I0330 20:40:19.093006 1 serving.go:386] Generated self-signed cert in-memory W0330 20:40:19.884385 1 requestheader_controller.go:204] Unable to get configmap/extension-apiserver-authentication in kube-system. Usually fixed by 'kubectl create rolebinding -n kube-system ROLEBINDING_NAME --role=extension-apiserver-authentication-reader --serviceaccount=YOUR_NS:YOUR_SA' W0330 20:40:19.884440 1 authentication.go:397] Error looking up in-cluster authentication configuration: configmaps "extension-apiserver-authentication" is forbidden: User "system:kube-scheduler" cannot get resource "configmaps" in API group "" in the namespace "kube-system" W0330 20:40:19.884448 1 authentication.go:398] Continuing without authentication configuration. This may treat all requests as anonymous. W0330 20:40:19.884453 1 authentication.go:399] To require authentication configuration lookup to succeed, set --authentication-tolerate-lookup-failure=false I0330 20:40:19.899749 1 server.go:171] "Starting Kubernetes Scheduler" version="v1.33.4" I0330 20:40:19.899769 1 server.go:173] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" I0330 20:40:19.901740 1 configmap_cafile_content.go:205] "Starting controller" name="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0330 20:40:19.901789 1 shared_informer.go:350] "Waiting for caches to sync" controller="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0330 20:40:19.902103 1 secure_serving.go:211] Serving securely on [::]:10259 I0330 20:40:19.902578 1 tlsconfig.go:243] "Starting DynamicServingCertificateController" I0330 20:40:20.002927 1 shared_informer.go:357] "Caches are synced" controller="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0330 20:40:20.004066 1 leaderelection.go:257] attempting to acquire leader lease kube-system/kube-scheduler... E0330 20:45:17.771807 1 leaderelection.go:436] error retrieving resource lock kube-system/kube-scheduler: etcdserver: leader changed