### Test report for 4628.1.1 / arm64

**Platforms tested** : azure 

🟢 ok **bpf.ig**; Succeeded: azure (1)

🟢 ok **cl.basic**; Succeeded: azure (1)

🟢 ok **cl.cloudinit.basic**; Succeeded: azure (1)

🟢 ok **cl.cloudinit.multipart-mime**; Succeeded: azure (1)

🟢 ok **cl.cloudinit.script**; Succeeded: azure (1)

🟢 ok **cl.etcd-member.discovery**; Succeeded: azure (1)

🟢 ok **cl.etcd-member.etcdctlv3**; Succeeded: azure (1)

🟢 ok **cl.etcd-member.v2-backup-restore**; Succeeded: azure (1)

🟢 ok **cl.flannel.vxlan**; Succeeded: azure (1)

🟢 ok **cl.ignition.kargs**; Succeeded: azure (1)

🟢 ok **cl.ignition.luks**; Succeeded: azure (1)

🟢 ok **cl.ignition.misc.empty**; Succeeded: azure (1)

🟢 ok **cl.ignition.symlink**; Succeeded: azure (1)

🟢 ok **cl.ignition.translation**; Succeeded: azure (1)

🟢 ok **cl.ignition.v1.btrfsroot**; Succeeded: azure (1)

🟢 ok **cl.ignition.v1.ext4root**; Succeeded: azure (1)

🟢 ok **cl.ignition.v1.groups**; Succeeded: azure (1)

🟢 ok **cl.ignition.v1.noop**; Succeeded: azure (1)

🟢 ok **cl.ignition.v1.once**; Succeeded: azure (1)

🟢 ok **cl.ignition.v1.users**; Succeeded: azure (1)

🟢 ok **cl.ignition.v1.xfsroot**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2.btrfsroot**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2.ext4root**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2.noop**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2.users**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2.xfsroot**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2_1.ext4checkexisting**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2_1.swap**; Succeeded: azure (1)

🟢 ok **cl.ignition.v2_1.vfat**; Succeeded: azure (1)

🟢 ok **cl.internet**; Succeeded: azure (1)

🟢 ok **cl.locksmith.cluster**; Succeeded: azure (1)

🟢 ok **cl.metadata.azure**; Succeeded: azure (1)

🟢 ok **cl.network.initramfs.second-boot**; Succeeded: azure (1)

🟢 ok **cl.network.iptables**; Succeeded: azure (1)

🟢 ok **cl.network.nftables**; Succeeded: azure (1)

🟢 ok **cl.network.wireguard**; Succeeded: azure (1)

🟢 ok **cl.osreset.ignition-rerun**; Succeeded: azure (1)

🟢 ok **cl.overlay.cleanup**; Succeeded: azure (1)

🟢 ok **cl.swap_activation**; Succeeded: azure (1)

🟢 ok **cl.toolbox.dnf-install**; Succeeded: azure (1)

🟢 ok **cl.update.badverity**; Succeeded: azure (1)

🟢 ok **cl.update.reboot**; Succeeded: azure (1)

🟢 ok **cl.users.shells**; Succeeded: azure (1)

🟢 ok **cl.verity**; Succeeded: azure (1)

🟢 ok **coreos.auth.verify**; Succeeded: azure (1)

🟢 ok **coreos.ignition.groups**; Succeeded: azure (1)

🟢 ok **coreos.ignition.once**; Succeeded: azure (1)

🟢 ok **coreos.ignition.resource.local**; Succeeded: azure (1)

🟢 ok **coreos.ignition.resource.remote**; Succeeded: azure (1)

🟢 ok **coreos.ignition.security.tls**; Succeeded: azure (1)

🟢 ok **coreos.ignition.ssh.key**; Succeeded: azure (1)

🟢 ok **coreos.ignition.systemd.enable-service**; Succeeded: azure (1)

🟢 ok **coreos.locksmith.reboot**; Succeeded: azure (1)

🟢 ok **coreos.locksmith.tls**; Succeeded: azure (1)

🟢 ok **coreos.selinux.boolean**; Succeeded: azure (1)

🟢 ok **coreos.selinux.enforce**; Succeeded: azure (1)

🟢 ok **coreos.tls.fetch-urls**; Succeeded: azure (1)

🟢 ok **coreos.update.badusr**; Succeeded: azure (1)

🟢 ok **docker.base**; Succeeded: azure (1)

🟢 ok **docker.btrfs-storage**; Succeeded: azure (1)

🟢 ok **docker.containerd-restart**; Succeeded: azure (1)

🟢 ok **docker.enable-service.sysext**; Succeeded: azure (1)

🟢 ok **docker.lib-coreos-dockerd-compat**; Succeeded: azure (1)

🟢 ok **docker.network-openbsd-nc**; Succeeded: azure (1)

🟢 ok **docker.selinux**; Succeeded: azure (1)

🟢 ok **docker.userns**; Succeeded: azure (1)

🟢 ok **kubeadm.v1.33.8.calico.base**; Succeeded: azure (2); Failed: azure (1)

<details>

<summary>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Diagnostic output for azure, run 1</summary>

  ```
      L1: " Error: _cluster.go:125: I0509 07:32:36.633282    2905 version.go:261] remote version is much newer: v1.36.0; falling back to: stable-1.33"
      L2: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-apiserver:v1.33.11"
      L3: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-controller-manager:v1.33.11"
      L4: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-scheduler:v1.33.11"
      L5: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-proxy:v1.33.11"
      L6: "cluster.go:125: [config/images] Pulled registry.k8s.io/coredns/coredns:v1.12.0"
      L7: "cluster.go:125: [config/images] Pulled registry.k8s.io/pause:3.10"
      L8: "cluster.go:125: [config/images] Pulled registry.k8s.io/etcd:3.5.24-0"
      L9: "cluster.go:125: I0509 07:32:48.824019    3119 version.go:261] remote version is much newer: v1.36.0; falling back to: stable-1.33"
      L10: "cluster.go:125: [init] Using Kubernetes version: v1.33.11"
      L11: "cluster.go:125: [preflight] Running pre-flight checks"
      L12: "cluster.go:125:  [WARNING Hostname]: hostname __ci-4628.1.1-a-e81f12baae__ could not be reached"
      L13: "cluster.go:125:  [WARNING Hostname]: hostname __ci-4628.1.1-a-e81f12baae__: lookup ci-4628.1.1-a-e81f12baae on 168.63.129.16:53: no such host"
      L14: "cluster.go:125:  [WARNING Service-Kubelet]: kubelet service is not enabled, please run _systemctl enable kubelet.service_"
      L15: "cluster.go:125: [preflight] Pulling images required for setting up a Kubernetes cluster"
      L16: "cluster.go:125: [preflight] This might take a minute or two, depending on the speed of your internet connection"
      L17: "cluster.go:125: [preflight] You can also perform this action beforehand using _kubeadm config images pull_"
      L18: "cluster.go:125: [certs] Using certificateDir folder __/etc/kubernetes/pki__"
      L19: "cluster.go:125: [certs] Generating __ca__ certificate and key"
      L20: "cluster.go:125: [certs] Generating __apiserver__ certificate and key"
      L21: "cluster.go:125: [certs] apiserver serving cert is signed for DNS names [ci-4628.1.1-a-e81f12baae kubernetes kubernetes.default kubernetes.default.svc kubernetes.default.svc.cluster.local] and IPs [10.?96.0.1 10.0.0.11]"
      L22: "cluster.go:125: [certs] Generating __apiserver-kubelet-client__ certificate and key"
      L23: "cluster.go:125: [certs] Generating __front-proxy-ca__ certificate and key"
      L24: "cluster.go:125: [certs] Generating __front-proxy-client__ certificate and key"
      L25: "cluster.go:125: [certs] External etcd mode: Skipping etcd/ca certificate authority generation"
      L26: "cluster.go:125: [certs] External etcd mode: Skipping etcd/server certificate generation"
      L27: "cluster.go:125: [certs] External etcd mode: Skipping etcd/peer certificate generation"
      L28: "cluster.go:125: [certs] External etcd mode: Skipping etcd/healthcheck-client certificate generation"
      L29: "cluster.go:125: [certs] External etcd mode: Skipping apiserver-etcd-client certificate generation"
      L30: "cluster.go:125: [certs] Generating __sa__ key and public key"
      L31: "cluster.go:125: [kubeconfig] Using kubeconfig folder __/etc/kubernetes__"
      L32: "cluster.go:125: [kubeconfig] Writing __admin.conf__ kubeconfig file"
      L33: "cluster.go:125: [kubeconfig] Writing __super-admin.conf__ kubeconfig file"
      L34: "cluster.go:125: [kubeconfig] Writing __kubelet.conf__ kubeconfig file"
      L35: "cluster.go:125: [kubeconfig] Writing __controller-manager.conf__ kubeconfig file"
      L36: "cluster.go:125: [kubeconfig] Writing __scheduler.conf__ kubeconfig file"
      L37: "cluster.go:125: [control-plane] Using manifest folder __/etc/kubernetes/manifests__"
      L38: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-apiserver__"
      L39: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-controller-manager__"
      L40: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-scheduler__"
      L41: "cluster.go:125: [kubelet-start] Writing kubelet environment file with flags to file __/var/lib/kubelet/kubeadm-flags.env__"
      L42: "cluster.go:125: [kubelet-start] Writing kubelet configuration to file __/var/lib/kubelet/config.yaml__"
      L43: "cluster.go:125: [kubelet-start] Starting the kubelet"
      L44: "cluster.go:125: [wait-control-plane] Waiting for the kubelet to boot up the control plane as static Pods from directory __/etc/kubernetes/manifests__"
      L45: "cluster.go:125: [kubelet-check] Waiting for a healthy kubelet at http://127.0.0.1:10248/healthz. This can take up to 4m0s"
      L46: "cluster.go:125: [kubelet-check] The kubelet is healthy after 501.265843ms"
      L47: "cluster.go:125: [control-plane-check] Waiting for healthy control plane components. This can take up to 30m0s"
      L48: "cluster.go:125: [control-plane-check] Checking kube-apiserver at https://10.0.0.11:6443/livez"
      L49: "cluster.go:125: [control-plane-check] Checking kube-controller-manager at https://127.0.0.1:10257/healthz"
      L50: "cluster.go:125: [control-plane-check] Checking kube-scheduler at https://127.0.0.1:10259/livez"
      L51: "cluster.go:125: [control-plane-check] kube-controller-manager is healthy after 2.504921614s"
      L52: "cluster.go:125: [control-plane-check] kube-scheduler is healthy after 2.787759187s"
      L53: "cluster.go:125: [control-plane-check] kube-apiserver is healthy after 4.501769824s"
      L54: "cluster.go:125: [upload-config] Storing the configuration used in ConfigMap __kubeadm-config__ in the __kube-system__ Namespace"
      L55: "cluster.go:125: [kubelet] Creating a ConfigMap __kubelet-config__ in namespace kube-system with the configuration for the kubelets in the cluster"
      L56: "cluster.go:125: [upload-certs] Skipping phase. Please see --upload-certs"
      L57: "cluster.go:125: [mark-control-plane] Marking the node ci-4628.1.1-a-e81f12baae as control-plane by adding the labels: [node-role.kubernetes.io/control-plane node.kubernetes.io/exclude-from-external-lo?ad-balancers]"
      L58: "cluster.go:125: [mark-control-plane] Marking the node ci-4628.1.1-a-e81f12baae as control-plane by adding the taints [node-role.kubernetes.io/control-plane:NoSchedule]"
      L59: "cluster.go:125: [bootstrap-token] Using token: rx0qq7.5ojjteyp77938sjb"
      L60: "cluster.go:125: [bootstrap-token] Configuring bootstrap tokens, cluster-info ConfigMap, RBAC Roles"
      L61: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow Node Bootstrap tokens to get nodes"
      L62: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow Node Bootstrap tokens to post CSRs in order for nodes to get long term certificate credentials"
      L63: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow the csrapprover controller automatically approve CSRs from a Node Bootstrap Token"
      L64: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow certificate rotation for all node client certificates in the cluster"
      L65: "cluster.go:125: [bootstrap-token] Creating the __cluster-info__ ConfigMap in the __kube-public__ namespace"
      L66: "cluster.go:125: [kubelet-finalize] Updating __/etc/kubernetes/kubelet.conf__ to point to a rotatable kubelet client certificate and key"
      L67: "cluster.go:125: [addons] Applied essential addon: CoreDNS"
      L68: "cluster.go:125: [addons] Applied essential addon: kube-proxy"
      L69: "cluster.go:125: "
      L70: "cluster.go:125: Your Kubernetes control-plane has initialized successfully!"
      L71: "cluster.go:125: "
      L72: "cluster.go:125: To start using your cluster, you need to run the following as a regular user:"
      L73: "cluster.go:125: "
      L74: "cluster.go:125:   mkdir -p $HOME/.kube"
      L75: "cluster.go:125:   sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config"
      L76: "cluster.go:125:   sudo chown $(id -u):$(id -g) $HOME/.kube/config"
      L77: "cluster.go:125: "
      L78: "cluster.go:125: Alternatively, if you are the root user, you can run:"
      L79: "cluster.go:125: "
      L80: "cluster.go:125:   export KUBECONFIG=/etc/kubernetes/admin.conf"
      L81: "cluster.go:125: "
      L82: "cluster.go:125: You should now deploy a pod network to the cluster."
      L83: "cluster.go:125: Run __kubectl apply -f [podnetwork].yaml__ with one of the options listed at:"
      L84: "cluster.go:125:   https://kubernetes.io/docs/concepts/cluster-administration/addons/"
      L85: "cluster.go:125: "
      L86: "cluster.go:125: Then you can join any number of worker nodes by running the following on each as root:"
      L87: "cluster.go:125: "
      L88: "cluster.go:125: kubeadm join 10.0.0.11:6443 --token rx0qq7.5ojjteyp77938sjb _"
      L89: "cluster.go:125:  --discovery-token-ca-cert-hash sha256:0a956a459d3ef6ce00ead020b7c5be8ded6517bba445eece3165d40f05eaa79d "
      L90: "cluster.go:125: namespace/tigera-operator created"
      L91: "cluster.go:125: serviceaccount/tigera-operator created"
      L92: "cluster.go:125: clusterrole.rbac.authorization.k8s.io/tigera-operator-secrets created"
      L93: "cluster.go:125: clusterrole.rbac.authorization.k8s.io/tigera-operator created"
      L94: "cluster.go:125: clusterrolebinding.rbac.authorization.k8s.io/tigera-operator created"
      L95: "cluster.go:125: rolebinding.rbac.authorization.k8s.io/tigera-operator-secrets created"
      L96: "cluster.go:125: deployment.apps/tigera-operator created"
      L97: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/installations.operator.tigera.io condition met"
      L98: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/installations.operator.tigera.io condition met"
      L99: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/apiservers.operator.tigera.io condition met"
      L100: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/apiservers.operator.tigera.io condition met"
      L101: "cluster.go:125: installation.operator.tigera.io/default created"
      L102: "cluster.go:125: apiserver.operator.tigera.io/default created"
      L103: "cluster.go:125: goldmane.operator.tigera.io/default created"
      L104: "cluster.go:125: whisker.operator.tigera.io/default created"
      L105: "cluster.go:125: W0509 07:34:44.477017    2541 joinconfiguration.go:113] [config] WARNING: Ignored configuration document with GroupVersionKind kubelet.config.k8s.io/v1beta1, Kind=KubeletConfiguration"
      L106: "cluster.go:125:  [WARNING Service-Kubelet]: kubelet service is not enabled, please run _systemctl enable kubelet.service_"
      L107: "--- FAIL: kubeadm.v1.33.8.calico.base/NFS_deployment (3.07s)"
      L108: "kubeadm.go:242: unable to install NFS Helm Chart: ssh: handshake failed: EOF_"
      L109: " "
  ```


</details>


🟢 ok **kubeadm.v1.33.8.cilium.base**; Succeeded: azure (1)

🟢 ok **kubeadm.v1.33.8.flannel.base**; Succeeded: azure (1)

🟢 ok **kubeadm.v1.34.4.calico.base**; Succeeded: azure (2); Failed: azure (1)

<details>

<summary>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Diagnostic output for azure, run 1</summary>

  ```
      L1: " Error: _cluster.go:125: I0509 07:33:36.051023    2918 version.go:260] remote version is much newer: v1.36.0; falling back to: stable-1.34"
      L2: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-apiserver:v1.34.7"
      L3: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-controller-manager:v1.34.7"
      L4: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-scheduler:v1.34.7"
      L5: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-proxy:v1.34.7"
      L6: "cluster.go:125: [config/images] Pulled registry.k8s.io/coredns/coredns:v1.12.1"
      L7: "cluster.go:125: [config/images] Pulled registry.k8s.io/pause:3.10.1"
      L8: "cluster.go:125: [config/images] Pulled registry.k8s.io/etcd:3.6.5-0"
      L9: "cluster.go:125: I0509 07:33:50.554632    3133 version.go:260] remote version is much newer: v1.36.0; falling back to: stable-1.34"
      L10: "cluster.go:125: [init] Using Kubernetes version: v1.34.7"
      L11: "cluster.go:125: [preflight] Running pre-flight checks"
      L12: "cluster.go:125:  [WARNING Hostname]: hostname __ci-4628.1.1-a-847f097094__ could not be reached"
      L13: "cluster.go:125:  [WARNING Hostname]: hostname __ci-4628.1.1-a-847f097094__: lookup ci-4628.1.1-a-847f097094 on 168.63.129.16:53: no such host"
      L14: "cluster.go:125:  [WARNING Service-Kubelet]: kubelet service is not enabled, please run _systemctl enable kubelet.service_"
      L15: "cluster.go:125: [preflight] Pulling images required for setting up a Kubernetes cluster"
      L16: "cluster.go:125: [preflight] This might take a minute or two, depending on the speed of your internet connection"
      L17: "cluster.go:125: [preflight] You can also perform this action beforehand using _kubeadm config images pull_"
      L18: "cluster.go:125: [certs] Using certificateDir folder __/etc/kubernetes/pki__"
      L19: "cluster.go:125: [certs] Generating __ca__ certificate and key"
      L20: "cluster.go:125: [certs] Generating __apiserver__ certificate and key"
      L21: "cluster.go:125: [certs] apiserver serving cert is signed for DNS names [ci-4628.1.1-a-847f097094 kubernetes kubernetes.default kubernetes.default.svc kubernetes.default.svc.cluster.local] and IPs [10.?96.0.1 10.0.0.15]"
      L22: "cluster.go:125: [certs] Generating __apiserver-kubelet-client__ certificate and key"
      L23: "cluster.go:125: [certs] Generating __front-proxy-ca__ certificate and key"
      L24: "cluster.go:125: [certs] Generating __front-proxy-client__ certificate and key"
      L25: "cluster.go:125: [certs] External etcd mode: Skipping etcd/ca certificate authority generation"
      L26: "cluster.go:125: [certs] External etcd mode: Skipping etcd/server certificate generation"
      L27: "cluster.go:125: [certs] External etcd mode: Skipping etcd/peer certificate generation"
      L28: "cluster.go:125: [certs] External etcd mode: Skipping etcd/healthcheck-client certificate generation"
      L29: "cluster.go:125: [certs] External etcd mode: Skipping apiserver-etcd-client certificate generation"
      L30: "cluster.go:125: [certs] Generating __sa__ key and public key"
      L31: "cluster.go:125: [kubeconfig] Using kubeconfig folder __/etc/kubernetes__"
      L32: "cluster.go:125: [kubeconfig] Writing __admin.conf__ kubeconfig file"
      L33: "cluster.go:125: [kubeconfig] Writing __super-admin.conf__ kubeconfig file"
      L34: "cluster.go:125: [kubeconfig] Writing __kubelet.conf__ kubeconfig file"
      L35: "cluster.go:125: [kubeconfig] Writing __controller-manager.conf__ kubeconfig file"
      L36: "cluster.go:125: [kubeconfig] Writing __scheduler.conf__ kubeconfig file"
      L37: "cluster.go:125: [control-plane] Using manifest folder __/etc/kubernetes/manifests__"
      L38: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-apiserver__"
      L39: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-controller-manager__"
      L40: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-scheduler__"
      L41: "cluster.go:125: [kubelet-start] Writing kubelet environment file with flags to file __/var/lib/kubelet/kubeadm-flags.env__"
      L42: "cluster.go:125: [kubelet-start] Writing kubelet configuration to file __/var/lib/kubelet/instance-config.yaml__"
      L43: "cluster.go:125: [patches] Applied patch of type __application/strategic-merge-patch+json__ to target __kubeletconfiguration__"
      L44: "cluster.go:125: [kubelet-start] Writing kubelet configuration to file __/var/lib/kubelet/config.yaml__"
      L45: "cluster.go:125: [kubelet-start] Starting the kubelet"
      L46: "cluster.go:125: [wait-control-plane] Waiting for the kubelet to boot up the control plane as static Pods from directory __/etc/kubernetes/manifests__"
      L47: "cluster.go:125: [kubelet-check] Waiting for a healthy kubelet at http://127.0.0.1:10248/healthz. This can take up to 4m0s"
      L48: "cluster.go:125: [kubelet-check] The kubelet is healthy after 1.001723027s"
      L49: "cluster.go:125: [control-plane-check] Waiting for healthy control plane components. This can take up to 30m0s"
      L50: "cluster.go:125: [control-plane-check] Checking kube-apiserver at https://10.0.0.15:6443/livez"
      L51: "cluster.go:125: [control-plane-check] Checking kube-controller-manager at https://127.0.0.1:10257/healthz"
      L52: "cluster.go:125: [control-plane-check] Checking kube-scheduler at https://127.0.0.1:10259/livez"
      L53: "cluster.go:125: [control-plane-check] kube-controller-manager is healthy after 1.037112078s"
      L54: "cluster.go:125: [control-plane-check] kube-scheduler is healthy after 1.528569891s"
      L55: "cluster.go:125: [control-plane-check] kube-apiserver is healthy after 3.502019891s"
      L56: "cluster.go:125: [upload-config] Storing the configuration used in ConfigMap __kubeadm-config__ in the __kube-system__ Namespace"
      L57: "cluster.go:125: [kubelet] Creating a ConfigMap __kubelet-config__ in namespace kube-system with the configuration for the kubelets in the cluster"
      L58: "cluster.go:125: [upload-certs] Skipping phase. Please see --upload-certs"
      L59: "cluster.go:125: [mark-control-plane] Marking the node ci-4628.1.1-a-847f097094 as control-plane by adding the labels: [node-role.kubernetes.io/control-plane node.kubernetes.io/exclude-from-external-lo?ad-balancers]"
      L60: "cluster.go:125: [mark-control-plane] Marking the node ci-4628.1.1-a-847f097094 as control-plane by adding the taints [node-role.kubernetes.io/control-plane:NoSchedule]"
      L61: "cluster.go:125: [bootstrap-token] Using token: cw9xkm.yc4a2jtihj0kf0t5"
      L62: "cluster.go:125: [bootstrap-token] Configuring bootstrap tokens, cluster-info ConfigMap, RBAC Roles"
      L63: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow Node Bootstrap tokens to get nodes"
      L64: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow Node Bootstrap tokens to post CSRs in order for nodes to get long term certificate credentials"
      L65: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow the csrapprover controller automatically approve CSRs from a Node Bootstrap Token"
      L66: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow certificate rotation for all node client certificates in the cluster"
      L67: "cluster.go:125: [bootstrap-token] Creating the __cluster-info__ ConfigMap in the __kube-public__ namespace"
      L68: "cluster.go:125: [kubelet-finalize] Updating __/etc/kubernetes/kubelet.conf__ to point to a rotatable kubelet client certificate and key"
      L69: "cluster.go:125: [addons] Applied essential addon: CoreDNS"
      L70: "cluster.go:125: [addons] Applied essential addon: kube-proxy"
      L71: "cluster.go:125: "
      L72: "cluster.go:125: Your Kubernetes control-plane has initialized successfully!"
      L73: "cluster.go:125: "
      L74: "cluster.go:125: To start using your cluster, you need to run the following as a regular user:"
      L75: "cluster.go:125: "
      L76: "cluster.go:125:   mkdir -p $HOME/.kube"
      L77: "cluster.go:125:   sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config"
      L78: "cluster.go:125:   sudo chown $(id -u):$(id -g) $HOME/.kube/config"
      L79: "cluster.go:125: "
      L80: "cluster.go:125: Alternatively, if you are the root user, you can run:"
      L81: "cluster.go:125: "
      L82: "cluster.go:125:   export KUBECONFIG=/etc/kubernetes/admin.conf"
      L83: "cluster.go:125: "
      L84: "cluster.go:125: You should now deploy a pod network to the cluster."
      L85: "cluster.go:125: Run __kubectl apply -f [podnetwork].yaml__ with one of the options listed at:"
      L86: "cluster.go:125:   https://kubernetes.io/docs/concepts/cluster-administration/addons/"
      L87: "cluster.go:125: "
      L88: "cluster.go:125: Then you can join any number of worker nodes by running the following on each as root:"
      L89: "cluster.go:125: "
      L90: "cluster.go:125: kubeadm join 10.0.0.15:6443 --token cw9xkm.yc4a2jtihj0kf0t5 _"
      L91: "cluster.go:125:  --discovery-token-ca-cert-hash sha256:45150a979e8856f5d746b258d61d8e978bb7b9b069ed5267d4ec4eb636b6c99e "
      L92: "cluster.go:125: namespace/tigera-operator created"
      L93: "cluster.go:125: serviceaccount/tigera-operator created"
      L94: "cluster.go:125: clusterrole.rbac.authorization.k8s.io/tigera-operator-secrets created"
      L95: "cluster.go:125: clusterrole.rbac.authorization.k8s.io/tigera-operator created"
      L96: "cluster.go:125: clusterrolebinding.rbac.authorization.k8s.io/tigera-operator created"
      L97: "cluster.go:125: rolebinding.rbac.authorization.k8s.io/tigera-operator-secrets created"
      L98: "cluster.go:125: deployment.apps/tigera-operator created"
      L99: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/installations.operator.tigera.io condition met"
      L100: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/installations.operator.tigera.io condition met"
      L101: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/apiservers.operator.tigera.io condition met"
      L102: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/apiservers.operator.tigera.io condition met"
      L103: "cluster.go:125: installation.operator.tigera.io/default created"
      L104: "cluster.go:125: apiserver.operator.tigera.io/default created"
      L105: "cluster.go:125: goldmane.operator.tigera.io/default created"
      L106: "cluster.go:125: whisker.operator.tigera.io/default created"
      L107: "kubeadm.go:197: unable to setup cluster: unable to create worker node: PollUntilDone(ci-4628.1.1-a-22457fc8d4): GET https://management.azure.com/subscriptions/0e46bd28-a80f-4d3a-8200-d9eb8d80cb2e/prov?iders/Microsoft.Compute/locations/westus2/operations/e91c5fc5-49c9-4e00-a093-6d4f41974ec7"
      L108: "--------------------------------------------------------------------------------"
      L109: "RESPONSE 200: 200 OK"
      L110: "ERROR CODE: OperationPreempted"
      L111: "--------------------------------------------------------------------------------"
      L112: "{"
      L113: "__startTime__: __2026-05-09T07:34:18.3381602+00:00__,"
      L114: "__endTime__: __2026-05-09T07:35:30.9119314+00:00__,"
      L115: "__status__: __Canceled__,"
      L116: "__error__: {"
      L117: "__code__: __OperationPreempted__,"
      L118: "__message__: __Operation execution has been preempted by a more recent operation.__"
      L119: "},"
      L120: "__name__: __e91c5fc5-49c9-4e00-a093-6d4f41974ec7__"
      L121: "}"
      L122: "--------------------------------------------------------------------------------_"
      L123: " "
  ```


</details>


🟢 ok **kubeadm.v1.34.4.cilium.base**; Succeeded: azure (1)

🟢 ok **kubeadm.v1.34.4.flannel.base**; Succeeded: azure (1)

🟢 ok **kubeadm.v1.35.1.calico.base**; Succeeded: azure (2); Failed: azure (1)

<details>

<summary>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Diagnostic output for azure, run 1</summary>

  ```
      L1: " Error: _cluster.go:125: I0509 07:33:03.429801    2718 version.go:260] remote version is much newer: v1.36.0; falling back to: stable-1.35"
      L2: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-apiserver:v1.35.4"
      L3: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-controller-manager:v1.35.4"
      L4: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-scheduler:v1.35.4"
      L5: "cluster.go:125: [config/images] Pulled registry.k8s.io/kube-proxy:v1.35.4"
      L6: "cluster.go:125: [config/images] Pulled registry.k8s.io/coredns/coredns:v1.13.1"
      L7: "cluster.go:125: [config/images] Pulled registry.k8s.io/pause:3.10.1"
      L8: "cluster.go:125: [config/images] Pulled registry.k8s.io/etcd:3.6.6-0"
      L9: "cluster.go:125: I0509 07:33:14.446017    3047 version.go:260] remote version is much newer: v1.36.0; falling back to: stable-1.35"
      L10: "cluster.go:125: [init] Using Kubernetes version: v1.35.4"
      L11: "cluster.go:125: [preflight] Running pre-flight checks"
      L12: "cluster.go:125:  [WARNING Hostname]: hostname __ci-4628.1.1-a-7e7710d3dd__ could not be reached"
      L13: "cluster.go:125:  [WARNING Hostname]: hostname __ci-4628.1.1-a-7e7710d3dd__: lookup ci-4628.1.1-a-7e7710d3dd on 168.63.129.16:53: no such host"
      L14: "cluster.go:125:  [WARNING Service-kubelet]: kubelet service is not enabled, please run _systemctl enable kubelet.service_"
      L15: "cluster.go:125: [preflight] Pulling images required for setting up a Kubernetes cluster"
      L16: "cluster.go:125: [preflight] This might take a minute or two, depending on the speed of your internet connection"
      L17: "cluster.go:125: [preflight] You can also perform this action beforehand using _kubeadm config images pull_"
      L18: "cluster.go:125: [certs] Using certificateDir folder __/etc/kubernetes/pki__"
      L19: "cluster.go:125: [certs] Generating __ca__ certificate and key"
      L20: "cluster.go:125: [certs] Generating __apiserver__ certificate and key"
      L21: "cluster.go:125: [certs] apiserver serving cert is signed for DNS names [ci-4628.1.1-a-7e7710d3dd kubernetes kubernetes.default kubernetes.default.svc kubernetes.default.svc.cluster.local] and IPs [10.?96.0.1 10.0.0.19]"
      L22: "cluster.go:125: [certs] Generating __apiserver-kubelet-client__ certificate and key"
      L23: "cluster.go:125: [certs] Generating __front-proxy-ca__ certificate and key"
      L24: "cluster.go:125: [certs] Generating __front-proxy-client__ certificate and key"
      L25: "cluster.go:125: [certs] External etcd mode: Skipping etcd/ca certificate authority generation"
      L26: "cluster.go:125: [certs] External etcd mode: Skipping etcd/server certificate generation"
      L27: "cluster.go:125: [certs] External etcd mode: Skipping etcd/peer certificate generation"
      L28: "cluster.go:125: [certs] External etcd mode: Skipping etcd/healthcheck-client certificate generation"
      L29: "cluster.go:125: [certs] External etcd mode: Skipping apiserver-etcd-client certificate generation"
      L30: "cluster.go:125: [certs] Generating __sa__ key and public key"
      L31: "cluster.go:125: [kubeconfig] Using kubeconfig folder __/etc/kubernetes__"
      L32: "cluster.go:125: [kubeconfig] Writing __admin.conf__ kubeconfig file"
      L33: "cluster.go:125: [kubeconfig] Writing __super-admin.conf__ kubeconfig file"
      L34: "cluster.go:125: [kubeconfig] Writing __kubelet.conf__ kubeconfig file"
      L35: "cluster.go:125: [kubeconfig] Writing __controller-manager.conf__ kubeconfig file"
      L36: "cluster.go:125: [kubeconfig] Writing __scheduler.conf__ kubeconfig file"
      L37: "cluster.go:125: [control-plane] Using manifest folder __/etc/kubernetes/manifests__"
      L38: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-apiserver__"
      L39: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-controller-manager__"
      L40: "cluster.go:125: [control-plane] Creating static Pod manifest for __kube-scheduler__"
      L41: "cluster.go:125: [kubelet-start] Writing kubelet environment file with flags to file __/var/lib/kubelet/kubeadm-flags.env__"
      L42: "cluster.go:125: [kubelet-start] Writing kubelet configuration to file __/var/lib/kubelet/instance-config.yaml__"
      L43: "cluster.go:125: [patches] Applied patch of type __application/strategic-merge-patch+json__ to target __kubeletconfiguration__"
      L44: "cluster.go:125: [kubelet-start] Writing kubelet configuration to file __/var/lib/kubelet/config.yaml__"
      L45: "cluster.go:125: [kubelet-start] Starting the kubelet"
      L46: "cluster.go:125: [wait-control-plane] Waiting for the kubelet to boot up the control plane as static Pods from directory __/etc/kubernetes/manifests__"
      L47: "cluster.go:125: [kubelet-check] Waiting for a healthy kubelet at http://127.0.0.1:10248/healthz. This can take up to 4m0s"
      L48: "cluster.go:125: [kubelet-check] The kubelet is healthy after 501.781696ms"
      L49: "cluster.go:125: [control-plane-check] Waiting for healthy control plane components. This can take up to 30m0s"
      L50: "cluster.go:125: [control-plane-check] Checking kube-apiserver at https://10.0.0.19:6443/livez"
      L51: "cluster.go:125: [control-plane-check] Checking kube-controller-manager at https://127.0.0.1:10257/healthz"
      L52: "cluster.go:125: [control-plane-check] Checking kube-scheduler at https://127.0.0.1:10259/livez"
      L53: "cluster.go:125: [control-plane-check] kube-controller-manager is healthy after 1.5065086s"
      L54: "cluster.go:125: [control-plane-check] kube-scheduler is healthy after 1.847467742s"
      L55: "cluster.go:125: [control-plane-check] kube-apiserver is healthy after 3.501114662s"
      L56: "cluster.go:125: [upload-config] Storing the configuration used in ConfigMap __kubeadm-config__ in the __kube-system__ Namespace"
      L57: "cluster.go:125: [kubelet] Creating a ConfigMap __kubelet-config__ in namespace kube-system with the configuration for the kubelets in the cluster"
      L58: "cluster.go:125: [upload-certs] Skipping phase. Please see --upload-certs"
      L59: "cluster.go:125: [mark-control-plane] Marking the node ci-4628.1.1-a-7e7710d3dd as control-plane by adding the labels: [node-role.kubernetes.io/control-plane node.kubernetes.io/exclude-from-external-lo?ad-balancers]"
      L60: "cluster.go:125: [mark-control-plane] Marking the node ci-4628.1.1-a-7e7710d3dd as control-plane by adding the taints [node-role.kubernetes.io/control-plane:NoSchedule]"
      L61: "cluster.go:125: [bootstrap-token] Using token: bvqufq.5udb9o2zolewogye"
      L62: "cluster.go:125: [bootstrap-token] Configuring bootstrap tokens, cluster-info ConfigMap, RBAC Roles"
      L63: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow Node Bootstrap tokens to get nodes"
      L64: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow Node Bootstrap tokens to post CSRs in order for nodes to get long term certificate credentials"
      L65: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow the csrapprover controller automatically approve CSRs from a Node Bootstrap Token"
      L66: "cluster.go:125: [bootstrap-token] Configured RBAC rules to allow certificate rotation for all node client certificates in the cluster"
      L67: "cluster.go:125: [bootstrap-token] Creating the __cluster-info__ ConfigMap in the __kube-public__ namespace"
      L68: "cluster.go:125: [kubelet-finalize] Updating __/etc/kubernetes/kubelet.conf__ to point to a rotatable kubelet client certificate and key"
      L69: "cluster.go:125: [addons] Applied essential addon: CoreDNS"
      L70: "cluster.go:125: [addons] Applied essential addon: kube-proxy"
      L71: "cluster.go:125: "
      L72: "cluster.go:125: Your Kubernetes control-plane has initialized successfully!"
      L73: "cluster.go:125: "
      L74: "cluster.go:125: To start using your cluster, you need to run the following as a regular user:"
      L75: "cluster.go:125: "
      L76: "cluster.go:125:   mkdir -p $HOME/.kube"
      L77: "cluster.go:125:   sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config"
      L78: "cluster.go:125:   sudo chown $(id -u):$(id -g) $HOME/.kube/config"
      L79: "cluster.go:125: "
      L80: "cluster.go:125: Alternatively, if you are the root user, you can run:"
      L81: "cluster.go:125: "
      L82: "cluster.go:125:   export KUBECONFIG=/etc/kubernetes/admin.conf"
      L83: "cluster.go:125: "
      L84: "cluster.go:125: You should now deploy a pod network to the cluster."
      L85: "cluster.go:125: Run __kubectl apply -f [podnetwork].yaml__ with one of the options listed at:"
      L86: "cluster.go:125:   https://kubernetes.io/docs/concepts/cluster-administration/addons/"
      L87: "cluster.go:125: "
      L88: "cluster.go:125: Then you can join any number of worker nodes by running the following on each as root:"
      L89: "cluster.go:125: "
      L90: "cluster.go:125: kubeadm join 10.0.0.19:6443 --token bvqufq.5udb9o2zolewogye _"
      L91: "cluster.go:125:  --discovery-token-ca-cert-hash sha256:55faefaafb0e9da60e9d9104e2261d31e1b911e50c0797d7316e02929f113711 "
      L92: "cluster.go:125: namespace/tigera-operator created"
      L93: "cluster.go:125: serviceaccount/tigera-operator created"
      L94: "cluster.go:125: clusterrole.rbac.authorization.k8s.io/tigera-operator-secrets created"
      L95: "cluster.go:125: clusterrole.rbac.authorization.k8s.io/tigera-operator created"
      L96: "cluster.go:125: clusterrolebinding.rbac.authorization.k8s.io/tigera-operator created"
      L97: "cluster.go:125: rolebinding.rbac.authorization.k8s.io/tigera-operator-secrets created"
      L98: "cluster.go:125: deployment.apps/tigera-operator created"
      L99: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/installations.operator.tigera.io condition met"
      L100: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/installations.operator.tigera.io condition met"
      L101: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/apiservers.operator.tigera.io condition met"
      L102: "cluster.go:125: customresourcedefinition.apiextensions.k8s.io/apiservers.operator.tigera.io condition met"
      L103: "cluster.go:125: installation.operator.tigera.io/default created"
      L104: "cluster.go:125: apiserver.operator.tigera.io/default created"
      L105: "cluster.go:125: goldmane.operator.tigera.io/default created"
      L106: "cluster.go:125: whisker.operator.tigera.io/default created"
      L107: "cluster.go:125: W0509 07:35:06.257906    2511 joinconfiguration.go:112] [config] WARNING: Ignored configuration document with GroupVersionKind kubelet.config.k8s.io/v1beta1, Kind=KubeletConfiguration"
      L108: "cluster.go:125:  [WARNING Service-kubelet]: kubelet service is not enabled, please run _systemctl enable kubelet.service_"
      L109: "--- FAIL: kubeadm.v1.35.1.calico.base/node_readiness (14.00s)"
      L110: "cluster.go:145: __kubectl get nodes | grep ___ Ready___| wc -l__ failed: output , status dial tcp 20.125.59.238:22: connect: connection refused"
      L111: "--- FAIL: kubeadm.v1.35.1.calico.base/nginx_deployment (1.04s)"
      L112: "kubeadm.go:219: unable to deploy nginx: dial tcp 20.125.59.238:22: connect: connection refused"
      L113: "--- FAIL: kubeadm.v1.35.1.calico.base/NFS_deployment (20.44s)"
      L114: "kubeadm.go:238: unable to add helm NFS repo: dial tcp 20.125.59.238:22: i/o timeout_"
      L115: " "
  ```


</details>


🟢 ok **kubeadm.v1.35.1.cilium.base**; Succeeded: azure (1)

🟢 ok **kubeadm.v1.35.1.flannel.base**; Succeeded: azure (1)

🟢 ok **sysext.custom-docker.sysext**; Succeeded: azure (1)

🟢 ok **sysext.disable-containerd**; Succeeded: azure (1)

🟢 ok **sysext.disable-docker**; Succeeded: azure (1)

🟢 ok **sysext.simple**; Succeeded: azure (1)

🟢 ok **systemd.journal.user**; Succeeded: azure (1)

🟢 ok **systemd.sysusers.gshadow**; Succeeded: azure (1)
