INFO: Log in to your Red Hat account... INFO: Configure AWS Credentials... WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.61). WARN: It is recommended that you update to the latest version. INFO: Logged in as 'konflux-ci-418295695583' on 'https://api.openshift.com' INFO: Create ROSA with HCP cluster... WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.61). WARN: It is recommended that you update to the latest version. INFO: Creating cluster 'kx-b48d1c52ea' INFO: To view a list of clusters and their status, run 'rosa list clusters' INFO: Cluster 'kx-b48d1c52ea' has been created. INFO: Once the cluster is installed you will need to add an Identity Provider before you can login into the cluster. See 'rosa create idp --help' for more information. Name: kx-b48d1c52ea Domain Prefix: kx-b48d1c52ea Display Name: kx-b48d1c52ea ID: 2pv5ilij6d354kg56m2pdusl5gdc12tv External ID: 6ac7cb65-e739-4c55-a4cc-67e4ca126b2d Control Plane: ROSA Service Hosted OpenShift Version: 4.18.9 Channel Group: stable DNS: Not ready AWS Account: 418295695583 AWS Billing Account: 418295695583 API URL: Console URL: Region: us-east-1 Availability: - Control Plane: MultiAZ - Data Plane: MultiAZ Nodes: - Compute (desired): 3 - Compute (current): 0 Network: - Type: OVNKubernetes - Service CIDR: 172.30.0.0/16 - Machine CIDR: 10.0.0.0/16 - Pod CIDR: 10.128.0.0/14 - Host Prefix: /23 - Subnets: subnet-001fc23497e4a3aeb, subnet-00ffba09365a434bc, subnet-074cbf0329958194a, subnet-0689cd077699b690a, subnet-0f9f09e46f74cde64, subnet-033f48892ddbaa09d EC2 Metadata Http Tokens: optional Role (STS) ARN: arn:aws:iam::418295695583:role/ManagedOpenShift-HCP-ROSA-Installer-Role Support Role ARN: arn:aws:iam::418295695583:role/ManagedOpenShift-HCP-ROSA-Support-Role Instance IAM Roles: - Worker: arn:aws:iam::418295695583:role/ManagedOpenShift-HCP-ROSA-Worker-Role Operator IAM Roles: - arn:aws:iam::418295695583:role/rosa-hcp-openshift-image-registry-installer-cloud-credentials - arn:aws:iam::418295695583:role/rosa-hcp-openshift-ingress-operator-cloud-credentials - arn:aws:iam::418295695583:role/rosa-hcp-openshift-cluster-csi-drivers-ebs-cloud-credentials - arn:aws:iam::418295695583:role/rosa-hcp-openshift-cloud-network-config-controller-cloud-credent - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-kube-controller-manager - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-capa-controller-manager - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-control-plane-operator - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-kms-provider Managed Policies: Yes State: waiting (Waiting for user action) Private: No Delete Protection: Disabled Created: Apr 28 2026 12:26:01 UTC Details Page: https://console.redhat.com/openshift/details/s/3CzClG7MNzVzJSvq36D9xng9ZTK OIDC Endpoint URL: https://oidc.op1.openshiftapps.com/2du11g36ejmoo4624pofphlrgf4r9tf3 (Managed) Etcd Encryption: Disabled Audit Log Forwarding: Disabled External Authentication: Disabled INFO: Preparing to create operator roles. INFO: Operator Roles already exists INFO: Preparing to create OIDC Provider. INFO: OIDC provider already exists INFO: To determine when your cluster is Ready, run 'rosa describe cluster -c kx-b48d1c52ea'. INFO: To watch your cluster installation logs, run 'rosa logs install -c kx-b48d1c52ea --watch'. INFO: Track the progress of the cluster creation... WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.61). WARN: It is recommended that you update to the latest version. W: Region flag will be removed from this command in future versions INFO: Cluster 'kx-b48d1c52ea' is in waiting state waiting for installation to begin. Logs will show up within 5 minutes 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-b48d1c52ea Version 2026-04-28 12:29:43 +0000 UTC hostedclusters kx-b48d1c52ea ValidAWSIdentityProvider StatusUnknown 2026-04-28 12:29:43 +0000 UTC certificates cluster-api-cert Issuing certificate as Secret does not exist 2026-04-28 12:29:43 +0000 UTC certificates cluster-api-cert Issuing certificate as Secret does not exist 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is supported by operator configuration 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Release image is valid 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation active on resource 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is supported by operator configuration 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Release image is valid 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation active on resource 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is supported by operator configuration 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Release image is valid 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation active on resource 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is supported by operator configuration 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Release image is valid 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation active on resource 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is supported by operator configuration 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Release image is valid 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation active on resource 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is at expected version 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is supported by operator configuration 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Release image is valid 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation active on resource 2026-04-28 12:31:12 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2026-04-28 12:31:17 +0000 UTC hostedclusters kx-b48d1c52ea Required platform credentials are found 2026-04-28 12:31:17 +0000 UTC hostedclusters kx-b48d1c52ea Configuration passes validation 2026-04-28 12:31:17 +0000 UTC hostedclusters kx-b48d1c52ea Required platform credentials are found 2026-04-28 12:31:18 +0000 UTC hostedclusters kx-b48d1c52ea OIDC configuration is valid 2026-04-28 12:31:18 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation completed successfully 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea private-router load balancer is not provisioned: Error syncing load balancer: failed to ensure load balancer: error describing subnets: "error listing AWS subnets: \"operation error EC2: DescribeSubnets, exceeded maximum number of attempts, 3, https response error StatusCode: 503, RequestID: 4431e0b1-82bf-4084-a38b-06ef5b077b6c, api error RequestLimitExceeded: Request limit exceeded. Account 387219197817 has been throttled on ec2:DescribeSubnets because it exceeded its request rate limit.\"" 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea lookup api.kx-b48d1c52ea.dcpy.p3.openshiftapps.com on 172.30.0.10:53: no such host 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea Configuration passes validation 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea capi-provider deployment has 1 unavailable replicas 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea AWS KMS is not configured 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea EtcdAvailable StatefulSetNotFound 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea Kube APIServer deployment not found 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea capi-provider deployment has 1 unavailable replicas 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea AWS KMS is not configured 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea EtcdAvailable StatefulSetNotFound 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea Configuration passes validation 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea lookup api.kx-b48d1c52ea.dcpy.p3.openshiftapps.com on 172.30.0.10:53: no such host 2026-04-28 12:31:53 +0000 UTC hostedclusters kx-b48d1c52ea WebIdentityErr 2026-04-28 12:31:59 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:32:14 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:32:46 +0000 UTC hostedclusters kx-b48d1c52ea EtcdAvailable QuorumAvailable 2026-04-28 12:33:08 +0000 UTC hostedclusters kx-b48d1c52ea Kube APIServer deployment is available 2026-04-28 12:33:24 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:33:31 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea ClusterVersionAvailable FromClusterVersion 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea ClusterVersionSucceeding FromClusterVersion 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Working towards 4.18.9: 285 of 613 done (46% complete) 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment is available 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Payload loaded version="4.18.9" image="quay.io/openshift-release-dev/ocp-release@sha256:dafd6d1fe6008bf1a3e5baea3420aa0344412bf3167e1e92bec5c92098dc6464" architecture="Multi" 2026-04-28 12:34:30 +0000 UTC hostedclusters kx-b48d1c52ea Multiple errors are preventing progress: * Cluster operators console, dns, image-registry, ingress, insights, kube-storage-version-migrator, monitoring, network, node-tuning, openshift-samples, service-ca, storage are not available * Could not update imagestream "openshift/driver-toolkit" (440 of 613): resource may have been deleted * Could not update operatorgroup "openshift-monitoring/openshift-cluster-monitoring" (554 of 613): resource may have been deleted * Could not update role "openshift-authentication/prometheus-k8s" (541 of 613): resource may have been deleted * Could not update role "openshift-console-operator/prometheus-k8s" (571 of 613): resource may have been deleted * Could not update role "openshift-console/prometheus-k8s" (575 of 613): resource may have been deleted * Could not update role "openshift-ingress-operator/prometheus-k8s" (582 of 613): resource may have been deleted * Could not update role "openshift-kube-apiserver-operator/prometheus-k8s" (586 of 613): resource may have been deleted 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-b48d1c52ea Version 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is at expected version 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation active on resource 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea Release image is valid 2026-04-28 12:29:46 +0000 UTC hostedclusters kx-b48d1c52ea HostedCluster is supported by operator configuration 2026-04-28 12:31:12 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2026-04-28 12:31:17 +0000 UTC hostedclusters kx-b48d1c52ea Configuration passes validation 2026-04-28 12:31:17 +0000 UTC hostedclusters kx-b48d1c52ea Required platform credentials are found 2026-04-28 12:31:18 +0000 UTC hostedclusters kx-b48d1c52ea Reconciliation completed successfully 2026-04-28 12:31:18 +0000 UTC hostedclusters kx-b48d1c52ea OIDC configuration is valid 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea Configuration passes validation 2026-04-28 12:31:24 +0000 UTC hostedclusters kx-b48d1c52ea AWS KMS is not configured 2026-04-28 12:31:59 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:32:14 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:32:46 +0000 UTC hostedclusters kx-b48d1c52ea EtcdAvailable QuorumAvailable 2026-04-28 12:33:08 +0000 UTC hostedclusters kx-b48d1c52ea Kube APIServer deployment is available 2026-04-28 12:33:24 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:33:31 +0000 UTC hostedclusters kx-b48d1c52ea All is well 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Unable to apply 4.18.9: some cluster operators are not available 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Condition not found in the CVO. 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Ignition server deployment is available 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea Payload loaded version="4.18.9" image="quay.io/openshift-release-dev/ocp-release@sha256:dafd6d1fe6008bf1a3e5baea3420aa0344412bf3167e1e92bec5c92098dc6464" architecture="Multi" 2026-04-28 12:33:59 +0000 UTC hostedclusters kx-b48d1c52ea ClusterVersionAvailable FromClusterVersion 2026-04-28 12:34:42 +0000 UTC hostedclusters kx-b48d1c52ea Cluster operators console, dns, image-registry, ingress, insights, kube-storage-version-migrator, monitoring, node-tuning, openshift-samples, service-ca, storage are not available 2026-04-28 12:34:44 +0000 UTC hostedclusters kx-b48d1c52ea The hosted control plane is available INFO: Cluster 'kx-b48d1c52ea' is now ready INFO: ROSA with HCP cluster is ready, create a cluster admin account for accessing the cluster WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.61). WARN: It is recommended that you update to the latest version. INFO: Storing login command... INFO: Check if it's able to login to OCP cluster... Retried 1 times... INFO: Check if apiserver is ready... Waiting for cluster operators to be accessible for 2m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 3m1s dns 4.18.9 False False True 3m5s DNS "default" is unavailable. image-registry False True True 2m53s Available: The deployment does not have available replicas... ingress False True True 2m50s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 3m kube-controller-manager 4.18.9 True False False 3m kube-scheduler 4.18.9 True False False 3m kube-storage-version-migrator monitoring network 4.18.9 True True False 2m34s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 2m59s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.18.9 True False False 3m openshift-controller-manager 4.18.9 True False False 3m openshift-samples operator-lifecycle-manager 4.18.9 True False False 3m2s operator-lifecycle-manager-catalog 4.18.9 True False False 3m1s operator-lifecycle-manager-packageserver 4.18.9 True False False 2m59s service-ca storage 4.18.9 False False False 2m59s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service cluster operators to be accessible finished! [INFO] Cluster operators are accessible. Waiting for cluster to be reported as healthy for 60m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 3m1s dns 4.18.9 False False True 3m5s DNS "default" is unavailable. image-registry False True True 2m53s Available: The deployment does not have available replicas... ingress False True True 2m50s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 3m kube-controller-manager 4.18.9 True False False 3m kube-scheduler 4.18.9 True False False 3m kube-storage-version-migrator monitoring network 4.18.9 True True False 2m34s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 2m59s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.18.9 True False False 3m openshift-controller-manager 4.18.9 True False False 3m openshift-samples operator-lifecycle-manager 4.18.9 True False False 3m2s operator-lifecycle-manager-catalog 4.18.9 True False False 3m1s operator-lifecycle-manager-packageserver 4.18.9 True False False 2m59s service-ca storage 4.18.9 False False False 2m59s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 4m1s dns 4.18.9 False False True 4m5s DNS "default" is unavailable. image-registry False True True 3m53s Available: The deployment does not have available replicas... ingress False True True 3m50s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 4m kube-controller-manager 4.18.9 True False False 4m kube-scheduler 4.18.9 True False False 4m kube-storage-version-migrator monitoring network 4.18.9 True True False 3m34s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 3m59s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.18.9 True False False 4m openshift-controller-manager 4.18.9 True False False 4m openshift-samples operator-lifecycle-manager 4.18.9 True False False 4m2s operator-lifecycle-manager-catalog 4.18.9 True False False 4m1s operator-lifecycle-manager-packageserver 4.18.9 True False False 3m59s service-ca storage 4.18.9 False False False 3m59s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 5m2s dns 4.18.9 False False True 5m6s DNS "default" is unavailable. image-registry False True True 4m54s Available: The deployment does not have available replicas... ingress False True True 4m51s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 5m1s kube-controller-manager 4.18.9 True False False 5m1s kube-scheduler 4.18.9 True False False 5m1s kube-storage-version-migrator monitoring network 4.18.9 True True False 4m35s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 5m DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.18.9 True False False 5m1s openshift-controller-manager 4.18.9 True False False 5m1s openshift-samples operator-lifecycle-manager 4.18.9 True False False 5m3s operator-lifecycle-manager-catalog 4.18.9 True False False 5m2s operator-lifecycle-manager-packageserver 4.18.9 True False False 5m service-ca storage 4.18.9 False False False 5m AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 6m2s dns 4.18.9 False False True 6m6s DNS "default" is unavailable. image-registry False True True 5m54s Available: The deployment does not have available replicas... ingress False True True 5m51s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 6m1s kube-controller-manager 4.18.9 True False False 6m1s kube-scheduler 4.18.9 True False False 6m1s kube-storage-version-migrator monitoring network 4.18.9 True True False 5m35s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 6m DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.18.9 True False False 6m1s openshift-controller-manager 4.18.9 True False False 6m1s openshift-samples operator-lifecycle-manager 4.18.9 True False False 6m3s operator-lifecycle-manager-catalog 4.18.9 True False False 6m2s operator-lifecycle-manager-packageserver 4.18.9 True False False 6m service-ca storage 4.18.9 False False False 6m AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 7m2s dns 4.18.9 False False True 7m6s DNS "default" is unavailable. image-registry False True True 6m54s Available: The deployment does not have available replicas... ingress False True True 6m51s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 7m1s kube-controller-manager 4.18.9 True False False 7m1s kube-scheduler 4.18.9 True False False 7m1s kube-storage-version-migrator monitoring network 4.18.9 True True False 6m35s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 7m DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.18.9 True False False 7m1s openshift-controller-manager 4.18.9 True False False 7m1s openshift-samples operator-lifecycle-manager 4.18.9 True False False 7m3s operator-lifecycle-manager-catalog 4.18.9 True False False 7m2s operator-lifecycle-manager-packageserver 4.18.9 True False False 7m service-ca storage 4.18.9 False False False 7m AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 8m2s dns 4.18.9 False False True 8m6s DNS "default" is unavailable. image-registry False True True 7m54s Available: The deployment does not have available replicas... ingress False True True 7m51s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 8m1s kube-controller-manager 4.18.9 True False False 8m1s kube-scheduler 4.18.9 True False False 8m1s kube-storage-version-migrator monitoring network 4.18.9 True True False 7m35s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 8m DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.18.9 True False False 8m1s openshift-controller-manager 4.18.9 True False False 8m1s openshift-samples operator-lifecycle-manager 4.18.9 True False False 8m3s operator-lifecycle-manager-catalog 4.18.9 True False False 8m2s operator-lifecycle-manager-packageserver 4.18.9 True False False 8m service-ca storage 4.18.9 False False False 8m AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 9m3s dns 4.18.9 False False True 9m7s DNS "default" is unavailable. image-registry False True True 8m55s Available: The deployment does not have available replicas... ingress False True True 8m52s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.18.9 True False False 9m2s kube-controller-manager 4.18.9 True False False 9m2s kube-scheduler 4.18.9 True False False 9m2s kube-storage-version-migrator monitoring network 4.18.9 True True False 8m36s DaemonSet "/openshift-ovn-kubernetes/ovnkube-node" is not available (awaiting 2 nodes)... node-tuning 4.18.9 True True False 2s Waiting for 2/2 Profiles to be applied openshift-apiserver 4.18.9 True False False 9m2s openshift-controller-manager 4.18.9 True False False 9m2s openshift-samples operator-lifecycle-manager 4.18.9 True False False 9m4s operator-lifecycle-manager-catalog 4.18.9 True False False 9m3s operator-lifecycle-manager-packageserver 4.18.9 True False False 9m1s service-ca storage 4.18.9 True True False 4s AWSEBSCSIDriverOperatorCRProgressing: AWSEBSDriverNodeServiceControllerProgressing: Waiting for DaemonSet to deploy node pods Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.18.9 True False False 10m dns 4.18.9 False True True 10m DNS "default" is unavailable. image-registry False True True 9m55s Available: The deployment does not have available replicas... ingress False True True 9m52s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights 4.18.9 True False False 29s kube-apiserver 4.18.9 True False False 10m kube-controller-manager 4.18.9 True False False 10m kube-scheduler 4.18.9 True False False 10m kube-storage-version-migrator 4.18.9 True False False 24s monitoring Unknown True Unknown 2s Rolling out the stack. network 4.18.9 True True False 9m36s DaemonSet "/openshift-multus/network-metrics-daemon" is not available (awaiting 1 nodes) node-tuning 4.18.9 True False False 62s openshift-apiserver 4.18.9 True False False 10m openshift-controller-manager 4.18.9 True False False 10m openshift-samples operator-lifecycle-manager 4.18.9 True False False 10m operator-lifecycle-manager-catalog 4.18.9 True False False 10m operator-lifecycle-manager-packageserver 4.18.9 True False False 10m service-ca 4.18.9 True False False 28s storage 4.18.9 True False False 64s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.18.9 True False False 18s csi-snapshot-controller 4.18.9 True False False 11m dns 4.18.9 True False False 54s image-registry 4.18.9 True False False 49s ingress 4.18.9 True False True 32s The "default" ingress controller reports Degraded=True: DegradedConditions: One or more other status conditions indicate a degraded state: CanaryChecksSucceeding=Unknown (CanaryRouteNotAdmitted: Canary route is not admitted by the default ingress controller) insights 4.18.9 True False False 89s kube-apiserver 4.18.9 True False False 11m kube-controller-manager 4.18.9 True False False 11m kube-scheduler 4.18.9 True False False 11m kube-storage-version-migrator 4.18.9 True False False 84s monitoring Unknown True Unknown 62s Rolling out the stack. network 4.18.9 True False False 10m node-tuning 4.18.9 True False False 50s openshift-apiserver 4.18.9 True False False 11m openshift-controller-manager 4.18.9 True False False 11m openshift-samples 4.18.9 True False False 44s operator-lifecycle-manager 4.18.9 True False False 11m operator-lifecycle-manager-catalog 4.18.9 True False False 11m operator-lifecycle-manager-packageserver 4.18.9 True False False 11m service-ca 4.18.9 True False False 88s storage 4.18.9 True False False 2m4s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.18.9 True False False 78s csi-snapshot-controller 4.18.9 True False False 12m dns 4.18.9 True False False 114s image-registry 4.18.9 True False False 109s ingress 4.18.9 True False False 92s insights 4.18.9 True False False 2m29s kube-apiserver 4.18.9 True False False 12m kube-controller-manager 4.18.9 True False False 12m kube-scheduler 4.18.9 True False False 12m kube-storage-version-migrator 4.18.9 True False False 2m24s monitoring 4.18.9 True False False 37s network 4.18.9 True False False 11m node-tuning 4.18.9 True False False 110s openshift-apiserver 4.18.9 True False False 12m openshift-controller-manager 4.18.9 True False False 12m openshift-samples 4.18.9 True False False 104s operator-lifecycle-manager 4.18.9 True False False 12m operator-lifecycle-manager-catalog 4.18.9 True False False 12m operator-lifecycle-manager-packageserver 4.18.9 True False False 12m service-ca 4.18.9 True False False 2m28s storage 4.18.9 True False False 3m4s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.18.9 True False False 2m19s csi-snapshot-controller 4.18.9 True False False 13m dns 4.18.9 True False False 2m55s image-registry 4.18.9 True False False 2m50s ingress 4.18.9 True False False 2m33s insights 4.18.9 True False False 3m30s kube-apiserver 4.18.9 True False False 13m kube-controller-manager 4.18.9 True False False 13m kube-scheduler 4.18.9 True False False 13m kube-storage-version-migrator 4.18.9 True False False 3m25s monitoring 4.18.9 True False False 98s network 4.18.9 True False False 12m node-tuning 4.18.9 True False False 2m51s openshift-apiserver 4.18.9 True False False 13m openshift-controller-manager 4.18.9 True False False 13m openshift-samples 4.18.9 True False False 2m45s operator-lifecycle-manager 4.18.9 True False False 13m operator-lifecycle-manager-catalog 4.18.9 True False False 13m operator-lifecycle-manager-packageserver 4.18.9 True False False 13m service-ca 4.18.9 True False False 3m29s storage 4.18.9 True False False 4m5s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.18.9 True False False 3m19s csi-snapshot-controller 4.18.9 True False False 14m dns 4.18.9 True False False 3m55s image-registry 4.18.9 True False False 3m50s ingress 4.18.9 True False False 3m33s insights 4.18.9 True False False 4m30s kube-apiserver 4.18.9 True False False 14m kube-controller-manager 4.18.9 True False False 14m kube-scheduler 4.18.9 True False False 14m kube-storage-version-migrator 4.18.9 True False False 4m25s monitoring 4.18.9 True False False 2m38s network 4.18.9 True False False 13m node-tuning 4.18.9 True False False 3m51s openshift-apiserver 4.18.9 True False False 14m openshift-controller-manager 4.18.9 True False False 14m openshift-samples 4.18.9 True False False 3m45s operator-lifecycle-manager 4.18.9 True False False 14m operator-lifecycle-manager-catalog 4.18.9 True False False 14m operator-lifecycle-manager-packageserver 4.18.9 True False False 14m service-ca 4.18.9 True False False 4m29s storage 4.18.9 True False False 5m5s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.18.9 True False False 4m19s csi-snapshot-controller 4.18.9 True False False 15m dns 4.18.9 True False False 4m55s image-registry 4.18.9 True False False 4m50s ingress 4.18.9 True False False 4m33s insights 4.18.9 True False False 5m30s kube-apiserver 4.18.9 True False False 15m kube-controller-manager 4.18.9 True False False 15m kube-scheduler 4.18.9 True False False 15m kube-storage-version-migrator 4.18.9 True False False 5m25s monitoring 4.18.9 True False False 3m38s network 4.18.9 True False False 14m node-tuning 4.18.9 True False False 4m51s openshift-apiserver 4.18.9 True False False 15m openshift-controller-manager 4.18.9 True False False 15m openshift-samples 4.18.9 True False False 4m45s operator-lifecycle-manager 4.18.9 True False False 15m operator-lifecycle-manager-catalog 4.18.9 True False False 15m operator-lifecycle-manager-packageserver 4.18.9 True False False 15m service-ca 4.18.9 True False False 5m29s storage 4.18.9 True False False 6m5s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.18.9 True False False 5m19s csi-snapshot-controller 4.18.9 True False False 16m dns 4.18.9 True False False 5m55s image-registry 4.18.9 True False False 5m50s ingress 4.18.9 True False False 5m33s insights 4.18.9 True False False 6m30s kube-apiserver 4.18.9 True False False 16m kube-controller-manager 4.18.9 True False False 16m kube-scheduler 4.18.9 True False False 16m kube-storage-version-migrator 4.18.9 True False False 6m25s monitoring 4.18.9 True False False 4m38s network 4.18.9 True False False 15m node-tuning 4.18.9 True False False 5m51s openshift-apiserver 4.18.9 True False False 16m openshift-controller-manager 4.18.9 True False False 16m openshift-samples 4.18.9 True False False 5m45s operator-lifecycle-manager 4.18.9 True False False 16m operator-lifecycle-manager-catalog 4.18.9 True False False 16m operator-lifecycle-manager-packageserver 4.18.9 True False False 16m service-ca 4.18.9 True False False 6m29s storage 4.18.9 True False False 7m5s Waiting for cluster to be reported as healthy... Trying again in 60s healthy cluster to be reported as healthy finished!