INFO: Log in to your Red Hat account... INFO: Configure AWS Credentials... WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. INFO: Logged in as 'rhtap-shared' on 'https://api.openshift.com' INFO: Create ROSA with HCP cluster... WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. INFO: Creating cluster 'kx-e5a2f55cf9' INFO: To view a list of clusters and their status, run 'rosa list clusters' INFO: Cluster 'kx-e5a2f55cf9' has been created. INFO: Once the cluster is installed you will need to add an Identity Provider before you can login into the cluster. See 'rosa create idp --help' for more information. Name: kx-e5a2f55cf9 Domain Prefix: kx-e5a2f55cf9 Display Name: kx-e5a2f55cf9 ID: 2mdt9tgg0jf5a6avnmeldg184osjiql8 External ID: 08e20760-ec4d-4095-afe3-85bb084d20e4 Control Plane: ROSA Service Hosted OpenShift Version: 4.19.9 Channel Group: stable DNS: Not ready AWS Account: 381492310364 AWS Billing Account: 381492310364 API URL: Console URL: Region: us-east-1 Availability: - Control Plane: MultiAZ - Data Plane: MultiAZ Nodes: - Compute (desired): 3 - Compute (current): 0 Network: - Type: OVNKubernetes - Service CIDR: 172.30.0.0/16 - Machine CIDR: 10.0.0.0/16 - Pod CIDR: 10.128.0.0/14 - Host Prefix: /23 - Subnets: subnet-0208a6297964e4fe1, subnet-0c161c939f7025e15, subnet-023e5c7b3016ed194, subnet-02dbd8abbf884d77f, subnet-0360c2d20442c5ba5, subnet-0aad9c992e402a91a EC2 Metadata Http Tokens: optional Role (STS) ARN: arn:aws:iam::381492310364:role/rhads-hcp-HCP-ROSA-Installer-Role Support Role ARN: arn:aws:iam::381492310364:role/rhads-hcp-HCP-ROSA-Support-Role Instance IAM Roles: - Worker: arn:aws:iam::381492310364:role/rhads-hcp-HCP-ROSA-Worker-Role Operator IAM Roles: - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-capa-controller-manager - arn:aws:iam::381492310364:role/rhads-hcp-openshift-image-registry-installer-cloud-credentials - arn:aws:iam::381492310364:role/rhads-hcp-openshift-ingress-operator-cloud-credentials - arn:aws:iam::381492310364:role/rhads-hcp-openshift-cluster-csi-drivers-ebs-cloud-credentials - arn:aws:iam::381492310364:role/rhads-hcp-openshift-cloud-network-config-controller-cloud-creden - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-control-plane-operator - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-kms-provider - arn:aws:iam::381492310364:role/rhads-hcp-kube-system-kube-controller-manager Managed Policies: Yes State: waiting (Waiting for user action) Private: No Delete Protection: Disabled Created: Nov 7 2025 16:48:57 UTC [DEPRECATED] User Workload Monitoring: Enabled Details Page: https://console.redhat.com/openshift/details/s/359tVPqUZrEwsFMQQyHE6wxd77a OIDC Endpoint URL: https://oidc.op1.openshiftapps.com/2jtsga3i2etnl697l7bk5i1kmbm4a95j (Managed) Etcd Encryption: Disabled Audit Log Forwarding: Disabled External Authentication: Disabled Zero Egress: Disabled INFO: Preparing to create operator roles. INFO: Operator Roles already exists INFO: Preparing to create OIDC Provider. INFO: OIDC provider already exists INFO: To determine when your cluster is Ready, run 'rosa describe cluster -c kx-e5a2f55cf9'. INFO: To watch your cluster installation logs, run 'rosa logs install -c kx-e5a2f55cf9 --watch'. INFO: Track the progress of the cluster creation... WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. W: Region flag will be removed from this command in future versions INFO: Cluster 'kx-e5a2f55cf9' is in waiting state waiting for installation to begin. Logs will show up within 5 minutes 0001-01-01 00:00:00 +0000 UTC hostedclusters kx-e5a2f55cf9 Version 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Release image is valid 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Waiting for Kube APIServer deployment to become available 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Reconciliation active on resource 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 HostedCluster is at expected version 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Ignition server deployment not found 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 HostedCluster is supported by operator configuration 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Condition not found in the CVO. 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Condition not found in the CVO. 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Condition not found in the CVO. 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Condition not found in the CVO. 2025-11-07 17:03:08 +0000 UTC hostedclusters kx-e5a2f55cf9 Condition not found in the CVO. 2025-11-07 17:04:34 +0000 UTC certificates cluster-api-cert Certificate is up to date and has not expired 2025-11-07 17:04:37 +0000 UTC hostedclusters kx-e5a2f55cf9 Configuration passes validation 2025-11-07 17:04:38 +0000 UTC hostedclusters kx-e5a2f55cf9 Required platform credentials are found 2025-11-07 17:04:41 +0000 UTC hostedclusters kx-e5a2f55cf9 AWS KMS is not configured 2025-11-07 17:04:41 +0000 UTC hostedclusters kx-e5a2f55cf9 [capi-provider deployment has 2 unavailable replicas, kube-apiserver deployment has 2 unavailable replicas] 2025-11-07 17:04:41 +0000 UTC hostedclusters kx-e5a2f55cf9 lookup api.kx-e5a2f55cf9.zial.p3.openshiftapps.com on 172.30.0.10:53: no such host 2025-11-07 17:04:41 +0000 UTC hostedclusters kx-e5a2f55cf9 Configuration passes validation 2025-11-07 17:04:41 +0000 UTC hostedclusters kx-e5a2f55cf9 Waiting for Kube APIServer deployment to become available 2025-11-07 17:04:43 +0000 UTC hostedclusters kx-e5a2f55cf9 OIDC configuration is valid 2025-11-07 17:04:43 +0000 UTC hostedclusters kx-e5a2f55cf9 Reconciliation completed successfully 2025-11-07 17:05:05 +0000 UTC hostedclusters kx-e5a2f55cf9 All is well 2025-11-07 17:05:06 +0000 UTC hostedclusters kx-e5a2f55cf9 All is well 2025-11-07 17:05:10 +0000 UTC hostedclusters kx-e5a2f55cf9 WebIdentityErr 2025-11-07 17:05:24 +0000 UTC hostedclusters kx-e5a2f55cf9 EtcdAvailable QuorumAvailable 2025-11-07 17:06:31 +0000 UTC hostedclusters kx-e5a2f55cf9 Kube APIServer deployment is available 2025-11-07 17:07:03 +0000 UTC hostedclusters kx-e5a2f55cf9 Ignition server deployment is available 2025-11-07 17:07:10 +0000 UTC hostedclusters kx-e5a2f55cf9 All is well 2025-11-07 17:07:26 +0000 UTC hostedclusters kx-e5a2f55cf9 All is well 2025-11-07 17:07:31 +0000 UTC hostedclusters kx-e5a2f55cf9 The hosted control plane is available INFO: Cluster 'kx-e5a2f55cf9' is now ready INFO: ROSA with HCP cluster is ready, create a cluster admin account for accessing the cluster WARN: The current version (1.2.56) is not up to date with latest rosa cli released version (1.2.57). WARN: It is recommended that you update to the latest version. INFO: Storing login command... INFO: Check if it's able to login to OCP cluster... Retried 1 times... INFO: Check if apiserver is ready... Waiting for cluster operators to be accessible for 2m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 7m43s dns 4.19.9 False True True 7m43s DNS "default" is unavailable. image-registry False True True 7m28s Available: The deployment does not have available replicas... ingress False True True 7m23s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 7m36s kube-controller-manager 4.19.9 True False False 7m36s kube-scheduler 4.19.9 True False False 7m36s kube-storage-version-migrator monitoring network 4.19.9 True True False 7m5s DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.19.9 True False False 71s openshift-apiserver 4.19.9 True False False 7m36s openshift-controller-manager 4.19.9 True False False 7m36s openshift-samples operator-lifecycle-manager 4.19.9 True False False 7m38s operator-lifecycle-manager-catalog 4.19.9 True False False 7m36s operator-lifecycle-manager-packageserver 4.19.9 True False False 7m36s service-ca storage 4.19.9 True False False 56s cluster operators to be accessible finished! [INFO] Cluster operators are accessible. Waiting for cluster to be reported as healthy for 60m... NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console csi-snapshot-controller 4.19.9 True False False 7m46s dns 4.19.9 False True True 7m46s DNS "default" is unavailable. image-registry False True True 7m31s Available: The deployment does not have available replicas... ingress False True True 7m26s The "default" ingress controller reports Available=False: IngressControllerUnavailable: One or more status conditions indicate unavailable: DeploymentAvailable=False (DeploymentUnavailable: The deployment has Available status condition set to False (reason: MinimumReplicasUnavailable) with message: Deployment does not have minimum availability.) insights kube-apiserver 4.19.9 True False False 7m39s kube-controller-manager 4.19.9 True False False 7m39s kube-scheduler 4.19.9 True False False 7m39s kube-storage-version-migrator monitoring network 4.19.9 True True False 7m8s DaemonSet "/openshift-multus/network-metrics-daemon" is waiting for other operators to become ready... node-tuning 4.19.9 True False False 74s openshift-apiserver 4.19.9 True False False 7m39s openshift-controller-manager 4.19.9 True False False 7m39s openshift-samples operator-lifecycle-manager 4.19.9 True False False 7m41s operator-lifecycle-manager-catalog 4.19.9 True False False 7m39s operator-lifecycle-manager-packageserver 4.19.9 True False False 7m39s service-ca storage 4.19.9 True False False 59s Waiting for cluster to be reported as healthy... Trying again in 60s Unable to connect to the server: dial tcp: lookup api.kx-e5a2f55cf9.zial.p3.openshiftapps.com on 172.30.0.10:53: no such host Waiting for cluster to be reported as healthy... Trying again in 60s Unable to connect to the server: dial tcp: lookup api.kx-e5a2f55cf9.zial.p3.openshiftapps.com on 172.30.0.10:53: no such host Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.19.9 True False False 74s csi-snapshot-controller 4.19.9 True False False 10m dns 4.19.9 True False False 78s image-registry 4.19.9 True False False 79s ingress 4.19.9 True False False 60s insights 4.19.9 True False False 2m kube-apiserver 4.19.9 True False False 10m kube-controller-manager 4.19.9 True False False 10m kube-scheduler 4.19.9 True False False 10m kube-storage-version-migrator 4.19.9 True False False 115s monitoring Unknown True Unknown 87s Rolling out the stack. network 4.19.9 True False False 10m node-tuning 4.19.9 True False False 2m15s openshift-apiserver 4.19.9 True False False 10m openshift-controller-manager 4.19.9 True False False 10m openshift-samples 4.19.9 True False False 73s operator-lifecycle-manager 4.19.9 True False False 10m operator-lifecycle-manager-catalog 4.19.9 True False False 10m operator-lifecycle-manager-packageserver 4.19.9 True False False 10m service-ca 4.19.9 True False False 116s storage 4.19.9 True False False 4m1s Waiting for cluster to be reported as healthy... Trying again in 60s NAME VERSION AVAILABLE PROGRESSING DEGRADED SINCE MESSAGE console 4.19.9 True False False 2m15s csi-snapshot-controller 4.19.9 True False False 11m dns 4.19.9 True False False 2m19s image-registry 4.19.9 True False False 2m20s ingress 4.19.9 True False False 2m1s insights 4.19.9 True False False 3m1s kube-apiserver 4.19.9 True False False 11m kube-controller-manager 4.19.9 True False False 11m kube-scheduler 4.19.9 True False False 11m kube-storage-version-migrator 4.19.9 True False False 2m56s monitoring Unknown True Unknown 2m28s Rolling out the stack. network 4.19.9 True False False 11m node-tuning 4.19.9 True False False 3m16s openshift-apiserver 4.19.9 True False False 11m openshift-controller-manager 4.19.9 True False False 11m openshift-samples 4.19.9 True False False 2m14s operator-lifecycle-manager 4.19.9 True False False 11m operator-lifecycle-manager-catalog 4.19.9 True False False 11m operator-lifecycle-manager-packageserver 4.19.9 True False False 11m service-ca 4.19.9 True False False 2m57s storage 4.19.9 True False False 5m2s Waiting for cluster to be reported as healthy... Trying again in 60s healthy cluster to be reported as healthy finished!