Here are more details on aaf POD - (any help will be greatly appreciated) kubectl -n onap describe po dev-aaf-cert-service-5bf75f545c-hdwcj Name: dev-aaf-cert-service-5bf75f545c-hdwcj Namespace: onap Priority: 0 Node: dublin2-k8s-03/10.111.87.8 Start Time: Mon, 06 Jul 2020 22:44:22 +0000 Labels: app.kubernetes.io/instance=dev app.kubernetes.io/managed-by=Tiller app.kubernetes.io/name=aaf-cert-service helm.sh/chart=aaf-cert-service-6.0.0 pod-template-hash=5bf75f545c Annotations: cni.projectcalico.org/podIP: 10.42.1.66/32 cni.projectcalico.org/podIPs: 10.42.1.66/32 Status: Running IP: 10.42.1.66 Controlled By: ReplicaSet/dev-aaf-cert-service-5bf75f545c Containers: aaf-cert-service: Container ID: docker://a31dc69cba6dd31f3acaa98afc67a2371fbf2737f57dcd763f8f2269273b2935 Image: nexus3.onap.org:10001/onap/org.onap.aaf.certservice.aaf-certservice-api:1.0.0 Image ID: docker-pullable://nexus3.onap.org:10001/onap/org.onap.aaf.certservice.aaf-certservice-api@sha256:8798c552080c59440fbd69a108da0f742eea70b17376fb82e3e7fc59b000cec3 Port: 8443/TCP Host Port: 0/TCP State: Running Started: Tue, 07 Jul 2020 21:53:46 +0000 Last State: Terminated Reason: Error Exit Code: 143 Started: Tue, 07 Jul 2020 21:47:07 +0000 Finished: Tue, 07 Jul 2020 21:48:37 +0000 Ready: False Restart Count: 350 Liveness: exec [/bin/bash -c curl https://localhost:$HTTPS_PORT/actuator/health --cacert $ROOT_CERT --cert-type p12 --cert $KEYSTORE_P12_PATH --pass $KEYSTORE_PASSWORD] delay=60s timeout=1s period=10s #success=1 #failure=3 Readiness: exec [/bin/bash -c curl https://localhost:$HTTPS_PORT/ready --cacert $ROOT_CERT --cert-type p12 --cert $KEYSTORE_P12_PATH --pass $KEYSTORE_PASSWORD] delay=30s timeout=1s period=10s #success=1 #failure=3 Environment: HTTPS_PORT: 8443 KEYSTORE_PATH: /etc/onap/aaf/certservice/certs//certServiceServer-keystore.jks KEYSTORE_P12_PATH: /etc/onap/aaf/certservice/certs//certServiceServer-keystore.p12 TRUSTSTORE_PATH: /etc/onap/aaf/certservice/certs//truststore.jks ROOT_CERT: /etc/onap/aaf/certservice/certs//root.crt KEYSTORE_PASSWORD: <set to the key 'password' in secret 'dev-keystore-password'> Optional: false TRUSTSTORE_PASSWORD: <set to the key 'password' in secret 'dev-truststore-password'> Optional: false Mounts: /etc/onap/aaf/certservice from aaf-cert-service-volume (rw) /etc/onap/aaf/certservice/certs/ from aaf-cert-service-server-tls-volume (ro) /var/run/secrets/kubernetes.io/serviceaccount from default-token-zffpv (ro) Conditions: Type Status Initialized True Ready False ContainersReady False PodScheduled True Volumes: aaf-cert-service-volume: Type: Secret (a volume populated by a Secret) SecretName: aaf-cert-service-secret Optional: false aaf-cert-service-server-tls-volume: Type: Secret (a volume populated by a Secret) SecretName: aaf-cert-service-server-tls-secret Optional: false default-token-zffpv: Type: Secret (a volume populated by a Secret) SecretName: default-token-zffpv Optional: false QoS Class: BestEffort Node-Selectors: <none> Tolerations: node.kubernetes.io/not-ready:NoExecute for 300s node.kubernetes.io/unreachable:NoExecute for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Warning Unhealthy 29m (x1307 over 23h) kubelet, dublin2-k8s-03 Readiness probe failed: % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0 curl: (60) SSL certificate problem: certificate has expired More details here: https://curl.haxx.se/docs/sslcerts.html
curl failed to verify the legitimacy of the server and therefore could not establish a secure connection to it. To learn more about this situation and how to fix it, please visit the web page mentioned above. Warning Unhealthy 14m (x723 over 23h) kubelet, dublin2-k8s-03 Readiness probe failed: % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0 curl: (60) SSL certificate problem: certificate has expired More details here: https://curl.haxx.se/docs/sslcerts.html curl failed to verify the legitimacy of the server and therefore could not establish a secure connection to it. To learn more about this situation and how to fix it, please visit the web page mentioned above. Warning BackOff 4m29s (x4189 over 22h) kubelet, dublin2-k8s-03 Back-off restarting failed container -=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#21612): https://lists.onap.org/g/onap-discuss/message/21612 Mute This Topic: https://lists.onap.org/mt/75355991/21656 Mute #dcaegen2: https://lists.onap.org/g/onap+onap-discuss/mutehashtag/dcaegen2 Mute #frankfurt: https://lists.onap.org/g/onap+onap-discuss/mutehashtag/frankfurt Group Owner: onap-discuss+ow...@lists.onap.org Unsubscribe: https://lists.onap.org/g/onap-discuss/unsub [arch...@mail-archive.com] -=-=-=-=-=-=-=-=-=-=-=-