INFO: Log in to your Red Hat account... INFO: Configure AWS Credentials... WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.60). WARN: It is recommended that you update to the latest version. INFO: Logged in as 'rhtap-shared' on 'https://api.openshift.com' INFO: Create ROSA with HCP cluster... WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.60). WARN: It is recommended that you update to the latest version. INFO: Creating cluster 'kx-fbcaefc077' INFO: To view a list of clusters and their status, run 'rosa list clusters' INFO: Cluster 'kx-fbcaefc077' has been created. INFO: Once the cluster is installed you will need to add an Identity Provider before you can login into the cluster. See 'rosa create idp --help' for more information. Name: kx-fbcaefc077 Domain Prefix: kx-fbcaefc077 Display Name: kx-fbcaefc077 ID: 2oc07i3pur94q032j51t95k1pnojdp8l External ID: c09d13f5-5362-4afa-b7d8-62ed5eb0aad7 Control Plane: ROSA Service Hosted OpenShift Version: 4.19.9 Channel Group: stable DNS: Not ready AWS Account: 381492310364 AWS Billing Account: 381492310364 API URL: Console URL: Region: us-east-1 Availability: - Control Plane: MultiAZ - Data Plane: MultiAZ Nodes: - Compute (desired): 3 - Compute (current): 0 Network: - Type: OVNKubernetes - Service CIDR: 172.30.0.0/16 - Machine CIDR: 10.0.0.0/16 - Pod CIDR: 10.128.0.0/14 - Host Prefix: /23 - Subnets: subnet-0208a6297964e4fe1, subnet-0c161c939f7025e15, subnet-023e5c7b3016ed194, subnet-02dbd8abbf884d77f, subnet-0360c2d20442c5ba5, subnet-0aad9c992e402a91a EC2 Metadata Http Tokens: optional Role (STS) ARN: arn:aws:iam::381492310364:role/rhads-hcp-HCP-ROSA-Installer-Role Support Role ARN: arn:aws:iam::381492310364:role/rhads-hcp-HCP-ROSA-Support-Role Instance IAM Roles: - Worker: arn:aws:iam::381492310364:role/rhads-hcp-HCP-ROSA-Worker-Role Operator IAM Roles: - arn:aws:iam::381492310364:role/rhads-hcp-openshift-image-registry-installer-cloud-credentials - arn:aws:iam::381492310364:role/rhads-hcp-openshift-ingress-operator-cloud-credentials - arn:aws:iam::381492310364:role/rhads-hcp-openshift-cluster-csi-drivers-ebs-cloud-credentials - arn:aws:iam::381492310364:role/rhads-hcp-openshift-cloud-network-config-controller-cloud-creden - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-kube-controller-manager - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-capa-controller-manager - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-control-plane-operator - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-kms-provider Managed Policies: Yes State: waiting (Waiting for user action) Private: No Delete Protection: Disabled Created: Feb 9 2026 21:29:51 UTC Details Page: https://console.redhat.com/openshift/details/s/39RxGs4sbnvug7AuVHoDcWuJBN0 OIDC Endpoint URL: https://oidc.op1.openshiftapps.com/2jtsga3i2etnl697l7bk5i1kmbm4a95j (Managed) Etcd Encryption: Disabled Audit Log Forwarding: Disabled External Authentication: Disabled Zero Egress: Disabled INFO: Preparing to create operator roles. INFO: Operator Roles already exists INFO: Preparing to create OIDC Provider. INFO: OIDC provider already exists INFO: To determine when your cluster is Ready, run 'rosa describe cluster -c kx-fbcaefc077'. INFO: To watch your cluster installation logs, run 'rosa logs install -c kx-fbcaefc077 --watch'. INFO: Track the progress of the cluster creation... WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.60). WARN: It is recommended that you update to the latest version. W: Region flag will be removed from this command in future versions INFO: Cluster 'kx-fbcaefc077' is in waiting state waiting for installation to begin. Logs will show up within 5 minutes 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-fbcaefc077 Version 2026-02-09 21:33:47 +0000 UTC certificates cluster-api-cert Issuing certificate as Secret does not exist 2026-02-09 21:33:47 +0000 UTC certificates cluster-api-cert Issuing certificate as Secret does not exist 2026-02-09 21:33:47 +0000 UTC hostedclusters kx-fbcaefc077 ValidAWSIdentityProvider StatusUnknown 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Ignition server deployment not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is supported by operator configuration 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Release image is valid 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 configuration is invalid: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 ValidConfiguration condition is false: NamedCertificates get secret: Invalid value: "cluster-api-cert": Secret "cluster-api-cert" not found 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-fbcaefc077 Version 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Release image is valid 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Waiting for hosted control plane kubeconfig to be created 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Ignition server deployment not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is supported by operator configuration 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is at expected version 2026-02-09 21:35:20 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Required platform credentials are found 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 OIDC configuration is valid 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation completed successfully 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 Waiting for etcd to reach quorum 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 AWS KMS is not configured 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 Kube APIServer deployment not found 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 capi-provider deployment has 1 unavailable replicas 2026-02-09 21:35:30 +0000 UTC hostedclusters kx-fbcaefc077 lookup api.kx-fbcaefc077.ptuv.p3.openshiftapps.com on 172.30.0.10:53: no such host 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:35:58 +0000 UTC hostedclusters kx-fbcaefc077 WebIdentityErr 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-fbcaefc077 Version 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Release image is valid 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 APIServer external route not admitted 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Ignition server deployment not found 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is supported by operator configuration 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is at expected version 2026-02-09 21:35:20 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Required platform credentials are found 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 OIDC configuration is valid 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation completed successfully 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 AWS KMS is not configured 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 [capi-provider deployment has 2 unavailable replicas, kube-controller-manager deployment has 1 unavailable replicas, openshift-apiserver deployment has 3 unavailable replicas] 2026-02-09 21:35:30 +0000 UTC hostedclusters kx-fbcaefc077 lookup api.kx-fbcaefc077.ptuv.p3.openshiftapps.com on 172.30.0.10:53: no such host 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:36:18 +0000 UTC hostedclusters kx-fbcaefc077 EtcdAvailable QuorumAvailable 2026-02-09 21:36:55 +0000 UTC hostedclusters kx-fbcaefc077 Kube APIServer deployment is available 2026-02-09 21:36:59 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:37:13 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:37:18 +0000 UTC hostedclusters kx-fbcaefc077 Ignition server deployment is available 2026-02-09 21:37:41 +0000 UTC hostedclusters kx-fbcaefc077 lookup api.kx-fbcaefc077.ptuv.p3.openshiftapps.com on 172.30.0.10:53: no such host 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 Payload loaded version="4.19.9" image="quay.io/openshift-release-dev/ocp-release@sha256:fda39a9c5701bf35da74263177d8976d4bd9205e69b9a9d5834389f71005d51a" architecture="Multi" 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 ClusterVersionAvailable FromClusterVersion 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 Working towards 4.19.9: 26 of 629 done (4% complete) 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 Condition not found in the CVO. 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 ClusterVersionSucceeding FromClusterVersion 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-fbcaefc077 Version 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Get "https://a470f5bad55574d93ad726eeb4713b4a-48f82dd3e3d9eb1c.elb.us-east-1.amazonaws.com:443/healthz": dial tcp: lookup a470f5bad55574d93ad726eeb4713b4a-48f82dd3e3d9eb1c.elb.us-east-1.amazonaws.com on 172.30.0.10:53: no such host 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is at expected version 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is supported by operator configuration 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Release image is valid 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:35:20 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Required platform credentials are found 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 OIDC configuration is valid 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation completed successfully 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 AWS KMS is not configured 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 [capi-provider deployment has 1 unavailable replicas, cloud-credential-operator deployment has 1 unavailable replicas, cluster-network-operator deployment has 1 unavailable replicas, kube-controller-manager deployment has 1 unavailable replicas, oauth-openshift deployment has 2 unavailable replicas, router deployment has 1 unavailable replicas] 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:36:18 +0000 UTC hostedclusters kx-fbcaefc077 EtcdAvailable QuorumAvailable 2026-02-09 21:36:55 +0000 UTC hostedclusters kx-fbcaefc077 Kube APIServer deployment is available 2026-02-09 21:36:59 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:37:13 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:37:18 +0000 UTC hostedclusters kx-fbcaefc077 Ignition server deployment is available 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 Payload loaded version="4.19.9" image="quay.io/openshift-release-dev/ocp-release@sha256:fda39a9c5701bf35da74263177d8976d4bd9205e69b9a9d5834389f71005d51a" architecture="Multi" 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 ClusterVersionAvailable FromClusterVersion 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 Unable to apply 4.19.9: some cluster operators are not available 2026-02-09 21:37:49 +0000 UTC hostedclusters kx-fbcaefc077 An update is already in progress and the details are in the Progressing condition 2026-02-09 21:38:07 +0000 UTC hostedclusters kx-fbcaefc077 lookup api.kx-fbcaefc077.ptuv.p3.openshiftapps.com on 172.30.0.10:53: no such host 2026-02-09 21:38:12 +0000 UTC hostedclusters kx-fbcaefc077 Cluster operators console, dns, image-registry, ingress, insights, kube-storage-version-migrator, monitoring, network, node-tuning, openshift-samples, service-ca, storage are not available 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-fbcaefc077 Version 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is at expected version 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 HostedCluster is supported by operator configuration 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation active on resource 2026-02-09 21:33:49 +0000 UTC hostedclusters kx-fbcaefc077 Release image is valid 2026-02-09 21:35:20 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Required platform credentials are found 2026-02-09 21:35:21 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 Reconciliation completed successfully 2026-02-09 21:35:23 +0000 UTC hostedclusters kx-fbcaefc077 OIDC configuration is valid 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 AWS KMS is not configured 2026-02-09 21:35:29 +0000 UTC hostedclusters kx-fbcaefc077 Configuration passes validation 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:35:50 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:36:18 +0000 UTC hostedclusters kx-fbcaefc077 EtcdAvailable QuorumAvailable 2026-02-09 21:36:55 +0000 UTC hostedclusters kx-fbcaefc077 Kube APIServer deployment is available 2026-02-09 21:36:59 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:37:13 +0000 UTC hostedclusters kx-fbcaefc077 All is well 2026-02-09 21:37:18 +0000 UTC hostedclusters kx-fbcaefc077 Ignition server deployment is available 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 Payload loaded version="4.19.9" image="quay.io/openshift-release-dev/ocp-release@sha256:fda39a9c5701bf35da74263177d8976d4bd9205e69b9a9d5834389f71005d51a" architecture="Multi" 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 ClusterVersionAvailable FromClusterVersion 2026-02-09 21:37:42 +0000 UTC hostedclusters kx-fbcaefc077 Unable to apply 4.19.9: some cluster operators are not available 2026-02-09 21:37:49 +0000 UTC hostedclusters kx-fbcaefc077 An update is already in progress and the details are in the Progressing condition 2026-02-09 21:38:12 +0000 UTC hostedclusters kx-fbcaefc077 Cluster operators console, dns, image-registry, ingress, insights, kube-storage-version-migrator, monitoring, node-tuning, openshift-samples, service-ca, storage are not available 2026-02-09 21:38:38 +0000 UTC hostedclusters kx-fbcaefc077 The hosted cluster is not degraded 2026-02-09 21:38:39 +0000 UTC hostedclusters kx-fbcaefc077 The hosted control plane is available INFO: Cluster 'kx-fbcaefc077' is now ready INFO: ROSA with HCP cluster is ready, create a cluster admin account for accessing the cluster WARN: The current version (1.2.59) is not up to date with latest rosa cli released version (1.2.60). WARN: It is recommended that you update to the latest version. INFO: Storing login command... INFO: Check if it's able to login to OCP cluster... Retried 1 times... INFO: Check if apiserver is ready... Waiting for cluster operators to be accessible for 2m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 5m12s dns 4.19.9 False False True 5m12s DNS "default" is unavailable. image-registry False True True 5m1s Available: The deployment does not have available replicas... ingress False True True 4m53s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 5m4s kube-controller-manager 4.19.9 True False False 5m4s kube-scheduler 4.19.9 True False False 5m4s kube-storage-version-migrator monitoring network 4.19.9 True True False 4m37s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 5m8s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.19.9 True False False 5m4s openshift-controller-manager 4.19.9 True False False 5m4s openshift-samples operator-lifecycle-manager 4.19.9 True False False 5m5s operator-lifecycle-manager-catalog 4.19.9 True False False 5m5s operator-lifecycle-manager-packageserver 4.19.9 True False False 5m3s service-ca storage 4.19.9 False False False 5m3s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service cluster operators to be accessible finished! [INFO] Cluster operators are accessible. Waiting for cluster to be reported as healthy for 60m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 5m12s dns 4.19.9 False False True 5m12s DNS "default" is unavailable. image-registry False True True 5m1s Available: The deployment does not have available replicas... ingress False True True 4m53s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 5m4s kube-controller-manager 4.19.9 True False False 5m4s kube-scheduler 4.19.9 True False False 5m4s kube-storage-version-migrator monitoring network 4.19.9 True True False 4m37s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 5m8s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.19.9 True False False 5m4s openshift-controller-manager 4.19.9 True False False 5m4s openshift-samples operator-lifecycle-manager 4.19.9 True False False 5m5s operator-lifecycle-manager-catalog 4.19.9 True False False 5m5s operator-lifecycle-manager-packageserver 4.19.9 True False False 5m3s service-ca storage 4.19.9 False False False 5m3s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 6m13s dns 4.19.9 False False True 6m13s DNS "default" is unavailable. image-registry False True True 6m2s Available: The deployment does not have available replicas... ingress False True True 5m54s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 6m5s kube-controller-manager 4.19.9 True False False 6m5s kube-scheduler 4.19.9 True False False 6m5s kube-storage-version-migrator monitoring network 4.19.9 True True False 5m38s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 6m9s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.19.9 True False False 6m5s openshift-controller-manager 4.19.9 True False False 6m5s openshift-samples operator-lifecycle-manager 4.19.9 True False False 6m6s operator-lifecycle-manager-catalog 4.19.9 True False False 6m6s operator-lifecycle-manager-packageserver 4.19.9 True False False 6m4s service-ca storage 4.19.9 False False False 6m4s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 7m13s dns 4.19.9 False False True 7m13s DNS "default" is unavailable. image-registry False True True 7m2s Available: The deployment does not have available replicas... ingress False True True 6m54s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 7m5s kube-controller-manager 4.19.9 True False False 7m5s kube-scheduler 4.19.9 True False False 7m5s kube-storage-version-migrator monitoring network 4.19.9 True True False 6m38s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 7m9s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.19.9 True False False 7m5s openshift-controller-manager 4.19.9 True False False 7m5s openshift-samples operator-lifecycle-manager 4.19.9 True False False 7m6s operator-lifecycle-manager-catalog 4.19.9 True False False 7m6s operator-lifecycle-manager-packageserver 4.19.9 True False False 7m4s service-ca storage 4.19.9 False False False 7m4s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 8m13s dns 4.19.9 False False True 8m13s DNS "default" is unavailable. image-registry False True True 8m2s Available: The deployment does not have available replicas... ingress False True True 7m54s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 8m5s kube-controller-manager 4.19.9 True False False 8m5s kube-scheduler 4.19.9 True False False 8m5s kube-storage-version-migrator monitoring network 4.19.9 True True False 7m38s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 8m9s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.19.9 True False False 8m5s openshift-controller-manager 4.19.9 True False False 8m5s openshift-samples operator-lifecycle-manager 4.19.9 True False False 8m6s operator-lifecycle-manager-catalog 4.19.9 True False False 8m6s operator-lifecycle-manager-packageserver 4.19.9 True False False 8m4s service-ca storage 4.19.9 False False False 8m4s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 9m13s dns 4.19.9 False False True 9m13s DNS "default" is unavailable. image-registry False True True 9m2s Available: The deployment does not have available replicas... ingress False True True 8m54s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 9m5s kube-controller-manager 4.19.9 True False False 9m5s kube-scheduler 4.19.9 True False False 9m5s kube-storage-version-migrator monitoring network 4.19.9 True True False 8m38s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 9m9s DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.19.9 True False False 9m5s openshift-controller-manager 4.19.9 True False False 9m5s openshift-samples operator-lifecycle-manager 4.19.9 True False False 9m6s operator-lifecycle-manager-catalog 4.19.9 True False False 9m6s operator-lifecycle-manager-packageserver 4.19.9 True False False 9m4s service-ca storage 4.19.9 False False False 9m4s AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 10m dns 4.19.9 False False True 10m DNS "default" is unavailable. image-registry False True True 10m Available: The deployment does not have available replicas... ingress False True True 9m55s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 10m kube-controller-manager 4.19.9 True False False 10m kube-scheduler 4.19.9 True False False 10m kube-storage-version-migrator monitoring network 4.19.9 True True False 9m39s DaemonSet "/openshift-network-operator/iptables-alerter" is waiting for other operators to become ready... node-tuning False True False 10m DaemonSet "tuned" has no available Pod(s) openshift-apiserver 4.19.9 True False False 10m openshift-controller-manager 4.19.9 True False False 10m openshift-samples operator-lifecycle-manager 4.19.9 True False False 10m operator-lifecycle-manager-catalog 4.19.9 True False False 10m operator-lifecycle-manager-packageserver 4.19.9 True False False 10m service-ca storage 4.19.9 False False False 10m AWSEBSCSIDriverOperatorCRAvailable: AWSEBSDriverNodeServiceControllerAvailable: Waiting for the DaemonSet to deploy the CSI Node Service Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 11m dns 4.19.9 False False True 11m DNS "default" is unavailable. image-registry False True True 11m Available: The deployment does not have available replicas... ingress False True True 10m The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 11m kube-controller-manager 4.19.9 True False False 11m kube-scheduler 4.19.9 True False False 11m kube-storage-version-migrator monitoring network 4.19.9 True True False 10m DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.19.9 True False False 36s openshift-apiserver 4.19.9 True False False 11m openshift-controller-manager 4.19.9 True False False 11m openshift-samples operator-lifecycle-manager 4.19.9 True False False 11m operator-lifecycle-manager-catalog 4.19.9 True False False 11m operator-lifecycle-manager-packageserver 4.19.9 True False False 11m service-ca storage 4.19.9 True False False 23s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 12m dns 4.19.9 False True True 12m DNS "default" is unavailable. image-registry False True True 12m Available: The deployment does not have available replicas... ingress False True True 11m The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 12m kube-controller-manager 4.19.9 True False False 12m kube-scheduler 4.19.9 True False False 12m kube-storage-version-migrator monitoring network 4.19.9 True True False 11m DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.19.9 True False False 96s openshift-apiserver 4.19.9 True False False 12m openshift-controller-manager 4.19.9 True False False 12m openshift-samples operator-lifecycle-manager 4.19.9 True False False 12m operator-lifecycle-manager-catalog 4.19.9 True False False 12m operator-lifecycle-manager-packageserver 4.19.9 True False False 12m service-ca storage 4.19.9 True False False 83s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 13m dns 4.19.9 False True True 13m DNS "default" is unavailable. image-registry False True True 13m Available: The deployment does not have available replicas... ingress False True True 12m The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 13m kube-controller-manager 4.19.9 True False False 13m kube-scheduler 4.19.9 True False False 13m kube-storage-version-migrator monitoring network 4.19.9 True True False 12m DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.19.9 True False False 2m36s openshift-apiserver 4.19.9 True False False 13m openshift-controller-manager 4.19.9 True False False 13m openshift-samples operator-lifecycle-manager 4.19.9 True False False 13m operator-lifecycle-manager-catalog 4.19.9 True False False 13m operator-lifecycle-manager-packageserver 4.19.9 True False False 13m service-ca storage 4.19.9 True False False 2m23s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 14m dns 4.19.9 False True True 14m DNS "default" is unavailable. image-registry False True True 14m Available: The deployment does not have available replicas... ingress False True True 13m The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights 4.19.9 True False False 31s kube-apiserver 4.19.9 True False False 14m kube-controller-manager 4.19.9 True False False 14m kube-scheduler 4.19.9 True False False 14m kube-storage-version-migrator 4.19.9 True False False 29s monitoring Unknown True Unknown 1s Rolling out the stack. network 4.19.9 True True False 13m DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready node-tuning 4.19.9 True False False 3m36s openshift-apiserver 4.19.9 True False False 14m openshift-controller-manager 4.19.9 True False False 14m openshift-samples operator-lifecycle-manager 4.19.9 True False False 14m operator-lifecycle-manager-catalog 4.19.9 True False False 14m operator-lifecycle-manager-packageserver 4.19.9 True False False 14m service-ca 4.19.9 True False False 28s storage 4.19.9 True False False 3m23s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.19.9 False True False 40s DeploymentAvailable: 0 replicas available for console deployment csi-snapshot-controller 4.19.9 True False False 15m dns 4.19.9 False True True 15m DNS "default" is unavailable. image-registry False True True 15m Available: The deployment does not have available replicas... ingress 4.19.9 True False True 33s The "default" ingress controller reports Degraded=True: DegradedConditions: One or more other status conditions indicate a degraded state: CanaryChecksSucceeding=Unknown (CanaryRouteNotAdmitted: Canary route is not admitted by the default ingress controller). insights 4.19.9 True False False 92s kube-apiserver 4.19.9 True False False 15m kube-controller-manager 4.19.9 True False False 15m kube-scheduler 4.19.9 True False False 15m kube-storage-version-migrator 4.19.9 True False False 90s monitoring Unknown True Unknown 62s Rolling out the stack. network 4.19.9 True False False 14m node-tuning 4.19.9 True False False 4m37s openshift-apiserver 4.19.9 True False False 15m openshift-controller-manager 4.19.9 True False False 15m openshift-samples operator-lifecycle-manager 4.19.9 True False False 15m operator-lifecycle-manager-catalog 4.19.9 True False False 15m operator-lifecycle-manager-packageserver 4.19.9 True False False 15m service-ca 4.19.9 True False False 89s storage 4.19.9 True False False 4m24s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.19.9 True True False 40s SyncLoopRefreshProgressing: working toward version 4.19.9, 1 replicas available csi-snapshot-controller 4.19.9 True False False 16m dns 4.19.9 True False False 34s image-registry 4.19.9 True False False 38s ingress 4.19.9 True False False 93s insights 4.19.9 True False False 2m32s kube-apiserver 4.19.9 True False False 16m kube-controller-manager 4.19.9 True False False 16m kube-scheduler 4.19.9 True False False 16m kube-storage-version-migrator 4.19.9 True False False 2m30s monitoring Unknown True Unknown 2m2s Rolling out the stack. network 4.19.9 True False False 15m node-tuning 4.19.9 True False False 5m37s openshift-apiserver 4.19.9 True False False 16m openshift-controller-manager 4.19.9 True False False 16m openshift-samples 4.19.9 True False False 26s operator-lifecycle-manager 4.19.9 True False False 16m operator-lifecycle-manager-catalog 4.19.9 True False False 16m operator-lifecycle-manager-packageserver 4.19.9 True False False 16m service-ca 4.19.9 True False False 2m29s storage 4.19.9 True False False 5m24s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.19.9 True False False 100s csi-snapshot-controller 4.19.9 True False False 17m dns 4.19.9 True False False 94s image-registry 4.19.9 True False False 98s ingress 4.19.9 True False False 2m33s insights 4.19.9 True False False 3m32s kube-apiserver 4.19.9 True False False 17m kube-controller-manager 4.19.9 True False False 17m kube-scheduler 4.19.9 True False False 17m kube-storage-version-migrator 4.19.9 True False False 3m30s monitoring 4.19.9 True False False 2s network 4.19.9 True False False 16m node-tuning 4.19.9 True False False 6m37s openshift-apiserver 4.19.9 True False False 17m openshift-controller-manager 4.19.9 True False False 17m openshift-samples 4.19.9 True False False 86s operator-lifecycle-manager 4.19.9 True False False 17m operator-lifecycle-manager-catalog 4.19.9 True False False 17m operator-lifecycle-manager-packageserver 4.19.9 True False False 17m service-ca 4.19.9 True False False 3m29s storage 4.19.9 True False False 6m24s Waiting for cluster to be reported as healthy... Trying again in 60s healthy cluster to be reported as healthy finished!