Here are more details on aaf POD - (any help will be greatly appreciated)

kubectl -n onap describe po  dev-aaf-cert-service-5bf75f545c-hdwcj
Name:           dev-aaf-cert-service-5bf75f545c-hdwcj
Namespace:      onap
Priority:       0
Node:           dublin2-k8s-03/10.111.87.8
Start Time:     Mon, 06 Jul 2020 22:44:22 +0000
Labels:         app.kubernetes.io/instance=dev
app.kubernetes.io/managed-by=Tiller
app.kubernetes.io/name=aaf-cert-service
helm.sh/chart=aaf-cert-service-6.0.0
pod-template-hash=5bf75f545c
Annotations:    cni.projectcalico.org/podIP: 10.42.1.66/32
cni.projectcalico.org/podIPs: 10.42.1.66/32
Status:         Running
IP:             10.42.1.66
Controlled By:  ReplicaSet/dev-aaf-cert-service-5bf75f545c
Containers:
aaf-cert-service:
Container ID:   
docker://a31dc69cba6dd31f3acaa98afc67a2371fbf2737f57dcd763f8f2269273b2935
Image:          
nexus3.onap.org:10001/onap/org.onap.aaf.certservice.aaf-certservice-api:1.0.0
Image ID:       
docker-pullable://nexus3.onap.org:10001/onap/org.onap.aaf.certservice.aaf-certservice-api@sha256:8798c552080c59440fbd69a108da0f742eea70b17376fb82e3e7fc59b000cec3
Port:           8443/TCP
Host Port:      0/TCP
State:          Running
Started:      Tue, 07 Jul 2020 21:53:46 +0000
Last State:     Terminated
Reason:       Error
Exit Code:    143
Started:      Tue, 07 Jul 2020 21:47:07 +0000
Finished:     Tue, 07 Jul 2020 21:48:37 +0000
Ready:          False
Restart Count:  350
Liveness:       exec [/bin/bash -c curl 
https://localhost:$HTTPS_PORT/actuator/health --cacert $ROOT_CERT --cert-type 
p12 --cert $KEYSTORE_P12_PATH --pass $KEYSTORE_PASSWORD] delay=60s timeout=1s 
period=10s #success=1 #failure=3
Readiness:      exec [/bin/bash -c curl https://localhost:$HTTPS_PORT/ready 
--cacert $ROOT_CERT --cert-type p12 --cert $KEYSTORE_P12_PATH --pass 
$KEYSTORE_PASSWORD] delay=30s timeout=1s period=10s #success=1 #failure=3
Environment:
HTTPS_PORT:           8443
KEYSTORE_PATH:        
/etc/onap/aaf/certservice/certs//certServiceServer-keystore.jks
KEYSTORE_P12_PATH:    
/etc/onap/aaf/certservice/certs//certServiceServer-keystore.p12
TRUSTSTORE_PATH:      /etc/onap/aaf/certservice/certs//truststore.jks
ROOT_CERT:            /etc/onap/aaf/certservice/certs//root.crt
KEYSTORE_PASSWORD:    <set to the key 'password' in secret 
'dev-keystore-password'>    Optional: false
TRUSTSTORE_PASSWORD:  <set to the key 'password' in secret 
'dev-truststore-password'>  Optional: false
Mounts:
/etc/onap/aaf/certservice from aaf-cert-service-volume (rw)
/etc/onap/aaf/certservice/certs/ from aaf-cert-service-server-tls-volume (ro)
/var/run/secrets/kubernetes.io/serviceaccount from default-token-zffpv (ro)
Conditions:
Type              Status
Initialized       True
Ready             False
ContainersReady   False
PodScheduled      True
Volumes:
aaf-cert-service-volume:
Type:        Secret (a volume populated by a Secret)
SecretName:  aaf-cert-service-secret
Optional:    false
aaf-cert-service-server-tls-volume:
Type:        Secret (a volume populated by a Secret)
SecretName:  aaf-cert-service-server-tls-secret
Optional:    false
default-token-zffpv:
Type:        Secret (a volume populated by a Secret)
SecretName:  default-token-zffpv
Optional:    false
QoS Class:       BestEffort
Node-Selectors:  <none>
Tolerations:     node.kubernetes.io/not-ready:NoExecute for 300s
node.kubernetes.io/unreachable:NoExecute for 300s
Events:
Type     Reason     Age                   From                     Message
----     ------     ----                  ----                     -------
Warning  Unhealthy  29m (x1307 over 23h)  kubelet, dublin2-k8s-03  Readiness 
probe failed:   % Total    % Received % Xferd  Average Speed   Time    Time     
Time  Current
Dload  Upload   Total   Spent    Left  Speed
0     0    0     0    0     0      0      0 --:--:-- --:--:-- --:--:--     0
curl: (60) SSL certificate problem: certificate has expired
More details here: https://curl.haxx.se/docs/sslcerts.html

curl failed to verify the legitimacy of the server and therefore could not
establish a secure connection to it. To learn more about this situation and
how to fix it, please visit the web page mentioned above.
Warning  Unhealthy  14m (x723 over 23h)  kubelet, dublin2-k8s-03  Readiness 
probe failed:   % Total    % Received % Xferd  Average Speed   Time    Time     
Time  Current
Dload  Upload   Total   Spent    Left  Speed
0     0    0     0    0     0      0      0 --:--:-- --:--:-- --:--:--     0
curl: (60) SSL certificate problem: certificate has expired
More details here: https://curl.haxx.se/docs/sslcerts.html

curl failed to verify the legitimacy of the server and therefore could not
establish a secure connection to it. To learn more about this situation and
how to fix it, please visit the web page mentioned above.
Warning  BackOff  4m29s (x4189 over 22h)  kubelet, dublin2-k8s-03  Back-off 
restarting failed container

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#21612): https://lists.onap.org/g/onap-discuss/message/21612
Mute This Topic: https://lists.onap.org/mt/75355991/21656
Mute #dcaegen2: https://lists.onap.org/g/onap+onap-discuss/mutehashtag/dcaegen2
Mute #frankfurt: 
https://lists.onap.org/g/onap+onap-discuss/mutehashtag/frankfurt
Group Owner: onap-discuss+ow...@lists.onap.org
Unsubscribe: https://lists.onap.org/g/onap-discuss/unsub  
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to