--Task--
name: Deploy_Discover_IDC_tenant
enabled: True
class_name: DeployTenantTask
source_name: controller
source_namespace: >default<
target_name: controller
target_namespace: >default<
start: 0
stop: None
timeout: no timeout
loop: False
interval: None
dependencies: []
wait_for: []
options: {}
group_name: None
Current dir: /mnt/disks/data/xslou/lodestar-fork/pyrock
________________________________________________________________________________
[23/Oct/2023 14:44:19] Deploy_Discover_IDC_tenant pre : N/A
________________________________________________________________________________
________________________________________________________________________________
[23/Oct/2023 14:44:19] Deploy_Discover_IDC_tenant step1 : N/A
________________________________________________________________________________
******************************** Cleaning up existing namespace ********************************
------------------ Deleting secret agent controller ------------------
[loop_until]: kubectl --namespace=xlou delete sac --all
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
No resources found
--- stderr ---
----------------------- Deleting all resources -----------------------
[loop_until]: kubectl --namespace=xlou delete all --all --grace-period=0 --force
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
pod "overseer-0-595489bd7-lpv7j" force deleted
service "overseer-0" force deleted
deployment.apps "overseer-0" force deleted
--- stderr ---
Warning: Immediate deletion does not wait for confirmation that the running resource has been terminated. The resource may continue to run on the cluster indefinitely.
[loop_until]: kubectl --namespace xlou get pods | grep "No resources found"
[loop_until]: (max_time=360, interval=10, expected_rc=[0]
[loop_until]: Function succeeded after 0s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 10s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 20s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 31s (rc=0) - failed to find expected output: No resources found - retry
[loop_until]: Function succeeded after 41s (rc=0) - expected pattern found
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
No resources found in xlou namespace.
------------------------- Deleting configmap -------------------------
[loop_until]: kubectl --namespace=xlou get configmap --output jsonpath={.items[*].metadata.name}
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
kube-root-ca.crt overseer-config-0
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete configmap kube-root-ca.crt --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
configmap "kube-root-ca.crt" deleted
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete configmap overseer-config-0 --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
configmap "overseer-config-0" deleted
--- stderr ---
--------------------------- Deleting secret ---------------------------
[loop_until]: kubectl --namespace=xlou get secret --output jsonpath='{.items[?(@.type=="Opaque")].metadata.name}'
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
-------------------------- Deleting ingress --------------------------
[loop_until]: kubectl --namespace=xlou get ingress --output jsonpath={.items[*].metadata.name}
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
overseer-0
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete ingress overseer-0 --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
ingress.networking.k8s.io "overseer-0" deleted
--- stderr ---
---------------------------- Deleting pvc ----------------------------
[loop_until]: kubectl --namespace=xlou get pvc --output jsonpath={.items[*].metadata.name}
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
overseer-0
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete pvc overseer-0 --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
persistentvolumeclaim "overseer-0" deleted
--- stderr ---
[loop_until]: kubectl --namespace=xlou delete pv ds-backup-xlou --ignore-not-found
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
Warning: deleting cluster-scoped resources, not scoped to the provided namespace
----------------- Deleting admin clusterrolebindings -----------------
[loop_until]: kubectl get clusterrolebinding --output jsonpath="{range .items[?(@.subjects[0].namespace=='xlou')]}{.metadata.name} {end}"
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
k8s-svc-acct-crb-xlou-0
--- stderr ---
Deleting clusterrolebinding k8s-svc-acct-crb-xlou-0 associated with xlou namespace
[loop_until]: kubectl delete clusterrolebinding k8s-svc-acct-crb-xlou-0
[loop_until]: (max_time=180, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
clusterrolebinding.rbac.authorization.k8s.io "k8s-svc-acct-crb-xlou-0" deleted
--- stderr ---
------------------------- Deleting namespace -------------------------
[loop_until]: kubectl delete namespaces xlou --ignore-not-found --grace-period=0 --force
[loop_until]: (max_time=360, interval=5, expected_rc=[0]
[loop_until]: OK (rc = 0)
--- stdout ---
namespace "xlou" force deleted
--- stderr ---
Warning: Immediate deletion does not wait for confirmation that the running resource has been terminated. The resource may continue to run on the cluster indefinitely.
[loop_until]: awk -F" " "{print NF}" <<< `kubectl get namespace xlou --ignore-not-found` | grep 0
[loop_until]: (max_time=600, interval=10, expected_rc=[0]
[loop_until]: Function succeeded after 0s (rc=0) - expected number of elements found
[loop_until]: OK (rc = 0)
--- stdout ---
--- stderr ---
************************************* Creating deployment *************************************
Creating IDC type deployment for stack
****************************** Livecheck stage: After deployment ******************************
------------------------ Running AM livecheck ------------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/am/json/health/ready
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/health/ready"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
------------------------ Running IDM livecheck ------------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/ping
[http_cmd]: curl --header "X-OpenIDM-Username: anonymous" --header "X-OpenIDM-Password: ****" --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/ping"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"_id": "",
"_rev": "",
"shortDesc": "OpenIDM ready",
"state": "ACTIVE_READY"
}
---------------------- Running DS-CTS livecheck ----------------------
--------------------- Running DS-IDREPO livecheck ---------------------
--------------------- Running ADMIN-UI livecheck ---------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/platform
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/platform"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
Platform Admin
[]
-------------------- Running END-USER-UI livecheck --------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/enduser
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/enduser"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
Identity Management
[]
--------------------- Running LOGIN-UI livecheck ---------------------
Livecheck to https://openam-ema-perf-benchmark.forgeblocks.com/am/XUI
[http_cmd]: curl --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/am/XUI"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
Login
[]
LIVECHECK SUCCEEDED
****************************** Initializing component pods for AM ******************************
----------------------- Get AM software version -----------------------
Getting product version from https://openam-ema-perf-benchmark.forgeblocks.com/am/json/realms/alpha/serverinfo/version
Create new LoginSession for user "xiaosong.lou@forgerock.com"
[LoginSession] Get "token_id" token for user "xiaosong.lou@forgerock.com"
[LoginSession] Obtaining new "token_id" token from server because it was not obtained yet for the user
Authenticate user xiaosong.lou@forgerock.com via REST
[http_cmd]: curl --header "X-OpenAM-Username: xiaosong.lou@forgerock.com" --header "X-OpenAM-Password: ****" --header "Content-Type: application/json" --header "Accept-API-Version: resource=2.0, protocol=1.0" --insecure -L --request POST "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/authenticate?realm=/"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
[print_head_tail]: Print head (10 lines) and tail (10 lines) of input string (83 lines):
----- output -----
{
"authId": "eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.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.fcZNZEACC8-iJabD28X1uWdFVVs5LNqASGR-Wvuz3BM",
"callbacks": [
{
"type": "TextOutputCallback",
"output": [
{
"name": "message",
"value": "Loading..."
},
[...]
"value": "var setupPage = function() { var skipInputElem = document.getElementById(\"skip-input-339\"); var messageElem; document.getElementsByClassName(\"callback-component\").forEach( function (e) { var m = e.firstElementChild; if (m.firstChild && m.firstChild.nodeName == \"#text\" && m.firstChild.nodeValue.trim() == \"Loading...\") { messageElem = m; } } ); if (!skipInputElem || !messageElem) { return setTimeout(setupPage, 50); } var skipContainer = document.createElement(\"div\"); skipContainer.style = \"width:100%\"; skipContainer.innerHTML = \"\"; skipInputElem.parentNode.append(skipContainer); messageElem.align = \"center\"; messageElem.innerHTML = \"
Set up 2-step verification
Protect your account by adding a second step after entering your password to verify it's you signing in.
Protect your account by adding a second step after entering your password to verify it's you signing in.
\"; var bindSkipLink = function() { document.getElementById(\"skip-link-339\").onclick = function() { skipInputElem.value = \"Skip\"; document.getElementById(\"loginButton_0\").click(); return false; }; }; setTimeout(bindSkipLink, 100);};setupPage();"}, {"name": "messageType", "value": "4"}]}]}' "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/authenticate?realm=/"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"tokenId": "0YWvVOjI8g5BAaZzbrWxTOgm-OA.*AAJTSQACMDIAAlNLABxLQnl6N09MZE1Oa0hBTjlmRTBTSHQ1QWpLaTA9AAR0eXBlAANDVFMAAlMxAAIwMQ..*",
"successUrl": "/platform",
"realm": "/"
}
[LoginSession] Obtaining session info
[http_cmd]: curl --header "0e26551c0104b88: 0YWvVOjI8g5BAaZzbrWxTOgm-OA.*AAJTSQACMDIAAlNLABxLQnl6N09MZE1Oa0hBTjlmRTBTSHQ1QWpLaTA9AAR0eXBlAANDVFMAAlMxAAIwMQ..*" --header "Content-Type: application/json" --header "Accept-API-Version: resource=3.0, protocol=2.1" --header "filters_cookie: 0YWvVOjI8g5BAaZzbrWxTOgm-OA.*AAJTSQACMDIAAlNLABxLQnl6N09MZE1Oa0hBTjlmRTBTSHQ1QWpLaTA9AAR0eXBlAANDVFMAAlMxAAIwMQ..*" --insecure -L --request POST "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/sessions?_action=getSessionInfo"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"username": "db54c14a-844c-4c9e-88ae-ce34a9377fbc",
"universalId": "id=db54c14a-844c-4c9e-88ae-ce34a9377fbc,ou=user,ou=am-config",
"realm": "/",
"latestAccessTime": "2023-10-23T14:45:24Z",
"maxIdleExpirationTime": "2023-10-23T15:15:24Z",
"maxSessionExpirationTime": "2023-10-23T16:45:23Z",
"properties": {
"AMCtxId": "df4d2785-42ff-482f-9234-3d657f6624d9-66064310"
}
}
[http_cmd]: curl --insecure -L --request GET --cookie "0e26551c0104b88=0YWvVOjI8g5BAaZzbrWxTOgm-OA.*AAJTSQACMDIAAlNLABxLQnl6N09MZE1Oa0hBTjlmRTBTSHQ1QWpLaTA9AAR0eXBlAANDVFMAAlMxAAIwMQ..*" --cookie "amlbcookie=01" "https://openam-ema-perf-benchmark.forgeblocks.com/am/json/realms/alpha/serverinfo/version"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"_id": "version",
"_rev": "1217229914",
"version": "7.4.0-SNAPSHOT",
"fullVersion": "ForgeRock Access Management 7.4.0-SNAPSHOT Build 7e44c1624c3a11db5b5b0b576bb162618f1ac605 (2023-September-18 09:04)",
"revision": "7e44c1624c3a11db5b5b0b576bb162618f1ac605",
"date": "2023-September-18 09:04"
}
***************************** Initializing component pods for IDM *****************************
---------------------- Get IDM software version ----------------------
Getting product version from https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/version
[http_cmd]: curl --header "X-OpenIDM-Username: anonymous" --header "X-OpenIDM-Password: ****" --insecure -L --request GET "https://openam-ema-perf-benchmark.forgeblocks.com/openidm/info/version"
[http_cmd]: http status code OK
--- status code ---
http status code is 200 (expected 200)
--- http response ---
{
"_id": "version",
"productVersion": "7.4.0-2023-5-2-SNAPSHOT",
"productBuildDate": "20230922151421",
"productRevision": "8874e27f2c"
}
**************************** Initializing component pods for DS-CTS ****************************
--------------------- Get DS-CTS software version ---------------------
Component ds-cts is not in Running state so impossible to get software version
************************** Initializing component pods for DS-IDREPO **************************
------------------- Get DS-IDREPO software version -------------------
Component ds-idrepo is not in Running state so impossible to get software version
*************************** Initializing component pods for ADMIN-UI ***************************
-------------------- Get ADMIN-UI software version --------------------
Component admin-ui is running in tenant so impossible to get software version
************************* Initializing component pods for END-USER-UI *************************
------------------ Get END-USER-UI software version ------------------
Component end-user-ui is running in tenant so impossible to get software version
*************************** Initializing component pods for LOGIN-UI ***************************
-------------------- Get LOGIN-UI software version --------------------
Component login-ui is running in tenant so impossible to get software version
[23/Oct/2023 14:45:24] - INFO: Deployment successful
________________________________________________________________________________
[23/Oct/2023 14:45:24] Deploy_Discover_IDC_tenant post : Post method
________________________________________________________________________________
Setting result to PASS
Task has been successfully stopped