I0506 20:21:20.063092 1 controller.go:74] "starting cert-manager controller" logger="cert-manager.controller" version="canary" git_commit="" go_version="go1.25.8 (Red Hat 1.25.8-1.el9_6) X:strictfipsruntime" platform="linux/amd64" I0506 20:21:20.063183 1 controller.go:290] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["172.30.0.10:53"] I0506 20:21:20.063544 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I0506 20:21:20.063559 1 envvar.go:172] "Feature gate default state" feature="InOrderInformers" enabled=true I0506 20:21:20.063564 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I0506 20:21:20.063568 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I0506 20:21:20.063573 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I0506 20:21:20.066256 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0506 20:21:20.066280 1 controller.go:438] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0506 20:21:20.066291 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0506 20:21:20.066941 1 controller.go:129] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0506 20:21:20.066997 1 controller.go:182] "starting leader election" logger="cert-manager.controller" I0506 20:21:20.067000 1 controller.go:175] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0506 20:21:20.068701 1 leaderelection.go:257] attempting to acquire leader lease kube-system/cert-manager-controller... E0506 20:21:20.092428 1 leaderelection.go:448] error retrieving resource lock kube-system/cert-manager-controller: leases.coordination.k8s.io "cert-manager-controller" is forbidden: User "system:serviceaccount:cert-manager:cert-manager" cannot get resource "leases" in API group "coordination.k8s.io" in the namespace "kube-system" I0506 20:21:45.373525 1 leaderelection.go:271] successfully acquired lease kube-system/cert-manager-controller I0506 20:21:45.376061 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0506 20:21:45.378205 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0506 20:21:45.381693 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0506 20:21:45.383444 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0506 20:21:45.383463 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0506 20:21:45.383518 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0506 20:21:45.385355 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="gateway-shim" I0506 20:21:45.385446 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="challenges" I0506 20:21:45.387408 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0506 20:21:45.389477 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0506 20:21:45.392500 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0506 20:21:45.394176 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0506 20:21:45.395821 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0506 20:21:45.397349 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0506 20:21:45.397367 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0506 20:21:45.397428 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0506 20:21:45.399253 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0506 20:21:45.401048 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="orders" I0506 20:21:45.403407 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0506 20:21:45.404871 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0506 20:21:45.407883 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0506 20:21:45.407971 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0506 20:21:45.409647 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="issuers" I0506 20:21:45.411364 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0506 20:21:45.415815 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416021 1 reflector.go:436] "Caches populated" type="*v1.Issuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416063 1 reflector.go:436] "Caches populated" type="*v1.Secret" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416109 1 reflector.go:436] "Caches populated" type="*v1.ClusterIssuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416068 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416334 1 reflector.go:436] "Caches populated" type="*v1.CertificateRequest" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416349 1 reflector.go:436] "Caches populated" type="*v1.Order" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416449 1 reflector.go:436] "Caches populated" type="*v1.Challenge" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416531 1 reflector.go:436] "Caches populated" type="*v1.Certificate" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.416768 1 reflector.go:436] "Caches populated" type="*v1.Ingress" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:21:45.429336 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0506 20:25:49.845025 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-05-06 20:25:49.844995678 +0000 UTC m=+269.802270481" I0506 20:25:49.845117 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:49.845168 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-06 20:25:49.845158808 +0000 UTC m=+269.802433606" E0506 20:25:49.982373 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 20:25:49.982452 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="ca-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:25:49.982441898 +0000 UTC m=+269.939716691" E0506 20:25:49.982477 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 20:25:49.992400 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:49.992444 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:49.992464 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-05-06 20:25:49.992456915 +0000 UTC m=+269.949731709" E0506 20:25:50.038649 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" E0506 20:25:50.038743 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 20:25:50.038776 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 20:25:50.038812 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0506 20:25:50.067994 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="self-signed-cluster-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:25:50.06797994 +0000 UTC m=+270.025254733" I0506 20:25:50.232632 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-05-06 20:25:50.232618379 +0000 UTC m=+270.189893180" I0506 20:25:50.232659 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:50.232777 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-05-06 20:25:50.232770532 +0000 UTC m=+270.190045325" I0506 20:25:50.496827 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:50.496874 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:50.496890 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-05-06 20:25:50.496884259 +0000 UTC m=+270.454159052" I0506 20:25:50.735991 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:50.735973958 +0000 UTC m=+270.693248761" I0506 20:25:50.883797 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:50.883780683 +0000 UTC m=+270.841055478" I0506 20:25:51.112131 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:51.112116244 +0000 UTC m=+271.069391036" I0506 20:25:51.206870 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:51.206854571 +0000 UTC m=+271.164129366" I0506 20:25:51.206904 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:51.206885602 +0000 UTC m=+271.164160395" I0506 20:25:51.264330 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:51.264303931 +0000 UTC m=+271.221578724" I0506 20:25:51.341654 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:51.341640268 +0000 UTC m=+271.298915062" I0506 20:25:51.402912 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:51.546187 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:51.546149163 +0000 UTC m=+271.503423947" I0506 20:25:51.648796 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:51.649678 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:51.649660573 +0000 UTC m=+271.606935377" I0506 20:25:51.848786 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:51.852021 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:51.852052 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.007408 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:52.007415 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.007396488 +0000 UTC m=+271.964671293" I0506 20:25:52.007437 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:52.007431131 +0000 UTC m=+271.964705929" I0506 20:25:52.136951 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.137012 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.137004805 +0000 UTC m=+272.094279601" I0506 20:25:52.196926 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.196913865 +0000 UTC m=+272.154188668" I0506 20:25:52.196926 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:52.196964 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:52.196958586 +0000 UTC m=+272.154233381" I0506 20:25:52.287870 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:52.287871 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.287856003 +0000 UTC m=+272.245130806" I0506 20:25:52.287896 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:52.287889743 +0000 UTC m=+272.245164536" I0506 20:25:52.294763 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.294804 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:52.294819 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:52.294814038 +0000 UTC m=+272.252088831" I0506 20:25:52.333445 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.371817 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.371862 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:52.371878 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:52.371872115 +0000 UTC m=+272.329146908" I0506 20:25:52.483921 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:52.483954 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-05-06 20:25:52.483945312 +0000 UTC m=+272.441220109" I0506 20:25:52.483914 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.483898241 +0000 UTC m=+272.441173039" I0506 20:25:52.522914 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.522960 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.522951494 +0000 UTC m=+272.480226296" I0506 20:25:52.555386 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:52.555373361 +0000 UTC m=+272.512648164" E0506 20:25:52.597792 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0506 20:25:52.597833 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.597826619 +0000 UTC m=+272.555101400" I0506 20:25:52.597848 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0506 20:25:52.632190 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.632190 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:52.660364 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.660341418 +0000 UTC m=+272.617616200" E0506 20:25:52.668899 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" E0506 20:25:52.668950 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0506 20:25:52.668969 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" E0506 20:25:52.668988 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0506 20:25:52.676924 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:52.676943 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:52.676938041 +0000 UTC m=+272.634212834" I0506 20:25:52.676948 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.676939318 +0000 UTC m=+272.634214114" I0506 20:25:52.691096 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:52.691083543 +0000 UTC m=+272.648358357" I0506 20:25:52.725076 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="integration-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:25:52.725063356 +0000 UTC m=+272.682338155" I0506 20:25:53.298041 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:53.298108 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:25:53.298098246 +0000 UTC m=+273.255373046" I0506 20:25:53.428556 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:53.428535248 +0000 UTC m=+273.385810029" I0506 20:25:53.809933 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:53.809911886 +0000 UTC m=+273.767186685" I0506 20:25:53.840767 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-05-06 20:25:53.840750177 +0000 UTC m=+273.798024976" I0506 20:25:53.840910 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:53.840942 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:53.84093278 +0000 UTC m=+273.798207580" I0506 20:25:53.921858 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:53.921836675 +0000 UTC m=+273.879111481" I0506 20:25:54.096079 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="release-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-05-06 20:25:54.096060479 +0000 UTC m=+274.053335279" I0506 20:25:54.439510 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:54.439488377 +0000 UTC m=+274.396763171" I0506 20:25:54.600685 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:54.600745 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 20:25:54.600765 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-05-06 20:25:54.600758541 +0000 UTC m=+274.558033334" I0506 20:25:54.636792 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:54.636775731 +0000 UTC m=+274.594050525" I0506 20:25:54.712790 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:55.599192 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:55.599171378 +0000 UTC m=+275.556446161" I0506 20:25:55.599251 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:55.599217594 +0000 UTC m=+275.556492387" I0506 20:25:55.752697 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:55.752667893 +0000 UTC m=+275.709942699" I0506 20:25:55.895722 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:55.895706072 +0000 UTC m=+275.852980865" I0506 20:25:55.895916 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:55.895902529 +0000 UTC m=+275.853177336" I0506 20:25:55.896077 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:55.896063473 +0000 UTC m=+275.853338267" I0506 20:25:55.989786 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:56.304251 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:56.304218623 +0000 UTC m=+276.261493419" I0506 20:25:56.754356 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-05-06 20:25:56.754338187 +0000 UTC m=+276.711612990" I0506 20:25:57.000545 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:57.000530305 +0000 UTC m=+276.957805141" I0506 20:25:57.045880 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:57.045859892 +0000 UTC m=+277.003134696" I0506 20:25:57.098089 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:57.098075361 +0000 UTC m=+277.055350145" I0506 20:25:57.404551 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-05-06 20:25:57.404533151 +0000 UTC m=+277.361807945" I0506 20:25:57.445390 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:57.445370641 +0000 UTC m=+277.402645426" I0506 20:25:57.639606 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:57.640126 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:57.640116623 +0000 UTC m=+277.597391403" I0506 20:25:57.739709 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:57.740211 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:57.740201438 +0000 UTC m=+277.697476223" I0506 20:25:57.840248 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:57.841063 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:57.841047068 +0000 UTC m=+277.798321870" I0506 20:25:58.189785 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:58.190375 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:58.190359462 +0000 UTC m=+278.147634266" I0506 20:25:58.839422 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:58.945795 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:58.945779172 +0000 UTC m=+278.903053951" I0506 20:25:59.193428 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:59.240074 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:59.289568 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:59.338768 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:59.388964 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:59.489101 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:59.589883 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:25:59.590431 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-05-06 20:25:59.590422655 +0000 UTC m=+279.547697448" I0506 20:25:59.638528 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:26:00.239503 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0506 20:26:00.288446 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again"