I0423 20:02:08.348279 1 controller.go:74] "starting cert-manager controller" logger="cert-manager.controller" version="canary" git_commit="" go_version="go1.25.8 (Red Hat 1.25.8-1.el9_6) X:strictfipsruntime" platform="linux/amd64" I0423 20:02:08.348365 1 controller.go:290] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["172.30.0.10:53"] I0423 20:02:08.348648 1 envvar.go:172] "Feature gate default state" feature="InOrderInformers" enabled=true I0423 20:02:08.348664 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I0423 20:02:08.348669 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I0423 20:02:08.348673 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I0423 20:02:08.348677 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I0423 20:02:08.351080 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0423 20:02:08.351104 1 controller.go:438] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0423 20:02:08.351111 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0423 20:02:08.351527 1 controller.go:129] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0423 20:02:08.351595 1 controller.go:182] "starting leader election" logger="cert-manager.controller" I0423 20:02:08.351608 1 controller.go:175] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0423 20:02:08.353319 1 leaderelection.go:257] attempting to acquire leader lease kube-system/cert-manager-controller... E0423 20:02:08.372337 1 leaderelection.go:448] error retrieving resource lock kube-system/cert-manager-controller: leases.coordination.k8s.io "cert-manager-controller" is forbidden: User "system:serviceaccount:cert-manager:cert-manager" cannot get resource "leases" in API group "coordination.k8s.io" in the namespace "kube-system" I0423 20:02:37.245185 1 leaderelection.go:271] successfully acquired lease kube-system/cert-manager-controller I0423 20:02:37.245325 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0423 20:02:37.245344 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="gateway-shim" I0423 20:02:37.247811 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0423 20:02:37.249544 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0423 20:02:37.249557 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0423 20:02:37.249632 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0423 20:02:37.251312 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0423 20:02:37.253075 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0423 20:02:37.255749 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0423 20:02:37.257428 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0423 20:02:37.259155 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="challenges" I0423 20:02:37.260827 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0423 20:02:37.262773 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0423 20:02:37.264847 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0423 20:02:37.266516 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0423 20:02:37.266625 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0423 20:02:37.269390 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="issuers" I0423 20:02:37.271005 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0423 20:02:37.272617 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0423 20:02:37.274241 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0423 20:02:37.275887 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="orders" I0423 20:02:37.277514 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0423 20:02:37.279035 1 controller.go:229] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0423 20:02:37.279086 1 controller.go:246] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0423 20:02:37.283957 1 reflector.go:436] "Caches populated" type="*v1.CertificateRequest" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.283979 1 reflector.go:436] "Caches populated" type="*v1.Order" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.284075 1 reflector.go:436] "Caches populated" type="*v1.Issuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.284670 1 reflector.go:436] "Caches populated" type="*v1.ClusterIssuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.284674 1 reflector.go:436] "Caches populated" type="*v1.Secret" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.284819 1 reflector.go:436] "Caches populated" type="*v1.Ingress" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.285185 1 reflector.go:436] "Caches populated" type="*v1.Challenge" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.285260 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.285267 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.285185 1 reflector.go:436] "Caches populated" type="*v1.Certificate" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:02:37.294470 1 reflector.go:436] "Caches populated" type="*v1.PartialObjectMetadata" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:05:27.295265 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:27.295306 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-04-23 20:05:27.295299878 +0000 UTC m=+198.967386375" I0423 20:05:27.295287 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.295262132 +0000 UTC m=+198.967348639" I0423 20:05:27.387550 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:27.387606 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.387599401 +0000 UTC m=+199.059685906" E0423 20:05:27.446156 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0423 20:05:27.446228 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="ca-issuer" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.446216355 +0000 UTC m=+199.118302852" E0423 20:05:27.446261 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0423 20:05:27.483461 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:27.483528 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.48351952 +0000 UTC m=+199.155606026" I0423 20:05:27.526343 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:27.526343 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.526332802 +0000 UTC m=+199.198419309" I0423 20:05:27.526374 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-04-23 20:05:27.526367884 +0000 UTC m=+199.198454390" E0423 20:05:27.560310 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0423 20:05:27.560344 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="self-signed-cluster-issuer" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.560331626 +0000 UTC m=+199.232418125" E0423 20:05:27.560372 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0423 20:05:27.560542 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0423 20:05:27.560593 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0423 20:05:27.667023 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:27.667079 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:27.667101 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-04-23 20:05:27.667094546 +0000 UTC m=+199.339181048" I0423 20:05:27.713840 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:27.713822811 +0000 UTC m=+199.385909315" I0423 20:05:27.801010 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.800995879 +0000 UTC m=+199.473082419" I0423 20:05:27.871932 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:27.871913533 +0000 UTC m=+199.544000030" I0423 20:05:27.918926 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:27.918908921 +0000 UTC m=+199.590995428" I0423 20:05:27.926094 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:27.926080695 +0000 UTC m=+199.598167192" I0423 20:05:27.926183 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:27.92616849 +0000 UTC m=+199.598254993" I0423 20:05:27.974897 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:27.974882208 +0000 UTC m=+199.646968703" I0423 20:05:28.009272 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:28.080667 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:28.080641545 +0000 UTC m=+199.752728053" I0423 20:05:28.156864 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:28.157417 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:28.157408486 +0000 UTC m=+199.829494986" I0423 20:05:28.325995 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:28.665461 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:28.665489 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-04-23 20:05:28.665483129 +0000 UTC m=+200.337569630" I0423 20:05:28.665526 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:28.66551314 +0000 UTC m=+200.337599646" I0423 20:05:28.800878 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:28.800949 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:28.800941455 +0000 UTC m=+200.473027957" I0423 20:05:28.925310 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:28.9252932 +0000 UTC m=+200.597379698" I0423 20:05:28.925336 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:28.925366 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-04-23 20:05:28.925357781 +0000 UTC m=+200.597444279" I0423 20:05:29.037879 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:29.038096 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:29.038082057 +0000 UTC m=+200.710168560" I0423 20:05:29.046049 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:29.046037633 +0000 UTC m=+200.718124131" I0423 20:05:29.046087 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:29.046116 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-04-23 20:05:29.046107756 +0000 UTC m=+200.718194257" I0423 20:05:29.157925 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:29.157947 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:29.160111 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:29.160135 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-04-23 20:05:29.160128267 +0000 UTC m=+200.832214767" I0423 20:05:29.241835 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:29.245140 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:29.245144 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-04-23 20:05:29.245128731 +0000 UTC m=+200.917215239" I0423 20:05:29.245167 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-04-23 20:05:29.245160748 +0000 UTC m=+200.917247244" E0423 20:05:29.365465 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0423 20:05:29.365536 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" lastTransitionTime="2026-04-23 20:05:29.365526314 +0000 UTC m=+201.037612811" I0423 20:05:29.365553 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0423 20:05:29.459645 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:29.459735 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:29.459762 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-04-23 20:05:29.459754936 +0000 UTC m=+201.131841438" E0423 20:05:29.489168 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0423 20:05:29.489239 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:29.489252 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:29.48923447 +0000 UTC m=+201.161320978" I0423 20:05:29.489265 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-04-23 20:05:29.489257092 +0000 UTC m=+201.161343599" E0423 20:05:29.489274 1 setup.go:50] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0423 20:05:29.489337 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" E0423 20:05:29.489376 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0423 20:05:29.489383 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:29.489372168 +0000 UTC m=+201.161458667" I0423 20:05:29.571400 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:29.571382478 +0000 UTC m=+201.243468983" I0423 20:05:29.613088 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="integration-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-04-23 20:05:29.613074255 +0000 UTC m=+201.285160753" I0423 20:05:29.793888 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:29.793953 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:29.793945744 +0000 UTC m=+201.466032247" I0423 20:05:30.048324 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:30.04830428 +0000 UTC m=+201.720390766" I0423 20:05:30.166215 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:30.166188542 +0000 UTC m=+201.838275082" I0423 20:05:30.169115 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:30.169100927 +0000 UTC m=+201.841187410" I0423 20:05:30.503203 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-04-23 20:05:30.503186143 +0000 UTC m=+202.175272646" I0423 20:05:30.503252 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:30.503277 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-04-23 20:05:30.503268933 +0000 UTC m=+202.175355431" I0423 20:05:30.551233 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="release-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-04-23 20:05:30.55121814 +0000 UTC m=+202.223304642" I0423 20:05:30.976970 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:30.976953338 +0000 UTC m=+202.649039826" I0423 20:05:31.316195 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:31.316282 1 trigger_controller.go:227] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0423 20:05:31.316315 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-04-23 20:05:31.316305366 +0000 UTC m=+202.988391873" I0423 20:05:31.354474 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:31.704300 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:31.776197 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:31.77617526 +0000 UTC m=+203.448261767" I0423 20:05:32.334666 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:32.334649743 +0000 UTC m=+204.006736239" I0423 20:05:32.576357 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:32.576338219 +0000 UTC m=+204.248424719" I0423 20:05:33.022812 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:33.022796999 +0000 UTC m=+204.694883495" I0423 20:05:33.315794 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:33.315774397 +0000 UTC m=+204.987860896" I0423 20:05:33.315805 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:33.31578956 +0000 UTC m=+204.987876059" I0423 20:05:33.553814 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:33.623139 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-04-23 20:05:33.623122527 +0000 UTC m=+205.295209027" I0423 20:05:33.755457 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:33.755755 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:33.755743577 +0000 UTC m=+205.427830077" I0423 20:05:33.819542 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:33.819526155 +0000 UTC m=+205.491612652" I0423 20:05:33.819572 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:33.81956202 +0000 UTC m=+205.491648504" I0423 20:05:33.819581 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:33.819572866 +0000 UTC m=+205.491659355" I0423 20:05:33.912944 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:33.912903825 +0000 UTC m=+205.584990329" I0423 20:05:34.174678 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-04-23 20:05:34.174659818 +0000 UTC m=+205.846746317" I0423 20:05:34.753624 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:34.754159 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:34.754150223 +0000 UTC m=+206.426236751" I0423 20:05:34.952659 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:35.002453 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:35.109686 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:35.109670852 +0000 UTC m=+206.781757349" I0423 20:05:35.160021 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:35.160005931 +0000 UTC m=+206.832092428" I0423 20:05:35.210846 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:35.210828555 +0000 UTC m=+206.882915051" I0423 20:05:35.559371 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:35.559354166 +0000 UTC m=+207.231440663" I0423 20:05:35.704937 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:35.705447 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:35.705438159 +0000 UTC m=+207.377524655" I0423 20:05:35.802928 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:35.803434 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:35.803424675 +0000 UTC m=+207.475511172" I0423 20:05:35.902754 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:35.903274 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:35.903264519 +0000 UTC m=+207.575351022" I0423 20:05:36.003229 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:36.053250 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:36.203181 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:36.203696 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-04-23 20:05:36.203687756 +0000 UTC m=+207.875774244" I0423 20:05:36.903201 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:37.004973 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:37.052799 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:37.102442 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:05:37.203451 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0423 20:08:31.803269 1 reflector.go:436] "Caches populated" type="*v1.ClusterIssuer" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290" I0423 20:11:49.907581 1 reflector.go:436] "Caches populated" type="*v1.Challenge" reflector="pkg/mod/k8s.io/client-go@v0.34.1/tools/cache/reflector.go:290"