I0506 20:27:10.906842 1 controller.go:74] "starting cert-manager controller" logger="cert-manager.controller" version="canary" git_commit="" go_version="go1.25.8 (Red Hat 1.25.8-1.el9_6) X:strictfipsruntime" platform="linux/amd64" I0506 20:27:10.906927 1 controller.go:290] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["172.30.0.10:53"] I0506 20:27:10.907221 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I0506 20:27:10.907237 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I0506 20:27:10.907241 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I0506 20:27:10.907245 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I0506 20:27:10.907249 1 envvar.go:172] "Feature gate default state" feature="InOrderInformers" enabled=true I0506 20:27:10.909997 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0506 20:27:10.910016 1 controller.go:438] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0506 20:27:10.910024 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0506 20:27:10.910423 1 controller.go:129] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0506 20:27:10.911046 1 controller.go:182] "starting leader election" logger="cert-manager.controller" I0506 20:27:10.911099 1 controller.go:175] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0506 20:27:10.913267 1 leaderelection.go:257] attempting to acquire leader lease kube-system/cert-manager-controller... E0506 20:27:10.934566 1 leaderelection.go:448] error retrieving resource lock kube-system/cert-manager-controller: leases.coordination.k8s.io "cert-manager-controller" is forbidden: User "system:serviceaccount:cert-manager:cert-manager" cannot get resource "leases" in API group "coordination.k8s.io" in the namespace "kube-system" I0506 20:27:43.018546 1 leaderelection.go:271] successfully acquired lease kube-system/cert-manager-controller I0506 20:27:43.018688 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0506 20:27:43.018706 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0506 20:27:43.018713 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0506 20:27:43.020994 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0506 20:27:43.022856 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="challenges" I0506 20:27:43.025695 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0506 20:27:43.027463 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0506 20:27:43.029160 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0506 20:27:43.030813 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0506 20:27:43.032504 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0506 20:27:43.034237 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0506 20:27:43.037303 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0506 20:27:43.038967 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="gateway-shim" I0506 20:27:43.039056 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0506 20:27:43.040795 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0506 20:27:43.042466 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0506 20:27:43.044029 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0506 20:27:43.044044 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0506 20:27:43.046055 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0506 20:27:43.048240 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="orders" I0506 20:27:43.050208 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0506 20:27:43.050307 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0506 20:27:43.053950 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="issuers" I0506 20:27:43.055679 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0506 20:27:43.060153 1 reflector.go:436] "Caches populated" type="*v1.Ingress" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.060273 1 reflector.go:436] "Caches populated" type="*v1.CertificateRequest" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.060870 1 reflector.go:436] "Caches populated" type="*v1.ClusterIssuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.060894 1 reflector.go:436] "Caches populated" type="*v1.Issuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.061722 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.061810 1 reflector.go:436] "Caches populated" type="*v1.Challenge" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.061814 1 reflector.go:436] "Caches populated" type="*v1.Secret" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.061953 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.062114 1 reflector.go:436] "Caches populated" type="*v1.Certificate" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.062762 1 reflector.go:436] "Caches populated" type="*v1.Order" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:27:43.079573 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:30:49.431746 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:49.431807 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-06 20:30:49.431793998 +0000 UTC m=+218.546275443" I0506 20:30:49.431763 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-05-06 20:30:49.431740427 +0000 UTC m=+218.546221868" I0506 20:30:49.579194 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:49.579268 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:49.579288 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-06 20:30:49.579281579 +0000 UTC m=+218.693763010" E0506 20:30:49.645422 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 20:30:49.645491 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="ca-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:30:49.645480934 +0000 UTC m=+218.759962365" E0506 20:30:49.645512 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 20:30:49.740109 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:49.740153 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-05-06 20:30:49.740146972 +0000 UTC m=+218.854628404" I0506 20:30:49.740089 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-05-06 20:30:49.740073418 +0000 UTC m=+218.854554860" E0506 20:30:49.743015 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" E0506 20:30:49.743078 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 20:30:49.743117 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 20:30:49.743142 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0506 20:30:49.778078 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="self-signed-cluster-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:30:49.778061511 +0000 UTC m=+218.892542942" I0506 20:30:49.899257 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:49.899375 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-05-06 20:30:49.899362949 +0000 UTC m=+219.013844392" I0506 20:30:50.029700 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:50.133046 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:50.227510 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:50.227491987 +0000 UTC m=+219.341973425" I0506 20:30:50.345068 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:50.345052564 +0000 UTC m=+219.459534004" I0506 20:30:50.444498 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:50.444480167 +0000 UTC m=+219.558961602" I0506 20:30:50.503810 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:50.503778111 +0000 UTC m=+219.618259547" I0506 20:30:50.670176 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:50.670162151 +0000 UTC m=+219.784643585" I0506 20:30:50.670174 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:50.670157879 +0000 UTC m=+219.784639298" I0506 20:30:50.740287 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:50.740271136 +0000 UTC m=+219.854752567" I0506 20:30:50.773103 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:50.773398 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:50.773387924 +0000 UTC m=+219.887869393" I0506 20:30:50.947792 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:50.947769576 +0000 UTC m=+220.062251014" I0506 20:30:50.999454 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.042910 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.043706 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:51.043692795 +0000 UTC m=+220.158174571" I0506 20:30:51.082988 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:51.083025 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:30:51.083017242 +0000 UTC m=+220.197498685" I0506 20:30:51.082986 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:51.082960971 +0000 UTC m=+220.197442413" I0506 20:30:51.227256 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.227524 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:51.22751266 +0000 UTC m=+220.341994104" I0506 20:30:51.227588 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:51.227615 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:30:51.227609012 +0000 UTC m=+220.342090445" I0506 20:30:51.328090 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.328118 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.328174 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:51.328164084 +0000 UTC m=+220.442645525" I0506 20:30:51.433551 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.438726 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:51.438703702 +0000 UTC m=+220.553185144" I0506 20:30:51.557264 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:51.557299 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:30:51.557293278 +0000 UTC m=+220.671774713" I0506 20:30:51.557265 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:51.557247219 +0000 UTC m=+220.671728654" I0506 20:30:51.744129 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.847617 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-06 20:30:51.847600446 +0000 UTC m=+220.962081888" I0506 20:30:51.847669 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:51.847711 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-05-06 20:30:51.847704345 +0000 UTC m=+220.962185780" I0506 20:30:51.857193 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:51.857239 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:51.857258 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:30:51.857252057 +0000 UTC m=+220.971733489" I0506 20:30:51.909441 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" E0506 20:30:52.038752 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0506 20:30:52.038828 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:30:52.038818558 +0000 UTC m=+221.153299991" I0506 20:30:52.038846 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0506 20:30:52.051053 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:52.051970 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-06 20:30:52.051959022 +0000 UTC m=+221.166440457" E0506 20:30:52.293875 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" E0506 20:30:52.293960 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0506 20:30:52.293990 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" E0506 20:30:52.294032 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0506 20:30:52.359856 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:52.359825861 +0000 UTC m=+221.474307302" I0506 20:30:52.425542 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:52.449379 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:52.449358485 +0000 UTC m=+221.563839928" I0506 20:30:52.678011 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:52.677993202 +0000 UTC m=+221.792474634" I0506 20:30:52.717977 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:52.717956501 +0000 UTC m=+221.832437920" I0506 20:30:53.013610 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:53.013592986 +0000 UTC m=+222.128074426" I0506 20:30:53.014783 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:53.014767431 +0000 UTC m=+222.129248873" I0506 20:30:53.084137 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:53.084168 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:30:53.084159139 +0000 UTC m=+222.198640572" I0506 20:30:53.084175 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:53.084162579 +0000 UTC m=+222.198644017" I0506 20:30:53.154793 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="integration-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:30:53.154777763 +0000 UTC m=+222.269259197" I0506 20:30:53.500010 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:53.499990217 +0000 UTC m=+222.614471652" I0506 20:30:53.630934 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:53.630918536 +0000 UTC m=+222.745399968" I0506 20:30:53.710993 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:53.711051 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:53.711074 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:30:53.71106434 +0000 UTC m=+222.825545771" I0506 20:30:54.120970 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:30:54.121006 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:30:54.120998053 +0000 UTC m=+223.235479491" I0506 20:30:54.120968 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:54.12094216 +0000 UTC m=+223.235423604" I0506 20:30:54.201268 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="release-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:30:54.20125028 +0000 UTC m=+223.315731721" I0506 20:30:54.503007 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:54.503089 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:30:54.503081069 +0000 UTC m=+223.617562503" I0506 20:30:54.577964 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:54.577946516 +0000 UTC m=+223.692428038" I0506 20:30:54.577984 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:54.57797211 +0000 UTC m=+223.692453542" I0506 20:30:55.002573 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:55.002557767 +0000 UTC m=+224.117039199" I0506 20:30:55.002599 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:55.002589411 +0000 UTC m=+224.117070829" I0506 20:30:55.002577 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:55.002565561 +0000 UTC m=+224.117046980" I0506 20:30:55.056766 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:55.057062 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:55.057050605 +0000 UTC m=+224.171532023" I0506 20:30:55.356057 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:55.883150 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:55.883132937 +0000 UTC m=+224.997614371" I0506 20:30:55.972813 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:56.030502 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:56.03048712 +0000 UTC m=+225.144968542" I0506 20:30:56.071108 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:56.07109266 +0000 UTC m=+225.185574094" I0506 20:30:56.184504 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:56.184485767 +0000 UTC m=+225.298967187" I0506 20:30:56.359655 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:56.359638293 +0000 UTC m=+225.474119716" I0506 20:30:56.781771 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:30:56.781749502 +0000 UTC m=+225.896230943" I0506 20:30:56.979223 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:56.979760 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:56.979749871 +0000 UTC m=+226.094231306" I0506 20:30:56.981156 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:56.981450 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:56.981706 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:56.981697934 +0000 UTC m=+226.096179367" I0506 20:30:57.291281 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:30:57.291264539 +0000 UTC m=+226.405745970" I0506 20:30:57.773357 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:57.773302237 +0000 UTC m=+226.887783669" I0506 20:30:57.903901 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:58.112406 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:58.162963 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:58.357490 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:58.358062 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:58.358053332 +0000 UTC m=+227.472534791" I0506 20:30:58.525183 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:30:58.525166934 +0000 UTC m=+227.639648368" I0506 20:30:58.957619 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:59.103216 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:30:59.502756 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again"