Running with gitlab-runner 14.1.0 (8925d9a0)  on gitlab-runners-bigbang-gl-packages-privileged-gitlab-runneb7dvc L_wAsvdS section_start:1631057562:resolve_secrets Resolving secrets section_end:1631057562:resolve_secrets section_start:1631057562:prepare_executor Preparing the "kubernetes" executor Using Kubernetes namespace: gitlab-runners Using Kubernetes executor with image registry.dso.mil/platform-one/big-bang/pipeline-templates/pipeline-templates/k3d-builder:0.0.5 ... Using attach strategy to execute scripts... section_end:1631057562:prepare_executor section_start:1631057562:prepare_script Preparing environment Waiting for pod gitlab-runners/runner-lwasvds-project-2324-concurrent-167th4 to be running, status is Pending Running on runner-lwasvds-project-2324-concurrent-167th4 via gitlab-runners-bigbang-gl-packages-privileged-gitlab-runneb7dvc... section_end:1631057568:prepare_script section_start:1631057568:get_sources Getting source from Git repository Fetching changes with git depth set to 50... Initialized empty Git repository in /builds/L_wAsvdS/1/platform-one/big-bang/apps/security-tools/keycloak/.git/ Created fresh repository. Checking out b55aa0ac as refs/merge-requests/35/head... Skipping Git submodules setup section_end:1631057578:get_sources section_start:1631057578:step_script Executing "step_script" stage of the job script $ echo -e "\e[0Ksection_start:`date +%s`:cluster_setup[collapsed=true]\r\e[0KCluster Setup" section_start:1631057579:cluster_setup[collapsed=true] Cluster Setup $ if [ -z ${PIPELINE_REPO_BRANCH} ]; then # collapsed multi-line command $ git clone -b ${PIPELINE_REPO_BRANCH} ${PIPELINE_REPO} ${PIPELINE_REPO_DESTINATION} Cloning into '../pipeline-repo'... $ source ${WAIT_PATH} $ i=0; while [ "$i" -lt 12 ]; do docker info &>/dev/null && break; sleep 5; i=$(( i + 1 )) ; done $ docker network create ${CI_JOB_ID} --driver=bridge -o "com.docker.network.driver.mtu"="1450" 049f93b0c46bb1c2c7b4e4462750777df01a754e9eeb68213828a423396bc4fe $ k3d cluster create ${CI_JOB_ID} --config ${K3D_CONFIG_PATH} --network ${CI_JOB_ID} INFO[0000] Using config file ../pipeline-repo/jobs/k3d-ci/config.yaml INFO[0000] Prep: Network INFO[0000] Network with name '6308813' already exists with ID '049f93b0c46bb1c2c7b4e4462750777df01a754e9eeb68213828a423396bc4fe' INFO[0000] Created volume 'k3d-6308813-images' INFO[0001] Creating node 'k3d-6308813-server-0' INFO[0002] Pulling image 'docker.io/rancher/k3s:v1.20.4-k3s1' INFO[0004] Creating LoadBalancer 'k3d-6308813-serverlb' INFO[0005] Pulling image 'docker.io/rancher/k3d-proxy:v4.3.0' INFO[0007] Starting cluster '6308813' INFO[0007] Starting servers... INFO[0007] Starting Node 'k3d-6308813-server-0' INFO[0012] Starting agents... INFO[0012] Starting helpers... INFO[0012] Starting Node 'k3d-6308813-serverlb' INFO[0012] (Optional) Trying to get IP of the docker host and inject it into the cluster as 'host.k3d.internal' for easy access INFO[0015] Successfully added host record to /etc/hosts in 2/2 nodes and to the CoreDNS ConfigMap INFO[0015] Cluster '6308813' created successfully! INFO[0015] --kubeconfig-update-default=false --> sets --kubeconfig-switch-context=false INFO[0016] You can now use it like this: kubectl config use-context k3d-6308813 kubectl cluster-info $ until kubectl get deployment coredns -n kube-system -o go-template='{{.status.availableReplicas}}' | grep -v -e ''; do sleep 1s; done 1 $ if [ ! -z ${PROJECT_NAME} ]; then # collapsed multi-line command namespace/keycloak created secret/private-registry created secret/private-registry-mil created $ echo -e "\e[0Ksection_end:`date +%s`:cluster_setup\r\e[0K" section_end:1631057619:cluster_setup  $ echo "Installing ${CI_PROJECT_NAME} from ${CI_DEFAULT_BRANCH}" Installing keycloak from main $ echo -e "\e[0Ksection_start:`date +%s`:package_checkout1[collapsed=true]\r\e[0KPackage Checkout" section_start:1631057619:package_checkout1[collapsed=true] Package Checkout $ git fetch && git checkout ${CI_DEFAULT_BRANCH} From https://repo1.dso.mil/platform-one/big-bang/apps/security-tools/keycloak * [new branch] 15-trash-bin-missing-for-mfa-setup-in-login-dso-mil -> origin/15-trash-bin-missing-for-mfa-setup-in-login-dso-mil * [new branch] 290-keycloak-dev-fixes -> origin/290-keycloak-dev-fixes * [new branch] ablan/PBDE-736-add-pagination-to-custom-group-query-endpoint -> origin/ablan/PBDE-736-add-pagination-to-custom-group-query-endpoint * [new branch] addons/keycloak -> origin/addons/keycloak * [new branch] bullhorn-gad-thoughts -> origin/bullhorn-gad-thoughts * [new branch] group-api-2 -> origin/group-api-2 * [new branch] groups-api -> origin/groups-api * [new branch] groups-api-pagination -> origin/groups-api-pagination * [new branch] joinUserToGroups_fix -> origin/joinUserToGroups_fix * [new branch] keycloak-11-migration-with-backports -> origin/keycloak-11-migration-with-backports * [new branch] main -> origin/main * [new branch] public-release -> origin/public-release * [new branch] remove-sw-cas-from-dod-pem -> origin/remove-sw-cas-from-dod-pem * [new branch] usercertificate -> origin/usercertificate * [new tag] 10.1.0-bb.0 -> 10.1.0-bb.0 Previous HEAD position was b55aa0a Added fix for email to whitelist check Switched to a new branch 'main' Branch 'main' set up to track remote branch 'main' from 'origin'. $ echo -e "\e[0Ksection_end:`date +%s`:package_checkout1\r\e[0K" section_end:1631057622:package_checkout1  $ echo -e "\e[0Ksection_start:`date +%s`:dependency_up1[collapsed=true]\r\e[0KDependency Install and Wait" section_start:1631057622:dependency_up1[collapsed=true] Dependency Install and Wait $ if [ -f "tests/dependencies.yaml" ]; then # collapsed multi-line command $ if [ -f "tests/dependencies.yaml" ]; then # collapsed multi-line command $ echo -e "\e[0Ksection_end:`date +%s`:dependency_up1\r\e[0K" section_end:1631057622:dependency_up1  $ if [ ! -z ${PROJECT_NAME} ]; then # collapsed multi-line command Helm installing keycloak/chart into keycloak namespace using keycloak/tests/test-values.yaml for values Release "keycloak" does not exist. Installing it now. NAME: keycloak LAST DEPLOYED: Tue Sep 7 23:33:42 2021 NAMESPACE: keycloak STATUS: deployed REVISION: 1 NOTES: *********************************************************************** * * * Keycloak Helm Chart by codecentric AG * * * *********************************************************************** Keycloak was installed with a Service of type ClusterIP Create a port-forwarding with the following commands: export POD_NAME=$(kubectl get pods --namespace keycloak -l "app.kubernetes.io/name=keycloak,app.kubernetes.io/instance=keycloak" -o name) echo "Visit http://127.0.0.1:8080 to use your application" kubectl --namespace keycloak port-forward "$POD_NAME" 8080 $ sleep 10 # collapsed multi-line command $ if [ -d "chart/templates/tests" ]; then # collapsed multi-line command NAME: keycloak LAST DEPLOYED: Tue Sep 7 23:33:42 2021 NAMESPACE: keycloak STATUS: deployed REVISION: 1 TEST SUITE: keycloak-cypress-sa Last Started: Tue Sep 7 23:35:51 2021 Last Completed: Tue Sep 7 23:35:51 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-config Last Started: Tue Sep 7 23:35:51 2021 Last Completed: Tue Sep 7 23:35:51 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-role Last Started: Tue Sep 7 23:35:51 2021 Last Completed: Tue Sep 7 23:35:51 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-rolebinding Last Started: Tue Sep 7 23:35:51 2021 Last Completed: Tue Sep 7 23:35:51 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-test Last Started: Tue Sep 7 23:35:51 2021 Last Completed: Tue Sep 7 23:36:29 2021 Phase: Succeeded NOTES: *********************************************************************** * * * Keycloak Helm Chart by codecentric AG * * * *********************************************************************** Keycloak was installed with a Service of type ClusterIP Create a port-forwarding with the following commands: export POD_NAME=$(kubectl get pods --namespace keycloak -l "app.kubernetes.io/name=keycloak,app.kubernetes.io/instance=keycloak" -o name) echo "Visit http://127.0.0.1:8080 to use your application" kubectl --namespace keycloak port-forward "$POD_NAME" 8080 ***** Start Helm Test Logs ***** ====================================================================================================  (Run Starting)  ┌────────────────────────────────────────────────────────────────────────────────────────────────┐  │ Cypress: 5.0.0 │  │ Browser: Chrome 83 (headless) │  │ Specs: 1 found (keycloak-health.spec.js) │  └────────────────────────────────────────────────────────────────────────────────────────────────┘ ──────────────────────────────────────────────────────────────────────────────────────────────────── Running: keycloak-health.spec.js (1 of 1) Browserslist: caniuse-lite is outdated. Please run: npx browserslist@latest --update-db   Keycloak Healthcheck  ✓ Check if Keycloak admin console is accessible (732ms)  ✓ Check if Keycloak registration page loads (412ms)  ✓ Check Keycloak unauthenticated user get login page (152ms)   3 passing (2s)  (Results)  ┌────────────────────────────────────────────────────────────────────────────────────────────────┐  │ Tests: 3 │  │ Passing: 3 │  │ Failing: 0 │  │ Pending: 0 │  │ Skipped: 0 │  │ Screenshots: 0 │  │ Video: true │  │ Duration: 2 seconds │  │ Spec Ran: keycloak-health.spec.js │  └────────────────────────────────────────────────────────────────────────────────────────────────┘  (Video)   - Started processing: Compressing to 32 CRF   - Finished processing: /test/cypress/videos/keycloak-health.spec.js.mp4 (0 seconds) ====================================================================================================  (Run Finished)   Spec Tests Passing Failing Pending Skipped    ┌────────────────────────────────────────────────────────────────────────────────────────────────┐  │ ✔ keycloak-health.spec.js 00:02 3 3 - - - │  └────────────────────────────────────────────────────────────────────────────────────────────────┘   ✔ All specs passed! 00:02 3 3 - - -   tar: Removing leading `/' from member names configmap/cypress-videos created ***** End Helm Test Logs ***** $ echo "Upgrading ${CI_PROJECT_NAME} to ${CI_MERGE_REQUEST_SOURCE_BRANCH_NAME}" Upgrading keycloak to joinUserToGroups_fix $ echo -e "\e[0Ksection_start:`date +%s`:package_checkout2[collapsed=true]\r\e[0KPackage Upgrade Checkout" section_start:1631057789:package_checkout2[collapsed=true] Package Upgrade Checkout $ git reset --hard && git clean -fd HEAD is now at b274ebb Merge branch 'graham.smith-main-patch-06054' into 'main' Removing cypress-artifacts/ Removing cypress-videos.tar.gz Removing cypress-videos.tar.gz.b64 $ git checkout ${CI_MERGE_REQUEST_SOURCE_BRANCH_NAME} Switched to a new branch 'joinUserToGroups_fix' Branch 'joinUserToGroups_fix' set up to track remote branch 'joinUserToGroups_fix' from 'origin'. $ echo -e "\e[0Ksection_end:`date +%s`:package_checkout2\r\e[0K" section_end:1631057789:package_checkout2  $ echo -e "\e[0Ksection_start:`date +%s`:dependency_up2[collapsed=true]\r\e[0KDependency Upgrade and Wait" section_start:1631057789:dependency_up2[collapsed=true] Dependency Upgrade and Wait $ if [ -f "tests/dependencies.yaml" ]; then # collapsed multi-line command $ if [ -f "tests/dependencies.yaml" ]; then # collapsed multi-line command $ echo -e "\e[0Ksection_end:`date +%s`:dependency_up2\r\e[0K" section_end:1631057789:dependency_up2  $ if [ ! -z ${PROJECT_NAME} ]; then # collapsed multi-line command Helm installing keycloak/chart into keycloak namespace using keycloak/tests/test-values.yaml for values Release "keycloak" has been upgraded. Happy Helming! NAME: keycloak LAST DEPLOYED: Tue Sep 7 23:36:30 2021 NAMESPACE: keycloak STATUS: deployed REVISION: 2 NOTES: *********************************************************************** * * * Keycloak Helm Chart by codecentric AG * * * *********************************************************************** Keycloak was installed with a Service of type ClusterIP Create a port-forwarding with the following commands: export POD_NAME=$(kubectl get pods --namespace keycloak -l "app.kubernetes.io/name=keycloak,app.kubernetes.io/instance=keycloak" -o name) echo "Visit http://127.0.0.1:8080 to use your application" kubectl --namespace keycloak port-forward "$POD_NAME" 8080 $ sleep 10 # collapsed multi-line command $ if [ -d "chart/templates/tests" ]; then # collapsed multi-line command NAME: keycloak LAST DEPLOYED: Tue Sep 7 23:36:30 2021 NAMESPACE: keycloak STATUS: deployed REVISION: 2 TEST SUITE: keycloak-cypress-sa Last Started: Tue Sep 7 23:36:43 2021 Last Completed: Tue Sep 7 23:36:43 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-config Last Started: Tue Sep 7 23:36:43 2021 Last Completed: Tue Sep 7 23:36:43 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-role Last Started: Tue Sep 7 23:36:43 2021 Last Completed: Tue Sep 7 23:36:43 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-rolebinding Last Started: Tue Sep 7 23:36:43 2021 Last Completed: Tue Sep 7 23:36:43 2021 Phase: Succeeded TEST SUITE: keycloak-cypress-test Last Started: Tue Sep 7 23:36:43 2021 Last Completed: Tue Sep 7 23:36:52 2021 Phase: Succeeded NOTES: *********************************************************************** * * * Keycloak Helm Chart by codecentric AG * * * *********************************************************************** Keycloak was installed with a Service of type ClusterIP Create a port-forwarding with the following commands: export POD_NAME=$(kubectl get pods --namespace keycloak -l "app.kubernetes.io/name=keycloak,app.kubernetes.io/instance=keycloak" -o name) echo "Visit http://127.0.0.1:8080 to use your application" kubectl --namespace keycloak port-forward "$POD_NAME" 8080 ***** Start Helm Test Logs ***** ====================================================================================================  (Run Starting)  ┌────────────────────────────────────────────────────────────────────────────────────────────────┐  │ Cypress: 5.0.0 │  │ Browser: Chrome 83 (headless) │  │ Specs: 1 found (keycloak-health.spec.js) │  └────────────────────────────────────────────────────────────────────────────────────────────────┘ ──────────────────────────────────────────────────────────────────────────────────────────────────── Running: keycloak-health.spec.js (1 of 1) Browserslist: caniuse-lite is outdated. Please run: npx browserslist@latest --update-db   Keycloak Healthcheck  ✓ Check if Keycloak admin console is accessible (590ms)  ✓ Check if Keycloak registration page loads (204ms)  ✓ Check Keycloak unauthenticated user get login page (126ms)   3 passing (2s)  (Results)  ┌────────────────────────────────────────────────────────────────────────────────────────────────┐  │ Tests: 3 │  │ Passing: 3 │  │ Failing: 0 │  │ Pending: 0 │  │ Skipped: 0 │  │ Screenshots: 0 │  │ Video: true │  │ Duration: 1 second │  │ Spec Ran: keycloak-health.spec.js │  └────────────────────────────────────────────────────────────────────────────────────────────────┘  (Video)   - Started processing: Compressing to 32 CRF   - Finished processing: /test/cypress/videos/keycloak-health.spec.js.mp4 (0 seconds) ====================================================================================================  (Run Finished)   Spec Tests Passing Failing Pending Skipped    ┌────────────────────────────────────────────────────────────────────────────────────────────────┐  │ ✔ keycloak-health.spec.js 00:01 3 3 - - - │  └────────────────────────────────────────────────────────────────────────────────────────────────┘   ✔ All specs passed! 00:01 3 3 - - -   tar: Removing leading `/' from member names configmap "cypress-videos" deleted configmap/cypress-videos created ***** End Helm Test Logs ***** $ touch $CI_PROJECT_DIR/success section_end:1631057813:step_script section_start:1631057813:after_script Running after_script Running after script... $ if [ -e success ]; then # collapsed multi-line command section_start:1631057813:cluster_status[collapsed=true] Cluster Status Job Succeeded, cluster status: NAMESPACE NAME READY STATUS RESTARTS AGE kube-system pod/local-path-provisioner-5ff76fc89d-v7mqm 1/1 Running 0 3m24s kube-system pod/metrics-server-86cbb8457f-2qwnd 1/1 Running 0 3m24s kube-system pod/coredns-854c77959c-4qz7h 1/1 Running 0 3m24s keycloak pod/keycloak-postgresql-0 1/1 Running 0 3m10s keycloak pod/keycloak-0 1/1 Running 0 3m10s keycloak pod/keycloak-cypress-test 0/1 Completed 0 10s NAMESPACE NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S) AGE default service/kubernetes ClusterIP 10.43.0.1 443/TCP 3m41s kube-system service/kube-dns ClusterIP 10.43.0.10 53/UDP,53/TCP,9153/TCP 3m38s kube-system service/metrics-server ClusterIP 10.43.22.118 443/TCP 3m38s keycloak service/keycloak-headless ClusterIP None 80/TCP 3m10s keycloak service/keycloak-postgresql-headless ClusterIP None 5432/TCP 3m10s keycloak service/keycloak-postgresql ClusterIP 10.43.134.27 5432/TCP 3m10s keycloak service/keycloak-http ClusterIP 10.43.254.43 80/TCP,8443/TCP,9990/TCP,7600/TCP 3m10s NAMESPACE NAME READY UP-TO-DATE AVAILABLE AGE kube-system deployment.apps/local-path-provisioner 1/1 1 1 3m38s kube-system deployment.apps/metrics-server 1/1 1 1 3m38s kube-system deployment.apps/coredns 1/1 1 1 3m38s NAMESPACE NAME DESIRED CURRENT READY AGE kube-system replicaset.apps/local-path-provisioner-5ff76fc89d 1 1 1 3m24s kube-system replicaset.apps/metrics-server-86cbb8457f 1 1 1 3m24s kube-system replicaset.apps/coredns-854c77959c 1 1 1 3m24s NAMESPACE NAME READY AGE keycloak statefulset.apps/keycloak-postgresql 1/1 3m10s keycloak statefulset.apps/keycloak 1/1 3m10s section_end:1631057813:cluster_status  $ echo -e "\e[0Ksection_start:`date +%s`:cluster_clean[collapsed=true]\r\e[0KCluster Cleanup" section_start:1631057813:cluster_clean[collapsed=true] Cluster Cleanup $ k3d cluster delete ${CI_JOB_ID} INFO[0000] Deleting cluster '6308813' INFO[0000] Deleted k3d-6308813-serverlb INFO[0004] Deleted k3d-6308813-server-0 INFO[0004] Deleting image volume 'k3d-6308813-images' INFO[0004] Removing cluster details from default kubeconfig... INFO[0004] Removing standalone kubeconfig file (if there is one)... INFO[0004] Successfully deleted cluster 6308813! $ docker network rm ${CI_JOB_ID} 6308813 $ echo -e "\e[0Ksection_end:`date +%s`:cluster_clean\r\e[0K" section_end:1631057817:cluster_clean  section_end:1631057818:after_script section_start:1631057818:upload_artifacts_on_success Uploading artifacts for successful job Uploading artifacts... WARNING: images.txt: no matching files  WARNING: tests/cypress/screenshots: no matching files WARNING: tests/cypress/videos: no matching files  cypress-artifacts: found 3 matching files and directories Uploading artifacts as "archive" to coordinator... ok id=6308813 responseStatus=201 Created token=8M3aH7J8 section_end:1631057819:upload_artifacts_on_success section_start:1631057819:cleanup_file_variables Cleaning up file based variables section_end:1631057820:cleanup_file_variables Job succeeded