ubuntu@ip-172-31-16-114:~$ script -B forMW.log -T -E always
Script started, output log file is 'forMW.log', input log file is 'forMW.log', timing file is '-E'.
ubuntu@ip-172-31-16-114:~$ kubectl apply -f ./deploykf-app-of-apps.yaml
application.argoproj.io/deploykf-app-of-apps created
ubuntu@ip-172-31-16-114:~$ bash ./deploykf/scripts/sync_argocd_apps.sh
==========================================================================================
Getting admin password from 'Secret/argocd-initial-admin-secret'...
==========================================================================================
>>> DONE
==========================================================================================
Logging in to ArgoCD...
==========================================================================================
E0222 05:03:45.603847 208639 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:43949->127.0.0.1:52286: write tcp4 127.0.0.1:43949->127.0.0.1:52286: write: broken pipe
'admin:login' logged in successfully
Context 'port-forward' updated
>>> DONE
==========================================================================================
Getting status of applications...
Namespace: 'argocd'
Selector: 'app.kubernetes.io/part-of=deploykf,app.kubernetes.io/name=deploykf-app-of-apps'
==========================================================================================
>>> Found 1 applications in 1 sync waves.
>>> Sync wave 0:
>>> - argocd/deploykf-app-of-apps (status: OutOfSync)
==========================================================================================
Syncing applications with timeout of 600s:
- argocd/deploykf-app-of-apps
Pruning: false
Force Sync: false
==========================================================================================
TIMESTAMP GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--tensorboards--tensorboard-controller OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--training-operator OutOfSync Missing
2024-02-22T05:03:57+00:00 Namespace deploykf-istio-gateway Synced
2024-02-22T05:03:57+00:00 Namespace istio-system Synced
2024-02-22T05:03:57+00:00 Namespace kubeflow Synced
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-dep--cert-manager OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--notebooks--jupyter-web-app OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--volumes--volumes-web-app OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-core--deploykf-auth OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-dep--kyverno OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-dep--argo-workflows OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--katib OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--pipelines OutOfSync Missing
2024-02-22T05:03:57+00:00 Namespace deploykf-dashboard Synced
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--notebooks--notebook-controller OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--tensorboards--tensorboards-web-app OutOfSync Missing
2024-02-22T05:03:57+00:00 Namespace deploykf-minio Synced
2024-02-22T05:03:57+00:00 Namespace kyverno Synced
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-core--deploykf-istio-gateway OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-core--deploykf-profiles-generator OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd kf-tools--poddefaults-webhook OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-opt--deploykf-mysql OutOfSync Missing
2024-02-22T05:03:57+00:00 Namespace cert-manager Synced
2024-02-22T05:03:57+00:00 Namespace deploykf-auth Synced
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-opt--deploykf-minio OutOfSync Missing
2024-02-22T05:03:57+00:00 Namespace deploykf-mysql Synced
2024-02-22T05:03:57+00:00 Namespace kubeflow-argo-workflows Synced
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-core--deploykf-dashboard OutOfSync Missing
2024-02-22T05:03:57+00:00 argoproj.io Application argocd dkf-dep--istio OutOfSync Missing
2024-02-22T05:03:59+00:00 Namespace argocd deploykf-dashboard Running Synced namespace/deploykf-dashboard unchanged
2024-02-22T05:03:59+00:00 Namespace argocd kyverno Running Synced namespace/kyverno unchanged
2024-02-22T05:03:59+00:00 Namespace argocd deploykf-minio Running Synced namespace/deploykf-minio unchanged
2024-02-22T05:03:59+00:00 Namespace argocd deploykf-mysql Running Synced namespace/deploykf-mysql unchanged
2024-02-22T05:03:59+00:00 Namespace argocd istio-system Running Synced namespace/istio-system unchanged
2024-02-22T05:03:59+00:00 Namespace argocd deploykf-istio-gateway Running Synced namespace/deploykf-istio-gateway unchanged
2024-02-22T05:03:59+00:00 Namespace argocd kubeflow Running Synced namespace/kubeflow unchanged
2024-02-22T05:03:59+00:00 Namespace argocd cert-manager Running Synced namespace/cert-manager unchanged
2024-02-22T05:03:59+00:00 Namespace argocd kubeflow-argo-workflows Running Synced namespace/kubeflow-argo-workflows unchanged
2024-02-22T05:03:59+00:00 Namespace argocd deploykf-auth Running Synced namespace/deploykf-auth unchanged
2024-02-22T05:04:00+00:00 argoproj.io Application argocd dkf-dep--cert-manager Synced Missing
2024-02-22T05:04:02+00:00 Namespace argocd deploykf-istio-gateway Succeeded Synced namespace/deploykf-istio-gateway unchanged
2024-02-22T05:04:02+00:00 Namespace argocd deploykf-dashboard Succeeded Synced namespace/deploykf-dashboard unchanged
2024-02-22T05:04:02+00:00 Namespace argocd kyverno Succeeded Synced namespace/kyverno unchanged
2024-02-22T05:04:02+00:00 Namespace argocd deploykf-auth Succeeded Synced namespace/deploykf-auth unchanged
2024-02-22T05:04:02+00:00 Namespace argocd kubeflow Succeeded Synced namespace/kubeflow unchanged
2024-02-22T05:04:02+00:00 Namespace argocd deploykf-minio Succeeded Synced namespace/deploykf-minio unchanged
2024-02-22T05:04:02+00:00 Namespace argocd istio-system Succeeded Synced namespace/istio-system unchanged
2024-02-22T05:04:02+00:00 Namespace argocd deploykf-mysql Succeeded Synced namespace/deploykf-mysql unchanged
2024-02-22T05:04:02+00:00 Namespace argocd kubeflow-argo-workflows Succeeded Synced namespace/kubeflow-argo-workflows unchanged
2024-02-22T05:04:02+00:00 argoproj.io Application argocd dkf-dep--cert-manager Synced Missing application.argoproj.io/dkf-dep--cert-manager created
2024-02-22T05:04:02+00:00 Namespace argocd cert-manager Succeeded Synced namespace/cert-manager unchanged
2024-02-22T05:04:03+00:00 argoproj.io Application argocd dkf-dep--istio Synced Missing
2024-02-22T05:04:04+00:00 argoproj.io Application argocd dkf-dep--istio Synced Missing application.argoproj.io/dkf-dep--istio created
2024-02-22T05:04:05+00:00 argoproj.io Application argocd dkf-dep--kyverno Synced Missing
2024-02-22T05:04:07+00:00 argoproj.io Application argocd dkf-dep--kyverno Synced Missing application.argoproj.io/dkf-dep--kyverno created
2024-02-22T05:04:08+00:00 argoproj.io Application argocd dkf-core--deploykf-istio-gateway Synced Missing
2024-02-22T05:04:10+00:00 argoproj.io Application argocd dkf-core--deploykf-istio-gateway Synced Missing application.argoproj.io/dkf-core--deploykf-istio-gateway created
2024-02-22T05:04:10+00:00 argoproj.io Application argocd dkf-core--deploykf-dashboard Synced Missing
2024-02-22T05:04:10+00:00 argoproj.io Application argocd dkf-core--deploykf-auth Synced Missing
2024-02-22T05:04:12+00:00 argoproj.io Application argocd dkf-core--deploykf-dashboard Synced Missing application.argoproj.io/dkf-core--deploykf-dashboard created
2024-02-22T05:04:12+00:00 argoproj.io Application argocd dkf-core--deploykf-auth Synced Missing application.argoproj.io/dkf-core--deploykf-auth created
2024-02-22T05:04:13+00:00 argoproj.io Application argocd dkf-core--deploykf-profiles-generator Synced Missing
2024-02-22T05:04:15+00:00 argoproj.io Application argocd dkf-core--deploykf-profiles-generator Synced Missing application.argoproj.io/dkf-core--deploykf-profiles-generator created
2024-02-22T05:04:16+00:00 argoproj.io Application argocd dkf-opt--deploykf-minio Synced Missing
2024-02-22T05:04:16+00:00 argoproj.io Application argocd dkf-opt--deploykf-mysql Synced Missing
2024-02-22T05:04:17+00:00 argoproj.io Application argocd dkf-opt--deploykf-minio Synced Missing application.argoproj.io/dkf-opt--deploykf-minio created
2024-02-22T05:04:17+00:00 argoproj.io Application argocd dkf-opt--deploykf-mysql Synced Missing application.argoproj.io/dkf-opt--deploykf-mysql created
2024-02-22T05:04:18+00:00 argoproj.io Application argocd kf-dep--argo-workflows Synced Missing
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-dep--argo-workflows Synced Missing application.argoproj.io/kf-dep--argo-workflows created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--volumes--volumes-web-app OutOfSync Missing application.argoproj.io/kf-tools--volumes--volumes-web-app created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--tensorboards--tensorboard-controller OutOfSync Missing application.argoproj.io/kf-tools--tensorboards--tensorboard-controller created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--katib OutOfSync Missing application.argoproj.io/kf-tools--katib created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--training-operator OutOfSync Missing application.argoproj.io/kf-tools--training-operator created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--tensorboards--tensorboards-web-app OutOfSync Missing application.argoproj.io/kf-tools--tensorboards--tensorboards-web-app created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--poddefaults-webhook OutOfSync Missing application.argoproj.io/kf-tools--poddefaults-webhook created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--notebooks--notebook-controller OutOfSync Missing application.argoproj.io/kf-tools--notebooks--notebook-controller created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--pipelines OutOfSync Missing application.argoproj.io/kf-tools--pipelines created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--notebooks--jupyter-web-app OutOfSync Missing application.argoproj.io/kf-tools--notebooks--jupyter-web-app created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--katib Synced Missing application.argoproj.io/kf-tools--katib created
2024-02-22T05:04:20+00:00 argoproj.io Application argocd kf-tools--volumes--volumes-web-app Synced Missing application.argoproj.io/kf-tools--volumes--volumes-web-app created
E0222 05:04:21.822046 209409 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:44265->127.0.0.1:36640: write tcp4 127.0.0.1:44265->127.0.0.1:36640: write: broken pipe
Name: argocd/deploykf-app-of-apps
Project: default
Server: https://kubernetes.default.svc
Namespace: argocd
URL: https://127.0.0.1:44265/applications/argocd/deploykf-app-of-apps
Repo: https://github.com/deployKF/deployKF.git
Target: v0.1.4
Path: .
SyncWindow: Sync Allowed
Sync Policy: <none>
Sync Status: Synced to v0.1.4 (29ac97a)
Health Status: Healthy
Operation: Sync
Sync Revision: 29ac97a8727d4da10f456263d755e391faface2d
Phase: Succeeded
Start: 2024-02-22 05:03:57 +0000 UTC
Finished: 2024-02-22 05:04:20 +0000 UTC
Duration: 23s
Message: successfully synced (all tasks run)
GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
Namespace argocd deploykf-mysql Succeeded Synced namespace/deploykf-mysql unchanged
Namespace argocd kubeflow-argo-workflows Succeeded Synced namespace/kubeflow-argo-workflows unchanged
Namespace argocd deploykf-istio-gateway Succeeded Synced namespace/deploykf-istio-gateway unchanged
Namespace argocd deploykf-dashboard Succeeded Synced namespace/deploykf-dashboard unchanged
Namespace argocd istio-system Succeeded Synced namespace/istio-system unchanged
Namespace argocd deploykf-auth Succeeded Synced namespace/deploykf-auth unchanged
Namespace argocd kubeflow Succeeded Synced namespace/kubeflow unchanged
Namespace argocd kyverno Succeeded Synced namespace/kyverno unchanged
Namespace argocd deploykf-minio Succeeded Synced namespace/deploykf-minio unchanged
Namespace argocd cert-manager Succeeded Synced namespace/cert-manager unchanged
argoproj.io Application argocd dkf-dep--cert-manager Synced application.argoproj.io/dkf-dep--cert-manager created
argoproj.io Application argocd dkf-dep--istio Synced application.argoproj.io/dkf-dep--istio created
argoproj.io Application argocd dkf-dep--kyverno Synced application.argoproj.io/dkf-dep--kyverno created
argoproj.io Application argocd dkf-core--deploykf-istio-gateway Synced application.argoproj.io/dkf-core--deploykf-istio-gateway created
argoproj.io Application argocd dkf-core--deploykf-dashboard Synced application.argoproj.io/dkf-core--deploykf-dashboard created
argoproj.io Application argocd dkf-core--deploykf-auth Synced application.argoproj.io/dkf-core--deploykf-auth created
argoproj.io Application argocd dkf-core--deploykf-profiles-generator Synced application.argoproj.io/dkf-core--deploykf-profiles-generator created
argoproj.io Application argocd dkf-opt--deploykf-mysql Synced application.argoproj.io/dkf-opt--deploykf-mysql created
argoproj.io Application argocd dkf-opt--deploykf-minio Synced application.argoproj.io/dkf-opt--deploykf-minio created
argoproj.io Application argocd kf-dep--argo-workflows Synced application.argoproj.io/kf-dep--argo-workflows created
argoproj.io Application argocd kf-tools--volumes--volumes-web-app Synced application.argoproj.io/kf-tools--volumes--volumes-web-app created
argoproj.io Application argocd kf-tools--katib Synced application.argoproj.io/kf-tools--katib created
argoproj.io Application argocd kf-tools--pipelines Synced application.argoproj.io/kf-tools--pipelines created
argoproj.io Application argocd kf-tools--training-operator Synced application.argoproj.io/kf-tools--training-operator created
argoproj.io Application argocd kf-tools--notebooks--notebook-controller Synced application.argoproj.io/kf-tools--notebooks--notebook-controller created
argoproj.io Application argocd kf-tools--tensorboards--tensorboards-web-app Synced application.argoproj.io/kf-tools--tensorboards--tensorboards-web-app created
argoproj.io Application argocd kf-tools--poddefaults-webhook Synced application.argoproj.io/kf-tools--poddefaults-webhook created
argoproj.io Application argocd kf-tools--tensorboards--tensorboard-controller Synced application.argoproj.io/kf-tools--tensorboards--tensorboard-controller created
argoproj.io Application argocd kf-tools--notebooks--jupyter-web-app Synced application.argoproj.io/kf-tools--notebooks--jupyter-web-app created
Namespace cert-manager Synced
Namespace deploykf-auth Synced
Namespace deploykf-dashboard Synced
Namespace deploykf-istio-gateway Synced
Namespace deploykf-minio Synced
Namespace deploykf-mysql Synced
Namespace istio-system Synced
Namespace kubeflow Synced
Namespace kubeflow-argo-workflows Synced
Namespace kyverno Synced
>>> Sync Succeeded
==========================================================================================
Waiting 300s for applications to be healthy:
- argocd/deploykf-app-of-apps
==========================================================================================
E0222 05:04:22.026349 209426 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:43709->127.0.0.1:39544: write tcp4 127.0.0.1:43709->127.0.0.1:39544: write: broken pipe
Name: argocd/deploykf-app-of-apps
Project: default
Server: https://kubernetes.default.svc
Namespace: argocd
URL: https://127.0.0.1:43709/applications/argocd/deploykf-app-of-apps
Repo: https://github.com/deployKF/deployKF.git
Target: v0.1.4
Path: .
SyncWindow: Sync Allowed
Sync Policy: <none>
Sync Status: Synced to v0.1.4 (29ac97a)
Health Status: Healthy
GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
Namespace argocd deploykf-mysql Succeeded Synced namespace/deploykf-mysql unchanged
Namespace argocd kubeflow-argo-workflows Succeeded Synced namespace/kubeflow-argo-workflows unchanged
Namespace argocd deploykf-istio-gateway Succeeded Synced namespace/deploykf-istio-gateway unchanged
Namespace argocd deploykf-dashboard Succeeded Synced namespace/deploykf-dashboard unchanged
Namespace argocd istio-system Succeeded Synced namespace/istio-system unchanged
Namespace argocd deploykf-auth Succeeded Synced namespace/deploykf-auth unchanged
Namespace argocd kubeflow Succeeded Synced namespace/kubeflow unchanged
Namespace argocd kyverno Succeeded Synced namespace/kyverno unchanged
Namespace argocd deploykf-minio Succeeded Synced namespace/deploykf-minio unchanged
Namespace argocd cert-manager Succeeded Synced namespace/cert-manager unchanged
argoproj.io Application argocd dkf-dep--cert-manager Synced application.argoproj.io/dkf-dep--cert-manager created
argoproj.io Application argocd dkf-dep--istio Synced application.argoproj.io/dkf-dep--istio created
argoproj.io Application argocd dkf-dep--kyverno Synced application.argoproj.io/dkf-dep--kyverno created
argoproj.io Application argocd dkf-core--deploykf-istio-gateway Synced application.argoproj.io/dkf-core--deploykf-istio-gateway created
argoproj.io Application argocd dkf-core--deploykf-dashboard Synced application.argoproj.io/dkf-core--deploykf-dashboard created
argoproj.io Application argocd dkf-core--deploykf-auth Synced application.argoproj.io/dkf-core--deploykf-auth created
argoproj.io Application argocd dkf-core--deploykf-profiles-generator Synced application.argoproj.io/dkf-core--deploykf-profiles-generator created
argoproj.io Application argocd dkf-opt--deploykf-mysql Synced application.argoproj.io/dkf-opt--deploykf-mysql created
argoproj.io Application argocd dkf-opt--deploykf-minio Synced application.argoproj.io/dkf-opt--deploykf-minio created
argoproj.io Application argocd kf-dep--argo-workflows Synced application.argoproj.io/kf-dep--argo-workflows created
argoproj.io Application argocd kf-tools--volumes--volumes-web-app Synced application.argoproj.io/kf-tools--volumes--volumes-web-app created
argoproj.io Application argocd kf-tools--katib Synced application.argoproj.io/kf-tools--katib created
argoproj.io Application argocd kf-tools--pipelines Synced application.argoproj.io/kf-tools--pipelines created
argoproj.io Application argocd kf-tools--training-operator Synced application.argoproj.io/kf-tools--training-operator created
argoproj.io Application argocd kf-tools--notebooks--notebook-controller Synced application.argoproj.io/kf-tools--notebooks--notebook-controller created
argoproj.io Application argocd kf-tools--tensorboards--tensorboards-web-app Synced application.argoproj.io/kf-tools--tensorboards--tensorboards-web-app created
argoproj.io Application argocd kf-tools--poddefaults-webhook Synced application.argoproj.io/kf-tools--poddefaults-webhook created
argoproj.io Application argocd kf-tools--tensorboards--tensorboard-controller Synced application.argoproj.io/kf-tools--tensorboards--tensorboard-controller created
argoproj.io Application argocd kf-tools--notebooks--jupyter-web-app Synced E0222 05:04:22.105937 209426 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:43709->127.0.0.1:39582: write tcp4 127.0.0.1:43709->127.0.0.1:39582: write: broken pipe
application.argoproj.io/kf-tools--notebooks--jupyter-web-app created
Namespace cert-manager Synced
Namespace deploykf-auth Synced
Namespace deploykf-dashboard Synced
Namespace deploykf-istio-gateway Synced
Namespace deploykf-minio Synced
Namespace deploykf-mysql Synced
Namespace istio-system Synced
Namespace kubeflow Synced
Namespace kubeflow-argo-workflows Synced
Namespace kyverno Synced
>>> DONE
==========================================================================================
Getting status of applications...
Namespace: 'argocd'
Selector: 'app.kubernetes.io/part-of=deploykf,app.kubernetes.io/name=deploykf-namespaces'
==========================================================================================
E0222 05:04:22.285509 209436 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:45549->127.0.0.1:51682: write tcp4 127.0.0.1:45549->127.0.0.1:51682: write: broken pipe
>>> WARNING: No applications found matching the selector
==========================================================================================
Getting status of applications...
Namespace: 'argocd'
Selector: 'app.kubernetes.io/part-of=deploykf,app.kubernetes.io/component=deploykf-dependencies'
==========================================================================================
E0222 05:04:22.496649 209447 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:43243->127.0.0.1:33010: write tcp4 127.0.0.1:43243->127.0.0.1:33010: write: broken pipe
E0222 05:04:22.787488 209457 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:41183->127.0.0.1:54706: write tcp4 127.0.0.1:41183->127.0.0.1:54706: write: broken pipe
>>> Found 1 applications in 1 sync waves.
>>> Sync wave 10:
>>> - argocd/dkf-dep--cert-manager (status: OutOfSync)
==========================================================================================
Syncing applications with timeout of 600s:
- argocd/dkf-dep--cert-manager
Pruning: false
Force Sync: false
==========================================================================================
E0222 05:04:43.926014 210965 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:41327->127.0.0.1:33964: write tcp4 127.0.0.1:41327->127.0.0.1:33964: write: broken pipe
TIMESTAMP GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io RoleBinding kube-system cert-manager:leaderelection OutOfSync Missing
2024-02-22T05:04:44+00:00 cert-manager.io Certificate cert-manager trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificatesigningrequests OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-issuers OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io RoleBinding kube-system cert-manager-cainjector:leaderelection OutOfSync Missing
2024-02-22T05:04:44+00:00 Service cert-manager trust-manager-metrics OutOfSync Missing
2024-02-22T05:04:44+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 apiextensions.k8s.io CustomResourceDefinition certificaterequests.cert-manager.io Synced
2024-02-22T05:04:44+00:00 apiextensions.k8s.io CustomResourceDefinition clusterissuers.cert-manager.io Synced
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-webhook:subjectaccessreviews OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-issuers OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-ingress-shim OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io Role cert-manager trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 trust.cert-manager.io Bundle deploykf-gateway-issuer-root-ca-cert OutOfSync Missing
2024-02-22T05:04:44+00:00 ServiceAccount cert-manager cert-manager-webhook OutOfSync Missing
2024-02-22T05:04:44+00:00 cert-manager.io Issuer cert-manager selfsigned-ca-issuer OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-clusterissuers OutOfSync Missing
2024-02-22T05:04:44+00:00 apiextensions.k8s.io CustomResourceDefinition certificates.cert-manager.io Synced
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-approve:cert-manager-io OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-webhook:dynamic-serving OutOfSync Missing
2024-02-22T05:04:44+00:00 apps Deployment cert-manager cert-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-cainjector OutOfSync Missing
2024-02-22T05:04:44+00:00 apps Deployment cert-manager cert-manager-webhook OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-orders OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-cainjector OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-orders OutOfSync Missing
2024-02-22T05:04:44+00:00 ConfigMap cert-manager cert-manager-webhook OutOfSync Missing
2024-02-22T05:04:44+00:00 apiextensions.k8s.io CustomResourceDefinition issuers.cert-manager.io Synced
2024-02-22T05:04:44+00:00 apps Deployment cert-manager cert-manager-cainjector OutOfSync Missing
2024-02-22T05:04:44+00:00 apps Deployment cert-manager trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-webhook:subjectaccessreviews OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io RoleBinding cert-manager trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 Service cert-manager cert-manager-webhook OutOfSync Missing
2024-02-22T05:04:44+00:00 ServiceAccount cert-manager trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager-webhook OutOfSync Missing
2024-02-22T05:04:44+00:00 cert-manager.io ClusterIssuer deploykf-gateway-issuer OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-approve:cert-manager-io OutOfSync Missing
2024-02-22T05:04:44+00:00 Service cert-manager trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 ServiceAccount cert-manager cert-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 apiextensions.k8s.io CustomResourceDefinition bundles.trust.cert-manager.io Synced
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificates OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io Role cert-manager cert-manager-webhook:dynamic-serving OutOfSync Missing
2024-02-22T05:04:44+00:00 ServiceAccount cert-manager cert-manager-cainjector OutOfSync Missing
2024-02-22T05:04:44+00:00 apiextensions.k8s.io CustomResourceDefinition challenges.acme.cert-manager.io Synced
2024-02-22T05:04:44+00:00 cert-manager.io Issuer cert-manager trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager-webhook OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-clusterissuers OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-challenges OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding trust-manager OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io Role kube-system cert-manager:leaderelection OutOfSync Missing
2024-02-22T05:04:44+00:00 cert-manager.io Certificate cert-manager selfsigned-ca-issuer OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificates OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-challenges OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io Role kube-system cert-manager-cainjector:leaderelection OutOfSync Missing
2024-02-22T05:04:44+00:00 apiextensions.k8s.io CustomResourceDefinition orders.acme.cert-manager.io Synced
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-view OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificatesigningrequests OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-ingress-shim OutOfSync Missing
2024-02-22T05:04:44+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-edit OutOfSync Missing
2024-02-22T05:04:45+00:00 ServiceAccount cert-manager cert-manager-cainjector Synced Missing
2024-02-22T05:04:45+00:00 ServiceAccount cert-manager cert-manager-webhook Synced Missing
2024-02-22T05:04:45+00:00 ServiceAccount cert-manager trust-manager Synced Missing
2024-02-22T05:04:45+00:00 ServiceAccount cert-manager cert-manager Synced Missing
2024-02-22T05:04:45+00:00 ServiceAccount cert-manager cert-manager-startupapicheck
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole trust-manager Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-approve:cert-manager-io Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-issuers Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificatesigningrequests Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-challenges Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-ingress-shim Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-edit Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-webhook:subjectaccessreviews Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-cainjector Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-clusterissuers Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-view Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-orders Synced Missing
2024-02-22T05:04:45+00:00 ConfigMap cert-manager cert-manager-webhook Synced Missing
2024-02-22T05:04:45+00:00 rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificates Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io RoleBinding cert-manager trust-manager Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io Role kube-system cert-manager-cainjector:leaderelection Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-orders Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-startupapicheck:create-cert
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-approve:cert-manager-io Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-issuers Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding trust-manager Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-clusterissuers Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io Role kube-system cert-manager:leaderelection Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io RoleBinding kube-system cert-manager:leaderelection Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificatesigningrequests Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io Role cert-manager cert-manager-webhook:dynamic-serving Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io RoleBinding kube-system cert-manager-cainjector:leaderelection Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-webhook:subjectaccessreviews Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io Role cert-manager cert-manager-startupapicheck:create-cert
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-challenges Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-ingress-shim Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificates Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io Role cert-manager trust-manager Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-webhook:dynamic-serving Synced Missing
2024-02-22T05:04:46+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager-cainjector Synced Missing
2024-02-22T05:04:46+00:00 admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager-webhook Synced Missing
2024-02-22T05:04:46+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration trust-manager Synced Missing
2024-02-22T05:04:46+00:00 apps Deployment cert-manager cert-manager-webhook Synced Progressing
2024-02-22T05:04:46+00:00 Service cert-manager trust-manager Synced Healthy
2024-02-22T05:04:46+00:00 Service cert-manager trust-manager-metrics Synced Healthy
2024-02-22T05:04:46+00:00 apps Deployment cert-manager cert-manager Synced Progressing
2024-02-22T05:04:46+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager-webhook Synced Missing
2024-02-22T05:04:46+00:00 apps Deployment cert-manager cert-manager-cainjector Synced Progressing
2024-02-22T05:04:46+00:00 Service cert-manager cert-manager-webhook Synced Healthy
2024-02-22T05:04:47+00:00 apps Deployment cert-manager cert-manager-cainjector Synced Healthy
2024-02-22T05:04:47+00:00 apps Deployment cert-manager cert-manager Synced Healthy
2024-02-22T05:04:48+00:00 ServiceAccount cert-manager cert-manager-cainjector Synced Missing serviceaccount/cert-manager-cainjector created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io RoleBinding cert-manager trust-manager Synced Missing rolebinding.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:trust-manager Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/trust-manager configured. Warning: resource rolebindings/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-ingress-shim Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterrolebindings/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apps Deployment cert-manager cert-manager Synced Healthy deployment.apps/cert-manager created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-webhook:subjectaccessreviews Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-webhook Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterrolebindings/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io Role cert-manager cert-manager-startupapicheck:create-cert Running Synced Sync role.rbac.authorization.k8s.io/cert-manager-startupapicheck:create-cert reconciled. reconciliation required create
missing rules added:
{Verbs:[create] APIGroups:[cert-manager.io] Resources:[certificates] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager-startupapicheck:create-cert configured. Warning: resource roles/cert-manager-startupapicheck:create-cert is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager clusterissuers.cert-manager.io Running Synced customresourcedefinition.apiextensions.k8s.io/clusterissuers.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-orders Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[orders orders/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[orders/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterroles/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-ingress-shim Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing rules added:
{Verbs:[create update delete] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[networking.k8s.io] Resources:[ingresses/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[gateway.networking.k8s.io] Resources:[gateways httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[gateway.networking.k8s.io] Resources:[gateways/finalizers httproutes/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterroles/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 ServiceAccount cert-manager trust-manager Synced Missing serviceaccount/trust-manager created
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager certificates.cert-manager.io Running Synced customresourcedefinition.apiextensions.k8s.io/certificates.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-approve:cert-manager-io Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterrolebindings/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager trust-manager Running Synced clusterrolebinding.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:trust-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterrolebindings/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-startupapicheck:create-cert Running Synced Sync rolebinding.rbac.authorization.k8s.io/cert-manager-startupapicheck:create-cert reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-startupapicheck Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager-startupapicheck:create-cert configured. Warning: resource rolebindings/cert-manager-startupapicheck:create-cert is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager orders.acme.cert-manager.io Running Synced customresourcedefinition.apiextensions.k8s.io/orders.acme.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-approve:cert-manager-io Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing rules added:
{Verbs:[approve] APIGroups:[cert-manager.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterroles/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager cert-manager-webhook Running Synced validatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
2024-02-22T05:04:48+00:00 apps Deployment cert-manager cert-manager-cainjector Synced Healthy deployment.apps/cert-manager-cainjector created
2024-02-22T05:04:48+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager trust-manager Running Synced validatingwebhookconfiguration.admissionregistration.k8s.io/trust-manager created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-clusterissuers Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterrolebindings/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-clusterissuers Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[clusterissuers clusterissuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterroles/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 Service cert-manager cert-manager-webhook Synced Healthy service/cert-manager-webhook created
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager bundles.trust.cert-manager.io Running Synced customresourcedefinition.apiextensions.k8s.io/bundles.trust.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager certificaterequests.cert-manager.io Running Synced customresourcedefinition.apiextensions.k8s.io/certificaterequests.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-issuers Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[issuers issuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterroles/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificates Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterrolebindings/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 ConfigMap cert-manager cert-manager-webhook Synced Missing configmap/cert-manager-webhook created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io Role kube-system cert-manager-cainjector:leaderelection Synced Missing role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection reconciled. reconciliation required create
missing rules added:
{Verbs:[get update patch] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[cert-manager-cainjector-leader-election cert-manager-cainjector-leader-election-core] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection configured. Warning: resource roles/cert-manager-cainjector:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-webhook:subjectaccessreviews Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing rules added:
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterroles/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io RoleBinding kube-system cert-manager:leaderelection Synced Missing rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection configured. Warning: resource rolebindings/cert-manager:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io Role cert-manager trust-manager Synced Missing role.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get create update watch list] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/trust-manager configured. Warning: resource roles/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager issuers.cert-manager.io Running Synced customresourcedefinition.apiextensions.k8s.io/issuers.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-issuers Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterrolebindings/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificatesigningrequests Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch update] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update patch] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[sign] APIGroups:[certificates.k8s.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterroles/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 ServiceAccount cert-manager cert-manager Synced Missing serviceaccount/cert-manager created
2024-02-22T05:04:48+00:00 ServiceAccount cert-manager cert-manager-startupapicheck Running Synced Sync serviceaccount/cert-manager-startupapicheck created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-cainjector Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-cainjector Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterrolebindings/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 Service cert-manager trust-manager Synced Healthy service/trust-manager created
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager challenges.acme.cert-manager.io Running Synced customresourcedefinition.apiextensions.k8s.io/challenges.acme.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificates Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[certificates certificates/status certificaterequests certificaterequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/finalizers certificaterequests/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete patch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterroles/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io RoleBinding kube-system cert-manager-cainjector:leaderelection Synced Missing rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-cainjector Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection configured. Warning: resource rolebindings/cert-manager-cainjector:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-orders Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterrolebindings/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-webhook:dynamic-serving Synced Missing rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-webhook Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving configured. Warning: resource rolebindings/cert-manager-webhook:dynamic-serving is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-cainjector Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get create update patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[admissionregistration.k8s.io] Resources:[validatingwebhookconfigurations mutatingwebhookconfigurations] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiregistration.k8s.io] Resources:[apiservices] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiextensions.k8s.io] Resources:[customresourcedefinitions] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterroles/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager cert-manager-webhook Running Synced mutatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-view Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-view configured. Warning: resource clusterroles/cert-manager-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-challenges Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterrolebindings/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 Service cert-manager trust-manager-metrics Synced Healthy service/trust-manager-metrics created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager trust-manager Running Synced clusterrole.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[trust.cert-manager.io] Resources:[bundles] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list create update watch delete] APIGroups:[] Resources:[configmaps] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[namespaces] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterroles/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-challenges Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[challenges challenges/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete] APIGroups:[] Resources:[pods services] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[gateway.networking.k8s.io] Resources:[httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[route.openshift.io] Resources:[routes/custom-host] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[challenges/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterroles/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 ServiceAccount cert-manager cert-manager-webhook Synced Missing serviceaccount/cert-manager-webhook created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io Role cert-manager cert-manager-webhook:dynamic-serving Synced Missing role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch update] APIGroups:[] Resources:[secrets] ResourceNames:[cert-manager-webhook-ca] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving configured. Warning: resource roles/cert-manager-webhook:dynamic-serving is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-edit Running Synced clusterrole.rbac.authorization.k8s.io/cert-manager-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[create delete deletecollection patch update] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-edit configured. Warning: resource clusterroles/cert-manager-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificatesigningrequests Running Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterrolebindings/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io Role kube-system cert-manager:leaderelection Synced Missing role.rbac.authorization.k8s.io/cert-manager:leaderelection reconciled. reconciliation required create
missing rules added:
{Verbs:[get update patch] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[cert-manager-controller] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager:leaderelection configured. Warning: resource roles/cert-manager:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apps Deployment cert-manager cert-manager-webhook Synced Progressing deployment.apps/cert-manager-webhook created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-clusterissuers Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterrolebindings/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager trust-manager Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:trust-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterrolebindings/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager issuers.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/issuers.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-view Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-view configured. Warning: resource clusterroles/cert-manager-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager orders.acme.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/orders.acme.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-edit Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[create delete deletecollection patch update] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-edit configured. Warning: resource clusterroles/cert-manager-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-orders Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterrolebindings/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager cert-manager-webhook Succeeded Synced validatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-startupapicheck:create-cert Succeeded Synced Sync cert-manager-startupapicheck:create-cert created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-issuers Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[issuers issuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterroles/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-cainjector Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get create update patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[admissionregistration.k8s.io] Resources:[validatingwebhookconfigurations mutatingwebhookconfigurations] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiregistration.k8s.io] Resources:[apiservices] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiextensions.k8s.io] Resources:[customresourcedefinitions] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterroles/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-webhook:subjectaccessreviews Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing rules added:
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterroles/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager clusterissuers.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/clusterissuers.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-orders Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[orders orders/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[orders/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterroles/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 ServiceAccount cert-manager cert-manager-startupapicheck Succeeded Synced Sync cert-manager-startupapicheck created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-clusterissuers Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[clusterissuers clusterissuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterroles/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager trust-manager Succeeded Synced validatingwebhookconfiguration.admissionregistration.k8s.io/trust-manager created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificates Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterrolebindings/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-approve:cert-manager-io Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing rules added:
{Verbs:[approve] APIGroups:[cert-manager.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterroles/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-ingress-shim Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterrolebindings/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-ingress-shim Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing rules added:
{Verbs:[create update delete] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[networking.k8s.io] Resources:[ingresses/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[gateway.networking.k8s.io] Resources:[gateways httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[gateway.networking.k8s.io] Resources:[gateways/finalizers httproutes/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterroles/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager cert-manager-webhook Succeeded Synced mutatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io Role cert-manager cert-manager-startupapicheck:create-cert Succeeded Synced Sync cert-manager-startupapicheck:create-cert created
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager certificates.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/certificates.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificatesigningrequests Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterrolebindings/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager bundles.trust.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/bundles.trust.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager challenges.acme.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/challenges.acme.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificatesigningrequests Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch update] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update patch] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[sign] APIGroups:[certificates.k8s.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterroles/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificates Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[certificates certificates/status certificaterequests certificaterequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/finalizers certificaterequests/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete patch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterroles/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-challenges Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[challenges challenges/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete] APIGroups:[] Resources:[pods services] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[gateway.networking.k8s.io] Resources:[httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[route.openshift.io] Resources:[routes/custom-host] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[challenges/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterroles/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-challenges Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterrolebindings/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRole cert-manager trust-manager Succeeded Synced clusterrole.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[trust.cert-manager.io] Resources:[bundles] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list create update watch delete] APIGroups:[] Resources:[configmaps] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[namespaces] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterroles/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-cainjector Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-cainjector Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterrolebindings/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 apiextensions.k8s.io CustomResourceDefinition cert-manager certificaterequests.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/certificaterequests.cert-manager.io unchanged
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-issuers Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterrolebindings/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-webhook:subjectaccessreviews Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-webhook Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterrolebindings/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:48+00:00 rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-approve:cert-manager-io Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterrolebindings/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:04:51+00:00 apps Deployment cert-manager cert-manager-webhook Synced Healthy deployment.apps/cert-manager-webhook created
2024-02-22T05:04:52+00:00 batch Job cert-manager cert-manager-startupapicheck
2024-02-22T05:04:54+00:00 batch Job cert-manager cert-manager-startupapicheck Running Synced Sync job.batch/cert-manager-startupapicheck created
2024-02-22T05:06:13+00:00 cert-manager.io Issuer cert-manager selfsigned-ca-issuer Synced Healthy
2024-02-22T05:06:13+00:00 cert-manager.io Certificate cert-manager trust-manager Synced Progressing
2024-02-22T05:06:13+00:00 cert-manager.io Issuer cert-manager trust-manager Synced Healthy
2024-02-22T05:06:13+00:00 cert-manager.io Certificate cert-manager trust-manager Synced Degraded
2024-02-22T05:06:13+00:00 cert-manager.io Certificate cert-manager trust-manager Synced Healthy
2024-02-22T05:06:15+00:00 batch Job cert-manager cert-manager-startupapicheck Succeeded Synced Sync job.batch/cert-manager-startupapicheck created
2024-02-22T05:06:15+00:00 cert-manager.io Issuer cert-manager trust-manager Synced Healthy issuer.cert-manager.io/trust-manager created
2024-02-22T05:06:15+00:00 cert-manager.io Certificate cert-manager trust-manager Synced Healthy certificate.cert-manager.io/trust-manager created
2024-02-22T05:06:15+00:00 cert-manager.io Issuer cert-manager selfsigned-ca-issuer Synced Healthy issuer.cert-manager.io/selfsigned-ca-issuer created
2024-02-22T05:06:16+00:00 cert-manager.io Certificate cert-manager selfsigned-ca-issuer Synced Progressing
2024-02-22T05:06:16+00:00 cert-manager.io Certificate cert-manager selfsigned-ca-issuer Synced Healthy
2024-02-22T05:06:17+00:00 cert-manager.io Certificate cert-manager trust-manager Synced Healthy Certificate is up to date and has not expired
2024-02-22T05:06:17+00:00 cert-manager.io Certificate cert-manager selfsigned-ca-issuer Synced Healthy certificate.cert-manager.io/selfsigned-ca-issuer created
2024-02-22T05:06:18+00:00 cert-manager.io ClusterIssuer deploykf-gateway-issuer Synced Healthy
2024-02-22T05:06:20+00:00 cert-manager.io ClusterIssuer cert-manager deploykf-gateway-issuer Running Synced clusterissuer.cert-manager.io/deploykf-gateway-issuer created
2024-02-22T05:06:20+00:00 cert-manager.io Certificate cert-manager selfsigned-ca-issuer Synced Healthy Certificate is up to date and has not expired
2024-02-22T05:06:21+00:00 apps Deployment cert-manager trust-manager Synced Progressing
2024-02-22T05:06:23+00:00 apps Deployment cert-manager trust-manager Synced Progressing deployment.apps/trust-manager created
2024-02-22T05:06:23+00:00 cert-manager.io ClusterIssuer cert-manager deploykf-gateway-issuer Succeeded Synced Signing CA verified
2024-02-22T05:06:28+00:00 apps Deployment cert-manager trust-manager Synced Healthy deployment.apps/trust-manager created
2024-02-22T05:06:29+00:00 trust.cert-manager.io Bundle cert-manager deploykf-gateway-issuer-root-ca-cert Running Synced bundle.trust.cert-manager.io/deploykf-gateway-issuer-root-ca-cert created
2024-02-22T05:06:29+00:00 trust.cert-manager.io Bundle deploykf-gateway-issuer-root-ca-cert Synced Missing
E0222 05:06:30.128251 210965 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:41327->127.0.0.1:58318: write tcp4 127.0.0.1:41327->127.0.0.1:58318: write: broken pipe
Name: argocd/dkf-dep--cert-manager
Project: default
Server: https://kubernetes.default.svc
Namespace: cert-manager
URL: https://127.0.0.1:41327/applications/argocd/dkf-dep--cert-manager
Repo: https://github.com/deployKF/deployKF.git
Target: v0.1.4
Path: .
SyncWindow: Sync Allowed
Sync Policy: <none>
Sync Status: Synced to v0.1.4 (29ac97a)
Health Status: Healthy
Operation: Sync
Sync Revision: 29ac97a8727d4da10f456263d755e391faface2d
Phase: Succeeded
Start: 2024-02-22 05:04:44 +0000 UTC
Finished: 2024-02-22 05:06:28 +0000 UTC
Duration: 1m44s
Message: successfully synced (all tasks run)
E0222 05:06:30.147550 210965 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:41327->127.0.0.1:58324: write tcp4 127.0.0.1:41327->127.0.0.1:58324: write: broken pipe
GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
ServiceAccount cert-manager cert-manager Synced serviceaccount/cert-manager created
ServiceAccount cert-manager cert-manager-cainjector Synced serviceaccount/cert-manager-cainjector created
ServiceAccount cert-manager trust-manager Synced serviceaccount/trust-manager created
ServiceAccount cert-manager cert-manager-startupapicheck Succeeded Sync cert-manager-startupapicheck created
ServiceAccount cert-manager cert-manager-webhook Synced serviceaccount/cert-manager-webhook created
ConfigMap cert-manager cert-manager-webhook Synced configmap/cert-manager-webhook created
apiextensions.k8s.io CustomResourceDefinition cert-manager bundles.trust.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/bundles.trust.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager orders.acme.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/orders.acme.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager certificaterequests.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/certificaterequests.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager certificates.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/certificates.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager challenges.acme.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/challenges.acme.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager issuers.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/issuers.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager clusterissuers.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/clusterissuers.cert-manager.io unchanged
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-orders Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[orders orders/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[orders/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterroles/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-clusterissuers Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[clusterissuers clusterissuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterroles/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-issuers Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[issuers issuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterroles/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-ingress-shim Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing rules added:
{Verbs:[create update delete] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[networking.k8s.io] Resources:[ingresses/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[gateway.networking.k8s.io] Resources:[gateways httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[gateway.networking.k8s.io] Resources:[gateways/finalizers httproutes/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterroles/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-approve:cert-manager-io Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing rules added:
{Verbs:[approve] APIGroups:[cert-manager.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterroles/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-cainjector Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get create update patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[admissionregistration.k8s.io] Resources:[validatingwebhookconfigurations mutatingwebhookconfigurations] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiregistration.k8s.io] Resources:[apiservices] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiextensions.k8s.io] Resources:[customresourcedefinitions] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterroles/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-edit Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[create delete deletecollection patch update] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-edit configured. Warning: resource clusterroles/cert-manager-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificatesigningrequests Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch update] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update patch] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[sign] APIGroups:[certificates.k8s.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterroles/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-view Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-view configured. Warning: resource clusterroles/cert-manager-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificates Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[certificates certificates/status certificaterequests certificaterequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/finalizers certificaterequests/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete patch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterroles/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager trust-manager Succeeded Synced clusterrole.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[trust.cert-manager.io] Resources:[bundles] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list create update watch delete] APIGroups:[] Resources:[configmaps] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[namespaces] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterroles/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-challenges Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[challenges challenges/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete] APIGroups:[] Resources:[pods services] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[gateway.networking.k8s.io] Resources:[httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[route.openshift.io] Resources:[routes/custom-host] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[challenges/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterroles/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-webhook:subjectaccessreviews Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing rules added:
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterroles/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificatesigningrequests Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterrolebindings/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-clusterissuers Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterrolebindings/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-cainjector Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-cainjector Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterrolebindings/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-issuers Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterrolebindings/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-orders Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterrolebindings/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-webhook:subjectaccessreviews Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-webhook Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterrolebindings/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-ingress-shim Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterrolebindings/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-challenges Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterrolebindings/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-approve:cert-manager-io Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterrolebindings/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager trust-manager Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:trust-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterrolebindings/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificates Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterrolebindings/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role kube-system cert-manager-cainjector:leaderelection Synced role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection reconciled. reconciliation required create
missing rules added:
{Verbs:[get update patch] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[cert-manager-cainjector-leader-election cert-manager-cainjector-leader-election-core] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection configured. Warning: resource roles/cert-manager-cainjector:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role kube-system cert-manager:leaderelection Synced role.rbac.authorization.k8s.io/cert-manager:leaderelection reconciled. reconciliation required create
missing rules added:
{Verbs:[get update patch] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[cert-manager-controller] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager:leaderelection configured. Warning: resource roles/cert-manager:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role cert-manager cert-manager-startupapicheck:create-cert Succeeded Sync cert-manager-startupapicheck:create-cert created
rbac.authorization.k8s.io Role cert-manager trust-manager Synced role.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get create update watch list] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/trust-manager configured. Warning: resource roles/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role cert-manager cert-manager-webhook:dynamic-serving Synced role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch update] APIGroups:[] Resources:[secrets] ResourceNames:[cert-manager-webhook-ca] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving configured. Warning: resource roles/cert-manager-webhook:dynamic-serving is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding kube-system cert-manager-cainjector:leaderelection Synced rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-cainjector Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection configured. Warning: resource rolebindings/cert-manager-cainjector:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding cert-manager trust-manager Synced rolebinding.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:trust-manager Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/trust-manager configured. Warning: resource rolebindings/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding kube-system cert-manager:leaderelection Synced rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection configured. Warning: resource rolebindings/cert-manager:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-startupapicheck:create-cert Succeeded Sync cert-manager-startupapicheck:create-cert created
rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-webhook:dynamic-serving Synced rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-webhook Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving configured. Warning: resource rolebindings/cert-manager-webhook:dynamic-serving is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
Service cert-manager trust-manager Synced Healthy service/trust-manager created
Service cert-manager trust-manager-metrics Synced Healthy service/trust-manager-metrics created
Service cert-manager cert-manager-webhook Synced Healthy service/cert-manager-webhook created
apps Deployment cert-manager cert-manager Synced Healthy deployment.apps/cert-manager created
apps Deployment cert-manager cert-manager-webhook Synced Healthy deployment.apps/cert-manager-webhook created
apps Deployment cert-manager cert-manager-cainjector Synced Healthy deployment.apps/cert-manager-cainjector created
admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager cert-manager-webhook Succeeded Synced validatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager cert-manager-webhook Succeeded Synced mutatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager trust-manager Succeeded Synced validatingwebhookconfiguration.admissionregistration.k8s.io/trust-manager created
batch Job cert-manager cert-manager-startupapicheck Succeeded Sync job.batch/cert-manager-startupapicheck created
cert-manager.io Issuer cert-manager selfsigned-ca-issuer Synced Healthy issuer.cert-manager.io/selfsigned-ca-issuer created
cert-manager.io Certificate cert-manager trust-manager Synced Healthy Certificate is up to date and has not expired
cert-manager.io Issuer cert-manager trust-manager Synced Healthy issuer.cert-manager.io/trust-manager created
cert-manager.io Certificate cert-manager selfsigned-ca-issuer Synced Healthy Certificate is up to date and has not expired
cert-manager.io ClusterIssuer cert-manager deploykf-gateway-issuer Succeeded Synced Signing CA verified
apps Deployment cert-manager trust-manager Synced Healthy deployment.apps/trust-manager created
trust.cert-manager.io Bundle cert-manager deploykf-gateway-issuer-root-ca-cert Running Synced bundle.trust.cert-manager.io/deploykf-gateway-issuer-root-ca-cert created
admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager-webhook Synced
admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager-webhook Synced
admissionregistration.k8s.io ValidatingWebhookConfiguration trust-manager Synced
apiextensions.k8s.io CustomResourceDefinition bundles.trust.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition certificaterequests.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition certificates.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition challenges.acme.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition clusterissuers.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition issuers.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition orders.acme.cert-manager.io Synced
cert-manager.io ClusterIssuer deploykf-gateway-issuer Synced Healthy
rbac.authorization.k8s.io ClusterRole cert-manager-cainjector Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-approve:cert-manager-io Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificates Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificatesigningrequests Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-challenges Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-clusterissuers Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-ingress-shim Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-issuers Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-orders Synced
rbac.authorization.k8s.io ClusterRole cert-manager-edit Synced
rbac.authorization.k8s.io ClusterRole cert-manager-view Synced
rbac.authorization.k8s.io ClusterRole cert-manager-webhook:subjectaccessreviews Synced
rbac.authorization.k8s.io ClusterRole trust-manager Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-cainjector Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-approve:cert-manager-io Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificates Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificatesigningrequests Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-challenges Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-clusterissuers Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-ingress-shim Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-issuers Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-orders Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-webhook:subjectaccessreviews Synced
rbac.authorization.k8s.io ClusterRoleBinding trust-manager Synced
trust.cert-manager.io Bundle deploykf-gateway-issuer-root-ca-cert Synced
>>> Sync Succeeded
==========================================================================================
Waiting 300s for applications to be healthy:
- argocd/dkf-dep--cert-manager
==========================================================================================
Name: argocd/dkf-dep--cert-manager
Project: default
Server: https://kubernetes.default.svc
Namespace: cert-manager
URL: https://127.0.0.1:45813/applications/argocd/dkf-dep--cert-manager
Repo: https://github.com/deployKF/deployKF.git
Target: v0.1.4
Path: .
SyncWindow: Sync Allowed
Sync Policy: <none>
Sync Status: Synced to v0.1.4 (29ac97a)
Health Status: Healthy
GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
ServiceAccount cert-manager cert-manager Synced serviceaccount/cert-manager created
ServiceAccount cert-manager cert-manager-cainjector Synced serviceaccount/cert-manager-cainjector created
ServiceAccount cert-manager trust-manager Synced serviceaccount/trust-manager created
ServiceAccount cert-manager cert-manager-startupapicheck Succeeded Sync cert-manager-startupapicheck created
ServiceAccount cert-manager cert-manager-webhook Synced serviceaccount/cert-manager-webhook created
ConfigMap cert-manager cert-manager-webhook Synced configmap/cert-manager-webhook created
apiextensions.k8s.io CustomResourceDefinition cert-manager bundles.trust.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/bundles.trust.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager orders.acme.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/orders.acme.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager certificaterequests.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/certificaterequests.cert-manager.io unchanged
E0222 05:06:30.415809 212362 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:45813->127.0.0.1:35332: write tcp4 127.0.0.1:45813->127.0.0.1:35332: write: broken pipe
apiextensions.k8s.io CustomResourceDefinition cert-manager certificates.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/certificates.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager challenges.acme.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/challenges.acme.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager issuers.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/issuers.cert-manager.io unchanged
apiextensions.k8s.io CustomResourceDefinition cert-manager clusterissuers.cert-manager.io Succeeded Synced customresourcedefinition.apiextensions.k8s.io/clusterissuers.cert-manager.io unchanged
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-orders Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[orders orders/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[orders/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterroles/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-clusterissuers Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[clusterissuers clusterissuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterroles/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-issuers Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[issuers issuers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterroles/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-ingress-shim Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing rules added:
{Verbs:[create update delete] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[networking.k8s.io] Resources:[ingresses/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[gateway.networking.k8s.io] Resources:[gateways httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[gateway.networking.k8s.io] Resources:[gateways/finalizers httproutes/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterroles/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-approve:cert-manager-io Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing rules added:
{Verbs:[approve] APIGroups:[cert-manager.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterroles/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-cainjector Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get create update patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[admissionregistration.k8s.io] Resources:[validatingwebhookconfigurations mutatingwebhookconfigurations] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiregistration.k8s.io] Resources:[apiservices] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch update patch] APIGroups:[apiextensions.k8s.io] Resources:[customresourcedefinitions] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterroles/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-edit Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[create delete deletecollection patch update] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-edit configured. Warning: resource clusterroles/cert-manager-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificatesigningrequests Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch update] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update patch] APIGroups:[certificates.k8s.io] Resources:[certificatesigningrequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[sign] APIGroups:[certificates.k8s.io] Resources:[signers] ResourceNames:[issuers.cert-manager.io/* clusterissuers.cert-manager.io/*] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterroles/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-view Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges orders] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-view configured. Warning: resource clusterroles/cert-manager-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-certificates Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[cert-manager.io] Resources:[certificates certificates/status certificaterequests certificaterequests/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[certificates certificaterequests clusterissuers issuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[cert-manager.io] Resources:[certificates/finalizers certificaterequests/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete get list watch] APIGroups:[acme.cert-manager.io] Resources:[orders] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create update delete patch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterroles/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager trust-manager Succeeded Synced clusterrole.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[trust.cert-manager.io] Resources:[bundles] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[trust.cert-manager.io] Resources:[bundles/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list create update watch delete] APIGroups:[] Resources:[configmaps] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[namespaces] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterroles/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-controller-challenges Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing rules added:
{Verbs:[update patch] APIGroups:[acme.cert-manager.io] Resources:[challenges challenges/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[acme.cert-manager.io] Resources:[challenges] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[cert-manager.io] Resources:[issuers clusterissuers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create patch] APIGroups:[] Resources:[events] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete] APIGroups:[] Resources:[pods services] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[networking.k8s.io] Resources:[ingresses] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch create delete update] APIGroups:[gateway.networking.k8s.io] Resources:[httproutes] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[route.openshift.io] Resources:[routes/custom-host] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[update] APIGroups:[acme.cert-manager.io] Resources:[challenges/finalizers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterroles/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole cert-manager cert-manager-webhook:subjectaccessreviews Succeeded Synced clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing rules added:
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[subjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterroles/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificatesigningrequests Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificatesigningrequests configured. Warning: resource clusterrolebindings/cert-manager-controller-certificatesigningrequests is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-clusterissuers Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-clusterissuers configured. Warning: resource clusterrolebindings/cert-manager-controller-clusterissuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-cainjector Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-cainjector Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-cainjector configured. Warning: resource clusterrolebindings/cert-manager-cainjector is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-issuers Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-issuers configured. Warning: resource clusterrolebindings/cert-manager-controller-issuers is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-orders Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-orders configured. Warning: resource clusterrolebindings/cert-manager-controller-orders is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-webhook:subjectaccessreviews Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-webhook Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-webhook:subjectaccessreviews configured. Warning: resource clusterrolebindings/cert-manager-webhook:subjectaccessreviews is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-ingress-shim Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-ingress-shim configured. Warning: resource clusterrolebindings/cert-manager-controller-ingress-shim is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-challenges Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-challenges configured. Warning: resource clusterrolebindings/cert-manager-controller-challenges is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-approve:cert-manager-io Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-approve:cert-manager-io configured. Warning: resource clusterrolebindings/cert-manager-controller-approve:cert-manager-io is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager trust-manager Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:trust-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/trust-manager configured. Warning: resource clusterrolebindings/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding cert-manager cert-manager-controller-certificates Succeeded Synced clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. clusterrolebinding.rbac.authorization.k8s.io/cert-manager-controller-certificates configured. Warning: resource clusterrolebindings/cert-manager-controller-certificates is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role kube-system cert-manager-cainjector:leaderelection Synced role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection reconciled. reconciliation required create
missing rules added:
{Verbs:[get update patch] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[cert-manager-cainjector-leader-election cert-manager-cainjector-leader-election-core] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection configured. Warning: resource roles/cert-manager-cainjector:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role kube-system cert-manager:leaderelection Synced role.rbac.authorization.k8s.io/cert-manager:leaderelection reconciled. reconciliation required create
missing rules added:
{Verbs:[get update patch] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[cert-manager-controller] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager:leaderelection configured. Warning: resource roles/cert-manager:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role cert-manager cert-manager-startupapicheck:create-cert Succeeded Sync cert-manager-startupapicheck:create-cert created
rbac.authorization.k8s.io Role cert-manager trust-manager Synced role.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get create update watch list] APIGroups:[coordination.k8s.io] Resources:[leases] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/trust-manager configured. Warning: resource roles/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io Role cert-manager cert-manager-webhook:dynamic-serving Synced role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch update] APIGroups:[] Resources:[secrets] ResourceNames:[cert-manager-webhook-ca] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving configured. Warning: resource roles/cert-manager-webhook:dynamic-serving is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding kube-system cert-manager-cainjector:leaderelection Synced rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-cainjector Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager-cainjector:leaderelection configured. Warning: resource rolebindings/cert-manager-cainjector:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding cert-manager trust-manager Synced rolebinding.rbac.authorization.k8s.io/trust-manager reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:trust-manager Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/trust-manager configured. Warning: resource rolebindings/trust-manager is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding kube-system cert-manager:leaderelection Synced rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager:leaderelection configured. Warning: resource rolebindings/cert-manager:leaderelection is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-startupapicheck:create-cert Succeeded Sync cert-manager-startupapicheck:create-cert created
rbac.authorization.k8s.io RoleBinding cert-manager cert-manager-webhook:dynamic-serving Synced rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:cert-manager-webhook Namespace:cert-manager}. rolebinding.rbac.authorization.k8s.io/cert-manager-webhook:dynamic-serving configured. Warning: resource rolebindings/cert-manager-webhook:dynamic-serving is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
Service cert-manager trust-manager Synced Healthy service/trust-manager created
Service cert-manager trust-manager-metrics Synced Healthy service/trust-manager-metrics created
Service cert-manager cert-manager-webhook Synced Healthy service/cert-manager-webhook created
apps Deployment cert-manager cert-manager Synced Healthy deployment.apps/cert-manager created
apps Deployment cert-manager cert-manager-webhook Synced Healthy deployment.apps/cert-manager-webhook created
apps Deployment cert-manager cert-manager-cainjector Synced Healthy deployment.apps/cert-manager-cainjector created
admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager cert-manager-webhook Succeeded Synced validatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager cert-manager-webhook Succeeded Synced mutatingwebhookconfiguration.admissionregistration.k8s.io/cert-manager-webhook created
admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager trust-manager Succeeded Synced validatingwebhookconfiguration.admissionregistration.k8s.io/trust-manager created
batch Job cert-manager cert-manager-startupapicheck Succeeded Sync job.batch/cert-manager-startupapicheck created
cert-manager.io Issuer cert-manager selfsigned-ca-issuer Synced Healthy issuer.cert-manager.io/selfsigned-ca-issuer created
cert-manager.io Certificate cert-manager trust-manager Synced Healthy Certificate is up to date and has not expired
cert-manager.io Issuer cert-manager trust-manager Synced Healthy issuer.cert-manager.io/trust-manager created
cert-manager.io Certificate cert-manager selfsigned-ca-issuer Synced Healthy Certificate is up to date and has not expired
cert-manager.io ClusterIssuer cert-manager deploykf-gateway-issuer Succeeded Synced Signing CA verified
apps Deployment cert-manager trust-manager Synced Healthy deployment.apps/trust-manager created
trust.cert-manager.io Bundle cert-manager deploykf-gateway-issuer-root-ca-cert Running Synced bundle.trust.cert-manager.io/deploykf-gateway-issuer-root-ca-cert created
admissionregistration.k8s.io MutatingWebhookConfiguration cert-manager-webhook Synced
admissionregistration.k8s.io ValidatingWebhookConfiguration cert-manager-webhook Synced
admissionregistration.k8s.io ValidatingWebhookConfiguration trust-manager Synced
apiextensions.k8s.io CustomResourceDefinition bundles.trust.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition certificaterequests.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition certificates.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition challenges.acme.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition clusterissuers.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition issuers.cert-manager.io Synced
apiextensions.k8s.io CustomResourceDefinition orders.acme.cert-manager.io Synced
cert-manager.io ClusterIssuer deploykf-gateway-issuer Synced Healthy
rbac.authorization.k8s.io ClusterRole cert-manager-cainjector Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-approve:cert-manager-io Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificates Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-certificatesigningrequests Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-challenges Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-clusterissuers Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-ingress-shim Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-issuers Synced
rbac.authorization.k8s.io ClusterRole cert-manager-controller-orders Synced
rbac.authorization.k8s.io ClusterRole cert-manager-edit Synced
rbac.authorization.k8s.io ClusterRole cert-manager-view Synced
rbac.authorization.k8s.io ClusterRole cert-manager-webhook:subjectaccessreviews Synced
rbac.authorization.k8s.io ClusterRole trust-manager Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-cainjector Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-approve:cert-manager-io Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificates Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-certificatesigningrequests Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-challenges Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-clusterissuers Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-ingress-shim Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-issuers Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-controller-orders Synced
rbac.authorization.k8s.io ClusterRoleBinding cert-manager-webhook:subjectaccessreviews Synced
rbac.authorization.k8s.io ClusterRoleBinding trust-manager Synced
trust.cert-manager.io Bundle deploykf-gateway-issuer-root-ca-cert Synced
>>> DONE
==========================================================================================
Getting status of applications...
Namespace: 'argocd'
Selector: 'app.kubernetes.io/part-of=deploykf,app.kubernetes.io/component=deploykf-core'
==========================================================================================
E0222 05:06:30.602349 212373 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:42501->127.0.0.1:49266: write tcp4 127.0.0.1:42501->127.0.0.1:49266: write: broken pipe
E0222 05:06:30.786318 212383 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:45055->127.0.0.1:54444: write tcp4 127.0.0.1:45055->127.0.0.1:54444: write: broken pipe
>>> Found 1 applications in 1 sync waves.
>>> Sync wave 21:
>>> - argocd/dkf-core--deploykf-auth (status: OutOfSync)
==========================================================================================
Syncing applications with timeout of 600s:
- argocd/dkf-core--deploykf-auth
Pruning: false
Force Sync: false
==========================================================================================
E0222 05:06:41.243701 213182 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:43561->127.0.0.1:53306: write tcp4 127.0.0.1:43561->127.0.0.1:53306: write: broken pipe
TIMESTAMP GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
2024-02-22T05:06:41+00:00 ConfigMap deploykf-auth dex-theme OutOfSync Missing
2024-02-22T05:06:41+00:00 ServiceAccount deploykf-auth oauth2-proxy OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-admin OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-view OutOfSync Missing
2024-02-22T05:06:41+00:00 Secret deploykf-auth dex-config OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole dex OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-edit OutOfSync Missing
2024-02-22T05:06:41+00:00 security.istio.io AuthorizationPolicy deploykf-auth dex-allow OutOfSync Missing
2024-02-22T05:06:41+00:00 security.istio.io AuthorizationPolicy deploykf-auth oauth2-proxy-allow OutOfSync Missing
2024-02-22T05:06:41+00:00 ServiceAccount deploykf-auth dex OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-edit OutOfSync Missing
2024-02-22T05:06:41+00:00 Secret deploykf-auth oauth2-proxy-config OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-istio-view OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-admin OutOfSync Missing
2024-02-22T05:06:41+00:00 security.istio.io PeerAuthentication deploykf-auth dex-mtls OutOfSync Missing
2024-02-22T05:06:41+00:00 kyverno.io ClusterPolicy deploykf-auth--restart-on-secret-updates OutOfSync Missing
2024-02-22T05:06:41+00:00 networking.istio.io VirtualService deploykf-auth dex OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-view OutOfSync Missing
2024-02-22T05:06:41+00:00 ConfigMap deploykf-auth oauth2-proxy-theme OutOfSync Missing
2024-02-22T05:06:41+00:00 kyverno.io ClusterPolicy deploykf-auth--clone-argo-server-openid-secret OutOfSync Missing
2024-02-22T05:06:41+00:00 networking.istio.io VirtualService deploykf-auth oauth2-proxy OutOfSync Missing
2024-02-22T05:06:41+00:00 security.istio.io PeerAuthentication deploykf-auth oauth2-proxy-mtls OutOfSync Missing
2024-02-22T05:06:41+00:00 Service deploykf-auth dex OutOfSync Missing
2024-02-22T05:06:41+00:00 apps Deployment deploykf-auth oauth2-proxy OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-istio-admin OutOfSync Missing
2024-02-22T05:06:41+00:00 Service deploykf-auth oauth2-proxy OutOfSync Missing
2024-02-22T05:06:41+00:00 apps Deployment deploykf-auth dex OutOfSync Missing
2024-02-22T05:06:41+00:00 kyverno.io ClusterPolicy deploykf-auth--clone-minio-openid-secret OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-istio-edit OutOfSync Missing
2024-02-22T05:06:41+00:00 rbac.authorization.k8s.io ClusterRoleBinding dex OutOfSync Missing
2024-02-22T05:06:42+00:00 ServiceAccount deploykf-auth deploykf-auth-generate-jobs
2024-02-22T05:06:42+00:00 rbac.authorization.k8s.io RoleBinding deploykf-auth deploykf-auth-generate-jobs
2024-02-22T05:06:42+00:00 rbac.authorization.k8s.io Role deploykf-auth deploykf-auth-generate-jobs
2024-02-22T05:06:42+00:00 ConfigMap deploykf-auth deploykf-auth-generate-scripts
2024-02-22T05:06:42+00:00 batch Job deploykf-auth deploykf-auth-generate-secrets
2024-02-22T05:06:44+00:00 rbac.authorization.k8s.io Role deploykf-auth deploykf-auth-generate-jobs Running Synced PreSync role.rbac.authorization.k8s.io/deploykf-auth-generate-jobs reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch create update patch delete] APIGroups:[] Resources:[secrets] ResourceNames:[] NonResourceURLs:[]}. role.rbac.authorization.k8s.io/deploykf-auth-generate-jobs configured. Warning: resource roles/deploykf-auth-generate-jobs is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:44+00:00 batch Job deploykf-auth deploykf-auth-generate-secrets Running Synced PreSync job.batch/deploykf-auth-generate-secrets created
2024-02-22T05:06:44+00:00 rbac.authorization.k8s.io RoleBinding deploykf-auth deploykf-auth-generate-jobs Running Synced PreSync rolebinding.rbac.authorization.k8s.io/deploykf-auth-generate-jobs reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:deploykf-auth-generate-jobs Namespace:deploykf-auth}. rolebinding.rbac.authorization.k8s.io/deploykf-auth-generate-jobs configured. Warning: resource rolebindings/deploykf-auth-generate-jobs is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:44+00:00 ServiceAccount deploykf-auth deploykf-auth-generate-jobs Running Synced PreSync serviceaccount/deploykf-auth-generate-jobs created
2024-02-22T05:06:44+00:00 ConfigMap deploykf-auth deploykf-auth-generate-scripts Running Synced PreSync configmap/deploykf-auth-generate-scripts created
2024-02-22T05:06:44+00:00 rbac.authorization.k8s.io Role deploykf-auth deploykf-auth-generate-jobs Succeeded Synced PreSync deploykf-auth-generate-jobs created
2024-02-22T05:06:44+00:00 ConfigMap deploykf-auth deploykf-auth-generate-scripts Succeeded Synced PreSync deploykf-auth-generate-scripts created
2024-02-22T05:06:44+00:00 rbac.authorization.k8s.io RoleBinding deploykf-auth deploykf-auth-generate-jobs Succeeded Synced PreSync deploykf-auth-generate-jobs created
2024-02-22T05:06:44+00:00 ServiceAccount deploykf-auth deploykf-auth-generate-jobs Succeeded Synced PreSync deploykf-auth-generate-jobs created
2024-02-22T05:06:45+00:00 Secret deploykf-auth generated--dex-oauth2-proxy-client OutOfSync
2024-02-22T05:06:45+00:00 Secret deploykf-auth generated--dex-argo-server-client OutOfSync
2024-02-22T05:06:45+00:00 Secret deploykf-auth generated--dex-minio-console-client OutOfSync
2024-02-22T05:06:45+00:00 Secret deploykf-auth generated--oauth2-proxy-cookie-secret OutOfSync
2024-02-22T05:06:50+00:00 ServiceAccount deploykf-auth oauth2-proxy Synced Missing
2024-02-22T05:06:50+00:00 ServiceAccount deploykf-auth dex Synced Missing
2024-02-22T05:06:50+00:00 Secret deploykf-auth oauth2-proxy-config Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-edit Synced Missing
2024-02-22T05:06:50+00:00 ConfigMap deploykf-auth dex-theme Synced Missing
2024-02-22T05:06:50+00:00 Secret deploykf-auth dex-config Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-istio-edit Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-admin Synced Missing
2024-02-22T05:06:50+00:00 ConfigMap deploykf-auth oauth2-proxy-theme Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-view Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole dex Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-istio-view Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-view Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-admin Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-istio-admin Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-edit Synced Missing
2024-02-22T05:06:50+00:00 Service deploykf-auth oauth2-proxy Synced Healthy
2024-02-22T05:06:50+00:00 Service deploykf-auth dex Synced Healthy
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRoleBinding dex Synced Missing
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-admin Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-admin reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-admin configured. Warning: resource clusterroles/kubeflow-admin is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 Secret deploykf-auth generated--oauth2-proxy-cookie-secret OutOfSync ignored (requires pruning)
2024-02-22T05:06:50+00:00 apps Deployment deploykf-auth dex OutOfSync Missing deployment.apps/dex created
2024-02-22T05:06:50+00:00 networking.istio.io VirtualService deploykf-auth oauth2-proxy OutOfSync Missing virtualservice.networking.istio.io/oauth2-proxy created
2024-02-22T05:06:50+00:00 security.istio.io PeerAuthentication deploykf-auth oauth2-proxy-mtls OutOfSync Missing peerauthentication.security.istio.io/oauth2-proxy-mtls created
2024-02-22T05:06:50+00:00 batch Job deploykf-auth deploykf-auth-generate-secrets Succeeded Synced PreSync job.batch/deploykf-auth-generate-secrets created
2024-02-22T05:06:50+00:00 Secret deploykf-auth oauth2-proxy-config Synced Missing secret/oauth2-proxy-config created
2024-02-22T05:06:50+00:00 ConfigMap deploykf-auth oauth2-proxy-theme Synced Missing configmap/oauth2-proxy-theme created
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-istio-view Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-istio-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[istio.io networking.istio.io] Resources:[*] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-istio-view configured. Warning: resource clusterroles/kubeflow-istio-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 Secret deploykf-auth generated--dex-minio-console-client OutOfSync ignored (requires pruning)
2024-02-22T05:06:50+00:00 ServiceAccount deploykf-auth dex Synced Missing serviceaccount/dex created
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-kubernetes-admin Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-admin reconciled. reconciliation required create
missing rules added:
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[localsubjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection get list patch update watch] APIGroups:[rbac.authorization.k8s.io] Resources:[rolebindings roles] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-admin configured. Warning: resource clusterroles/kubeflow-kubernetes-admin is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 Service deploykf-auth oauth2-proxy Synced Healthy service/oauth2-proxy created
2024-02-22T05:06:50+00:00 kyverno.io ClusterPolicy deploykf-auth deploykf-auth--restart-on-secret-updates Failed SyncFailed Internal error occurred: failed calling webhook "mutate-policy.kyverno.svc": failed to call webhook: Post "https://kyverno-svc.kyverno.svc:443/policymutate?timeout=10s": service "kyverno-svc" not found
2024-02-22T05:06:50+00:00 ServiceAccount deploykf-auth oauth2-proxy Synced Missing serviceaccount/oauth2-proxy created
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-istio-admin Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-istio-admin reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-istio-admin configured. Warning: resource clusterroles/kubeflow-istio-admin is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 security.istio.io PeerAuthentication deploykf-auth dex-mtls OutOfSync Missing peerauthentication.security.istio.io/dex-mtls created
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-edit Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-edit reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-edit configured. Warning: resource clusterroles/kubeflow-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRoleBinding deploykf-auth dex Running Synced clusterrolebinding.rbac.authorization.k8s.io/dex reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:dex Namespace:deploykf-auth}. clusterrolebinding.rbac.authorization.k8s.io/dex configured. Warning: resource clusterrolebindings/dex is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 networking.istio.io VirtualService deploykf-auth dex OutOfSync Missing virtualservice.networking.istio.io/dex created
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth dex Running Synced clusterrole.rbac.authorization.k8s.io/dex reconciled. reconciliation required create
missing rules added:
{Verbs:[*] APIGroups:[dex.coreos.com] Resources:[*] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[apiextensions.k8s.io] Resources:[customresourcedefinitions] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/dex configured. Warning: resource clusterroles/dex is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 Service deploykf-auth dex Synced Healthy service/dex created
2024-02-22T05:06:50+00:00 apps Deployment deploykf-auth oauth2-proxy OutOfSync Missing deployment.apps/oauth2-proxy created
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-kubernetes-view Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[] Resources:[configmaps endpoints persistentvolumeclaims persistentvolumeclaims/status pods replicationcontrollers replicationcontrollers/scale serviceaccounts services services/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[namespaces] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[apps] Resources:[controllerrevisions daemonsets daemonsets/status deployments deployments/scale deployments/status replicasets replicasets/scale replicasets/status statefulsets statefulsets/scale statefulsets/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[autoscaling] Resources:[horizontalpodautoscalers horizontalpodautoscalers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[batch] Resources:[cronjobs cronjobs/status jobs jobs/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[extensions] Resources:[daemonsets daemonsets/status deployments deployments/scale deployments/status ingresses ingresses/status networkpolicies replicasets replicasets/scale replicasets/status replicationcontrollers/scale] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[policy] Resources:[poddisruptionbudgets poddisruptionbudgets/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[networking.k8s.io] Resources:[ingresses ingresses/status networkpolicies] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-view configured. Warning: resource clusterroles/kubeflow-kubernetes-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-kubernetes-edit Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[] Resources:[pods/attach pods/exec pods/portforward pods/proxy secrets services/proxy] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[impersonate] APIGroups:[] Resources:[serviceaccounts] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[] Resources:[pods pods/attach pods/exec pods/portforward pods/proxy] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[] Resources:[configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[apps] Resources:[daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets statefulsets/scale] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[autoscaling] Resources:[horizontalpodautoscalers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[batch] Resources:[cronjobs jobs] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[extensions] Resources:[daemonsets deployments deployments/rollback deployments/scale ingresses networkpolicies replicasets replicasets/scale replicationcontrollers/scale] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[policy] Resources:[poddisruptionbudgets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[networking.k8s.io] Resources:[ingresses networkpolicies] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-edit configured. Warning: resource clusterroles/kubeflow-kubernetes-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 kyverno.io ClusterPolicy deploykf-auth deploykf-auth--clone-argo-server-openid-secret Failed SyncFailed Internal error occurred: failed calling webhook "mutate-policy.kyverno.svc": failed to call webhook: Post "https://kyverno-svc.kyverno.svc:443/policymutate?timeout=10s": service "kyverno-svc" not found
2024-02-22T05:06:50+00:00 kyverno.io ClusterPolicy deploykf-auth deploykf-auth--clone-minio-openid-secret Failed SyncFailed Internal error occurred: failed calling webhook "mutate-policy.kyverno.svc": failed to call webhook: Post "https://kyverno-svc.kyverno.svc:443/policymutate?timeout=10s": service "kyverno-svc" not found
2024-02-22T05:06:50+00:00 security.istio.io AuthorizationPolicy deploykf-auth oauth2-proxy-allow OutOfSync Missing authorizationpolicy.security.istio.io/oauth2-proxy-allow created
2024-02-22T05:06:50+00:00 security.istio.io AuthorizationPolicy deploykf-auth dex-allow OutOfSync Missing authorizationpolicy.security.istio.io/dex-allow created
2024-02-22T05:06:50+00:00 Secret deploykf-auth generated--dex-oauth2-proxy-client OutOfSync ignored (requires pruning)
2024-02-22T05:06:50+00:00 Secret deploykf-auth dex-config Synced Missing secret/dex-config created
2024-02-22T05:06:50+00:00 ConfigMap deploykf-auth dex-theme Synced Missing configmap/dex-theme created
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-view Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-view reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-view configured. Warning: resource clusterroles/kubeflow-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-istio-edit Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-istio-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[create delete deletecollection get list patch update watch] APIGroups:[istio.io networking.istio.io] Resources:[*] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-istio-edit configured. Warning: resource clusterroles/kubeflow-istio-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
2024-02-22T05:06:50+00:00 Secret deploykf-auth generated--dex-argo-server-client OutOfSync ignored (requires pruning)
2024-02-22T05:06:50+00:00 security.istio.io AuthorizationPolicy deploykf-auth dex-allow Synced Missing authorizationpolicy.security.istio.io/dex-allow created
2024-02-22T05:06:50+00:00 apps Deployment deploykf-auth dex Synced Progressing deployment.apps/dex created
2024-02-22T05:06:50+00:00 apps Deployment deploykf-auth oauth2-proxy Synced Progressing deployment.apps/oauth2-proxy created
2024-02-22T05:06:50+00:00 networking.istio.io VirtualService deploykf-auth dex Synced Missing virtualservice.networking.istio.io/dex created
Name: argocd/dkf-core--deploykf-auth
Project: default
Server: https://kubernetes.default.svc
Namespace: deploykf-auth
URL: https://127.0.0.1:43561/applications/argocd/dkf-core--deploykf-auth
Repo: https://github.com/deployKF/deployKF.git
Target: v0.1.4
Path: .
SyncWindow: Sync Allowed
Sync Policy: <none>
Sync Status: OutOfSync from v0.1.4 (29ac97a)
Health Status: Progressing
Operation: Sync
Sync Revision: 29ac97a8727d4da10f456263d755e391faface2d
Phase: Failed
Start: 2024-02-22 05:06:41 +0000 UTC
Finished: 2024-02-22 05:06:50 +0000 UTC
Duration: 9s
Message: one or more objects failed to apply, reason: Internal error occurred: failed calling webhook "mutate-policy.kyverno.svc": failed to call webhook: Post "https://kyverno-svc.kyverno.svc:443/policymutate?timeout=10s": service "kyverno-svc" not found
GROUP KIND NAMESPACE NAME STATUS HEALTH HOOK MESSAGE
ServiceAccount deploykf-auth deploykf-auth-generate-jobs Succeeded PreSync deploykf-auth-generate-jobs created
ConfigMap deploykf-auth deploykf-auth-generate-scripts Succeeded PreSync deploykf-auth-generate-scripts created
rbac.authorization.k8s.io Role deploykf-auth deploykf-auth-generate-jobs Succeeded PreSync deploykf-auth-generate-jobs created
rbac.authorization.k8s.io RoleBinding deploykf-auth deploykf-auth-generate-jobs Succeeded PreSync deploykf-auth-generate-jobs created
batch Job deploykf-auth deploykf-auth-generate-secrets Succeeded PreSync job.batch/deploykf-auth-generate-secrets created
Secret deploykf-auth generated--dex-argo-server-client OutOfSync ignored (requires pruning)
Secret deploykf-auth generated--dex-oauth2-proxy-client OutOfSync ignored (requires pruning)
Secret deploykf-auth generated--dex-minio-console-client OutOfSync ignored (requires pruning)
Secret deploykf-auth generated--oauth2-proxy-cookie-secret OutOfSync ignored (requires pruning)
ServiceAccount deploykf-auth oauth2-proxy Synced serviceaccount/oauth2-proxy created
ServiceAccount deploykf-auth dex Synced serviceaccount/dex created
Secret deploykf-auth dex-config Synced secret/dex-config created
Secret deploykf-auth oauth2-proxy-config Synced secret/oauth2-proxy-config created
ConfigMap deploykf-auth oauth2-proxy-theme Synced configmap/oauth2-proxy-theme created
ConfigMap deploykf-auth dex-theme Synced E0222 05:06:51.501989 213182 portforward.go:379] error copying from remote stream to local connection: readfrom tcp4 127.0.0.1:43561->127.0.0.1:47346: write tcp4 127.0.0.1:43561->127.0.0.1:47346: write: broken pipe
configmap/dex-theme created
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-admin Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-admin reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-admin configured. Warning: resource clusterroles/kubeflow-admin is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-edit Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-edit reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-edit configured. Warning: resource clusterroles/kubeflow-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-view Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-view reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-view configured. Warning: resource clusterroles/kubeflow-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-istio-admin Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-istio-admin reconciled. reconciliation required create. clusterrole.rbac.authorization.k8s.io/kubeflow-istio-admin configured. Warning: resource clusterroles/kubeflow-istio-admin is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-istio-edit Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-istio-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[create delete deletecollection get list patch update watch] APIGroups:[istio.io networking.istio.io] Resources:[*] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-istio-edit configured. Warning: resource clusterroles/kubeflow-istio-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth dex Running Synced clusterrole.rbac.authorization.k8s.io/dex reconciled. reconciliation required create
missing rules added:
{Verbs:[*] APIGroups:[dex.coreos.com] Resources:[*] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create] APIGroups:[apiextensions.k8s.io] Resources:[customresourcedefinitions] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/dex configured. Warning: resource clusterroles/dex is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-istio-view Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-istio-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[istio.io networking.istio.io] Resources:[*] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-istio-view configured. Warning: resource clusterroles/kubeflow-istio-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-kubernetes-admin Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-admin reconciled. reconciliation required create
missing rules added:
{Verbs:[create] APIGroups:[authorization.k8s.io] Resources:[localsubjectaccessreviews] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection get list patch update watch] APIGroups:[rbac.authorization.k8s.io] Resources:[rolebindings roles] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-admin configured. Warning: resource clusterroles/kubeflow-kubernetes-admin is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-kubernetes-view Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-view reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[] Resources:[configmaps endpoints persistentvolumeclaims persistentvolumeclaims/status pods replicationcontrollers replicationcontrollers/scale serviceaccounts services services/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[] Resources:[namespaces] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[apps] Resources:[controllerrevisions daemonsets daemonsets/status deployments deployments/scale deployments/status replicasets replicasets/scale replicasets/status statefulsets statefulsets/scale statefulsets/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[autoscaling] Resources:[horizontalpodautoscalers horizontalpodautoscalers/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[batch] Resources:[cronjobs cronjobs/status jobs jobs/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[extensions] Resources:[daemonsets daemonsets/status deployments deployments/scale deployments/status ingresses ingresses/status networkpolicies replicasets replicasets/scale replicasets/status replicationcontrollers/scale] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[policy] Resources:[poddisruptionbudgets poddisruptionbudgets/status] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[get list watch] APIGroups:[networking.k8s.io] Resources:[ingresses ingresses/status networkpolicies] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-view configured. Warning: resource clusterroles/kubeflow-kubernetes-view is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRole deploykf-auth kubeflow-kubernetes-edit Running Synced clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-edit reconciled. reconciliation required create
missing rules added:
{Verbs:[get list watch] APIGroups:[] Resources:[pods/attach pods/exec pods/portforward pods/proxy secrets services/proxy] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[impersonate] APIGroups:[] Resources:[serviceaccounts] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[] Resources:[pods pods/attach pods/exec pods/portforward pods/proxy] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[] Resources:[configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[apps] Resources:[daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets statefulsets/scale] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[autoscaling] Resources:[horizontalpodautoscalers] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[batch] Resources:[cronjobs jobs] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[extensions] Resources:[daemonsets deployments deployments/rollback deployments/scale ingresses networkpolicies replicasets replicasets/scale replicationcontrollers/scale] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[policy] Resources:[poddisruptionbudgets] ResourceNames:[] NonResourceURLs:[]}
{Verbs:[create delete deletecollection patch update] APIGroups:[networking.k8s.io] Resources:[ingresses networkpolicies] ResourceNames:[] NonResourceURLs:[]}. clusterrole.rbac.authorization.k8s.io/kubeflow-kubernetes-edit configured. Warning: resource clusterroles/kubeflow-kubernetes-edit is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
rbac.authorization.k8s.io ClusterRoleBinding deploykf-auth dex Running Synced clusterrolebinding.rbac.authorization.k8s.io/dex reconciled. reconciliation required create
missing subjects added:
{Kind:ServiceAccount APIGroup: Name:dex Namespace:deploykf-auth}. clusterrolebinding.rbac.authorization.k8s.io/dex configured. Warning: resource clusterrolebindings/dex is missing the kubectl.kubernetes.io/last-applied-configuration annotation which is required by apply. apply should only be used on resources created declaratively by either create --save-config or apply. The missing annotation will be patched automatically.
Service deploykf-auth dex Synced Healthy service/dex created
Service deploykf-auth oauth2-proxy Synced Healthy service/oauth2-proxy created
apps Deployment deploykf-auth oauth2-proxy Synced Progressing deployment.apps/oauth2-proxy created
apps Deployment deploykf-auth dex Synced Progressing deployment.apps/dex created
kyverno.io ClusterPolicy deploykf-auth deploykf-auth--clone-argo-server-openid-secret Failed SyncFailed Internal error occurred: failed calling webhook "mutate-policy.kyverno.svc": failed to call webhook: Post "https://kyverno-svc.kyverno.svc:443/policymutate?timeout=10s": service "kyverno-svc" not found
kyverno.io ClusterPolicy deploykf-auth deploykf-auth--clone-minio-openid-secret Failed SyncFailed Internal error occurred: failed calling webhook "mutate-policy.kyverno.svc": failed to call webhook: Post "https://kyverno-svc.kyverno.svc:443/policymutate?timeout=10s": service "kyverno-svc" not found
kyverno.io ClusterPolicy deploykf-auth deploykf-auth--restart-on-secret-updates Failed SyncFailed Internal error occurred: failed calling webhook "mutate-policy.kyverno.svc": failed to call webhook: Post "https://kyverno-svc.kyverno.svc:443/policymutate?timeout=10s": service "kyverno-svc" not found
networking.istio.io VirtualService deploykf-auth dex Synced virtualservice.networking.istio.io/dex created
security.istio.io AuthorizationPolicy deploykf-auth dex-allow Synced authorizationpolicy.security.istio.io/dex-allow created
security.istio.io PeerAuthentication deploykf-auth dex-mtls Synced peerauthentication.security.istio.io/dex-mtls created
networking.istio.io VirtualService deploykf-auth oauth2-proxy Synced virtualservice.networking.istio.io/oauth2-proxy created
security.istio.io AuthorizationPolicy deploykf-auth oauth2-proxy-allow Synced authorizationpolicy.security.istio.io/oauth2-proxy-allow created
security.istio.io PeerAuthentication deploykf-auth oauth2-proxy-mtls Synced peerauthentication.security.istio.io/oauth2-proxy-mtls created
kyverno.io ClusterPolicy deploykf-auth--clone-argo-server-openid-secret OutOfSync Missing
kyverno.io ClusterPolicy deploykf-auth--clone-minio-openid-secret OutOfSync Missing
kyverno.io ClusterPolicy deploykf-auth--restart-on-secret-updates OutOfSync Missing
rbac.authorization.k8s.io ClusterRole dex Synced
rbac.authorization.k8s.io ClusterRole kubeflow-admin Synced
rbac.authorization.k8s.io ClusterRole kubeflow-edit Synced
rbac.authorization.k8s.io ClusterRole kubeflow-istio-admin Synced
rbac.authorization.k8s.io ClusterRole kubeflow-istio-edit Synced
rbac.authorization.k8s.io ClusterRole kubeflow-istio-view Synced
rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-admin Synced
rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-edit Synced
rbac.authorization.k8s.io ClusterRole kubeflow-kubernetes-view Synced
rbac.authorization.k8s.io ClusterRole kubeflow-view Synced
rbac.authorization.k8s.io ClusterRoleBinding dex Synced
time="2024-02-22T05:06:51Z" level=fatal msg="Operation has completed with phase: Failed"
>>> ERROR: Sync Failed
ubuntu@ip-172-31-16-114:~$ exit
exit
Created
February 22, 2024 05:10
-
-
Save ronaldpetty/c1a2d137e67cd05b22690701a9246944 to your computer and use it in GitHub Desktop.
full 1.4 sync
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment