I0512 11:42:01.985446 1 controller.go:74] "starting cert-manager controller" logger="cert-manager.controller" version="canary" git_commit="" go_version="go1.25.8 (Red Hat 1.25.8-1.el9_6) X:strictfipsruntime" platform="linux/amd64" I0512 11:42:01.985527 1 controller.go:290] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["172.30.0.10:53"] I0512 11:42:01.985853 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I0512 11:42:01.985868 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I0512 11:42:01.985873 1 envvar.go:172] "Feature gate default state" feature="InOrderInformers" enabled=true I0512 11:42:01.985877 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I0512 11:42:01.985880 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I0512 11:42:01.988104 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0512 11:42:01.988120 1 controller.go:438] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0512 11:42:01.988127 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0512 11:42:01.988576 1 controller.go:129] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0512 11:42:01.988633 1 controller.go:182] "starting leader election" logger="cert-manager.controller" I0512 11:42:01.988642 1 controller.go:175] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0512 11:42:01.990434 1 leaderelection.go:257] attempting to acquire leader lease kube-system/cert-manager-controller... I0512 11:42:02.027226 1 leaderelection.go:271] successfully acquired lease kube-system/cert-manager-controller I0512 11:42:02.027338 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0512 11:42:02.027357 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="gateway-shim" I0512 11:42:02.029332 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0512 11:42:02.031025 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0512 11:42:02.032970 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0512 11:42:02.035103 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0512 11:42:02.038277 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0512 11:42:02.039990 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="issuers" I0512 11:42:02.041641 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0512 11:42:02.043414 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0512 11:42:02.045014 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0512 11:42:02.046651 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0512 11:42:02.050388 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0512 11:42:02.052096 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0512 11:42:02.052203 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0512 11:42:02.053810 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0512 11:42:02.055400 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0512 11:42:02.057082 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0512 11:42:02.057096 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0512 11:42:02.057176 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0512 11:42:02.059183 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="challenges" I0512 11:42:02.061266 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="orders" I0512 11:42:02.063323 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0512 11:42:02.063342 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0512 11:42:02.067972 1 reflector.go:436] "Caches populated" type="*v1.Ingress" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.068088 1 reflector.go:436] "Caches populated" type="*v1.CertificateRequest" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.068715 1 reflector.go:436] "Caches populated" type="*v1.ClusterIssuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.068923 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.069027 1 reflector.go:436] "Caches populated" type="*v1.Issuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.069038 1 reflector.go:436] "Caches populated" type="*v1.Order" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.069377 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.069384 1 reflector.go:436] "Caches populated" type="*v1.Secret" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.069431 1 reflector.go:436] "Caches populated" type="*v1.Challenge" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.069952 1 reflector.go:436] "Caches populated" type="*v1.Certificate" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:42:02.081317 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0512 11:46:05.238837 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-05-12 11:46:05.238815602 +0000 UTC m=+243.274475538" I0512 11:46:05.238926 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:05.238959 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-12 11:46:05.238952947 +0000 UTC m=+243.274612921" I0512 11:46:05.285996 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:05.286051 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:05.286075 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-12 11:46:05.286065653 +0000 UTC m=+243.321725587" I0512 11:46:05.411953 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:05.411937779 +0000 UTC m=+243.447597721" I0512 11:46:05.491954 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:05.491922192 +0000 UTC m=+243.527582127" I0512 11:46:05.491995 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:05.491970499 +0000 UTC m=+243.527630432" I0512 11:46:05.492046 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:05.492034434 +0000 UTC m=+243.527694378" I0512 11:46:05.491954 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:05.491922194 +0000 UTC m=+243.527582133" I0512 11:46:05.492002 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:05.491986329 +0000 UTC m=+243.527646267" I0512 11:46:05.524473 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"selfsigned-ca-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:05.527308 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"selfsigned-ca-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:05.537430 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"selfsigned-ca-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:05.542509 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"selfsigned-ca-1\": the object has been modified; please apply your changes to the latest version and try again" E0512 11:46:05.617668 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 11:46:05.617722 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="ca-issuer" condition="Ready" lastTransitionTime="2026-05-12 11:46:05.617711132 +0000 UTC m=+243.653371055" E0512 11:46:05.617752 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 11:46:05.663642 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" E0512 11:46:05.663749 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 11:46:05.663793 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 11:46:05.663825 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0512 11:46:06.028875 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-05-12 11:46:06.028857051 +0000 UTC m=+244.064516994" I0512 11:46:06.028875 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:06.029000 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-05-12 11:46:06.02899135 +0000 UTC m=+244.064651283" I0512 11:46:06.042521 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="self-signed-cluster-issuer" condition="Ready" lastTransitionTime="2026-05-12 11:46:06.042513559 +0000 UTC m=+244.078173492" I0512 11:46:06.081183 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:06.081172397 +0000 UTC m=+244.116832329" I0512 11:46:06.103417 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:06.103422 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"selfsigned-ca-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:06.103560 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:06.103599 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-05-12 11:46:06.103580621 +0000 UTC m=+244.139240560" I0512 11:46:06.103922 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:06.103913663 +0000 UTC m=+244.139573596" I0512 11:46:06.155564 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:06.155556422 +0000 UTC m=+244.191216355" I0512 11:46:06.155566 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:06.155555868 +0000 UTC m=+244.191215801" I0512 11:46:06.190655 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:06.311804 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:06.311788261 +0000 UTC m=+244.347448248" I0512 11:46:06.342998 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:06.34298348 +0000 UTC m=+244.378643415" I0512 11:46:06.403973 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:06.403961731 +0000 UTC m=+244.439621667" I0512 11:46:06.441572 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:07.908666 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:07.908721 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-05-12 11:46:07.908714732 +0000 UTC m=+245.944374665" I0512 11:46:07.908651 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:07.908612989 +0000 UTC m=+245.944272925" I0512 11:46:07.968282 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:07.968558 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:07.968525021 +0000 UTC m=+246.004184963" I0512 11:46:08.087339 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.159895 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:08.159876396 +0000 UTC m=+246.195536336" I0512 11:46:08.168476 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.16846107 +0000 UTC m=+246.204121012" I0512 11:46:08.168486 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:08.168573 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-05-12 11:46:08.168562951 +0000 UTC m=+246.204222885" I0512 11:46:08.203483 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.203551 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:08.203569 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-05-12 11:46:08.203562376 +0000 UTC m=+246.239222441" I0512 11:46:08.243843 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.243835147 +0000 UTC m=+246.279495086" I0512 11:46:08.243834 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.243820064 +0000 UTC m=+246.279480007" I0512 11:46:08.243893 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.243880491 +0000 UTC m=+246.279540430" I0512 11:46:08.243924 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.243910089 +0000 UTC m=+246.279570013" I0512 11:46:08.243943 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.243931522 +0000 UTC m=+246.279591458" I0512 11:46:08.270120 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.273476 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.285407 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.289474 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"dex-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.303662 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:08.303683 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-05-12 11:46:08.303677993 +0000 UTC m=+246.339337926" I0512 11:46:08.303680 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.303667283 +0000 UTC m=+246.339327226" I0512 11:46:08.332343 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.335750 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.335929 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.335917138 +0000 UTC m=+246.371577081" I0512 11:46:08.367777 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:08.367866 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-05-12 11:46:08.367858618 +0000 UTC m=+246.403518550" I0512 11:46:08.367801 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.367784497 +0000 UTC m=+246.403444440" I0512 11:46:08.367996 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:08.367985652 +0000 UTC m=+246.403645585" E0512 11:46:08.450805 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0512 11:46:08.450889 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.450861349 +0000 UTC m=+246.486521291" I0512 11:46:08.450913 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0512 11:46:08.604368 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:08.604430 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.604423086 +0000 UTC m=+246.640083024" I0512 11:46:08.908950 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:08.908980 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-12 11:46:08.908972727 +0000 UTC m=+246.944632663" I0512 11:46:08.909014 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.908999758 +0000 UTC m=+246.944659701" I0512 11:46:08.926598 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.926579181 +0000 UTC m=+246.962239121" I0512 11:46:08.950689 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="integration-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-12 11:46:08.950676592 +0000 UTC m=+246.986336525" E0512 11:46:09.025776 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" E0512 11:46:09.025881 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0512 11:46:09.025917 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" E0512 11:46:09.025944 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0512 11:46:09.193909 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 11:46:09.193949 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-12 11:46:09.193938989 +0000 UTC m=+247.229598932" I0512 11:46:09.193980 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:09.19396442 +0000 UTC m=+247.229624365" I0512 11:46:09.236713 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="release-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-12 11:46:09.236697215 +0000 UTC m=+247.272357154" I0512 11:46:09.604315 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:09.604381 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:09.60437068 +0000 UTC m=+247.640030622" I0512 11:46:09.714597 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:09.714578279 +0000 UTC m=+247.750238203" I0512 11:46:09.849400 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:10.002854 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:10.002935 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-12 11:46:10.002925697 +0000 UTC m=+248.038585639" I0512 11:46:10.050829 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:10.301846 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificaterequests.cert-manager.io \"oauth2-proxy-cert-1\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:10.797362 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:10.919488 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:10.919468947 +0000 UTC m=+248.955128885" I0512 11:46:11.017371 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:11.017351352 +0000 UTC m=+249.053011295" I0512 11:46:11.097620 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:11.377274 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:11.377256199 +0000 UTC m=+249.412916136" I0512 11:46:11.617916 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:11.617897198 +0000 UTC m=+249.653557132" I0512 11:46:11.727273 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:11.727255246 +0000 UTC m=+249.762915189" I0512 11:46:12.211074 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-12 11:46:12.21105959 +0000 UTC m=+250.246719543" I0512 11:46:12.258628 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:12.258613343 +0000 UTC m=+250.294273275" I0512 11:46:12.651439 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:12.65141857 +0000 UTC m=+250.687078505" I0512 11:46:12.651495 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:12.651483261 +0000 UTC m=+250.687143240" I0512 11:46:12.716299 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-12 11:46:12.716285502 +0000 UTC m=+250.751945434" I0512 11:46:13.205744 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:13.205729888 +0000 UTC m=+251.241389807" I0512 11:46:13.206252 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:13.206236227 +0000 UTC m=+251.241896172" I0512 11:46:13.206333 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:13.206318908 +0000 UTC m=+251.241978842" I0512 11:46:13.297764 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:13.402686 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:13.402673521 +0000 UTC m=+251.438333457" I0512 11:46:13.853192 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:13.853178111 +0000 UTC m=+251.888838065" I0512 11:46:13.947592 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:13.948082 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:13.948073545 +0000 UTC m=+251.983733518" I0512 11:46:14.103728 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:14.103705609 +0000 UTC m=+252.139365587" I0512 11:46:14.153079 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:14.153066454 +0000 UTC m=+252.188726387" I0512 11:46:14.297578 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:14.459992 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:14.45996969 +0000 UTC m=+252.495629617" I0512 11:46:14.760074 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:14.760613 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:14.760605158 +0000 UTC m=+252.796265090" I0512 11:46:14.850962 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:14.851473 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-12 11:46:14.851466034 +0000 UTC m=+252.887125968" I0512 11:46:14.997861 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:15.147775 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:15.797170 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0512 11:46:15.848262 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again"