I0331 04:07:00.532981 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["172.30.0.10:53"] I0331 04:07:00.533511 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I0331 04:07:00.533528 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I0331 04:07:00.533532 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I0331 04:07:00.533536 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I0331 04:07:00.536642 1 controller.go:88] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 04:07:00.536660 1 controller.go:437] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0331 04:07:00.536669 1 controller.go:101] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0331 04:07:00.536929 1 controller.go:125] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 04:07:00.537003 1 controller.go:176] "starting leader election" logger="cert-manager.controller" I0331 04:07:00.537003 1 controller.go:169] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 04:07:00.538882 1 leaderelection.go:257] attempting to acquire leader lease kube-system/cert-manager-controller... E0331 04:07:00.560999 1 leaderelection.go:436] error retrieving resource lock kube-system/cert-manager-controller: leases.coordination.k8s.io "cert-manager-controller" is forbidden: User "system:serviceaccount:cert-manager:cert-manager" cannot get resource "leases" in API group "coordination.k8s.io" in the namespace "kube-system" I0331 04:07:22.130155 1 leaderelection.go:271] successfully acquired lease kube-system/cert-manager-controller I0331 04:07:22.130282 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="gateway-shim" I0331 04:07:22.132773 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 04:07:22.135341 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 04:07:22.137114 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 04:07:22.138645 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 04:07:22.138660 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 04:07:22.138743 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 04:07:22.140421 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 04:07:22.143066 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 04:07:22.144773 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 04:07:22.144787 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 04:07:22.144793 1 controller.go:223] "skipping disabled controller" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 04:07:22.144877 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 04:07:22.146463 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 04:07:22.148356 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="orders" I0331 04:07:22.150213 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 04:07:22.152061 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 04:07:22.153646 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 04:07:22.156236 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 04:07:22.157949 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 04:07:22.159533 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 04:07:22.161074 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 04:07:22.162663 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 04:07:22.165183 1 controller.go:240] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 04:07:22.166608 1 reflector.go:376] Caches populated for *v1.PartialObjectMetadata from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.166690 1 reflector.go:376] Caches populated for *v1.Secret from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.167596 1 reflector.go:376] Caches populated for *v1.Certificate from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.167987 1 reflector.go:376] Caches populated for *v1.Ingress from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.168082 1 reflector.go:376] Caches populated for *v1.ClusterIssuer from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.168197 1 reflector.go:376] Caches populated for *v1.Challenge from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.168294 1 reflector.go:376] Caches populated for *v1.CertificateRequest from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.168338 1 reflector.go:376] Caches populated for *v1.Order from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.168790 1 reflector.go:376] Caches populated for *v1.PartialObjectMetadata from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.168974 1 reflector.go:376] Caches populated for *v1.Issuer from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:07:22.177735 1 reflector.go:376] Caches populated for *v1.PartialObjectMetadata from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I0331 04:11:19.717651 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:19.717684 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-03-31 04:11:19.717674272 +0000 UTC m=+259.203710064" I0331 04:11:19.717727 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" lastTransitionTime="2026-03-31 04:11:19.717716395 +0000 UTC m=+259.203752193" E0331 04:11:20.123712 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 04:11:20.123755 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="ca-issuer" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.123742537 +0000 UTC m=+259.609778332" E0331 04:11:20.123800 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 04:11:20.161988 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:20.162002 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.161991465 +0000 UTC m=+259.648027262" I0331 04:11:20.162014 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.162008128 +0000 UTC m=+259.648043923" I0331 04:11:20.232599 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="self-signed-cluster-issuer" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.232590538 +0000 UTC m=+259.718626333" I0331 04:11:20.344119 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" E0331 04:11:20.344119 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0331 04:11:20.344171 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/selfsigned-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" E0331 04:11:20.344186 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"root-secret\" not found" logger="cert-manager.controller.setup" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 04:11:20.344193 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.34418569 +0000 UTC m=+259.830221486" E0331 04:11:20.344207 1 sync.go:62] "error setting up issuer" err="secrets \"root-secret\" not found" logger="cert-manager.controller" resource_name="ca-issuer" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 04:11:20.344240 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"root-secret\" not found" logger="cert-manager.controller" I0331 04:11:20.380640 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:20.380803 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="namespace-lister/namespace-lister" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:20.380830 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.380822145 +0000 UTC m=+259.866857943" I0331 04:11:20.808230 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/dex-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:20.808265 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.808257328 +0000 UTC m=+260.294293125" I0331 04:11:20.808228 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.808212255 +0000 UTC m=+260.294248053" I0331 04:11:20.829806 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/oauth2-proxy-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:20.829827 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.829822546 +0000 UTC m=+260.315858337" I0331 04:11:20.829839 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.829830005 +0000 UTC m=+260.315865800" I0331 04:11:20.895659 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:20.895676 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.89566199 +0000 UTC m=+260.381697794" I0331 04:11:20.895685 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.895679543 +0000 UTC m=+260.381715335" I0331 04:11:20.935028 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/ui-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:20.935053 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.935047516 +0000 UTC m=+260.421083308" I0331 04:11:20.935059 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.935048148 +0000 UTC m=+260.421083950" I0331 04:11:20.980831 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:20.980867 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:20.981218 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:20.981207317 +0000 UTC m=+260.467243118" I0331 04:11:20.981279 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.981268832 +0000 UTC m=+260.467304632" I0331 04:11:20.981359 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.981347672 +0000 UTC m=+260.467383477" I0331 04:11:20.981553 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" lastTransitionTime="2026-03-31 04:11:20.981544972 +0000 UTC m=+260.467580773" I0331 04:11:20.981563 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:20.981594 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:20.981586379 +0000 UTC m=+260.467622178" I0331 04:11:21.062016 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:21.062188 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="konflux-ui/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:21.062215 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:21.062208134 +0000 UTC m=+260.548243932" E0331 04:11:21.062233 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0331 04:11:21.062267 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.062261768 +0000 UTC m=+260.548297547" I0331 04:11:21.062267 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="integration-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.062256518 +0000 UTC m=+260.548292312" I0331 04:11:21.062283 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0331 04:11:21.104740 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:21.104825 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.104815552 +0000 UTC m=+260.590851355" I0331 04:11:21.172866 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:21.172902 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="integration-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:21.172917 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="integration-service/serving-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:21.172911943 +0000 UTC m=+260.658947735" E0331 04:11:21.211957 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" E0331 04:11:21.223924 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"ui-ca\" not found" logger="cert-manager.controller.setup" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" I0331 04:11:21.223971 1 sync.go:62] "Error initializing issuer: secrets \"ui-ca\" not found" logger="cert-manager.controller" resource_name="ui-ca-issuer" resource_namespace="konflux-ui" resource_kind="Issuer" resource_version="v1" E0331 04:11:21.223990 1 controller.go:157] "re-queuing item due to error processing" err="secrets \"ui-ca\" not found" logger="cert-manager.controller" I0331 04:11:21.241622 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:21.289945 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="cert-manager/selfsigned-ca-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.289929627 +0000 UTC m=+260.775965421" I0331 04:11:21.308075 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:21.308061292 +0000 UTC m=+260.794097096" I0331 04:11:21.326643 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:21.368262 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.368235446 +0000 UTC m=+260.854271248" I0331 04:11:21.382030 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:21.382016904 +0000 UTC m=+260.868052706" I0331 04:11:21.400074 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:21.400060285 +0000 UTC m=+260.886096079" I0331 04:11:21.400104 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:21.400087321 +0000 UTC m=+260.886123123" I0331 04:11:21.695314 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/ui-ca-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.695293989 +0000 UTC m=+261.181329780" I0331 04:11:21.818010 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:21.817992011 +0000 UTC m=+261.304027814" I0331 04:11:21.838389 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:21.838408 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.838395842 +0000 UTC m=+261.324431653" I0331 04:11:21.838411 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:21.838405258 +0000 UTC m=+261.324441050" I0331 04:11:21.887698 1 conditions.go:102] "Setting lastTransitionTime for Issuer condition" logger="cert-manager" issuer="release-service/selfsigned-issuer" condition="Ready" lastTransitionTime="2026-03-31 04:11:21.887688575 +0000 UTC m=+261.373724370" I0331 04:11:21.967697 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="namespace-lister/namespace-lister-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:21.967685556 +0000 UTC m=+261.453721348" I0331 04:11:21.989653 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:21.989861 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:21.989853714 +0000 UTC m=+261.475889507" I0331 04:11:22.580055 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:22.580032809 +0000 UTC m=+262.066068592" I0331 04:11:22.680391 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:22.680449 1 trigger_controller.go:225] "Certificate must be re-issued" logger="cert-manager.controller" key="release-service/serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 04:11:22.680477 1 conditions.go:217] "Setting lastTransitionTime for Certificate condition" logger="cert-manager" certificate="release-service/serving-cert" condition="Issuing" lastTransitionTime="2026-03-31 04:11:22.680465633 +0000 UTC m=+262.166501430" I0331 04:11:22.974218 1 request.go:729] Waited for 1.006313913s due to client-side throttling, not priority and fairness, request: PUT:https://172.30.0.1:443/apis/cert-manager.io/v1/namespaces/namespace-lister/certificaterequests/namespace-lister-1/status I0331 04:11:23.042814 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="cert-manager/selfsigned-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:23.042797873 +0000 UTC m=+262.528833674" I0331 04:11:23.280157 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:23.383599 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/ui-ca" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:23.383581354 +0000 UTC m=+262.869617154" I0331 04:11:23.383737 1 conditions.go:86] "Found status change for Issuer condition; setting lastTransitionTime" logger="cert-manager" issuer="konflux-ui/ui-ca-issuer" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:23.383725584 +0000 UTC m=+262.869761375" I0331 04:11:23.628859 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:23.680074 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:23.736257 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:23.736242399 +0000 UTC m=+263.222278202" I0331 04:11:23.780971 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:23.828934 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:23.892031 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:23.892014687 +0000 UTC m=+263.378050489" I0331 04:11:23.980083 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:24.042681 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:24.042666923 +0000 UTC m=+263.528702724" I0331 04:11:24.237271 1 conditions.go:269] "Found status change for CertificateRequest condition; setting lastTransitionTime" logger="cert-manager" certificateRequest="konflux-ui/oauth2-proxy-cert-1" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:24.237253926 +0000 UTC m=+263.723289717" I0331 04:11:24.330153 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:24.530110 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:24.530730 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="namespace-lister/namespace-lister" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:24.530716323 +0000 UTC m=+264.016752115" I0331 04:11:24.894173 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/serving-cert-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:24.894154991 +0000 UTC m=+264.380190792" I0331 04:11:24.991693 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="integration-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:24.991678336 +0000 UTC m=+264.477714127" I0331 04:11:25.091837 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:25.091824499 +0000 UTC m=+264.577860296" I0331 04:11:25.994069 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="konflux-ui/dex-cert-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:25.994054623 +0000 UTC m=+265.480090414" I0331 04:11:26.035796 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:26.035779305 +0000 UTC m=+265.521815106" I0331 04:11:26.129920 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"namespace-lister\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:26.233834 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:26.293341 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Approved" lastTransitionTime="2026-03-31 04:11:26.29332455 +0000 UTC m=+265.779360347" I0331 04:11:26.635972 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:26.635951168 +0000 UTC m=+266.121986968" I0331 04:11:26.686156 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:26.686139121 +0000 UTC m=+266.172174925" I0331 04:11:26.879500 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:26.880241 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/oauth2-proxy-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:26.880229424 +0000 UTC m=+266.366265226" I0331 04:11:27.197261 1 conditions.go:285] "Setting lastTransitionTime for CertificateRequest condition" logger="cert-manager" certificateRequest="release-service/serving-cert-1" condition="Ready" lastTransitionTime="2026-03-31 04:11:27.197241136 +0000 UTC m=+266.683276930" I0331 04:11:27.579452 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:27.579968 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:27.579959237 +0000 UTC m=+267.065995015" I0331 04:11:27.679540 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:27.680204 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="integration-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:27.680183813 +0000 UTC m=+267.166219592" I0331 04:11:27.785284 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:27.785267525 +0000 UTC m=+267.271303318" I0331 04:11:27.979648 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"ui-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:28.730568 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:28.731146 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="konflux-ui/dex-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:28.731134541 +0000 UTC m=+268.217170339" I0331 04:11:28.780424 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"oauth2-proxy-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:28.886032 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:28.886013541 +0000 UTC m=+268.372049343" I0331 04:11:28.979971 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:29.029880 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:29.080660 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:29.430950 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:29.431534 1 conditions.go:201] "Found status change for Certificate condition; setting lastTransitionTime" logger="cert-manager" certificate="release-service/serving-cert" condition="Ready" oldStatus="False" status="True" lastTransitionTime="2026-03-31 04:11:29.431526142 +0000 UTC m=+268.917561940" I0331 04:11:29.679996 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"dex-cert\": the object has been modified; please apply your changes to the latest version and try again" I0331 04:11:30.085623 1 controller.go:152] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" error="Operation cannot be fulfilled on certificates.cert-manager.io \"serving-cert\": the object has been modified; please apply your changes to the latest version and try again"