--Task--
name: Deploy_Discover_IDC_tenant
enabled: True
class_name: DeployTenantTask
source_name: controller
source_namespace: >default<
target_name: controller
target_namespace: >default<
start: 0
stop: None
timeout: no timeout
loop: False
interval: None
dependencies: []
wait_for: []
options: {}
group_name: None
Current dir: /mnt/disks/data/xslou/lodestar-fork/pyrock
________________________________________________________________________________
[15/Sep/2023 03:32:48] Deploy_Discover_IDC_tenant pre : N/A
________________________________________________________________________________
________________________________________________________________________________
[15/Sep/2023 03:32:48] Deploy_Discover_IDC_tenant step1 : N/A
________________________________________________________________________________
******************************** Cleaning up existing namespace ********************************
------------------ Deleting secret agent controller ------------------
[loop_until]: kubectl --namespace=xlou delete sac --all
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
No resources found
--- stderr ---
----------------------- Deleting all resources -----------------------
[loop_until]: kubectl --namespace=xlou delete all --all --grace-period=0 --force
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
pod "overseer-0-549d47d46f-v85nw" force deleted
service "overseer-0" force deleted
deployment.apps "overseer-0" force deleted
--- stderr ---
Warning: Immediate deletion does not wait for confirmation that the running resource has been terminated. The resource may continue to run on the cluster indefinitely.
[loop_until]: kubectl --namespace xlou get pods | grep "No resources found"
[loop_until]: (max_time=360, interval=10, expected_rc=[0]
[loop_until]: Function succeeded after 0s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 10s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 20s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 31s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 41s (rc=0) - expected pattern found
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
No resources found in xlou namespace.
------------------------- Deleting configmap -------------------------
[loop_until]: kubectl --namespace=xlou get configmap --output jsonpath={.items[*].metadata.name}
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
kube-root-ca.crt overseer-config-0
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete configmap kube-root-ca.crt --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
configmap "kube-root-ca.crt" deleted
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete configmap overseer-config-0 --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
configmap "overseer-config-0" deleted
--- stderr ---
--------------------------- Deleting secret ---------------------------
[loop_until]: kubectl --namespace=xlou get secret --output jsonpath='{.items[?(@.type=="Opaque")].metadata.name}'
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
-------------------------- Deleting ingress --------------------------
[loop_until]: kubectl --namespace=xlou get ingress --output jsonpath={.items[*].metadata.name}
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
overseer-0
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete ingress overseer-0 --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
ingress.networking.k8s.io "overseer-0" deleted
--- stderr ---
---------------------------- Deleting pvc ----------------------------
[loop_until]: kubectl --namespace=xlou get pvc --output jsonpath={.items[*].metadata.name}
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
overseer-0
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete pvc overseer-0 --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
persistentvolumeclaim "overseer-0" deleted
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete pv ds-backup-xlou --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
Warning: deleting cluster-scoped resources, not scoped to the provided namespace
----------------- Deleting admin clusterrolebindings -----------------
[loop_until]: kubectl get clusterrolebinding --output jsonpath="{range .items[?(@.subjects[0].namespace=='xlou')]}{.metadata.name} {end}"
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
k8s-svc-acct-crb-xlou-0
--- stderr ---
Deleting clusterrolebinding k8s-svc-acct-crb-xlou-0 associated with xlou namespace
[loop_until]: kubectl delete clusterrolebinding k8s-svc-acct-crb-xlou-0
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
clusterrolebinding.rbac.authorization.k8s.io "k8s-svc-acct-crb-xlou-0" deleted
--- stderr ---
------------------------- Deleting namespace -------------------------
[loop_until]: kubectl delete namespaces xlou --ignore-not-found --grace-period=0 --force
[loop_until]: (max_time=360, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
namespace "xlou" force deleted
--- stderr ---
Warning: Immediate deletion does not wait for confirmation that the running resource has been terminated. The resource may continue to run on the cluster indefinitely.
[loop_until]: awk -F" " "{print NF}" <<< `kubectl get namespace xlou --ignore-not-found` | grep 0
[loop_until]: (max_time=600, interval=10, expected_rc=[0]
[loop_until]: Function succeeded after 0s (rc=0) - expected number of elements found
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
************************************* Creating deployment *************************************
Creating IDC type deployment for stack
****************************** Livecheck stage: After deployment ******************************
------------------------ Running AM livecheck ------------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/am/json/health/ready
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/health/ready"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
------------------------ Running IDM livecheck ------------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/ping
[http_cmd]: curl --header "X-OpenIDM-Username: anonymous" --header "X-OpenIDM-Password: ****" --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/ping"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"_id": "",
"_rev": "",
"shortDesc": "OpenIDM ready",
"state": "ACTIVE_READY"
}
---------------------- Running DS-CTS livecheck ----------------------
--------------------- Running DS-IDREPO livecheck ---------------------
--------------------- Running ADMIN-UI livecheck ---------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/platform
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/platform"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
Platform Admin
[]
-------------------- Running END-USER-UI livecheck --------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/enduser
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/enduser"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
Identity Management
[]
--------------------- Running LOGIN-UI livecheck ---------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/am/XUI
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/am/XUI"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
Login
[]
LIVECHECK SUCCEEDED
****************************** Initializing component pods for AM ******************************
----------------------- Get AM software version -----------------------
Getting product version from https://openam-ema-perf-benchmark.forgeblocks.com/am/json/realms/alpha/serverinfo/version
Create new LoginSession for user "xiaosong.lou@forgerock.com"
[LoginSession] Get "token_id" token for user "xiaosong.lou@forgerock.com"
[LoginSession] Obtaining new "token_id" token from server because it was not obtained yet for the user
Authenticate user xiaosong.lou@forgerock.com via REST
[http_cmd]: curl --header "X-OpenAM-Username: xiaosong.lou@forgerock.com" --header "X-OpenAM-Password: ****" --header "Content-Type: application/json" --header "Accept-API-Version: resource=2.0, protocol=1.0" --insecure -L --request POST "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/authenticate?realm=/"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
[print_head_tail]: Print head (10 lines) and tail (10 lines) of input string (83 lines):
----- output -----
{
"authId": "eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.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.U78NfvCMcx626KAD1QNX4XEwfk5xykxNzcULoHs0N3g",
"callbacks": [
{
"type": "TextOutputCallback",
"output": [
{
"name": "message",
"value": "Loading..."
},
[...]
"value": "var setupPage = function() { var skipInputElem = document.getElementById(\"skip-input-776\"); var messageElem; document.getElementsByClassName(\"callback-component\").forEach( function (e) { var m = e.firstElementChild; if (m.firstChild && m.firstChild.nodeName == \"#text\" && m.firstChild.nodeValue.trim() == \"Loading...\") { messageElem = m; } } ); if (!skipInputElem || !messageElem) { return setTimeout(setupPage, 50); } var skipContainer = document.createElement(\"div\"); skipContainer.style = \"width:100%\"; skipContainer.innerHTML = \"\"; skipInputElem.parentNode.append(skipContainer); messageElem.align = \"center\"; messageElem.innerHTML = \"
Set up 2-step verification
Protect your account by adding a second step after entering your password to verify it's you signing in.
Protect your account by adding a second step after entering your password to verify it's you signing in.
\"; var bindSkipLink = function() { document.getElementById(\"skip-link-776\").onclick = function() { skipInputElem.value = \"Skip\"; document.getElementById(\"loginButton_0\").click(); return false; }; }; setTimeout(bindSkipLink, 100);};setupPage();"}, {"name": "messageType", "value": "4"}]}]}' "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/authenticate?realm=/"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"tokenId": "EESziUqCt_ISP0shZ0ZIgsRuGek.*AAJTSQACMDIAAlNLABw3cDBxbWl1eEdIY01tUU9jZFg5QzZJL2hubmc9AAR0eXBlAANDVFMAAlMxAAIwMQ..*",
"successUrl": "/platform",
"realm": "/"
}
[LoginSession] Obtaining session info
[http_cmd]: curl --header "0e26551c0104b88: EESziUqCt_ISP0shZ0ZIgsRuGek.*AAJTSQACMDIAAlNLABw3cDBxbWl1eEdIY01tUU9jZFg5QzZJL2hubmc9AAR0eXBlAANDVFMAAlMxAAIwMQ..*" --header "Content-Type: application/json" --header "Accept-API-Version: resource=3.0, protocol=2.1" --header "filters_cookie: EESziUqCt_ISP0shZ0ZIgsRuGek.*AAJTSQACMDIAAlNLABw3cDBxbWl1eEdIY01tUU9jZFg5QzZJL2hubmc9AAR0eXBlAANDVFMAAlMxAAIwMQ..*" --insecure -L --request POST "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/sessions?_action=getSessionInfo"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"username": "475bc36f-0d1a-4854-be5d-e7f7dc365e78",
"universalId": "id=475bc36f-0d1a-4854-be5d-e7f7dc365e78,ou=user,ou=am-config",
"realm": "/",
"latestAccessTime": "2023-09-15T03:33:53Z",
"maxIdleExpirationTime": "2023-09-15T04:03:53Z",
"maxSessionExpirationTime": "2023-09-15T05:33:52Z",
"properties": {
"AMCtxId": "a8185ea1-d648-417a-bd95-d2dc286f3161-3958735"
}
}
[http_cmd]: curl --insecure -L --request GET --cookie "0e26551c0104b88=EESziUqCt_ISP0shZ0ZIgsRuGek.*AAJTSQACMDIAAlNLABw3cDBxbWl1eEdIY01tUU9jZFg5QzZJL2hubmc9AAR0eXBlAANDVFMAAlMxAAIwMQ..*" --cookie "amlbcookie=01" "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/realms/alpha/serverinfo/version"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"_id": "version",
"_rev": "-946598092",
"version": "7.4.0-SNAPSHOT",
"fullVersion": "ForgeRock Access Management 7.4.0-SNAPSHOT Build 79b39c6eb0b92c074a5af936b0778bb64b15899d (2023-August-21 15:37)",
"revision": "79b39c6eb0b92c074a5af936b0778bb64b15899d",
"date": "2023-August-21 15:37"
}
***************************** Initializing component pods for IDM *****************************
---------------------- Get IDM software version ----------------------
Getting product version from https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/version
[http_cmd]: curl --header "X-OpenIDM-Username: anonymous" --header "X-OpenIDM-Password: ****" --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/version"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"_id": "version",
"productVersion": "7.4.0-2023-5-0-SNAPSHOT",
"productBuildDate": "20230710182152",
"productRevision": "a58b3d0c3a"
}
**************************** Initializing component pods for DS-CTS ****************************
--------------------- Get DS-CTS software version ---------------------
Component ds-cts is not in Running state so impossible to get software version
************************** Initializing component pods for DS-IDREPO **************************
------------------- Get DS-IDREPO software version -------------------
Component ds-idrepo is not in Running state so impossible to get software version
*************************** Initializing component pods for ADMIN-UI ***************************
-------------------- Get ADMIN-UI software version --------------------
Component admin-ui is running in tenant so impossible to get software version
************************* Initializing component pods for END-USER-UI *************************
------------------ Get END-USER-UI software version ------------------
Component end-user-ui is running in tenant so impossible to get software version
*************************** Initializing component pods for LOGIN-UI ***************************
-------------------- Get LOGIN-UI software version --------------------
Component login-ui is running in tenant so impossible to get software version
[15/Sep/2023 03:33:53] - INFO: Deployment successful
________________________________________________________________________________
[15/Sep/2023 03:33:53] Deploy_Discover_IDC_tenant post : Post method
________________________________________________________________________________
Setting result to PASS
Task has been successfully stopped