INFO: Log in to your Red Hat account... INFO: Configure AWS Credentials... WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. INFO: Logged in as 'konflux-ci-418295695583' on 'https://api.openshift.com' INFO: Create ROSA with HCP cluster... WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. INFO: Creating cluster 'kx-ea7722a5ec' INFO: To view a list of clusters and their status, run 'rosa list clusters' INFO: Cluster 'kx-ea7722a5ec' has been created. INFO: Once the cluster is installed you will need to add an Identity Provider before you can login into the cluster. See 'rosa create idp --help' for more information. Name: kx-ea7722a5ec Domain Prefix: kx-ea7722a5ec Display Name: kx-ea7722a5ec ID: 2n9qd0idg9rdgdc24d8ts3o1pt90harr External ID: 597eb623-657c-424e-b579-30365e2230e1 Control Plane: ROSA Service Hosted OpenShift Version: 4.17.45 Channel Group: stable DNS: Not ready AWS Account: 418295695583 AWS Billing Account: 418295695583 API URL: Console URL: Region: us-east-1 Availability: - Control Plane: MultiAZ - Data Plane: MultiAZ Nodes: - Compute (desired): 3 - Compute (current): 0 Network: - Type: OVNKubernetes - Service CIDR: 172.30.0.0/16 - Machine CIDR: 10.0.0.0/16 - Pod CIDR: 10.128.0.0/14 - Host Prefix: /23 - Subnets: subnet-001fc23497e4a3aeb, subnet-00ffba09365a434bc, subnet-074cbf0329958194a, subnet-0689cd077699b690a, subnet-0f9f09e46f74cde64, subnet-033f48892ddbaa09d EC2 Metadata Http Tokens: optional Role (STS) ARN: arn:aws:iam::418295695583:role/ManagedOpenShift-HCP-ROSA-Installer-Role Support Role ARN: arn:aws:iam::418295695583:role/ManagedOpenShift-HCP-ROSA-Support-Role Instance IAM Roles: - Worker: arn:aws:iam::418295695583:role/ManagedOpenShift-HCP-ROSA-Worker-Role Operator IAM Roles: - arn:aws:iam::418295695583:role/rosa-hcp-openshift-cluster-csi-drivers-ebs-cloud-credentials - arn:aws:iam::418295695583:role/rosa-hcp-openshift-cloud-network-config-controller-cloud-credent - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-kube-controller-manager - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-capa-controller-manager - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-control-plane-operator - arn:aws:iam::418295695583:role/rosa-hcp-kube-system-kms-provider - arn:aws:iam::418295695583:role/rosa-hcp-openshift-image-registry-installer-cloud-credentials - arn:aws:iam::418295695583:role/rosa-hcp-openshift-ingress-operator-cloud-credentials Managed Policies: Yes State: waiting (Waiting for user action) Private: No Delete Protection: Disabled Created: Dec 20 2025 00:57:41 UTC [DEPRECATED] User Workload Monitoring: Enabled Details Page: https://console.redhat.com/openshift/details/s/375U7uijaGZAN6HdgOJOIvNlXTK OIDC Endpoint URL: https://oidc.op1.openshiftapps.com/2du11g36ejmoo4624pofphlrgf4r9tf3 (Managed) Etcd Encryption: Disabled Audit Log Forwarding: Disabled External Authentication: Disabled Zero Egress: Disabled INFO: Preparing to create operator roles. INFO: Operator Roles already exists INFO: Preparing to create OIDC Provider. INFO: OIDC provider already exists INFO: To determine when your cluster is Ready, run 'rosa describe cluster -c kx-ea7722a5ec'. INFO: To watch your cluster installation logs, run 'rosa logs install -c kx-ea7722a5ec --watch'. INFO: Track the progress of the cluster creation... WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. W: Region flag will be removed from this command in future versions INFO: Cluster 'kx-ea7722a5ec' is in waiting state waiting for installation to begin. Logs will show up within 5 minutes 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-ea7722a5ec Version 2025-12-20 01:01:01 +0000 UTC hostedclusters kx-ea7722a5ec ValidAWSIdentityProvider StatusUnknown 2025-12-20 01:01:02 +0000 UTC certificates cluster-api-cert Issuing certificate as Secret does not exist 2025-12-20 01:01:02 +0000 UTC certificates cluster-api-cert Issuing certificate as Secret does not exist 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Ignition server deployment not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is supported by operator configuration 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Release image is valid 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation active on resource 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:10 +0000 UTC hostedclusters kx-ea7722a5ec configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2025-12-20 01:01:10 +0000 UTC hostedclusters kx-ea7722a5ec ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-ea7722a5ec Version 2025-12-20 01:01:01 +0000 UTC hostedclusters kx-ea7722a5ec ValidAWSIdentityProvider StatusUnknown 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Ignition server deployment not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation active on resource 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is supported by operator configuration 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Release image is valid 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is not found 2025-12-20 01:01:10 +0000 UTC hostedclusters kx-ea7722a5ec configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2025-12-20 01:01:10 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is at expected version 2025-12-20 01:02:30 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2025-12-20 01:02:32 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:33 +0000 UTC hostedclusters kx-ea7722a5ec Required platform credentials are found 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec AWS KMS is not configured 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec router load balancer is not provisioned; 7s since creation.; router load balancer is not provisioned; 7s since creation. 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec EtcdAvailable StatefulSetNotFound 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec Kube APIServer deployment not found 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec capi-provider deployment has 1 unavailable replicas 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec lookup api.kx-ea7722a5ec.ojdq.p3.openshiftapps.com on 172.30.0.10:53: no such host 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec OIDC configuration is valid 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation completed successfully 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:03:05 +0000 UTC hostedclusters kx-ea7722a5ec WebIdentityErr 2025-12-20 01:03:22 +0000 UTC hostedclusters kx-ea7722a5ec EtcdAvailable QuorumAvailable 2025-12-20 01:03:47 +0000 UTC hostedclusters kx-ea7722a5ec Kube APIServer deployment is available 2025-12-20 01:04:05 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:09 +0000 UTC hostedclusters kx-ea7722a5ec Ignition server deployment is available 2025-12-20 01:04:18 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec ClusterVersionSucceeding FromClusterVersion 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Payload loaded version="4.17.45" image="quay.io/openshift-release-dev/ocp-release@sha256:bcadd0f1bcc3f12859c9159d7341dd359a0e5854adfad7712b3ea1b0829bd585" architecture="Multi" 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec ClusterVersionAvailable FromClusterVersion 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Working towards 4.17.45: 377 of 623 done (60% complete) 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-ea7722a5ec Version 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation active on resource 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Get "https://aa112fce8b4fc4972bd257efe6fc25da-904f6781e29ada82.elb.us-east-1.amazonaws.com:443/healthz": dial tcp: lookup aa112fce8b4fc4972bd257efe6fc25da-904f6781e29ada82.elb.us-east-1.amazonaws.com on 172.30.0.10:53: no such host 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Release image is valid 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is supported by operator configuration 2025-12-20 01:01:10 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is at expected version 2025-12-20 01:02:30 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2025-12-20 01:02:32 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:33 +0000 UTC hostedclusters kx-ea7722a5ec Required platform credentials are found 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec router deployment has 1 unavailable replicas 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec AWS KMS is not configured 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec lookup api.kx-ea7722a5ec.ojdq.p3.openshiftapps.com on 172.30.0.10:53: no such host 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec OIDC configuration is valid 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation completed successfully 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:03:22 +0000 UTC hostedclusters kx-ea7722a5ec EtcdAvailable QuorumAvailable 2025-12-20 01:03:47 +0000 UTC hostedclusters kx-ea7722a5ec Kube APIServer deployment is available 2025-12-20 01:04:05 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:09 +0000 UTC hostedclusters kx-ea7722a5ec Ignition server deployment is available 2025-12-20 01:04:18 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Payload loaded version="4.17.45" image="quay.io/openshift-release-dev/ocp-release@sha256:bcadd0f1bcc3f12859c9159d7341dd359a0e5854adfad7712b3ea1b0829bd585" architecture="Multi" 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec ClusterVersionAvailable FromClusterVersion 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Unable to apply 4.17.45: an unknown error has occurred: MultipleErrors 2025-12-20 01:05:03 +0000 UTC hostedclusters kx-ea7722a5ec Multiple errors are preventing progress: * Cluster operators console, dns, image-registry, ingress, insights, kube-storage-version-migrator, monitoring, network, node-tuning, openshift-samples, service-ca are not available * Could not update imagestream "openshift/driver-toolkit" (440 of 623): resource may have been deleted * Could not update operatorgroup "openshift-monitoring/openshift-cluster-monitoring" (552 of 623): resource may have been deleted * Could not update role "openshift-authentication/prometheus-k8s" (539 of 623): resource may have been deleted * Could not update role "openshift-console-operator/prometheus-k8s" (581 of 623): resource may have been deleted * Could not update role "openshift-console/prometheus-k8s" (585 of 623): resource may have been deleted * Could not update role "openshift-ingress-operator/prometheus-k8s" (592 of 623): resource may have been deleted * Could not update role "openshift-kube-apiserver-operator/prometheus-k8s" (596 of 623): resource may have been deleted 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-ea7722a5ec Version 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation active on resource 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Release image is valid 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is supported by operator configuration 2025-12-20 01:01:10 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is at expected version 2025-12-20 01:02:30 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2025-12-20 01:02:32 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:33 +0000 UTC hostedclusters kx-ea7722a5ec Required platform credentials are found 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec lookup api.kx-ea7722a5ec.ojdq.p3.openshiftapps.com on 172.30.0.10:53: no such host 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec AWS KMS is not configured 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation completed successfully 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec OIDC configuration is valid 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:03:22 +0000 UTC hostedclusters kx-ea7722a5ec EtcdAvailable QuorumAvailable 2025-12-20 01:03:47 +0000 UTC hostedclusters kx-ea7722a5ec Kube APIServer deployment is available 2025-12-20 01:04:05 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:09 +0000 UTC hostedclusters kx-ea7722a5ec Ignition server deployment is available 2025-12-20 01:04:18 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Payload loaded version="4.17.45" image="quay.io/openshift-release-dev/ocp-release@sha256:bcadd0f1bcc3f12859c9159d7341dd359a0e5854adfad7712b3ea1b0829bd585" architecture="Multi" 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec ClusterVersionAvailable FromClusterVersion 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Unable to apply 4.17.45: some cluster operators are not available 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:05:03 +0000 UTC hostedclusters kx-ea7722a5ec Cluster operators console, dns, image-registry, ingress, insights, kube-storage-version-migrator, monitoring, node-tuning, openshift-samples, service-ca, storage are not available 2025-12-20 01:05:10 +0000 UTC hostedclusters kx-ea7722a5ec The hosted cluster is not degraded 2025-12-20 01:05:39 +0000 UTC hostedclusters kx-ea7722a5ec Get "https://aa112fce8b4fc4972bd257efe6fc25da-904f6781e29ada82.elb.us-east-1.amazonaws.com:443/healthz": dial tcp: lookup aa112fce8b4fc4972bd257efe6fc25da-904f6781e29ada82.elb.us-east-1.amazonaws.com on 172.30.0.10:53: no such host 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-ea7722a5ec Version 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation active on resource 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec Release image is valid 2025-12-20 01:01:09 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is supported by operator configuration 2025-12-20 01:01:10 +0000 UTC hostedclusters kx-ea7722a5ec HostedCluster is at expected version 2025-12-20 01:02:30 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2025-12-20 01:02:32 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:33 +0000 UTC hostedclusters kx-ea7722a5ec Required platform credentials are found 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec Configuration passes validation 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec lookup api.kx-ea7722a5ec.ojdq.p3.openshiftapps.com on 172.30.0.10:53: no such host 2025-12-20 01:02:37 +0000 UTC hostedclusters kx-ea7722a5ec AWS KMS is not configured 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec Reconciliation completed successfully 2025-12-20 01:02:43 +0000 UTC hostedclusters kx-ea7722a5ec OIDC configuration is valid 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:02:57 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:03:22 +0000 UTC hostedclusters kx-ea7722a5ec EtcdAvailable QuorumAvailable 2025-12-20 01:03:47 +0000 UTC hostedclusters kx-ea7722a5ec Kube APIServer deployment is available 2025-12-20 01:04:05 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:09 +0000 UTC hostedclusters kx-ea7722a5ec Ignition server deployment is available 2025-12-20 01:04:18 +0000 UTC hostedclusters kx-ea7722a5ec All is well 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Payload loaded version="4.17.45" image="quay.io/openshift-release-dev/ocp-release@sha256:bcadd0f1bcc3f12859c9159d7341dd359a0e5854adfad7712b3ea1b0829bd585" architecture="Multi" 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec ClusterVersionAvailable FromClusterVersion 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Unable to apply 4.17.45: some cluster operators are not available 2025-12-20 01:04:26 +0000 UTC hostedclusters kx-ea7722a5ec Condition not found in the CVO. 2025-12-20 01:05:03 +0000 UTC hostedclusters kx-ea7722a5ec Cluster operators console, dns, image-registry, ingress, insights, kube-storage-version-migrator, monitoring, node-tuning, openshift-samples, service-ca, storage are not available 2025-12-20 01:05:10 +0000 UTC hostedclusters kx-ea7722a5ec The hosted cluster is not degraded 2025-12-20 01:05:56 +0000 UTC hostedclusters kx-ea7722a5ec The hosted control plane is available INFO: Cluster 'kx-ea7722a5ec' is now ready INFO: ROSA with HCP cluster is ready, create a cluster admin account for accessing the cluster WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. INFO: Storing login command... INFO: Check if it's able to login to OCP cluster... Retried 1 times... INFO: Check if apiserver is ready... Waiting for cluster operators to be accessible for 2m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.17.45 True False False 4m16s dns 4.17.45 False False True 4m17s DNS "default" is unavailable. image-registry False True True 4m4s Available: The deployment does not have available replicas... ingress False True True 4m2s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.17.45 True False False 4m7s kube-controller-manager 4.17.45 True False False 4m7s kube-scheduler 4.17.45 True False False 4m7s kube-storage-version-migrator monitoring network 4.17.45 True True False 3m55s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 4m1s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.17.45 True False False 4m7s openshift-controller-manager 4.17.45 True False False 4m7s openshift-samples operator-lifecycle-manager 4.17.45 True False False 4m9s operator-lifecycle-manager-catalog 4.17.45 True False False 4m8s operator-lifecycle-manager-packageserver 4.17.45 True False False 4m7s service-ca storage 4.17.45 False False False 4m6s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service cluster operators to be accessible finished! [INFO] Cluster operators are accessible. Waiting for cluster to be reported as healthy for 60m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.17.45 True False False 4m17s dns 4.17.45 False False True 4m18s DNS "default" is unavailable. image-registry False True True 4m5s Available: The deployment does not have available replicas... ingress False True True 4m3s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.17.45 True False False 4m8s kube-controller-manager 4.17.45 True False False 4m8s kube-scheduler 4.17.45 True False False 4m8s kube-storage-version-migrator monitoring network 4.17.45 True True False 3m56s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 4m2s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.17.45 True False False 4m8s openshift-controller-manager 4.17.45 True False False 4m8s openshift-samples operator-lifecycle-manager 4.17.45 True False False 4m10s operator-lifecycle-manager-catalog 4.17.45 True False False 4m9s operator-lifecycle-manager-packageserver 4.17.45 True False False 4m8s service-ca storage 4.17.45 False False False 4m7s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.17.45 True False False 5m17s dns 4.17.45 False False True 5m18s DNS "default" is unavailable. image-registry False True True 5m5s Available: The deployment does not have available replicas... ingress False True True 5m3s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.17.45 True False False 5m8s kube-controller-manager 4.17.45 True False False 5m8s kube-scheduler 4.17.45 True False False 5m8s kube-storage-version-migrator monitoring network 4.17.45 True True False 4m56s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 5m2s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.17.45 True False False 5m8s openshift-controller-manager 4.17.45 True False False 5m8s openshift-samples operator-lifecycle-manager 4.17.45 True False False 5m10s operator-lifecycle-manager-catalog 4.17.45 True False False 5m9s operator-lifecycle-manager-packageserver 4.17.45 True False False 5m8s service-ca storage 4.17.45 False False False 5m7s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.17.45 True False False 6m17s dns 4.17.45 False False True 6m18s DNS "default" is unavailable. image-registry False True True 6m5s Available: The deployment does not have available replicas... ingress False True True 6m3s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.17.45 True False False 6m8s kube-controller-manager 4.17.45 True False False 6m8s kube-scheduler 4.17.45 True False False 6m8s kube-storage-version-migrator monitoring network 4.17.45 True True False 5m56s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 6m2s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.17.45 True False False 6m8s openshift-controller-manager 4.17.45 True False False 6m8s openshift-samples operator-lifecycle-manager 4.17.45 True False False 6m10s operator-lifecycle-manager-catalog 4.17.45 True False False 6m9s operator-lifecycle-manager-packageserver 4.17.45 True False False 6m8s service-ca storage 4.17.45 False False False 6m7s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.17.45 True False False 7m17s dns 4.17.45 False True True 7m18s DNS "default" is unavailable. image-registry False True True 7m5s Available: The deployment does not have available replicas... ingress False True True 7m3s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.17.45 True False False 7m8s kube-controller-manager 4.17.45 True False False 7m8s kube-scheduler 4.17.45 True False False 7m8s kube-storage-version-migrator monitoring network 4.17.45 True True False 6m56s DaemonSet "/openshift-ovn-kubernetes/ovnkube-node" is not available (awaiting 3 nodes)... node-tuning False True False 7m2s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.17.45 True False False 7m8s openshift-controller-manager 4.17.45 True False False 7m8s openshift-samples operator-lifecycle-manager 4.17.45 True False False 7m10s operator-lifecycle-manager-catalog 4.17.45 True False False 7m9s operator-lifecycle-manager-packageserver 4.17.45 True False False 7m8s service-ca storage 4.17.45 False True False 7m7s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.17.45 True False False 8m18s dns 4.17.45 False False True 8m19s DNS "default" is unavailable. image-registry False True True 8m6s Available: The deployment does not have available replicas... ingress False True True 8m4s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.17.45 True False False 8m9s kube-controller-manager 4.17.45 True False False 8m9s kube-scheduler 4.17.45 True False False 8m9s kube-storage-version-migrator monitoring network 4.17.45 True True False 7m57s DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.17.45 True False False 58s openshift-apiserver 4.17.45 True False False 8m9s openshift-controller-manager 4.17.45 True False False 8m9s openshift-samples operator-lifecycle-manager 4.17.45 True False False 8m11s operator-lifecycle-manager-catalog 4.17.45 True False False 8m10s operator-lifecycle-manager-packageserver 4.17.45 True False False 8m9s service-ca storage 4.17.45 True False False 48s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.17.45 True False False 9m18s dns 4.17.45 False True True 9m19s DNS "default" is unavailable. image-registry False True True 9m6s Available: The deployment does not have available replicas... ingress False True True 9m4s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.17.45 True False False 9m9s kube-controller-manager 4.17.45 True False False 9m9s kube-scheduler 4.17.45 True False False 9m9s kube-storage-version-migrator monitoring network 4.17.45 True True False 8m57s DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.17.45 True False False 118s openshift-apiserver 4.17.45 True False False 9m9s openshift-controller-manager 4.17.45 True False False 9m9s openshift-samples operator-lifecycle-manager 4.17.45 True False False 9m11s operator-lifecycle-manager-catalog 4.17.45 True False False 9m10s operator-lifecycle-manager-packageserver 4.17.45 True False False 9m9s service-ca storage 4.17.45 True False False 108s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.17.45 Unknown False False 4s csi-snapshot-controller 4.17.45 True False False 10m dns 4.17.45 False True True 10m DNS "default" is unavailable. image-registry False True True 10m Available: The deployment does not have available replicas... ingress False True True 10m The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights 4.17.45 True False False 24s kube-apiserver 4.17.45 True False False 10m kube-controller-manager 4.17.45 True False False 10m kube-scheduler 4.17.45 True False False 10m kube-storage-version-migrator 4.17.45 True False False 21s monitoring network 4.17.45 True True False 9m57s DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.17.45 True False False 2m58s openshift-apiserver 4.17.45 True False False 10m openshift-controller-manager 4.17.45 True False False 10m openshift-samples operator-lifecycle-manager 4.17.45 True False False 10m operator-lifecycle-manager-catalog 4.17.45 True False False 10m operator-lifecycle-manager-packageserver 4.17.45 True False False 10m service-ca 4.17.45 True False False 23s storage 4.17.45 True False False 2m48s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.17.45 False True False 45s DeploymentAvailable: 0 replicas available for console deployment csi-snapshot-controller 4.17.45 True False False 11m dns 4.17.45 False True True 11m DNS "default" is unavailable. image-registry False True True 11m Available: The deployment does not have available replicas... ingress 4.17.45 True False True 25s The "default" ingress controller reports Degraded=True: DegradedConditions: One or more other status conditions indicate a degraded state: CanaryChecksSucceeding=Unknown (CanaryRouteNotAdmitted: Canary route is not admitted by the default ingress controller) insights 4.17.45 True False False 84s kube-apiserver 4.17.45 True False False 11m kube-controller-manager 4.17.45 True False False 11m kube-scheduler 4.17.45 True False False 11m kube-storage-version-migrator 4.17.45 True False False 81s monitoring Unknown True Unknown 54s Rolling out the stack. network 4.17.45 True True False 10m DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready node-tuning 4.17.45 True False False 3m58s openshift-apiserver 4.17.45 True False False 11m openshift-controller-manager 4.17.45 True False False 11m openshift-samples operator-lifecycle-manager 4.17.45 True False False 11m operator-lifecycle-manager-catalog 4.17.45 True False False 11m operator-lifecycle-manager-packageserver 4.17.45 True False False 11m service-ca 4.17.45 True False False 83s storage 4.17.45 True False False 3m48s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.17.45 True True False 5s SyncLoopRefreshProgressing: working toward version 4.17.45, 1 replicas available csi-snapshot-controller 4.17.45 True False False 12m dns 4.17.45 True True True 5s DNS default is degraded image-registry 4.17.45 True False False 7s ingress 4.17.45 True False True 85s The "default" ingress controller reports Degraded=True: DegradedConditions: One or more other status conditions indicate a degraded state: CanaryChecksSucceeding=Unknown (CanaryRouteNotAdmitted: Canary route is not admitted by the default ingress controller) insights 4.17.45 True False False 2m24s kube-apiserver 4.17.45 True False False 12m kube-controller-manager 4.17.45 True False False 12m kube-scheduler 4.17.45 True False False 12m kube-storage-version-migrator 4.17.45 True False False 2m21s monitoring Unknown True Unknown 114s Rolling out the stack. network 4.17.45 True False False 11m node-tuning 4.17.45 True False False 4m58s openshift-apiserver 4.17.45 True False False 12m openshift-controller-manager 4.17.45 True False False 12m openshift-samples False False False 7s SampleUpsertsPending operator-lifecycle-manager 4.17.45 True False False 12m operator-lifecycle-manager-catalog 4.17.45 True False False 12m operator-lifecycle-manager-packageserver 4.17.45 True False False 12m service-ca 4.17.45 True False False 2m23s storage 4.17.45 True False False 4m48s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.17.45 True False False 66s csi-snapshot-controller 4.17.45 True False False 13m dns 4.17.45 True False False 66s image-registry 4.17.45 True False False 28s ingress 4.17.45 True False False 2m26s insights 4.17.45 True False False 3m25s kube-apiserver 4.17.45 True False False 13m kube-controller-manager 4.17.45 True False False 13m kube-scheduler 4.17.45 True False False 13m kube-storage-version-migrator 4.17.45 True False False 3m22s monitoring Unknown True Unknown 2m55s Rolling out the stack. network 4.17.45 True False False 12m node-tuning 4.17.45 True False False 5m59s openshift-apiserver 4.17.45 True False False 13m openshift-controller-manager 4.17.45 True False False 13m openshift-samples 4.17.45 True False False 59s operator-lifecycle-manager 4.17.45 True False False 13m operator-lifecycle-manager-catalog 4.17.45 True False False 13m operator-lifecycle-manager-packageserver 4.17.45 True False False 13m service-ca 4.17.45 True False False 3m24s storage 4.17.45 True False False 5m49s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.17.45 True False False 2m6s csi-snapshot-controller 4.17.45 True False False 14m dns 4.17.45 True False False 2m6s image-registry 4.17.45 True False False 88s ingress 4.17.45 True False False 3m26s insights 4.17.45 True False False 4m25s kube-apiserver 4.17.45 True False False 14m kube-controller-manager 4.17.45 True False False 14m kube-scheduler 4.17.45 True False False 14m kube-storage-version-migrator 4.17.45 True False False 4m22s monitoring Unknown True Unknown 3m55s Rolling out the stack. network 4.17.45 True False False 13m node-tuning 4.17.45 True False False 6m59s openshift-apiserver 4.17.45 True False False 14m openshift-controller-manager 4.17.45 True False False 14m openshift-samples 4.17.45 True False False 119s operator-lifecycle-manager 4.17.45 True False False 14m operator-lifecycle-manager-catalog 4.17.45 True False False 14m operator-lifecycle-manager-packageserver 4.17.45 True False False 14m service-ca 4.17.45 True False False 4m24s storage 4.17.45 True False False 6m49s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.17.45 True True False 3m6s SyncLoopRefreshProgressing: working toward version 4.17.45, 1 replicas available csi-snapshot-controller 4.17.45 True False False 15m dns 4.17.45 True False False 3m6s image-registry 4.17.45 True False False 2m28s ingress 4.17.45 True False False 4m26s insights 4.17.45 True False False 5m25s kube-apiserver 4.17.45 True False False 15m kube-controller-manager 4.17.45 True False False 15m kube-scheduler 4.17.45 True False False 15m kube-storage-version-migrator 4.17.45 True False False 5m22s monitoring 4.17.45 True False False 52s network 4.17.45 True False False 14m node-tuning 4.17.45 True False False 7m59s openshift-apiserver 4.17.45 True False False 15m openshift-controller-manager 4.17.45 True False False 15m openshift-samples 4.17.45 True False False 2m59s operator-lifecycle-manager 4.17.45 True False False 15m operator-lifecycle-manager-catalog 4.17.45 True False False 15m operator-lifecycle-manager-packageserver 4.17.45 True False False 15m service-ca 4.17.45 True False False 5m24s storage 4.17.45 True False False 7m49s Waiting for cluster to be reported as healthy... Trying again in 60s healthy cluster to be reported as healthy finished!