I0823 00:30:43.602305 1 serving.go:386] Generated self-signed cert in-memory W0823 00:30:51.535994 1 requestheader_controller.go:204] Unable to get configmap/extension-apiserver-authentication in kube-system. Usually fixed by 'kubectl create rolebinding -n kube-system ROLEBINDING_NAME --role=extension-apiserver-authentication-reader --serviceaccount=YOUR_NS:YOUR_SA' W0823 00:30:51.536065 1 authentication.go:397] Error looking up in-cluster authentication configuration: configmaps "extension-apiserver-authentication" is forbidden: User "system:kube-scheduler" cannot get resource "configmaps" in API group "" in the namespace "kube-system" W0823 00:30:51.536077 1 authentication.go:398] Continuing without authentication configuration. This may treat all requests as anonymous. W0823 00:30:51.536087 1 authentication.go:399] To require authentication configuration lookup to succeed, set --authentication-tolerate-lookup-failure=false I0823 00:30:51.551276 1 server.go:175] "Starting Kubernetes Scheduler" version="v1.34.0" I0823 00:30:51.551306 1 server.go:177] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" I0823 00:30:51.554923 1 configmap_cafile_content.go:205] "Starting controller" name="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0823 00:30:51.554988 1 shared_informer.go:349] "Waiting for caches to sync" controller="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0823 00:30:51.556895 1 secure_serving.go:211] Serving securely on [::]:10259 I0823 00:30:51.556963 1 tlsconfig.go:243] "Starting DynamicServingCertificateController" E0823 00:30:51.559343 1 reflector.go:205] "Failed to watch" err="failed to list *v1.Pod: pods is forbidden: User \"system:kube-scheduler\" cannot list resource \"pods\" in API group \"\" at the cluster scope: RBAC: [clusterrole.rbac.authorization.k8s.io \"system:kube-scheduler\" not found, clusterrole.rbac.authorization.k8s.io \"system:discovery\" not found, clusterrole.rbac.authorization.k8s.io \"system:public-info-viewer\" not found, clusterrole.rbac.authorization.k8s.io \"system:volume-scheduler\" not found]" logger="UnhandledError" reflector="k8s.io/client-go/informers/factory.go:160" type="*v1.Pod" I0823 00:30:51.656242 1 shared_informer.go:356] "Caches are synced" controller="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0823 00:30:53.159457 1 leaderelection.go:257] attempting to acquire leader lease kube-system/kube-scheduler...