I0420 17:40:03.552852 1 serving.go:386] Generated self-signed cert in-memory W0420 17:40:05.014693 1 requestheader_controller.go:204] Unable to get configmap/extension-apiserver-authentication in kube-system. Usually fixed by 'kubectl create rolebinding -n kube-system ROLEBINDING_NAME --role=extension-apiserver-authentication-reader --serviceaccount=YOUR_NS:YOUR_SA' W0420 17:40:05.014883 1 authentication.go:397] Error looking up in-cluster authentication configuration: configmaps "extension-apiserver-authentication" is forbidden: User "system:kube-scheduler" cannot get resource "configmaps" in API group "" in the namespace "kube-system" W0420 17:40:05.014902 1 authentication.go:398] Continuing without authentication configuration. This may treat all requests as anonymous. W0420 17:40:05.014910 1 authentication.go:399] To require authentication configuration lookup to succeed, set --authentication-tolerate-lookup-failure=false I0420 17:40:05.039052 1 server.go:171] "Starting Kubernetes Scheduler" version="v1.33.4" I0420 17:40:05.039086 1 server.go:173] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" I0420 17:40:05.041248 1 configmap_cafile_content.go:205] "Starting controller" name="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0420 17:40:05.041296 1 shared_informer.go:350] "Waiting for caches to sync" controller="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0420 17:40:05.041668 1 secure_serving.go:211] Serving securely on [::]:10259 I0420 17:40:05.042173 1 tlsconfig.go:243] "Starting DynamicServingCertificateController" I0420 17:40:05.141809 1 shared_informer.go:357] "Caches are synced" controller="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0420 17:40:05.142197 1 leaderelection.go:257] attempting to acquire leader lease kube-system/kube-scheduler...