info Pilot SAN: [istiod.istio-system.svc] 165 2022-06-16T10:20:38.107512Z info Starting proxy agent 166 2022-06-16T10:20:38.107578Z info Epoch 0 starting 167 2022-06-16T10:20:38.107622Z info Envoy command: [-c etc/istio/proxy/envoy-rev0.json --restart-epoch 0 --drain-time-s 45 --drain-strategy immediate --parent-shutdown-time-s 60 --local-address-ip-version v4 --file-flush-interval-msec 1000 --disable-hot-restart --log-format %Y-%m-%dT%T.%fZ %l envoy %n %v -l warning --component-log-level misc:error --concurrency 2] 168 2022-06-16T10:20:38.472780Z info cache generated new workload certificate latency=369.888934ms ttl=23h59m59.527238582s 169 2022-06-16T10:20:38.472830Z info cache Root cert has changed, start rotating root cert 170 2022-06-16T10:20:38.472857Z info ads XDS: Incremental Pushing:0 ConnectedEndpoints:0 Version: 171 2022-06-16T10:20:38.472941Z info cache returned workload trust anchor from cache ttl=23h59m59.5270632s 172 2022-06-16T10:20:38.868690Z info xdsproxy connected to upstream XDS server: istiod.istio-system.svc:15012 173 2022-06-16T10:20:39.181314Z info ads ADS: new connection for node:ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m.ingress-nginx-1 174 2022-06-16T10:20:39.181459Z info cache returned workload trust anchor from cache ttl=23h59m58.818548035s 175 2022-06-16T10:20:39.181881Z info ads SDS: PUSH request for node:ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m.ingress-nginx resources:1 size:2.0kB resource:ROOTCA 176 2022-06-16T10:20:39.222019Z info ads ADS: new connection for node:ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m.ingress-nginx-2 177 2022-06-16T10:20:39.222152Z info cache returned workload certificate from cache ttl=23h59m58.777856178s 178 2022-06-16T10:20:39.222359Z info ads SDS: PUSH request for node:ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m.ingress-nginx resources:1 size:9.2kB resource:default 179 2022-06-16T10:20:40.679756Z info Readiness succeeded in 2.632886417s 180 2022-06-16T10:20:40.680356Z info Envoy proxy is ready 181 ==== END logs for container istio-proxy of pod ingress-nginx/ingress-controller-ingress-nginx-defaultbackend-56c5fbc6b8tmd5m ====