[root@cpt-ppc-059 istio]# clear [root@cpt-ppc-059 istio]# echo $HUB [root@cpt-ppc-059 istio]# export TAG=ibm-p [root@cpt-ppc-059 istio]# export HUB=quay.io/maistra [root@cpt-ppc-059 istio]# gotestsum -f testname --junitfile-project-name istio --junitfile /home/jenkins/workspace/sail/istio-integration-tests-suites/security-policy_attachment_only/junit-security-policy-attachment-only.xml --rerun-fails --packages=./tests/integration/security/policy_attachment_only --rerun-fails-max-failures=30 --debug -- -tags=integ -timeout 180m -args -istio.test.skipWorkloads=tproxy,vm -istio.test.openshift -istio.test.kube.helm.values=global.platform=openshift -istio.test.istio.enableCNI=true -istio.test.ci=true -istio.test.env=kube -istio.test.kube.deploy=false -istio.test.stableNamespaces=true -istio.test.work_dir=/home/jenkins/workspace/sail/istio-integration-tests-suites/security-policy_attachment_only/artifacts exec: [go test -json -tags=integ -timeout 180m ./tests/integration/security/policy_attachment_only -args -istio.test.skipWorkloads=tproxy,vm -istio.test.openshift -istio.test.kube.helm.values=global.platform=openshift -istio.test.istio.enableCNI=true -istio.test.ci=true -istio.test.env=kube -istio.test.kube.deploy=false -istio.test.stableNamespaces=true -istio.test.work_dir=/home/jenkins/workspace/sail/istio-integration-tests-suites/security-policy_attachment_only/artifacts] go test pid: 3381705 2025-06-24T08:15:07.351607Z warn unable to resolve TARGET_OUT. Dir /root/swapnali/check_3.0_tp2/istio/out/linux_ppc64le does not exist 2025-06-24T08:15:07.351654Z warn unable to resolve LOCAL_OUT. Dir /root/swapnali/check_3.0_tp2/istio/out/linux_ppc64le does not exist 2025-06-24T08:15:07.380414Z info tf === Test Framework Settings === 2025-06-24T08:15:07.380515Z info tf TestID: security_policy_attachment_only RunID: a3145a51-c8ee-4190-ae5e-30f1ab7927f6 NoCleanup: false BaseDir: /home/jenkins/workspace/sail/istio-integration-tests-suites/security-policy_attachment_only/artifacts Selector: FailOnDeprecation: false CIMode: true Retries: 0 StableNamespaces: true Revision: SkipWorkloads [tproxy vm] Compatibility: false Revisions: Hub: quay.io/maistra Tag: ibm-p Variant: PullPolicy: Always PullSecret: MaxDumps: 10 HelmRepo: https://istio-release.storage.googleapis.com/charts GatewayConformanceStandardOnly: false 2025-06-24T08:15:07.380523Z info tf =============================== 2025-06-24T08:15:07.380721Z info tf Test run dir: /home/jenkins/workspace/sail/istio-integration-tests-suites/security-policy_attachment_only/artifacts/security-policy-attachment-only- 2025-06-24T08:15:07.380773Z info tf Test Framework Kubernetes environment Settings: Kubeconfigs: [] LoadBalancerSupported: true MCSControllerEnabled: false ControlPlaneTopology: map[] NetworkTopology: map[] ConfigTopology: map[] 2025-06-24T08:15:07.380783Z info tf Flags istio.test.kube.config and istio.test.kube.topology not specified. 2025-06-24T08:15:07.380799Z info tf Using KubeConfigs: [/root/upi/cM/auth/kubeconfig]. 2025-06-24T08:15:07.380806Z info tf === BEGIN: Building clusters === 2025-06-24T08:15:07.384914Z info tf Built Cluster: Name: cluster-0 StableName: primary-0 PrimaryCluster: cluster-0 ConfigCluster: cluster-0 Network: HTTPProxy: ProxyKubectlOnly: false Filename: /root/upi/cM/auth/kubeconfig 2025-06-24T08:15:07.384991Z info tf === DONE: Building clusters === 2025-06-24T08:15:07.385010Z info tf === BEGIN: Setup: 'security_policy_attachment_only' === 2025-06-24T08:15:07.385031Z info tf === BEGIN: Deploy Istio [Suite=security_policy_attachment_only] === 2025-06-24T08:15:07.385036Z info tf === Istio Component Config === 2025-06-24T08:15:07.385069Z info tf SystemNamespace: istio-system TelemetryNamespace: istio-system DeployIstio: false DeployEastWestGW: true Values: map[global.hub:quay.io/maistra global.imagePullPolicy:Always global.platform:openshift global.tag:ibm-p global.variant:] PrimaryClusterIOPFile: tests/integration/iop-integration-test-defaults.yaml ConfigClusterIOPFile: tests/integration/iop-integration-test-defaults.yaml RemoteClusterIOPFile: tests/integration/iop-remote-integration-test-defaults.yaml BaseIOPFile: tests/integration/base.yaml SkipWaitForValidationWebhook: false DumpKubernetesManifests: false IstiodlessRemotes: true OperatorOptions: map[] EnableCNI: true IngressGatewayServiceName: IngressGatewayServiceNamespace: IngressGatewayIstioLabel: EgressGatewayServiceName: istio-egressgateway EgressGatewayServiceNamespace: istio-system EgressGatewayIstioLabel: egressgateway SharedMeshConfigName: 2025-06-24T08:15:07.385075Z info tf ================================ 2025-06-24T08:15:07.387620Z info tf skipping deployment as specified in the config 2025-06-24T08:15:07.387633Z info tf === SUCCEEDED: Deploy Istio in 2.599232ms [Suite=security_policy_attachment_only]=== 2025-06-24T08:15:07.387666Z info tf === BEGIN: Create namespace servers === 2025-06-24T08:15:07.387693Z info tf === BEGIN: Create namespace echo1 === 2025-06-24T08:15:07.415732Z info tf === SUCCEEDED: Create namespace echo1 in 28.062384ms === 2025-06-24T08:15:07.417156Z info tf === SUCCEEDED: Create namespace servers in 29.492855ms === 2025-06-24T08:15:07.417234Z info tf === BEGIN: Deploy local authz server (ns=echo1) === 2025-06-24T08:15:07.417225Z info tf === BEGIN: Deploy authz server === 2025-06-24T08:15:07.417266Z info tf === BEGIN: Create namespace external === 2025-06-24T08:15:07.417267Z info tf === BEGIN: Deploy JWT server === 2025-06-24T08:15:07.444446Z info tf patched cluster-0 meshconfig: defaultConfig: discoveryAddress: istiod.istio-system.svc:15012 gatewayTopology: numTrustedProxies: 1 defaultProviders: metrics: - prometheus enablePrometheusMerge: true extensionProviders: - envoyExtAuthzHttp: headersToDownstreamOnDeny: - x-ext-authz-* headersToUpstreamOnAllow: - x-ext-authz-* includeAdditionalHeadersInCheck: x-ext-authz-additional-header-new: additional-header-new-value x-ext-authz-additional-header-override: additional-header-override-value includeRequestHeadersInCheck: - x-ext-authz port: 8000 service: ext-authz-http.echo1.local name: ext-authz-http-echo1-local - envoyExtAuthzGrpc: port: 9000 service: ext-authz-grpc.echo1.local name: ext-authz-grpc-echo1-local rootNamespace: istio-system trustDomain: cluster.local 2025-06-24T08:15:07.468199Z info tf === SUCCEEDED: Create namespace external in 50.927293ms === 2025-06-24T08:15:07.501502Z info tf === SUCCEEDED: Deploy local authz server (ns=echo1) in 84.266157ms === 2025-06-24T08:15:07.561849Z info tf Checking pods ready... 2025-06-24T08:15:07.561877Z info tf Checking pods ready... 2025-06-24T08:15:07.571719Z info tf No pods found... 2025-06-24T08:15:07.616924Z info tf === BEGIN: Deploy echo instances === 2025-06-24T08:15:07.772182Z info tf Checking pods ready... 2025-06-24T08:15:07.772281Z info tf Checking pods ready... 2025-06-24T08:15:07.784117Z info tf [ 0] jwt-server-95bfd7d59-qmtxn Pending (Pending) 2025-06-24T08:15:08.184789Z info tf Checking pods ready... 2025-06-24T08:15:08.184812Z info tf Checking pods ready... 2025-06-24T08:15:08.198074Z info tf [ 0] jwt-server-95bfd7d59-qmtxn Pending (Pending) 2025-06-24T08:15:08.326029Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.337228Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.380256Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.393426Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.393643Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.422813Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.422915Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.423379Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.426222Z info klog Caches are synced for echo 2025-06-24T08:15:08.437498Z info klog Caches are synced for echo 2025-06-24T08:15:08.443651Z info klog Waiting for caches to sync for echo 2025-06-24T08:15:08.480533Z info klog Caches are synced for echo 2025-06-24T08:15:08.494107Z info klog Caches are synced for echo 2025-06-24T08:15:08.494169Z info klog Caches are synced for echo 2025-06-24T08:15:08.523694Z info klog Caches are synced for echo 2025-06-24T08:15:08.523746Z info klog Caches are synced for echo 2025-06-24T08:15:08.523764Z info klog Caches are synced for echo 2025-06-24T08:15:08.544399Z info klog Caches are synced for echo 2025-06-24T08:15:08.998937Z info tf Checking pods ready... 2025-06-24T08:15:08.998974Z info tf Checking pods ready... 2025-06-24T08:15:09.006327Z info tf [ 0] jwt-server-95bfd7d59-qmtxn Pending (Pending) 2025-06-24T08:15:10.606471Z info tf Checking pods ready... 2025-06-24T08:15:10.606591Z info tf Checking pods ready... 2025-06-24T08:15:10.612391Z info tf [ 0] jwt-server-95bfd7d59-qmtxn Pending (Pending) 2025-06-24T08:15:13.812550Z info tf Checking pods ready... 2025-06-24T08:15:13.812636Z info tf Checking pods ready... 2025-06-24T08:15:13.817913Z info tf [ 0] jwt-server-95bfd7d59-qmtxn Pending (Pending) 2025-06-24T08:15:17.018826Z info tf Checking pods ready... 2025-06-24T08:15:17.018877Z info tf Checking pods ready... 2025-06-24T08:15:17.022760Z info tf [ 0] jwt-server-95bfd7d59-qmtxn Running (container not ready: 'istio-proxy') 2025-06-24T08:15:20.223524Z info tf Checking pods ready... 2025-06-24T08:15:20.223556Z info tf Checking pods ready... 2025-06-24T08:15:20.227371Z info tf [ 0] jwt-server-95bfd7d59-qmtxn Running (Ready) 2025-06-24T08:15:20.231560Z info tf === SUCCEEDED: Deploy JWT server in 12.8143171s === 2025-06-24T08:15:23.476218Z info tf patched cluster-0 meshconfig: defaultConfig: discoveryAddress: istiod.istio-system.svc:15012 gatewayTopology: numTrustedProxies: 1 defaultProviders: metrics: - prometheus enablePrometheusMerge: true extensionProviders: - envoyExtAuthzHttp: headersToDownstreamOnDeny: - x-ext-authz-* headersToUpstreamOnAllow: - x-ext-authz-* includeAdditionalHeadersInCheck: x-ext-authz-additional-header-new: additional-header-new-value x-ext-authz-additional-header-override: additional-header-override-value includeRequestHeadersInCheck: - x-ext-authz port: 8000 service: ext-authz.servers.svc.cluster.local name: ext-authz-http - envoyExtAuthzGrpc: port: 9000 service: ext-authz.servers.svc.cluster.local name: ext-authz-grpc rootNamespace: istio-system trustDomain: cluster.local 2025-06-24T08:15:23.476262Z info tf === SUCCEEDED: Deploy authz server in 16.059044989s === 2025-06-24T08:15:35.637966Z info tf === SUCCEEDED: Deploy echo instances in 28.021032481s === 2025-06-24T08:15:35.672674Z info tf === DONE: Setup: 'security_policy_attachment_only' (28.287651601s) === 2025-06-24T08:15:35.672728Z info tf === BEGIN: Test Run: 'security_policy_attachment_only' === PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/deny_without_token (4.98s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/allow_with_sub-1_token (0.05s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/deny_with_sub-1_token_due_to_ignored_RequestAuthentication (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/deny_with_sub-2_token (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/deny_with_expired_token (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/allow_with_sub-1_token_on_any.com (0.02s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/allow_with_sub-2_token_on_any.com (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/deny_without_token_on_any.com (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/deny_with_token_on_other_host (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b/allow_healthz (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only/to_b (5.13s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication/gateway-authn-policy-attachment-only (5.21s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIRequestAuthentication (9.80s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIAuthorizationPolicy/gateway-authz-policy-attachment-only/to_b/allow_with_sub-1_token (0.32s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIAuthorizationPolicy/gateway-authz-policy-attachment-only/to_b/deny_without_token (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIAuthorizationPolicy/gateway-authz-policy-attachment-only/to_b/deny_based_on_unacceptable_HTTP_method (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIAuthorizationPolicy/gateway-authz-policy-attachment-only/to_b/deny_based_on_unacceptable_HTTP_path (0.01s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIAuthorizationPolicy/gateway-authz-policy-attachment-only/to_b (0.35s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIAuthorizationPolicy/gateway-authz-policy-attachment-only (0.38s) PASS tests/integration/security/policy_attachment_only.TestGatewayAPIAuthorizationPolicy (2.71s) 2025-06-24T08:15:48.180668Z info tf === DONE: Test Run: 'security_policy_attachment_only' === 2025-06-24T08:15:48.180685Z info tf === Suite "security_policy_attachment_only" run time: 40.795682823s === 2025-06-24T08:15:48.180695Z info tf Wrote trace to /home/jenkins/workspace/sail/istio-integration-tests-suites/security-policy_attachment_only/artifacts/trace.yaml 2025-06-24T08:15:48.188561Z info tf cleanup patched cluster-0 meshconfig: defaultConfig: discoveryAddress: istiod.istio-system.svc:15012 gatewayTopology: numTrustedProxies: 1 defaultProviders: metrics: - prometheus enablePrometheusMerge: true rootNamespace: istio-system trustDomain: cluster.local 2025-06-24T08:15:48.266086Z info tf cleanup patched cluster-0 meshconfig: defaultConfig: discoveryAddress: istiod.istio-system.svc:15012 gatewayTopology: numTrustedProxies: 1 defaultProviders: metrics: - prometheus enablePrometheusMerge: true rootNamespace: istio-system trustDomain: cluster.local 2025-06-24T08:15:48.293956Z info tf === BEGIN: Cleanup Istio [Suite=security_policy_attachment_only] === 2025-06-24T08:15:48.293981Z info tf === SUCCEEDED: Cleanup Istio in 19.52µs [Suite=security_policy_attachment_only] === PASS tests/integration/security/policy_attachment_only DONE 20 tests in 51.453s exec: go version [root@cpt-ppc-059 istio]#