I0505 23:26:39.488188 1 controller.go:74] "starting cert-manager controller" logger="cert-manager.controller" version="canary" git_commit="" go_version="go1.25.8 (Red Hat 1.25.8-1.el9_6) X:strictfipsruntime" platform="linux/amd64" I0505 23:26:39.488274 1 controller.go:290] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["172.30.0.10:53"] I0505 23:26:39.488584 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I0505 23:26:39.488599 1 envvar.go:172] "Feature gate default state" feature="InOrderInformers" enabled=true I0505 23:26:39.488604 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I0505 23:26:39.488609 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I0505 23:26:39.488613 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I0505 23:26:39.491103 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 23:26:39.491126 1 controller.go:438] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0505 23:26:39.491134 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0505 23:26:39.491527 1 controller.go:129] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 23:26:39.491580 1 controller.go:182] "starting leader election" logger="cert-manager.controller" I0505 23:26:39.491649 1 controller.go:175] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 23:26:39.494338 1 leaderelection.go:257] attempting to acquire leader lease kube-system/cert-manager-controller... E0505 23:26:39.512468 1 leaderelection.go:448] error retrieving resource lock kube-system/cert-manager-controller: leases.coordination.k8s.io "cert-manager-controller" is forbidden: User "system:serviceaccount:cert-manager:cert-manager" cannot get resource "leases" in API group "coordination.k8s.io" in the namespace "kube-system" I0505 23:26:57.644555 1 leaderelection.go:271] successfully acquired lease kube-system/cert-manager-controller I0505 23:26:57.647218 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="orders" I0505 23:26:57.649075 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 23:26:57.650916 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 23:26:57.650997 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 23:26:57.654355 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 23:26:57.655986 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 23:26:57.656007 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 23:26:57.657923 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 23:26:57.659930 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 23:26:57.661643 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 23:26:57.663325 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 23:26:57.663340 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="gateway-shim" I0505 23:26:57.663428 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 23:26:57.665780 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 23:26:57.667589 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 23:26:57.669231 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 23:26:57.669244 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 23:26:57.669345 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 23:26:57.670913 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 23:26:57.672521 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 23:26:57.674142 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 23:26:57.676062 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 23:26:57.678090 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 23:26:57.681348 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 23:26:57.684665 1 reflector.go:436] "Caches populated" type="*v1.CertificateRequest" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.686763 1 reflector.go:436] "Caches populated" type="*v1.Ingress" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.686981 1 reflector.go:436] "Caches populated" type="*v1.Order" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.689939 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.689998 1 reflector.go:436] "Caches populated" type="*v1.Secret" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.690385 1 reflector.go:436] "Caches populated" type="*v1.Certificate" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.690531 1 reflector.go:436] "Caches populated" type="*v1.ClusterIssuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.690550 1 reflector.go:436] "Caches populated" type="*v1.Issuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.690869 1 reflector.go:436] "Caches populated" type="*v1.Challenge" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.691216 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:26:57.697387 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:31:51.939246 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-05-05 23:31:51.939221883 +0000 UTC m=+312.473355046" I0505 23:31:51.939334 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:51.939383 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-05 23:31:51.939372694 +0000 UTC m=+312.473505860" I0505 23:31:52.113133 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:52.113191 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:52.113212 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-05 23:31:52.113205349 +0000 UTC m=+312.647338505" E0505 23:31:52.129854 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 23:31:52.129941 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="ca-issuer" condition="Ready" lastTransitionTime="2026-05-05 23:31:52.129930939 +0000 UTC m=+312.664064095" E0505 23:31:52.129967 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 23:31:52.519018 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" E0505 23:31:52.527914 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 23:31:52.527971 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 23:31:52.527996 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0505 23:31:52.527908 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="self-signed-cluster-issuer" condition="Ready" lastTransitionTime="2026-05-05 23:31:52.52789119 +0000 UTC m=+313.062024353" I0505 23:31:52.733716 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:52.733720 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-05-05 23:31:52.733708438 +0000 UTC m=+313.267841604" I0505 23:31:52.733745 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-05-05 23:31:52.733739198 +0000 UTC m=+313.267872355" I0505 23:31:52.974875 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:52.976001 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:52.976054 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-05-05 23:31:52.976047308 +0000 UTC m=+313.510180467" I0505 23:31:53.557136 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:53.557115072 +0000 UTC m=+314.091248232" I0505 23:31:53.840672 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-05 23:31:53.840655714 +0000 UTC m=+314.374788870" I0505 23:31:53.900419 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:53.900399868 +0000 UTC m=+314.434533027" I0505 23:31:53.953205 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" lastTransitionTime="2026-05-05 23:31:53.953177052 +0000 UTC m=+314.487310212" I0505 23:31:54.125705 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:54.125689624 +0000 UTC m=+314.659822782" I0505 23:31:54.125747 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:54.125731939 +0000 UTC m=+314.659865106" I0505 23:31:54.221872 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:54.221851341 +0000 UTC m=+314.755984500" I0505 23:31:54.226454 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:54.419326 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:54.419311296 +0000 UTC m=+314.953444453" I0505 23:31:54.543589 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:54.544184 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:54.544172419 +0000 UTC m=+315.078305601" I0505 23:31:54.580792 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:54.581884 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:54.581870142 +0000 UTC m=+315.116003291" I0505 23:31:54.742886 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-05-05 23:31:54.742867667 +0000 UTC m=+315.277000830" I0505 23:31:54.742889 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:54.742942 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:54.74293261 +0000 UTC m=+315.277065774" I0505 23:31:54.845856 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:54.845894 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:54.845886289 +0000 UTC m=+315.380019448" I0505 23:31:54.845854 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-05-05 23:31:54.845838473 +0000 UTC m=+315.379971638" I0505 23:31:54.846286 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:54.846336 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:54.846356 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:54.846351029 +0000 UTC m=+315.380484186" I0505 23:31:54.944729 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:54.944821 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:54.944843 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:54.944835204 +0000 UTC m=+315.478968367" I0505 23:31:54.997312 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-05-05 23:31:54.997292704 +0000 UTC m=+315.531425872" I0505 23:31:54.997525 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:54.997560 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:54.997550985 +0000 UTC m=+315.531684145" I0505 23:31:55.103692 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:55.103778 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:55.103811 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:55.103801468 +0000 UTC m=+315.637934635" I0505 23:31:55.143246 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.143225074 +0000 UTC m=+315.677358242" I0505 23:31:55.143306 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:55.143337 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-05-05 23:31:55.143328978 +0000 UTC m=+315.677462145" I0505 23:31:55.224236 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:55.224539 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.224494379 +0000 UTC m=+315.758627547" E0505 23:31:55.365203 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0505 23:31:55.365275 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.365261565 +0000 UTC m=+315.899394726" I0505 23:31:55.365302 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0505 23:31:55.392031 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:55.437616 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:55.471137 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:55.471116871 +0000 UTC m=+316.005250040" E0505 23:31:55.473004 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" E0505 23:31:55.473067 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0505 23:31:55.473094 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" E0505 23:31:55.473115 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0505 23:31:55.544661 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:55.544627965 +0000 UTC m=+316.078761130" I0505 23:31:55.583836 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.583817288 +0000 UTC m=+316.117950458" I0505 23:31:55.584544 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:55.584528722 +0000 UTC m=+316.118661883" I0505 23:31:55.585271 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:55.585291 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:55.585285814 +0000 UTC m=+316.119418971" I0505 23:31:55.585361 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.585352749 +0000 UTC m=+316.119485917" I0505 23:31:55.590020 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:55.590004666 +0000 UTC m=+316.124137832" I0505 23:31:55.590483 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.590472187 +0000 UTC m=+316.124605353" I0505 23:31:55.687476 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="integration-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.687458764 +0000 UTC m=+316.221591929" I0505 23:31:55.941065 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Ready" lastTransitionTime="2026-05-05 23:31:55.941049373 +0000 UTC m=+316.475182529" I0505 23:31:56.064310 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:56.064376 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:56.064398 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:56.064391366 +0000 UTC m=+316.598524523" I0505 23:31:56.207621 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-05 23:31:56.207604491 +0000 UTC m=+316.741737639" I0505 23:31:57.093493 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:57.093514 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-05 23:31:57.09347227 +0000 UTC m=+317.627605437" I0505 23:31:57.093542 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:57.093533895 +0000 UTC m=+317.627667053" I0505 23:31:57.156339 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:57.156321847 +0000 UTC m=+317.690455004" I0505 23:31:57.156401 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:57.15638885 +0000 UTC m=+317.690522010" I0505 23:31:57.215656 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="release-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-05 23:31:57.215633313 +0000 UTC m=+317.749766479" I0505 23:31:57.504058 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:57.504126 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:31:57.504158 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-05 23:31:57.504148903 +0000 UTC m=+318.038282072" I0505 23:31:57.553091 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:57.553072274 +0000 UTC m=+318.087205434" I0505 23:31:57.553108 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:57.553097142 +0000 UTC m=+318.087230299" I0505 23:31:57.553108 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:57.553098985 +0000 UTC m=+318.087232133" I0505 23:31:57.694945 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:58.266934 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:58.337608 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:58.337590233 +0000 UTC m=+318.871723401" I0505 23:31:58.573612 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:58.573596469 +0000 UTC m=+319.107729632" I0505 23:31:58.622240 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:58.622224801 +0000 UTC m=+319.156357961" I0505 23:31:58.673593 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:58.673577694 +0000 UTC m=+319.207710851" I0505 23:31:58.984895 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-05 23:31:58.984878733 +0000 UTC m=+319.519011892" I0505 23:31:59.264854 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:59.265390 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:59.265382593 +0000 UTC m=+319.799515753" I0505 23:31:59.365170 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:59.365726 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:59.365716539 +0000 UTC m=+319.899849699" I0505 23:31:59.465965 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:59.466732 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:31:59.466719491 +0000 UTC m=+320.000852702" I0505 23:31:59.865843 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:31:59.927481 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-05 23:31:59.92746397 +0000 UTC m=+320.461597135" I0505 23:32:00.465958 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:00.571661 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:32:00.571638556 +0000 UTC m=+321.105771720" I0505 23:32:00.830722 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-05 23:32:00.830705089 +0000 UTC m=+321.364838245" I0505 23:32:00.915770 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:00.965541 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:01.017052 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:01.066006 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:01.118013 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:01.364846 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:01.365411 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:32:01.365400051 +0000 UTC m=+321.899533199" I0505 23:32:01.970289 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:32:01.970270478 +0000 UTC m=+322.504403635" I0505 23:32:02.115146 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:02.215446 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:02.216357 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-05 23:32:02.21634591 +0000 UTC m=+322.750479072" I0505 23:32:02.466392 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:32:09.954838 1 reflector.go:436] "Caches populated" type="*v1.Order" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0505 23:35:32.602493 1 reflector.go:436] "Caches populated" type="*v1.Challenge" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290"