I0417 10:45:14.010073 1 server_linux.go:53] "Using iptables proxy" I0417 10:45:14.169249 1 shared_informer.go:349] "Waiting for caches to sync" controller="node informer cache" I0417 10:45:14.270361 1 shared_informer.go:356] "Caches are synced" controller="node informer cache" I0417 10:45:14.270425 1 server.go:219] "Successfully retrieved NodeIPs" NodeIPs=["199.204.45.129"] I0417 10:45:14.282405 1 conntrack.go:60] "Setting nf_conntrack_max" nfConntrackMax=262144 E0417 10:45:14.282538 1 server.go:256] "Kube-proxy configuration may be incomplete or incorrect" err="nodePortAddresses is unset; NodePort connections will be accepted on all local IPs. Consider using `--nodeport-addresses primary`" I0417 10:45:14.325406 1 server.go:265] "kube-proxy running in dual-stack mode" primary ipFamily="IPv4" I0417 10:45:14.325463 1 server_linux.go:392] "Detect-local-mode set to ClusterCIDR, but no cluster CIDR specified for primary IP family" ipFamily="IPv4" clusterCIDRs=null I0417 10:45:14.325481 1 server_linux.go:132] "Using iptables Proxier" I0417 10:45:14.335961 1 proxier.go:242] "Setting route_localnet=1 to allow node-ports on localhost; to change this either disable iptables.localhostNodePorts (--iptables-localhost-nodeports) or set nodePortAddresses (--nodeport-addresses) to filter loopback addresses" ipFamily="IPv4" I0417 10:45:14.336571 1 server.go:527] "Version info" version="v1.34.0" I0417 10:45:14.336671 1 server.go:529] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" I0417 10:45:14.338690 1 config.go:200] "Starting service config controller" I0417 10:45:14.339488 1 shared_informer.go:349] "Waiting for caches to sync" controller="service config" I0417 10:45:14.338846 1 config.go:403] "Starting serviceCIDR config controller" I0417 10:45:14.339585 1 shared_informer.go:349] "Waiting for caches to sync" controller="serviceCIDR config" I0417 10:45:14.338791 1 config.go:106] "Starting endpoint slice config controller" I0417 10:45:14.339635 1 shared_informer.go:349] "Waiting for caches to sync" controller="endpoint slice config" I0417 10:45:14.339338 1 config.go:309] "Starting node config controller" I0417 10:45:14.339721 1 shared_informer.go:349] "Waiting for caches to sync" controller="node config" I0417 10:45:14.339769 1 shared_informer.go:356] "Caches are synced" controller="node config" I0417 10:45:14.439917 1 shared_informer.go:356] "Caches are synced" controller="endpoint slice config" I0417 10:45:14.439949 1 shared_informer.go:356] "Caches are synced" controller="service config" I0417 10:45:14.440016 1 shared_informer.go:356] "Caches are synced" controller="serviceCIDR config" E0417 10:45:24.062022 1 reflector.go:205] "Failed to watch" err="nodes \"controller-2\" is forbidden: User \"system:serviceaccount:kube-system:kube-proxy\" cannot watch resource \"nodes\" in API group \"\" at the cluster scope: RBAC: [clusterrole.rbac.authorization.k8s.io \"system:basic-user\" not found, clusterrole.rbac.authorization.k8s.io \"system:public-info-viewer\" not found, clusterrole.rbac.authorization.k8s.io \"system:node-proxier\" not found, clusterrole.rbac.authorization.k8s.io \"system:service-account-issuer-discovery\" not found, clusterrole.rbac.authorization.k8s.io \"system:discovery\" not found] - error from a previous attempt: read tcp 199.204.45.129:52358->199.19.213.112:6443: read: connection reset by peer" logger="UnhandledError" reflector="k8s.io/client-go/informers/factory.go:160" type="*v1.Node" E0417 10:45:24.062059 1 reflector.go:205] "Failed to watch" err="endpointslices.discovery.k8s.io is forbidden: User \"system:serviceaccount:kube-system:kube-proxy\" cannot watch resource \"endpointslices\" in API group \"discovery.k8s.io\" at the cluster scope: RBAC: [clusterrole.rbac.authorization.k8s.io \"system:discovery\" not found, clusterrole.rbac.authorization.k8s.io \"system:basic-user\" not found, clusterrole.rbac.authorization.k8s.io \"system:public-info-viewer\" not found, clusterrole.rbac.authorization.k8s.io \"system:node-proxier\" not found, clusterrole.rbac.authorization.k8s.io \"system:service-account-issuer-discovery\" not found] - error from a previous attempt: read tcp 199.204.45.129:52342->199.19.213.112:6443: read: connection reset by peer" logger="UnhandledError" reflector="k8s.io/client-go/informers/factory.go:160" type="*v1.EndpointSlice" E0417 10:45:24.062078 1 reflector.go:205] "Failed to watch" err="services is forbidden: User \"system:serviceaccount:kube-system:kube-proxy\" cannot watch resource \"services\" in API group \"\" at the cluster scope: RBAC: [clusterrole.rbac.authorization.k8s.io \"system:node-proxier\" not found, clusterrole.rbac.authorization.k8s.io \"system:service-account-issuer-discovery\" not found, clusterrole.rbac.authorization.k8s.io \"system:discovery\" not found, clusterrole.rbac.authorization.k8s.io \"system:basic-user\" not found, clusterrole.rbac.authorization.k8s.io \"system:public-info-viewer\" not found] - error from a previous attempt: read tcp 199.204.45.129:52370->199.19.213.112:6443: read: connection reset by peer" logger="UnhandledError" reflector="k8s.io/client-go/informers/factory.go:160" type="*v1.Service" E0417 10:45:24.064972 1 reflector.go:205] "Failed to watch" err="servicecidrs.networking.k8s.io is forbidden: User \"system:serviceaccount:kube-system:kube-proxy\" cannot watch resource \"servicecidrs\" in API group \"networking.k8s.io\" at the cluster scope: RBAC: [clusterrole.rbac.authorization.k8s.io \"system:basic-user\" not found, clusterrole.rbac.authorization.k8s.io \"system:public-info-viewer\" not found, clusterrole.rbac.authorization.k8s.io \"system:node-proxier\" not found, clusterrole.rbac.authorization.k8s.io \"system:service-account-issuer-discovery\" not found, clusterrole.rbac.authorization.k8s.io \"system:discovery\" not found] - error from a previous attempt: read tcp 199.204.45.129:52376->199.19.213.112:6443: read: connection reset by peer" logger="UnhandledError" reflector="k8s.io/client-go/informers/factory.go:160" type="*v1.ServiceCIDR"