I0420 11:52:01.558212 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["172.30.0.10:53"] I0420 11:52:01.558710 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I0420 11:52:01.558725 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I0420 11:52:01.558730 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I0420 11:52:01.558735 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I0420 11:52:01.560933 1 controller.go:88] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0420 11:52:01.560949 1 controller.go:437] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0420 11:52:01.560958 1 controller.go:101] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0420 11:52:01.561325 1 controller.go:125] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0420 11:52:01.561370 1 controller.go:176] "starting leader election" logger="cert-manager.controller" I0420 11:52:01.561379 1 controller.go:169] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0420 11:52:01.564244 1 leaderelection.go:257] attempting to acquire leader lease kube-system/cert-manager-controller... E0420 11:52:01.584888 1 leaderelection.go:436] error retrieving resource lock kube-system/cert-manager-controller: leases.coordination.k8s.io "cert-manager-controller" is forbidden: User "system:serviceaccount:cert-manager:cert-manager" cannot get resource "leases" in API group "coordination.k8s.io" in the namespace "kube-system" I0420 11:52:31.493095 1 leaderelection.go:271] successfully acquired lease kube-system/cert-manager-controller I0420 11:52:31.495760 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0420 11:52:31.497574 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0420 11:52:31.499217 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0420 11:52:31.501902 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0420 11:52:31.503448 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0420 11:52:31.503463 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0420 11:52:31.503471 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="gateway-shim" I0420 11:52:31.503525 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="orders" I0420 11:52:31.505184 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0420 11:52:31.506954 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0420 11:52:31.508502 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0420 11:52:31.509915 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0420 11:52:31.510039 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0420 11:52:31.513446 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="issuers" I0420 11:52:31.515767 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0420 11:52:31.517895 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0420 11:52:31.519841 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0420 11:52:31.519860 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0420 11:52:31.519866 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0420 11:52:31.522033 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0420 11:52:31.523716 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="challenges" I0420 11:52:31.525915 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0420 11:52:31.528510 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0420 11:52:31.532969 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0420 11:52:31.536856 1 reflector.go:376] Caches populated for *v1.PartialObjectMetadata from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.536913 1 reflector.go:376] Caches populated for *v1.Secret from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.537130 1 reflector.go:376] Caches populated for *v1.Certificate from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.538598 1 reflector.go:376] Caches populated for *v1.Ingress from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.538607 1 reflector.go:376] Caches populated for *v1.PartialObjectMetadata from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.538878 1 reflector.go:376] Caches populated for *v1.Challenge from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.538881 1 reflector.go:376] Caches populated for *v1.Order from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.538926 1 reflector.go:376] Caches populated for *v1.ClusterIssuer from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.539031 1 reflector.go:376] Caches populated for *v1.CertificateRequest from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.539536 1 reflector.go:376] Caches populated for *v1.Issuer from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:52:31.551024 1 reflector.go:376] Caches populated for *v1.PartialObjectMetadata from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0420 11:56:12.358979 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:12.358957 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-04-20 11:56:12.35893354 +0000 UTC m=+250.821717788" I0420 11:56:12.359042 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-04-20 11:56:12.359035403 +0000 UTC m=+250.821819639" E0420 11:56:12.486700 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 11:56:12.486755 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="ca-issuer" condition="Ready" lastTransitionTime="2026-04-20 11:56:12.486746969 +0000 UTC m=+250.949531204" E0420 11:56:12.486778 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 11:56:12.595837 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0420 11:56:12.601795 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="self-signed-cluster-issuer" condition="Ready" lastTransitionTime="2026-04-20 11:56:12.601776312 +0000 UTC m=+251.064560554" E0420 11:56:12.601955 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 11:56:12.602011 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 11:56:12.602031 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0420 11:56:12.631662 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:12.631713 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:12.631733 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-04-20 11:56:12.631726753 +0000 UTC m=+251.094511203" I0420 11:56:12.667243 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:12.667265 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-04-20 11:56:12.667253362 +0000 UTC m=+251.130037598" I0420 11:56:12.667284 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-04-20 11:56:12.667277564 +0000 UTC m=+251.130061798" I0420 11:56:12.798749 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:12.799567 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-04-20 11:56:12.799552757 +0000 UTC m=+251.262337001" I0420 11:56:13.153753 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.242167 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:13.242152009 +0000 UTC m=+251.704936252" I0420 11:56:13.261742 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:13.26172744 +0000 UTC m=+251.724511684" I0420 11:56:13.317496 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:13.317483815 +0000 UTC m=+251.780268048" I0420 11:56:13.328772 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:13.328747493 +0000 UTC m=+251.791531720" I0420 11:56:13.366642 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:13.366631198 +0000 UTC m=+251.829415423" I0420 11:56:13.366635 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:13.366624689 +0000 UTC m=+251.829408923" I0420 11:56:13.396260 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:13.396249884 +0000 UTC m=+251.859034116" I0420 11:56:13.396908 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.397102 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:13.397094372 +0000 UTC m=+251.859878598" I0420 11:56:13.407556 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.430844 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.444752 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:13.444741821 +0000 UTC m=+251.907526055" I0420 11:56:13.466926 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.467406 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:13.467400005 +0000 UTC m=+251.930184242" I0420 11:56:13.477119 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.494820 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.495295 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:13.495287639 +0000 UTC m=+251.958071879" I0420 11:56:13.498767 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.909629 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:13.909668 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-04-20 11:56:13.909659358 +0000 UTC m=+252.372443602" I0420 11:56:13.909753 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:13.909739489 +0000 UTC m=+252.372523731" I0420 11:56:13.951230 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:13.951576 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:13.951561562 +0000 UTC m=+252.414345802" I0420 11:56:14.057032 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:14.097490 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:14.097502 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.097488664 +0000 UTC m=+252.560272908" I0420 11:56:14.097517 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-04-20 11:56:14.09751053 +0000 UTC m=+252.560294767" I0420 11:56:14.111689 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:14.111676349 +0000 UTC m=+252.574460595" I0420 11:56:14.125655 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:14.125715 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.125707461 +0000 UTC m=+252.588491705" I0420 11:56:14.190830 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.190811 +0000 UTC m=+252.653595244" I0420 11:56:14.190874 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.190862707 +0000 UTC m=+252.653646941" I0420 11:56:14.190947 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.190934059 +0000 UTC m=+252.653718300" I0420 11:56:14.190960 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.190947386 +0000 UTC m=+252.653731621" I0420 11:56:14.190849 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.190840056 +0000 UTC m=+252.653624295" I0420 11:56:14.304682 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:14.304716 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-04-20 11:56:14.304710516 +0000 UTC m=+252.767494756" I0420 11:56:14.304671 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.304650353 +0000 UTC m=+252.767434596" I0420 11:56:14.487252 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:14.487279 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-04-20 11:56:14.487273217 +0000 UTC m=+252.950057454" I0420 11:56:14.487277 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.487261765 +0000 UTC m=+252.950046009" I0420 11:56:14.544759 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" E0420 11:56:14.626647 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0420 11:56:14.626707 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.626698768 +0000 UTC m=+253.089483002" I0420 11:56:14.626726 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0420 11:56:14.644257 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:14.694112 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:14.745785 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:14.890790 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.890770676 +0000 UTC m=+253.353554917" I0420 11:56:14.890815 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:14.890841 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-04-20 11:56:14.890835483 +0000 UTC m=+253.353619723" I0420 11:56:14.985039 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="integration-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.985019438 +0000 UTC m=+253.447803683" I0420 11:56:14.995592 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:14.995647 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:14.995638003 +0000 UTC m=+253.458422246" I0420 11:56:15.100063 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:15.100126 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:15.100149 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-04-20 11:56:15.100142632 +0000 UTC m=+253.562926869" E0420 11:56:15.157877 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" E0420 11:56:15.157939 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0420 11:56:15.157958 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" E0420 11:56:15.157979 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0420 11:56:15.325688 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:15.325718 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-04-20 11:56:15.325700873 +0000 UTC m=+253.788485120" I0420 11:56:15.325727 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-04-20 11:56:15.325718277 +0000 UTC m=+253.788502521" I0420 11:56:15.351953 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="release-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-04-20 11:56:15.351937356 +0000 UTC m=+253.814721596" I0420 11:56:15.396899 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:15.396960 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:15.396982 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-04-20 11:56:15.396976323 +0000 UTC m=+253.859760561" I0420 11:56:15.699621 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:15.846745 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:15.846823 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 11:56:15.846856 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-04-20 11:56:15.846847232 +0000 UTC m=+254.309631474" I0420 11:56:16.593452 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:16.593430285 +0000 UTC m=+255.056214530" I0420 11:56:16.608751 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:16.751356 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:16.751340976 +0000 UTC m=+255.214125211" I0420 11:56:17.173211 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:17.173176484 +0000 UTC m=+255.635960719" I0420 11:56:17.412267 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:17.412252042 +0000 UTC m=+255.875036276" I0420 11:56:17.508846 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:17.50882829 +0000 UTC m=+255.971612532" I0420 11:56:17.959689 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:17.959673434 +0000 UTC m=+256.422457671" I0420 11:56:18.008625 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-04-20 11:56:18.008607668 +0000 UTC m=+256.471391912" I0420 11:56:18.156679 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:18.156662788 +0000 UTC m=+256.619447026" I0420 11:56:18.608514 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:18.608494287 +0000 UTC m=+257.071278523" I0420 11:56:18.657582 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-04-20 11:56:18.657564258 +0000 UTC m=+257.120348492" I0420 11:56:18.698402 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:18.698387868 +0000 UTC m=+257.161172094" I0420 11:56:18.698457 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:18.698441752 +0000 UTC m=+257.161225988" I0420 11:56:19.304325 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:19.30431134 +0000 UTC m=+257.767095574" I0420 11:56:19.304339 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:19.304328038 +0000 UTC m=+257.767112275" I0420 11:56:19.304341 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:19.304332396 +0000 UTC m=+257.767116630" I0420 11:56:19.345597 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:19.450634 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:19.450623331 +0000 UTC m=+257.913407568" I0420 11:56:19.850198 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:19.850184361 +0000 UTC m=+258.312968598" I0420 11:56:20.194051 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:20.194567 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:20.194558538 +0000 UTC m=+258.657342775" I0420 11:56:20.444167 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:20.444669 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:20.444661608 +0000 UTC m=+258.907445842" I0420 11:56:20.499527 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:20.499516204 +0000 UTC m=+258.962300441" I0420 11:56:20.551576 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:20.551564984 +0000 UTC m=+259.014349218" I0420 11:56:20.700318 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:20.700303995 +0000 UTC m=+259.163088229" I0420 11:56:21.144880 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:21.145372 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:21.145362308 +0000 UTC m=+259.608146532" I0420 11:56:21.245139 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:21.245652 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:21.245643604 +0000 UTC m=+259.708427837" I0420 11:56:21.444761 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:21.445234 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-20 11:56:21.445226696 +0000 UTC m=+259.908010932" I0420 11:56:21.494987 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:21.646099 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:22.344015 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:22.394877 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:22.444596 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:22.495109 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0420 11:56:22.645275 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again"