Skip to content

CI: K8sIstioTest Istio Bookinfo Demo Tests bookinfo inter-service connectivity #17270

@maintainer-s-little-helper

Description

@maintainer-s-little-helper

Test Name

K8sIstioTest Istio Bookinfo Demo Tests bookinfo inter-service connectivity

Failure Output

FAIL: Pods are not ready after timeout

Stacktrace

Click to show.
/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/ginkgo-ext/scopes.go:518
Pods are not ready after timeout
Expected
    <*errors.errorString | 0xc000b720e0>: {
        s: "timed out waiting for pods with filter -l zgroup=bookinfo to be ready: 4m0s timeout expired",
    }
to be nil
/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/istio.go:332

Standard Output

Click to show.
Number of "context deadline exceeded" in logs: 0
Number of "level=error" in logs: 0
Number of "level=warning" in logs: 0
Number of "Cilium API handler panicked" in logs: 0
Number of "Goroutine took lock for more than" in logs: 0
No errors/warnings found in logs
Number of "context deadline exceeded" in logs: 0
Number of "level=error" in logs: 0
Number of "level=warning" in logs: 0
Number of "Cilium API handler panicked" in logs: 0
Number of "Goroutine took lock for more than" in logs: 0
No errors/warnings found in logs
Number of "context deadline exceeded" in logs: 0
Number of "level=error" in logs: 0
Number of "level=warning" in logs: 2
Number of "Cilium API handler panicked" in logs: 0
Number of "Goroutine took lock for more than" in logs: 0
Top 2 errors/warnings:
Policy map sync fixed errors, consider running with debug verbose = policy to get detailed dumps
github.com/cilium/cilium/pkg/k8s/watchers/endpoint_slice.go:142: watch of *v1beta1.EndpointSlice ended with: an error on the server (\
Cilium pods: [cilium-bwbnh cilium-g8xhz]
Netpols loaded: 
CiliumNetworkPolicies loaded: default::cnp-specs 
Endpoint Policy Enforcement:
Pod                                                         Ingress   Egress
ratings-v1-6c5dd8d8f9-b2dgf                                           
reviews-v1-858cfcc657-vlm67                                           
istio-ingressgateway-764c665bbf-s279m                                 
kube-dns-6c7b8dc9f9-ghdw8                                             
kube-dns-6c7b8dc9f9-rd8kp                                             
details-v1-7979fc5975-6dpbt                                           
reviews-v2-57fcb764c-xlllp                                            
istiod-9f4b7b45f-6xbxn                                                
kube-dns-autoscaler-58cbd4f75c-dwpxs                                  
l7-default-backend-66579f5d7-w85z5                                    
productpage-v1-66b44dc6-8mmp5                                         
stackdriver-metadata-agent-cluster-level-69b56d776c-6j87c             
event-exporter-gke-67986489c8-4b7hk                                   
metrics-server-v0.3.6-6c47ffd7d7-xcl9l                                
Cilium agent 'cilium-bwbnh': Status: Ok  Health: Ok Nodes "" ContinerRuntime:  Kubernetes: Ok KVstore: Ok Controllers: Total 53 Failed 0
Cilium agent 'cilium-g8xhz': Status: Ok  Health: Ok Nodes "" ContinerRuntime:  Kubernetes: Ok KVstore: Ok Controllers: Total 44 Failed 0


Standard Error

Click to show.
09:35:15 STEP: Running BeforeAll block for EntireTestsuite K8sIstioTest
09:35:15 STEP: Ensuring the namespace kube-system exists
09:35:16 STEP: WaitforPods(namespace="kube-system", filter="-l k8s-app=cilium-test-logs")
09:35:16 STEP: WaitforPods(namespace="kube-system", filter="-l k8s-app=cilium-test-logs") => <nil>
09:35:17 STEP: Downloading cilium-istioctl
09:35:18 STEP: Installing Cilium
09:35:26 STEP: Waiting for Cilium to become ready
09:36:17 STEP: Restarting unmanaged pods event-exporter-gke-67986489c8-kcn4z, kube-dns-autoscaler-58cbd4f75c-cjkh6, l7-default-backend-66579f5d7-mdtvk, metrics-server-v0.3.6-6c47ffd7d7-fsqw8, stackdriver-metadata-agent-cluster-level-69b56d776c-77wrz in namespace kube-system
09:38:20 STEP: Validating if Kubernetes DNS is deployed
09:38:20 STEP: Checking if deployment is ready
09:38:20 STEP: Checking if kube-dns service is plumbed correctly
09:38:20 STEP: Checking if DNS can resolve
09:38:20 STEP: Checking if pods have identity
09:38:23 STEP: Kubernetes DNS is up and operational
09:38:23 STEP: Validating Cilium Installation
09:38:23 STEP: Performing Cilium controllers preflight check
09:38:23 STEP: Performing Cilium status preflight check
09:38:23 STEP: Performing Cilium health check
09:38:27 STEP: Performing Cilium service preflight check
09:38:27 STEP: Performing K8s service preflight check
09:38:27 STEP: Waiting for cilium-operator to be ready
09:38:27 STEP: WaitforPods(namespace="kube-system", filter="-l name=cilium-operator")
09:38:28 STEP: WaitforPods(namespace="kube-system", filter="-l name=cilium-operator") => <nil>
09:38:28 STEP: WaitforPods(namespace="kube-system", filter="")
09:38:28 STEP: WaitforPods(namespace="kube-system", filter="") => <nil>
09:38:28 STEP: Labeling default namespace for sidecar injection
09:38:28 STEP: Setting label istio-injection=enabled in namespace default
09:38:28 STEP: Deploying Istio
09:39:10 STEP: Waiting for Istio pods to be ready
09:39:10 STEP: WaitforNPodsRunning(namespace="istio-system", filter="-l istio")
09:39:10 STEP: WaitforNPods(namespace="istio-system", filter="-l istio") => <nil>
09:39:10 STEP: WaitforPods(namespace="istio-system", filter="-l istio")
09:39:10 STEP: WaitforPods(namespace="istio-system", filter="-l istio") => <nil>
09:39:10 STEP: Waiting for Istio service "istio-ingressgateway" to be ready
09:39:11 STEP: Waiting for Istio service "istiod" to be ready
09:39:11 STEP: Waiting for DNS to resolve Istio service "istio-ingressgateway"
09:39:12 STEP: Waiting for DNS to resolve Istio service "istiod"
09:39:13 STEP: Creating policy in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/cnp-specs.yaml"
09:39:19 STEP: Creating resources in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v2.yaml"
09:39:20 STEP: Creating resources in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v1.yaml"
09:39:21 STEP: Waiting for Bookinfo pods to be ready
09:39:21 STEP: WaitforPods(namespace="default", filter="-l zgroup=bookinfo")
09:43:21 STEP: WaitforPods(namespace="default", filter="-l zgroup=bookinfo") => timed out waiting for pods with filter -l zgroup=bookinfo to be ready: 4m0s timeout expired
09:43:22 STEP: cmd: kubectl describe pods -n default -l zgroup=bookinfo
Exitcode: 0 
Stdout:
 	 Name:         details-v1-7979fc5975-6dpbt
	 Namespace:    default
	 Priority:     0
	 Node:         gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv/10.128.0.8
	 Start Time:   Mon, 30 Aug 2021 09:39:20 +0000
	 Labels:       app=details
	               istio.io/rev=default
	               pod-template-hash=7979fc5975
	               security.istio.io/tlsMode=istio
	               service.istio.io/canonical-name=details
	               service.istio.io/canonical-revision=v1
	               track=stable
	               version=v1
	               zgroup=bookinfo
	 Annotations:  kubectl.kubernetes.io/default-container: details
	               kubectl.kubernetes.io/default-logs-container: details
	               prometheus.io/path: /stats/prometheus
	               prometheus.io/port: 15020
	               prometheus.io/scrape: true
	               sidecar.istio.io/status:
	                 {"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
	 Status:       Running
	 IP:           10.136.2.212
	 IPs:
	   IP:           10.136.2.212
	 Controlled By:  ReplicaSet/details-v1-7979fc5975
	 Init Containers:
	   dns-probe:
	     Container ID:  containerd://40c8cabae2e6bf2b6c23578a21a3c5e3f3f2bd8e28cf1e56745e58e36a2f7780
	     Image:         busybox:1.31.1
	     Image ID:      docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
	     Port:          <none>
	     Host Port:     <none>
	     Command:
	       sh
	       -c
	       max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done 
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:23 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:28 +0000
	     Ready:          True
	     Restart Count:  0
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-init:
	     Container ID:  containerd://caba608d4d865baf49598fec4af4621a9efbdbe43ea0dddd4cc76003466884d3
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          <none>
	     Host Port:     <none>
	     Args:
	       istio-iptables
	       -p
	       15001
	       -z
	       15006
	       -u
	       1337
	       -m
	       TPROXY
	       -i
	       *
	       -x
	       
	       -b
	       *
	       -d
	       15090,15021,15020
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:34 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:34 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:        100m
	       memory:     128Mi
	     Environment:  <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	 Containers:
	   details:
	     Container ID:   containerd://eff5cc26423cea4044e6f615257bc0d17defabc542584efbcef4a9aeb51a4643
	     Image:          docker.io/istio/examples-bookinfo-details-v1:1.16.2
	     Image ID:       docker.io/istio/examples-bookinfo-details-v1@sha256:18e54f81689035019e1ac78f6d2e6483fcf1d94072d047315ab193cb2ab89ae5
	     Port:           9080/TCP
	     Host Port:      0/TCP
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:59 +0000
	     Ready:          True
	     Restart Count:  0
	     Readiness:      http-get http://:15020/app-health/details/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-proxy:
	     Container ID:  containerd://1a31d91535fb3f43d27fa825c1cdfcecdb080a6422e92286196549c54dbc5d19
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          15090/TCP
	     Host Port:     0/TCP
	     Args:
	       proxy
	       sidecar
	       --domain
	       $(POD_NAMESPACE).svc.cluster.local
	       --serviceCluster
	       details.$(POD_NAMESPACE)
	       --proxyLogLevel=warning
	       --proxyComponentLogLevel=misc:error
	       --log_output_level=default:info
	       --concurrency
	       2
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:59 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:      100m
	       memory:   128Mi
	     Readiness:  http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
	     Environment:
	       JWT_POLICY:                    third-party-jwt
	       PILOT_CERT_PROVIDER:           istiod
	       CA_ADDR:                       istiod.istio-system.svc:15012
	       POD_NAME:                      details-v1-7979fc5975-6dpbt (v1:metadata.name)
	       POD_NAMESPACE:                 default (v1:metadata.namespace)
	       INSTANCE_IP:                    (v1:status.podIP)
	       SERVICE_ACCOUNT:                (v1:spec.serviceAccountName)
	       HOST_IP:                        (v1:status.hostIP)
	       CANONICAL_SERVICE:              (v1:metadata.labels['service.istio.io/canonical-name'])
	       CANONICAL_REVISION:             (v1:metadata.labels['service.istio.io/canonical-revision'])
	       PROXY_CONFIG:                  {"interceptionMode":"TPROXY"}
	                                      
	       ISTIO_META_POD_PORTS:          [
	                                          {"containerPort":9080,"protocol":"TCP"}
	                                      ]
	       ISTIO_META_APP_CONTAINERS:     details
	       ISTIO_META_CLUSTER_ID:         Kubernetes
	       ISTIO_META_INTERCEPTION_MODE:  TPROXY
	       ISTIO_META_WORKLOAD_NAME:      details-v1
	       ISTIO_META_OWNER:              kubernetes://apis/apps/v1/namespaces/default/deployments/details-v1
	       ISTIO_META_MESH_ID:            cluster.local
	       TRUST_DOMAIN:                  cluster.local
	       ISTIO_KUBE_APP_PROBERS:        {"/app-health/details/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
	     Mounts:
	       /etc/istio/pod from istio-podinfo (rw)
	       /etc/istio/proxy from istio-envoy (rw)
	       /var/lib/istio/data from istio-data (rw)
	       /var/run/cilium from cilium-unix-sock-dir (rw)
	       /var/run/secrets/istio from istiod-ca-cert (rw)
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	       /var/run/secrets/tokens from istio-token (rw)
	 Conditions:
	   Type              Status
	   Initialized       True 
	   Ready             True 
	   ContainersReady   True 
	   PodScheduled      True 
	 Volumes:
	   cilium-unix-sock-dir:
	     Type:          HostPath (bare host directory volume)
	     Path:          /var/run/cilium
	     HostPathType:  
	   istio-envoy:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     Memory
	     SizeLimit:  <unset>
	   istio-data:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     
	     SizeLimit:  <unset>
	   istio-podinfo:
	     Type:  DownwardAPI (a volume populated by information about the pod)
	     Items:
	       metadata.labels -> labels
	       metadata.annotations -> annotations
	       limits.cpu -> cpu-limit
	       requests.cpu -> cpu-request
	   istio-token:
	     Type:                    Projected (a volume that contains injected data from multiple sources)
	     TokenExpirationSeconds:  43200
	   istiod-ca-cert:
	     Type:      ConfigMap (a volume populated by a ConfigMap)
	     Name:      istio-ca-root-cert
	     Optional:  false
	   default-token-sx44r:
	     Type:        Secret (a volume populated by a Secret)
	     SecretName:  default-token-sx44r
	     Optional:    false
	 QoS Class:       Burstable
	 Node-Selectors:  <none>
	 Tolerations:     node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
	                  node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
	 Events:
	   Type    Reason     Age    From                                                Message
	   ----    ------     ----   ----                                                -------
	   Normal  Scheduled  4m1s   default-scheduler                                   Successfully assigned default/details-v1-7979fc5975-6dpbt to gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv
	   Normal  Pulling    3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Pulling image "busybox:1.31.1"
	   Normal  Created    3m58s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container dns-probe
	   Normal  Started    3m58s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container dns-probe
	   Normal  Pulled     3m58s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Successfully pulled image "busybox:1.31.1" in 673.428031ms
	   Normal  Pulling    3m53s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Pulling image "quay.io/cilium/istio_proxy:1.10.3"
	   Normal  Pulled     3m49s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Successfully pulled image "quay.io/cilium/istio_proxy:1.10.3" in 3.553129964s
	   Normal  Pulling    3m47s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Pulling image "docker.io/istio/examples-bookinfo-details-v1:1.16.2"
	   Normal  Created    3m47s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container istio-init
	   Normal  Started    3m47s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container istio-init
	   Normal  Pulled     3m23s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Successfully pulled image "docker.io/istio/examples-bookinfo-details-v1:1.16.2" in 23.487615266s
	   Normal  Created    3m22s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container details
	   Normal  Started    3m22s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container details
	   Normal  Pulled     3m22s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
	   Normal  Created    3m22s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container istio-proxy
	   Normal  Started    3m22s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container istio-proxy
	 
	 
	 Name:         productpage-v1-66b44dc6-8mmp5
	 Namespace:    default
	 Priority:     0
	 Node:         gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv/10.128.0.8
	 Start Time:   Mon, 30 Aug 2021 09:39:21 +0000
	 Labels:       app=productpage
	               istio.io/rev=default
	               pod-template-hash=66b44dc6
	               security.istio.io/tlsMode=istio
	               service.istio.io/canonical-name=productpage
	               service.istio.io/canonical-revision=v1
	               track=stable
	               version=v1
	               zgroup=bookinfo
	 Annotations:  kubectl.kubernetes.io/default-container: productpage
	               kubectl.kubernetes.io/default-logs-container: productpage
	               prometheus.io/path: /stats/prometheus
	               prometheus.io/port: 15020
	               prometheus.io/scrape: true
	               sidecar.istio.io/status:
	                 {"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
	 Status:       Running
	 IP:           10.136.2.134
	 IPs:
	   IP:           10.136.2.134
	 Controlled By:  ReplicaSet/productpage-v1-66b44dc6
	 Init Containers:
	   dns-probe:
	     Container ID:  containerd://61582796fbc0884269d6459331fb63a81783018e4c648bf2494152e49e8b9fe7
	     Image:         busybox:1.31.1
	     Image ID:      docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
	     Port:          <none>
	     Host Port:     <none>
	     Command:
	       sh
	       -c
	       max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done 
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:23 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:28 +0000
	     Ready:          True
	     Restart Count:  0
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-init:
	     Container ID:  containerd://90e36f57c2215762b660e1e8cb1834533067399ba44837763d8bd620e424c5ab
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          <none>
	     Host Port:     <none>
	     Args:
	       istio-iptables
	       -p
	       15001
	       -z
	       15006
	       -u
	       1337
	       -m
	       TPROXY
	       -i
	       *
	       -x
	       
	       -b
	       *
	       -d
	       15090,15021,15020
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:34 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:34 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:        100m
	       memory:     128Mi
	     Environment:  <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	 Containers:
	   productpage:
	     Container ID:   containerd://f578804b347dfda945512660e3e29492b39f50791dc32632aeb4b2aa17d0b477
	     Image:          docker.io/istio/examples-bookinfo-productpage-v1:0.2.3
	     Image ID:       docker.io/istio/examples-bookinfo-productpage-v1@sha256:6b82529eb9a2feb335b6e50b66e73aa9e1aab9d65de7bb0b0a77ed6d559db5df
	     Port:           9080/TCP
	     Host Port:      0/TCP
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:55 +0000
	     Ready:          True
	     Restart Count:  0
	     Readiness:      http-get http://:15020/app-health/productpage/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-proxy:
	     Container ID:  containerd://eec88de5e398ed006f65be3a2b5960d85619bf8bac66691a0cd78991ba543b85
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          15090/TCP
	     Host Port:     0/TCP
	     Args:
	       proxy
	       sidecar
	       --domain
	       $(POD_NAMESPACE).svc.cluster.local
	       --serviceCluster
	       productpage.$(POD_NAMESPACE)
	       --proxyLogLevel=warning
	       --proxyComponentLogLevel=misc:error
	       --log_output_level=default:info
	       --concurrency
	       2
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:55 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:      100m
	       memory:   128Mi
	     Readiness:  http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
	     Environment:
	       JWT_POLICY:                    third-party-jwt
	       PILOT_CERT_PROVIDER:           istiod
	       CA_ADDR:                       istiod.istio-system.svc:15012
	       POD_NAME:                      productpage-v1-66b44dc6-8mmp5 (v1:metadata.name)
	       POD_NAMESPACE:                 default (v1:metadata.namespace)
	       INSTANCE_IP:                    (v1:status.podIP)
	       SERVICE_ACCOUNT:                (v1:spec.serviceAccountName)
	       HOST_IP:                        (v1:status.hostIP)
	       CANONICAL_SERVICE:              (v1:metadata.labels['service.istio.io/canonical-name'])
	       CANONICAL_REVISION:             (v1:metadata.labels['service.istio.io/canonical-revision'])
	       PROXY_CONFIG:                  {"interceptionMode":"TPROXY"}
	                                      
	       ISTIO_META_POD_PORTS:          [
	                                          {"containerPort":9080,"protocol":"TCP"}
	                                      ]
	       ISTIO_META_APP_CONTAINERS:     productpage
	       ISTIO_META_CLUSTER_ID:         Kubernetes
	       ISTIO_META_INTERCEPTION_MODE:  TPROXY
	       ISTIO_META_WORKLOAD_NAME:      productpage-v1
	       ISTIO_META_OWNER:              kubernetes://apis/apps/v1/namespaces/default/deployments/productpage-v1
	       ISTIO_META_MESH_ID:            cluster.local
	       TRUST_DOMAIN:                  cluster.local
	       ISTIO_KUBE_APP_PROBERS:        {"/app-health/productpage/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
	     Mounts:
	       /etc/istio/pod from istio-podinfo (rw)
	       /etc/istio/proxy from istio-envoy (rw)
	       /var/lib/istio/data from istio-data (rw)
	       /var/run/cilium from cilium-unix-sock-dir (rw)
	       /var/run/secrets/istio from istiod-ca-cert (rw)
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	       /var/run/secrets/tokens from istio-token (rw)
	 Conditions:
	   Type              Status
	   Initialized       True 
	   Ready             True 
	   ContainersReady   True 
	   PodScheduled      True 
	 Volumes:
	   cilium-unix-sock-dir:
	     Type:          HostPath (bare host directory volume)
	     Path:          /var/run/cilium
	     HostPathType:  
	   istio-envoy:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     Memory
	     SizeLimit:  <unset>
	   istio-data:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     
	     SizeLimit:  <unset>
	   istio-podinfo:
	     Type:  DownwardAPI (a volume populated by information about the pod)
	     Items:
	       metadata.labels -> labels
	       metadata.annotations -> annotations
	       limits.cpu -> cpu-limit
	       requests.cpu -> cpu-request
	   istio-token:
	     Type:                    Projected (a volume that contains injected data from multiple sources)
	     TokenExpirationSeconds:  43200
	   istiod-ca-cert:
	     Type:      ConfigMap (a volume populated by a ConfigMap)
	     Name:      istio-ca-root-cert
	     Optional:  false
	   default-token-sx44r:
	     Type:        Secret (a volume populated by a Secret)
	     SecretName:  default-token-sx44r
	     Optional:    false
	 QoS Class:       Burstable
	 Node-Selectors:  <none>
	 Tolerations:     node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
	                  node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
	 Events:
	   Type    Reason     Age    From                                                Message
	   ----    ------     ----   ----                                                -------
	   Normal  Scheduled  4m     default-scheduler                                   Successfully assigned default/productpage-v1-66b44dc6-8mmp5 to gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv
	   Normal  Pulling    3m58s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Pulling image "busybox:1.31.1"
	   Normal  Created    3m58s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container dns-probe
	   Normal  Started    3m58s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container dns-probe
	   Normal  Pulled     3m58s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Successfully pulled image "busybox:1.31.1" in 581.181427ms
	   Normal  Pulling    3m52s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Pulling image "quay.io/cilium/istio_proxy:1.10.3"
	   Normal  Pulled     3m48s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Successfully pulled image "quay.io/cilium/istio_proxy:1.10.3" in 3.519294081s
	   Normal  Pulling    3m47s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Pulling image "docker.io/istio/examples-bookinfo-productpage-v1:0.2.3"
	   Normal  Created    3m47s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container istio-init
	   Normal  Started    3m47s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container istio-init
	   Normal  Pulled     3m33s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Successfully pulled image "docker.io/istio/examples-bookinfo-productpage-v1:0.2.3" in 14.150746571s
	   Normal  Created    3m26s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container productpage
	   Normal  Started    3m26s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container productpage
	   Normal  Pulled     3m26s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
	   Normal  Created    3m26s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Created container istio-proxy
	   Normal  Started    3m26s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv  Started container istio-proxy
	 
	 
	 Name:         ratings-v1-6c5dd8d8f9-b2dgf
	 Namespace:    default
	 Priority:     0
	 Node:         gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5/10.128.0.9
	 Start Time:   Mon, 30 Aug 2021 09:39:20 +0000
	 Labels:       app=ratings
	               istio.io/rev=default
	               pod-template-hash=6c5dd8d8f9
	               security.istio.io/tlsMode=istio
	               service.istio.io/canonical-name=ratings
	               service.istio.io/canonical-revision=v1
	               version=v1
	               zgroup=bookinfo
	 Annotations:  kubectl.kubernetes.io/default-container: ratings
	               kubectl.kubernetes.io/default-logs-container: ratings
	               prometheus.io/path: /stats/prometheus
	               prometheus.io/port: 15020
	               prometheus.io/scrape: true
	               sidecar.istio.io/status:
	                 {"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
	 Status:       Pending
	 IP:           10.136.1.1
	 IPs:
	   IP:           10.136.1.1
	 Controlled By:  ReplicaSet/ratings-v1-6c5dd8d8f9
	 Init Containers:
	   dns-probe:
	     Container ID:  containerd://0eecb28146b5a2055088d295ca4e907ef7732b9c968261864de403d8c14a1ef2
	     Image:         busybox:1.31.1
	     Image ID:      docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
	     Port:          <none>
	     Host Port:     <none>
	     Command:
	       sh
	       -c
	       max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done 
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:23 +0000
	     Ready:          False
	     Restart Count:  0
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-init:
	     Container ID:  
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      
	     Port:          <none>
	     Host Port:     <none>
	     Args:
	       istio-iptables
	       -p
	       15001
	       -z
	       15006
	       -u
	       1337
	       -m
	       TPROXY
	       -i
	       *
	       -x
	       
	       -b
	       *
	       -d
	       15090,15021,15020
	     State:          Waiting
	       Reason:       PodInitializing
	     Ready:          False
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:        100m
	       memory:     128Mi
	     Environment:  <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	 Containers:
	   ratings:
	     Container ID:   
	     Image:          docker.io/istio/examples-bookinfo-ratings-v1:1.16.2
	     Image ID:       
	     Port:           9080/TCP
	     Host Port:      0/TCP
	     State:          Waiting
	       Reason:       PodInitializing
	     Ready:          False
	     Restart Count:  0
	     Readiness:      http-get http://:15020/app-health/ratings/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-proxy:
	     Container ID:  
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      
	     Port:          15090/TCP
	     Host Port:     0/TCP
	     Args:
	       proxy
	       sidecar
	       --domain
	       $(POD_NAMESPACE).svc.cluster.local
	       --serviceCluster
	       ratings.$(POD_NAMESPACE)
	       --proxyLogLevel=warning
	       --proxyComponentLogLevel=misc:error
	       --log_output_level=default:info
	       --concurrency
	       2
	     State:          Waiting
	       Reason:       PodInitializing
	     Ready:          False
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:      100m
	       memory:   128Mi
	     Readiness:  http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
	     Environment:
	       JWT_POLICY:                    third-party-jwt
	       PILOT_CERT_PROVIDER:           istiod
	       CA_ADDR:                       istiod.istio-system.svc:15012
	       POD_NAME:                      ratings-v1-6c5dd8d8f9-b2dgf (v1:metadata.name)
	       POD_NAMESPACE:                 default (v1:metadata.namespace)
	       INSTANCE_IP:                    (v1:status.podIP)
	       SERVICE_ACCOUNT:                (v1:spec.serviceAccountName)
	       HOST_IP:                        (v1:status.hostIP)
	       CANONICAL_SERVICE:              (v1:metadata.labels['service.istio.io/canonical-name'])
	       CANONICAL_REVISION:             (v1:metadata.labels['service.istio.io/canonical-revision'])
	       PROXY_CONFIG:                  {"interceptionMode":"TPROXY"}
	                                      
	       ISTIO_META_POD_PORTS:          [
	                                          {"containerPort":9080,"protocol":"TCP"}
	                                      ]
	       ISTIO_META_APP_CONTAINERS:     ratings
	       ISTIO_META_CLUSTER_ID:         Kubernetes
	       ISTIO_META_INTERCEPTION_MODE:  TPROXY
	       ISTIO_META_WORKLOAD_NAME:      ratings-v1
	       ISTIO_META_OWNER:              kubernetes://apis/apps/v1/namespaces/default/deployments/ratings-v1
	       ISTIO_META_MESH_ID:            cluster.local
	       TRUST_DOMAIN:                  cluster.local
	       ISTIO_KUBE_APP_PROBERS:        {"/app-health/ratings/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
	     Mounts:
	       /etc/istio/pod from istio-podinfo (rw)
	       /etc/istio/proxy from istio-envoy (rw)
	       /var/lib/istio/data from istio-data (rw)
	       /var/run/cilium from cilium-unix-sock-dir (rw)
	       /var/run/secrets/istio from istiod-ca-cert (rw)
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	       /var/run/secrets/tokens from istio-token (rw)
	 Conditions:
	   Type              Status
	   Initialized       False 
	   Ready             False 
	   ContainersReady   False 
	   PodScheduled      True 
	 Volumes:
	   cilium-unix-sock-dir:
	     Type:          HostPath (bare host directory volume)
	     Path:          /var/run/cilium
	     HostPathType:  
	   istio-envoy:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     Memory
	     SizeLimit:  <unset>
	   istio-data:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     
	     SizeLimit:  <unset>
	   istio-podinfo:
	     Type:  DownwardAPI (a volume populated by information about the pod)
	     Items:
	       metadata.labels -> labels
	       metadata.annotations -> annotations
	       limits.cpu -> cpu-limit
	       requests.cpu -> cpu-request
	   istio-token:
	     Type:                    Projected (a volume that contains injected data from multiple sources)
	     TokenExpirationSeconds:  43200
	   istiod-ca-cert:
	     Type:      ConfigMap (a volume populated by a ConfigMap)
	     Name:      istio-ca-root-cert
	     Optional:  false
	   default-token-sx44r:
	     Type:        Secret (a volume populated by a Secret)
	     SecretName:  default-token-sx44r
	     Optional:    false
	 QoS Class:       Burstable
	 Node-Selectors:  <none>
	 Tolerations:     node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
	                  node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
	 Events:
	   Type    Reason     Age    From                                                Message
	   ----    ------     ----   ----                                                -------
	   Normal  Scheduled  4m2s   default-scheduler                                   Successfully assigned default/ratings-v1-6c5dd8d8f9-b2dgf to gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5
	   Normal  Pulling    4m     kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Pulling image "busybox:1.31.1"
	   Normal  Pulled     3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Successfully pulled image "busybox:1.31.1" in 715.749162ms
	   Normal  Created    3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container dns-probe
	   Normal  Started    3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container dns-probe
	 
	 
	 Name:         reviews-v1-858cfcc657-vlm67
	 Namespace:    default
	 Priority:     0
	 Node:         gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5/10.128.0.9
	 Start Time:   Mon, 30 Aug 2021 09:39:21 +0000
	 Labels:       app=reviews
	               istio.io/rev=default
	               pod-template-hash=858cfcc657
	               security.istio.io/tlsMode=istio
	               service.istio.io/canonical-name=reviews
	               service.istio.io/canonical-revision=v1
	               track=stable
	               version=v1
	               zgroup=bookinfo
	 Annotations:  kubectl.kubernetes.io/default-container: reviews
	               kubectl.kubernetes.io/default-logs-container: reviews
	               prometheus.io/path: /stats/prometheus
	               prometheus.io/port: 15020
	               prometheus.io/scrape: true
	               sidecar.istio.io/status:
	                 {"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
	 Status:       Running
	 IP:           10.136.1.127
	 IPs:
	   IP:           10.136.1.127
	 Controlled By:  ReplicaSet/reviews-v1-858cfcc657
	 Init Containers:
	   dns-probe:
	     Container ID:  containerd://344e3ee4351c7c07fd14ad612460afd1883102b50b4cb3b26609f39fdae788fb
	     Image:         busybox:1.31.1
	     Image ID:      docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
	     Port:          <none>
	     Host Port:     <none>
	     Command:
	       sh
	       -c
	       max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done 
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:23 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:28 +0000
	     Ready:          True
	     Restart Count:  0
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-init:
	     Container ID:  containerd://e6a08095281dc9e5a21de3667319977c0f626a577ab914ba70f6f62c791ad5aa
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          <none>
	     Host Port:     <none>
	     Args:
	       istio-iptables
	       -p
	       15001
	       -z
	       15006
	       -u
	       1337
	       -m
	       TPROXY
	       -i
	       *
	       -x
	       
	       -b
	       *
	       -d
	       15090,15021,15020
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:29 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:29 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:        100m
	       memory:     128Mi
	     Environment:  <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	 Containers:
	   reviews:
	     Container ID:   containerd://33389a800a44a02272e0c564e82a8b206343a4a5a15c5a4b1089acfcebc095c5
	     Image:          docker.io/istio/examples-bookinfo-reviews-v1:1.6.0
	     Image ID:       docker.io/istio/examples-bookinfo-reviews-v1@sha256:e0b652146ca2f3dacc176a65f1f00bad2dc22bfbdcda29a0f328ac81fb010aa5
	     Port:           9080/TCP
	     Host Port:      0/TCP
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:45 +0000
	     Ready:          True
	     Restart Count:  0
	     Readiness:      http-get http://:15020/app-health/reviews/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-proxy:
	     Container ID:  containerd://21bb2a2951582dfa1445a40560781d89bdd9cace9e93c5916b511e72696c457d
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          15090/TCP
	     Host Port:     0/TCP
	     Args:
	       proxy
	       sidecar
	       --domain
	       $(POD_NAMESPACE).svc.cluster.local
	       --serviceCluster
	       reviews.$(POD_NAMESPACE)
	       --proxyLogLevel=warning
	       --proxyComponentLogLevel=misc:error
	       --log_output_level=default:info
	       --concurrency
	       2
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:45 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:      100m
	       memory:   128Mi
	     Readiness:  http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
	     Environment:
	       JWT_POLICY:                    third-party-jwt
	       PILOT_CERT_PROVIDER:           istiod
	       CA_ADDR:                       istiod.istio-system.svc:15012
	       POD_NAME:                      reviews-v1-858cfcc657-vlm67 (v1:metadata.name)
	       POD_NAMESPACE:                 default (v1:metadata.namespace)
	       INSTANCE_IP:                    (v1:status.podIP)
	       SERVICE_ACCOUNT:                (v1:spec.serviceAccountName)
	       HOST_IP:                        (v1:status.hostIP)
	       CANONICAL_SERVICE:              (v1:metadata.labels['service.istio.io/canonical-name'])
	       CANONICAL_REVISION:             (v1:metadata.labels['service.istio.io/canonical-revision'])
	       PROXY_CONFIG:                  {"interceptionMode":"TPROXY"}
	                                      
	       ISTIO_META_POD_PORTS:          [
	                                          {"containerPort":9080,"protocol":"TCP"}
	                                      ]
	       ISTIO_META_APP_CONTAINERS:     reviews
	       ISTIO_META_CLUSTER_ID:         Kubernetes
	       ISTIO_META_INTERCEPTION_MODE:  TPROXY
	       ISTIO_META_WORKLOAD_NAME:      reviews-v1
	       ISTIO_META_OWNER:              kubernetes://apis/apps/v1/namespaces/default/deployments/reviews-v1
	       ISTIO_META_MESH_ID:            cluster.local
	       TRUST_DOMAIN:                  cluster.local
	       ISTIO_KUBE_APP_PROBERS:        {"/app-health/reviews/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
	     Mounts:
	       /etc/istio/pod from istio-podinfo (rw)
	       /etc/istio/proxy from istio-envoy (rw)
	       /var/lib/istio/data from istio-data (rw)
	       /var/run/cilium from cilium-unix-sock-dir (rw)
	       /var/run/secrets/istio from istiod-ca-cert (rw)
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	       /var/run/secrets/tokens from istio-token (rw)
	 Conditions:
	   Type              Status
	   Initialized       True 
	   Ready             True 
	   ContainersReady   True 
	   PodScheduled      True 
	 Volumes:
	   cilium-unix-sock-dir:
	     Type:          HostPath (bare host directory volume)
	     Path:          /var/run/cilium
	     HostPathType:  
	   istio-envoy:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     Memory
	     SizeLimit:  <unset>
	   istio-data:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     
	     SizeLimit:  <unset>
	   istio-podinfo:
	     Type:  DownwardAPI (a volume populated by information about the pod)
	     Items:
	       metadata.labels -> labels
	       metadata.annotations -> annotations
	       limits.cpu -> cpu-limit
	       requests.cpu -> cpu-request
	   istio-token:
	     Type:                    Projected (a volume that contains injected data from multiple sources)
	     TokenExpirationSeconds:  43200
	   istiod-ca-cert:
	     Type:      ConfigMap (a volume populated by a ConfigMap)
	     Name:      istio-ca-root-cert
	     Optional:  false
	   default-token-sx44r:
	     Type:        Secret (a volume populated by a Secret)
	     SecretName:  default-token-sx44r
	     Optional:    false
	 QoS Class:       Burstable
	 Node-Selectors:  <none>
	 Tolerations:     node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
	                  node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
	 Events:
	   Type    Reason     Age    From                                                Message
	   ----    ------     ----   ----                                                -------
	   Normal  Scheduled  4m1s   default-scheduler                                   Successfully assigned default/reviews-v1-858cfcc657-vlm67 to gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5
	   Normal  Pulled     3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Container image "busybox:1.31.1" already present on machine
	   Normal  Created    3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container dns-probe
	   Normal  Started    3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container dns-probe
	   Normal  Pulled     3m54s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
	   Normal  Created    3m53s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container istio-init
	   Normal  Started    3m53s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container istio-init
	   Normal  Pulling    3m53s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Pulling image "docker.io/istio/examples-bookinfo-reviews-v1:1.6.0"
	   Normal  Pulled     3m37s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Successfully pulled image "docker.io/istio/examples-bookinfo-reviews-v1:1.6.0" in 15.031598703s
	   Normal  Created    3m37s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container reviews
	   Normal  Started    3m37s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container reviews
	   Normal  Pulled     3m37s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
	   Normal  Created    3m37s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container istio-proxy
	   Normal  Started    3m37s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container istio-proxy
	 
	 
	 Name:         reviews-v2-57fcb764c-xlllp
	 Namespace:    default
	 Priority:     0
	 Node:         gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5/10.128.0.9
	 Start Time:   Mon, 30 Aug 2021 09:39:20 +0000
	 Labels:       app=reviews
	               istio.io/rev=default
	               pod-template-hash=57fcb764c
	               security.istio.io/tlsMode=istio
	               service.istio.io/canonical-name=reviews
	               service.istio.io/canonical-revision=v2
	               version=v2
	               zgroup=bookinfo
	 Annotations:  kubectl.kubernetes.io/default-container: reviews
	               kubectl.kubernetes.io/default-logs-container: reviews
	               prometheus.io/path: /stats/prometheus
	               prometheus.io/port: 15020
	               prometheus.io/scrape: true
	               sidecar.istio.io/status:
	                 {"initContainers":["dns-probe","istio-init"],"containers":["istio-proxy"],"volumes":["cilium-unix-sock-dir","istio-envoy","istio-data","is...
	 Status:       Running
	 IP:           10.136.1.250
	 IPs:
	   IP:           10.136.1.250
	 Controlled By:  ReplicaSet/reviews-v2-57fcb764c
	 Init Containers:
	   dns-probe:
	     Container ID:  containerd://df403098c6af5929447564870039d0b1ed0c25867ea674860d5d6df5d33fead5
	     Image:         busybox:1.31.1
	     Image ID:      docker.io/library/busybox@sha256:95cf004f559831017cdf4628aaf1bb30133677be8702a8c5f2994629f637a209
	     Port:          <none>
	     Host Port:     <none>
	     Command:
	       sh
	       -c
	       max=120; i=0; until nslookup kube-dns.kube-system.svc.cluster.local; do i=$((i + 1)); if [ $i -eq $max ]; then echo timed-out; exit 1; else sleep 1; fi done 
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:23 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:28 +0000
	     Ready:          True
	     Restart Count:  0
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-init:
	     Container ID:  containerd://931de76ed271b52342c53f30e772e9a604eb135ed15d12f8441c72f5f1792275
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          <none>
	     Host Port:     <none>
	     Args:
	       istio-iptables
	       -p
	       15001
	       -z
	       15006
	       -u
	       1337
	       -m
	       TPROXY
	       -i
	       *
	       -x
	       
	       -b
	       *
	       -d
	       15090,15021,15020
	     State:          Terminated
	       Reason:       Completed
	       Exit Code:    0
	       Started:      Mon, 30 Aug 2021 09:39:29 +0000
	       Finished:     Mon, 30 Aug 2021 09:39:29 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:        100m
	       memory:     128Mi
	     Environment:  <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	 Containers:
	   reviews:
	     Container ID:   containerd://f0300058a97062999575bd8e36952a9bdbbe45a4720bb264b46f73721962e665
	     Image:          docker.io/istio/examples-bookinfo-reviews-v2:1.6.0
	     Image ID:       docker.io/istio/examples-bookinfo-reviews-v2@sha256:b42f897f98b57d018a2e436ac612dd4b6d0c0324e263ff11cf2be2366164b592
	     Port:           9080/TCP
	     Host Port:      0/TCP
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:44 +0000
	     Ready:          True
	     Restart Count:  0
	     Readiness:      http-get http://:15020/app-health/reviews/readyz delay=0s timeout=1s period=10s #success=1 #failure=3
	     Environment:    <none>
	     Mounts:
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	   istio-proxy:
	     Container ID:  containerd://b838b310a497cf33c94bc2fe5b003e276e2dad5ad2bf31722a26e7a20b7bc787
	     Image:         quay.io/cilium/istio_proxy:1.10.3
	     Image ID:      quay.io/cilium/istio_proxy@sha256:e3d923fd693a677c09581036b9f736f211415484c0ba2b9208b912a4df5373ad
	     Port:          15090/TCP
	     Host Port:     0/TCP
	     Args:
	       proxy
	       sidecar
	       --domain
	       $(POD_NAMESPACE).svc.cluster.local
	       --serviceCluster
	       reviews.$(POD_NAMESPACE)
	       --proxyLogLevel=warning
	       --proxyComponentLogLevel=misc:error
	       --log_output_level=default:info
	       --concurrency
	       2
	     State:          Running
	       Started:      Mon, 30 Aug 2021 09:39:44 +0000
	     Ready:          True
	     Restart Count:  0
	     Limits:
	       cpu:     2
	       memory:  1Gi
	     Requests:
	       cpu:      100m
	       memory:   128Mi
	     Readiness:  http-get http://:15021/healthz/ready delay=1s timeout=3s period=2s #success=1 #failure=30
	     Environment:
	       JWT_POLICY:                    third-party-jwt
	       PILOT_CERT_PROVIDER:           istiod
	       CA_ADDR:                       istiod.istio-system.svc:15012
	       POD_NAME:                      reviews-v2-57fcb764c-xlllp (v1:metadata.name)
	       POD_NAMESPACE:                 default (v1:metadata.namespace)
	       INSTANCE_IP:                    (v1:status.podIP)
	       SERVICE_ACCOUNT:                (v1:spec.serviceAccountName)
	       HOST_IP:                        (v1:status.hostIP)
	       CANONICAL_SERVICE:              (v1:metadata.labels['service.istio.io/canonical-name'])
	       CANONICAL_REVISION:             (v1:metadata.labels['service.istio.io/canonical-revision'])
	       PROXY_CONFIG:                  {"interceptionMode":"TPROXY"}
	                                      
	       ISTIO_META_POD_PORTS:          [
	                                          {"containerPort":9080,"protocol":"TCP"}
	                                      ]
	       ISTIO_META_APP_CONTAINERS:     reviews
	       ISTIO_META_CLUSTER_ID:         Kubernetes
	       ISTIO_META_INTERCEPTION_MODE:  TPROXY
	       ISTIO_META_WORKLOAD_NAME:      reviews-v2
	       ISTIO_META_OWNER:              kubernetes://apis/apps/v1/namespaces/default/deployments/reviews-v2
	       ISTIO_META_MESH_ID:            cluster.local
	       TRUST_DOMAIN:                  cluster.local
	       ISTIO_KUBE_APP_PROBERS:        {"/app-health/reviews/readyz":{"httpGet":{"path":"/health","port":9080,"scheme":"HTTP"},"timeoutSeconds":1}}
	     Mounts:
	       /etc/istio/pod from istio-podinfo (rw)
	       /etc/istio/proxy from istio-envoy (rw)
	       /var/lib/istio/data from istio-data (rw)
	       /var/run/cilium from cilium-unix-sock-dir (rw)
	       /var/run/secrets/istio from istiod-ca-cert (rw)
	       /var/run/secrets/kubernetes.io/serviceaccount from default-token-sx44r (ro)
	       /var/run/secrets/tokens from istio-token (rw)
	 Conditions:
	   Type              Status
	   Initialized       True 
	   Ready             True 
	   ContainersReady   True 
	   PodScheduled      True 
	 Volumes:
	   cilium-unix-sock-dir:
	     Type:          HostPath (bare host directory volume)
	     Path:          /var/run/cilium
	     HostPathType:  
	   istio-envoy:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     Memory
	     SizeLimit:  <unset>
	   istio-data:
	     Type:       EmptyDir (a temporary directory that shares a pod's lifetime)
	     Medium:     
	     SizeLimit:  <unset>
	   istio-podinfo:
	     Type:  DownwardAPI (a volume populated by information about the pod)
	     Items:
	       metadata.labels -> labels
	       metadata.annotations -> annotations
	       limits.cpu -> cpu-limit
	       requests.cpu -> cpu-request
	   istio-token:
	     Type:                    Projected (a volume that contains injected data from multiple sources)
	     TokenExpirationSeconds:  43200
	   istiod-ca-cert:
	     Type:      ConfigMap (a volume populated by a ConfigMap)
	     Name:      istio-ca-root-cert
	     Optional:  false
	   default-token-sx44r:
	     Type:        Secret (a volume populated by a Secret)
	     SecretName:  default-token-sx44r
	     Optional:    false
	 QoS Class:       Burstable
	 Node-Selectors:  <none>
	 Tolerations:     node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
	                  node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
	 Events:
	   Type     Reason     Age    From                                                Message
	   ----     ------     ----   ----                                                -------
	   Normal   Scheduled  4m2s   default-scheduler                                   Successfully assigned default/reviews-v2-57fcb764c-xlllp to gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5
	   Normal   Pulling    4m     kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Pulling image "busybox:1.31.1"
	   Normal   Pulled     3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Successfully pulled image "busybox:1.31.1" in 500.350364ms
	   Normal   Created    3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container dns-probe
	   Normal   Started    3m59s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container dns-probe
	   Normal   Pulled     3m54s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
	   Normal   Created    3m53s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container istio-init
	   Normal   Started    3m53s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container istio-init
	   Normal   Pulling    3m53s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Pulling image "docker.io/istio/examples-bookinfo-reviews-v2:1.6.0"
	   Normal   Pulled     3m42s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Successfully pulled image "docker.io/istio/examples-bookinfo-reviews-v2:1.6.0" in 10.260389189s
	   Normal   Created    3m38s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container reviews
	   Normal   Started    3m38s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container reviews
	   Normal   Pulled     3m38s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Container image "quay.io/cilium/istio_proxy:1.10.3" already present on machine
	   Normal   Created    3m38s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Created container istio-proxy
	   Normal   Started    3m38s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Started container istio-proxy
	   Warning  Unhealthy  3m30s  kubelet, gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5  Readiness probe failed: HTTP probe failed with statuscode: 404
	 
Stderr:
 	 

FAIL: Pods are not ready after timeout
Expected
    <*errors.errorString | 0xc000b720e0>: {
        s: "timed out waiting for pods with filter -l zgroup=bookinfo to be ready: 4m0s timeout expired",
    }
to be nil
=== Test Finished at 2021-08-30T09:43:22Z====
09:43:22 STEP: Running JustAfterEach block for EntireTestsuite K8sIstioTest
===================== TEST FAILED =====================
09:43:23 STEP: Running AfterFailed block for EntireTestsuite K8sIstioTest
cmd: kubectl get pods -o wide --all-namespaces
Exitcode: 0 
Stdout:
 	 NAMESPACE           NAME                                                        READY   STATUS     RESTARTS   AGE     IP             NODE                                        NOMINATED NODE   READINESS GATES
	 cilium-monitoring   grafana-d69c97b9b-qnxvn                                     1/1     Running    0          8m14s   10.136.1.6     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 cilium-monitoring   prometheus-655fb888d7-bw757                                 1/1     Running    0          8m14s   10.136.2.7     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 default             details-v1-7979fc5975-6dpbt                                 2/2     Running    0          4m7s    10.136.2.212   gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 default             productpage-v1-66b44dc6-8mmp5                               2/2     Running    0          4m6s    10.136.2.134   gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 default             ratings-v1-6c5dd8d8f9-b2dgf                                 0/2     Init:0/2   0          4m7s    10.136.1.1     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 default             reviews-v1-858cfcc657-vlm67                                 2/2     Running    0          4m6s    10.136.1.127   gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 default             reviews-v2-57fcb764c-xlllp                                  2/2     Running    0          4m7s    10.136.1.250   gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 istio-system        istio-ingressgateway-764c665bbf-s279m                       1/1     Running    0          4m32s   10.136.1.33    gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 istio-system        istiod-9f4b7b45f-6xbxn                                      1/1     Running    0          4m46s   10.136.2.194   gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         cilium-bwbnh                                                1/1     Running    0          8m2s    10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         cilium-g8xhz                                                1/1     Running    0          8m1s    10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         cilium-node-init-cvsx7                                      1/1     Running    0          8m1s    10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         cilium-node-init-qj86n                                      1/1     Running    0          8m1s    10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         cilium-operator-864c96b5dd-9fkb8                            1/1     Running    0          8m1s    10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         cilium-operator-864c96b5dd-hngxn                            1/1     Running    0          8m1s    10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         event-exporter-gke-67986489c8-4b7hk                         2/2     Running    0          7m10s   10.136.1.229   gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         fluentbit-gke-r7brl                                         2/2     Running    0          10m     10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         fluentbit-gke-z9csb                                         2/2     Running    0          10m     10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         gke-metrics-agent-mhdfr                                     1/1     Running    0          10m     10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         gke-metrics-agent-mtvhc                                     1/1     Running    0          10m     10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         kube-dns-6c7b8dc9f9-ghdw8                                   4/4     Running    0          7m34s   10.136.2.23    gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         kube-dns-6c7b8dc9f9-rd8kp                                   4/4     Running    0          7m19s   10.136.1.8     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         kube-dns-autoscaler-58cbd4f75c-dwpxs                        1/1     Running    0          7m10s   10.136.2.169   gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         kube-proxy-gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5        1/1     Running    0          10m     10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         kube-proxy-gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv        1/1     Running    0          10m     10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         l7-default-backend-66579f5d7-w85z5                          1/1     Running    0          7m9s    10.136.2.71    gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         log-gatherer-f6nch                                          1/1     Running    0          8m31s   10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         log-gatherer-wc67q                                          1/1     Running    0          8m31s   10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         metrics-server-v0.3.6-6c47ffd7d7-xcl9l                      2/2     Running    0          7m9s    10.136.2.124   gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         pdcsi-node-rsbfn                                            2/2     Running    0          10m     10.128.0.8     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 kube-system         pdcsi-node-xclw6                                            2/2     Running    0          10m     10.128.0.9     gke-cilium-ci-1-cilium-ci-1-8029843a-dlt5   <none>           <none>
	 kube-system         stackdriver-metadata-agent-cluster-level-69b56d776c-6j87c   2/2     Running    0          7m9s    10.136.2.4     gke-cilium-ci-1-cilium-ci-1-8029843a-kwmv   <none>           <none>
	 
Stderr:
 	 

Fetching command output from pods [cilium-bwbnh cilium-g8xhz]
cmd: kubectl exec -n kube-system cilium-bwbnh -c cilium-agent -- cilium endpoint list
Exitcode: 0 
Stdout:
 	 ENDPOINT   POLICY (ingress)   POLICY (egress)   IDENTITY   LABELS (source:key[=value])                                      IPv6   IPv4           STATUS   
	            ENFORCEMENT        ENFORCEMENT                                                                                                         
	 73         Disabled           Disabled          37794      k8s:app=stackdriver-metadata-agent                                      10.136.2.4     ready   
	                                                            k8s:cluster-level=true                                                                         
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                       
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=metadata-agent                                         
	                                                            k8s:io.kubernetes.pod.namespace=kube-system                                                    
	 346        Disabled           Disabled          42005      k8s:app=productpage                                                     10.136.2.134   ready   
	                                                            k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled                                     
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                       
	                                                            k8s:io.cilium.k8s.policy.istiosidecarproxy=true                                                
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=default                                                
	                                                            k8s:io.kubernetes.pod.namespace=default                                                        
	                                                            k8s:istio.io/rev=default                                                                       
	                                                            k8s:security.istio.io/tlsMode=istio                                                            
	                                                            k8s:service.istio.io/canonical-name=productpage                                                
	                                                            k8s:service.istio.io/canonical-revision=v1                                                     
	                                                            k8s:track=stable                                                                               
	                                                            k8s:version=v1                                                                                 
	                                                            k8s:zgroup=bookinfo                                                                            
	 1239       Disabled           Disabled          1          k8s:cilium.io/ci-node=k8s2                                                             ready   
	                                                            k8s:cloud.google.com/gke-boot-disk=pd-standard                                                 
	                                                            k8s:cloud.google.com/gke-container-runtime=containerd                                          
	                                                            k8s:cloud.google.com/gke-nodepool=cilium-ci-1                                                  
	                                                            k8s:cloud.google.com/gke-os-distribution=cos                                                   
	                                                            k8s:cloud.google.com/machine-family=n1                                                         
	                                                            k8s:node.kubernetes.io/instance-type=n1-standard-4                                             
	                                                            k8s:topology.gke.io/zone=us-west1-b                                                            
	                                                            k8s:topology.kubernetes.io/region=us-west1                                                     
	                                                            k8s:topology.kubernetes.io/zone=us-west1-b                                                     
	                                                            reserved:host                                                                                  
	 2346       Enabled            Disabled          4776       k8s:app=details                                                         10.136.2.212   ready   
	                                                            k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled                                     
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                       
	                                                            k8s:io.cilium.k8s.policy.istiosidecarproxy=true                                                
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=default                                                
	                                                            k8s:io.kubernetes.pod.namespace=default                                                        
	                                                            k8s:istio.io/rev=default                                                                       
	                                                            k8s:security.istio.io/tlsMode=istio                                                            
	                                                            k8s:service.istio.io/canonical-name=details                                                    
	                                                            k8s:service.istio.io/canonical-revision=v1                                                     
	                                                            k8s:track=stable                                                                               
	                                                            k8s:version=v1                                                                                 
	                                                            k8s:zgroup=bookinfo                                                                            
	 2385       Disabled           Disabled          39878      k8s:io.cilium.k8s.policy.cluster=default                                10.136.2.124   ready   
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=metrics-server                                         
	                                                            k8s:io.kubernetes.pod.namespace=kube-system                                                    
	                                                            k8s:k8s-app=metrics-server                                                                     
	                                                            k8s:version=v0.3.6                                                                             
	 2498       Disabled           Disabled          23965      k8s:io.cilium.k8s.policy.cluster=default                                10.136.2.71    ready   
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=default                                                
	                                                            k8s:io.kubernetes.pod.namespace=kube-system                                                    
	                                                            k8s:k8s-app=glbc                                                                               
	                                                            k8s:name=glbc                                                                                  
	 2545       Disabled           Disabled          57976      k8s:app=istiod                                                          10.136.2.194   ready   
	                                                            k8s:install.operator.istio.io/owning-resource=unknown                                          
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                       
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=istiod-service-account                                 
	                                                            k8s:io.kubernetes.pod.namespace=istio-system                                                   
	                                                            k8s:istio.io/rev=default                                                                       
	                                                            k8s:istio=pilot                                                                                
	                                                            k8s:operator.istio.io/component=Pilot                                                          
	                                                            k8s:sidecar.istio.io/inject=false                                                              
	 2977       Disabled           Disabled          4          reserved:health                                                         10.136.2.97    ready   
	 3180       Disabled           Disabled          14780      k8s:io.cilium.k8s.policy.cluster=default                                10.136.2.23    ready   
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=kube-dns                                               
	                                                            k8s:io.kubernetes.pod.namespace=kube-system                                                    
	                                                            k8s:k8s-app=kube-dns                                                                           
	 3774       Disabled           Disabled          65174      k8s:io.cilium.k8s.policy.cluster=default                                10.136.2.169   ready   
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=kube-dns-autoscaler                                    
	                                                            k8s:io.kubernetes.pod.namespace=kube-system                                                    
	                                                            k8s:k8s-app=kube-dns-autoscaler                                                                
	 
Stderr:
 	 

cmd: kubectl exec -n kube-system cilium-g8xhz -c cilium-agent -- cilium endpoint list
Exitcode: 0 
Stdout:
 	 ENDPOINT   POLICY (ingress)   POLICY (egress)   IDENTITY   LABELS (source:key[=value])                                                    IPv6   IPv4           STATUS   
	            ENFORCEMENT        ENFORCEMENT                                                                                                                       
	 215        Disabled           Disabled          24165      k8s:app=reviews                                                                       10.136.1.127   ready                   
	                                                            k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled                                                                   
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                                                     
	                                                            k8s:io.cilium.k8s.policy.istiosidecarproxy=true                                                                              
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=default                                                                              
	                                                            k8s:io.kubernetes.pod.namespace=default                                                                                      
	                                                            k8s:istio.io/rev=default                                                                                                     
	                                                            k8s:security.istio.io/tlsMode=istio                                                                                          
	                                                            k8s:service.istio.io/canonical-name=reviews                                                                                  
	                                                            k8s:service.istio.io/canonical-revision=v1                                                                                   
	                                                            k8s:track=stable                                                                                                             
	                                                            k8s:version=v1                                                                                                               
	                                                            k8s:zgroup=bookinfo                                                                                                          
	 226        Disabled           Disabled          47715      k8s:app=istio-ingressgateway                                                          10.136.1.33    ready                   
	                                                            k8s:chart=gateways                                                                                                           
	                                                            k8s:heritage=Tiller                                                                                                          
	                                                            k8s:install.operator.istio.io/owning-resource=unknown                                                                        
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                                                     
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=istio-ingressgateway-service-account                                                 
	                                                            k8s:io.kubernetes.pod.namespace=istio-system                                                                                 
	                                                            k8s:istio.io/rev=default                                                                                                     
	                                                            k8s:istio=ingressgateway                                                                                                     
	                                                            k8s:operator.istio.io/component=IngressGateways                                                                              
	                                                            k8s:release=istio                                                                                                            
	                                                            k8s:service.istio.io/canonical-name=istio-ingressgateway                                                                     
	                                                            k8s:service.istio.io/canonical-revision=latest                                                                               
	                                                            k8s:sidecar.istio.io/inject=false                                                                                            
	 658        Disabled           Disabled          11815      k8s:io.cilium.k8s.policy.cluster=default                                              10.136.1.229   ready                   
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=event-exporter-sa                                                                    
	                                                            k8s:io.kubernetes.pod.namespace=kube-system                                                                                  
	                                                            k8s:k8s-app=event-exporter                                                                                                   
	                                                            k8s:version=v0.3.4                                                                                                           
	 714        Disabled           Disabled          4          reserved:health                                                                       10.136.1.237   ready                   
	 1399       Disabled           Disabled          25557      k8s:app=ratings                                                                       10.136.1.1     waiting-to-regenerate   
	                                                            k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled                                                                   
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                                                     
	                                                            k8s:io.cilium.k8s.policy.istiosidecarproxy=true                                                                              
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=default                                                                              
	                                                            k8s:io.kubernetes.pod.namespace=default                                                                                      
	                                                            k8s:istio.io/rev=default                                                                                                     
	                                                            k8s:security.istio.io/tlsMode=istio                                                                                          
	                                                            k8s:service.istio.io/canonical-name=ratings                                                                                  
	                                                            k8s:service.istio.io/canonical-revision=v1                                                                                   
	                                                            k8s:version=v1                                                                                                               
	                                                            k8s:zgroup=bookinfo                                                                                                          
	 2115       Disabled           Disabled          1          k8s:cilium.io/ci-node=k8s1                                                                           ready                   
	                                                            k8s:cloud.google.com/gke-boot-disk=pd-standard                                                                               
	                                                            k8s:cloud.google.com/gke-container-runtime=containerd                                                                        
	                                                            k8s:cloud.google.com/gke-nodepool=cilium-ci-1                                                                                
	                                                            k8s:cloud.google.com/gke-os-distribution=cos                                                                                 
	                                                            k8s:cloud.google.com/machine-family=n1                                                                                       
	                                                            k8s:node.kubernetes.io/instance-type=n1-standard-4                                                                           
	                                                            k8s:topology.gke.io/zone=us-west1-b                                                                                          
	                                                            k8s:topology.kubernetes.io/region=us-west1                                                                                   
	                                                            k8s:topology.kubernetes.io/zone=us-west1-b                                                                                   
	                                                            reserved:host                                                                                                                
	 2820       Disabled           Disabled          14780      k8s:io.cilium.k8s.policy.cluster=default                                              10.136.1.8     ready                   
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=kube-dns                                                                             
	                                                            k8s:io.kubernetes.pod.namespace=kube-system                                                                                  
	                                                            k8s:k8s-app=kube-dns                                                                                                         
	 3059       Disabled           Disabled          1708       k8s:app=reviews                                                                       10.136.1.250   ready                   
	                                                            k8s:io.cilium.k8s.namespace.labels.istio-injection=enabled                                                                   
	                                                            k8s:io.cilium.k8s.policy.cluster=default                                                                                     
	                                                            k8s:io.cilium.k8s.policy.istiosidecarproxy=true                                                                              
	                                                            k8s:io.cilium.k8s.policy.serviceaccount=default                                                                              
	                                                            k8s:io.kubernetes.pod.namespace=default                                                                                      
	                                                            k8s:istio.io/rev=default                                                                                                     
	                                                            k8s:security.istio.io/tlsMode=istio                                                                                          
	                                                            k8s:service.istio.io/canonical-name=reviews                                                                                  
	                                                            k8s:service.istio.io/canonical-revision=v2                                                                                   
	                                                            k8s:version=v2                                                                                                               
	                                                            k8s:zgroup=bookinfo                                                                                                          
	 
Stderr:
 	 

===================== Exiting AfterFailed =====================
09:44:07 STEP: Running AfterEach for block EntireTestsuite K8sIstioTest Istio Bookinfo Demo
09:44:07 STEP: Deleting resource in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v2.yaml"
09:44:07 STEP: Deleting resource in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/bookinfo-v1.yaml"
09:44:09 STEP: Deleting policy in file "/home/jenkins/workspace/Cilium-PR-K8s-GKE@3/src/github.com/cilium/cilium/test/k8sT/manifests/cnp-specs.yaml"
09:44:09 STEP: Running AfterEach for block EntireTestsuite

[[ATTACHMENT|0fa09605_K8sIstioTest_Istio_Bookinfo_Demo_Tests_bookinfo_inter-service_connectivity.zip]]
09:44:11 STEP: Running AfterAll block for EntireTestsuite K8sIstioTest
09:44:11 STEP: Deleting default namespace sidecar injection label
09:44:11 STEP: Setting label istio-injection- in namespace default
09:44:12 STEP: Deleting the Istio resources
09:44:20 STEP: Waiting all terminating PODs to disappear
09:45:00 STEP: Deleting the istio-system namespace
09:45:00 STEP: Deleting namespace istio-system
09:45:16 STEP: Removing Cilium installation using generated helm manifest


ZIP Links:

Click to show.

https://jenkins.cilium.io/job/Cilium-PR-K8s-GKE//6306/artifact/src/github.com/cilium/cilium/0fa09605_K8sIstioTest_Istio_Bookinfo_Demo_Tests_bookinfo_inter-service_connectivity.zip
https://jenkins.cilium.io/job/Cilium-PR-K8s-GKE//6306/artifact/src/github.com/cilium/cilium/test_results_Cilium-PR-K8s-GKE_6306_BDD-Test-PR.zip

Jenkins URL: https://jenkins.cilium.io/job/Cilium-PR-K8s-GKE/6306/

If this is a duplicate of an existing flake, comment 'Duplicate of #<issue-number>' and close this issue.

Metadata

Metadata

Assignees

No one assigned

    Labels

    area/CIContinuous Integration testing issue or flakeci/flakeThis is a known failure that occurs in the tree. Please investigate me!staleThe stale bot thinks this issue is old. Add "pinned" label to prevent this from becoming stale.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions