RouterCertsDegraded since certificate has expired or is not yet valid in RHOCP 4

Solution Verified - Updated -

Issue

  • Authentication operator is throwing below error message:

    clusteroperator/authentication is degraded because RouterCertsDegraded: secret/v4-0-config-system-router-certs.spec.data[apps.example.com] -n openshift-authentication: certificate could not validate route hostname oauth-openshift.apps.example.com: x509: certificate has expired or is not yet valid
    
  • Console and authentication operators are in degraded state.

    NAME             VERSION   AVAILABLE   PROGRESSING   DEGRADED   SINCE   MESSAGE
    authentication   4.9.43    True        False         True      23h     
    console          4.9.43    True        False         True      23h     
    
  • How to replace expired default ingress certificate ?

Environment

  • Red Hat OpenShift Container Platform (RHOCP)
    • 4

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content