[azureuser@bastion ~]$ oc logs -n openshift-sandboxed-containers-operator osc-caa-ds-9vjtx Error from server (BadRequest): container "caa-pod" in pod "osc-caa-ds-9vjtx" is waiting to start: trying and failing to pull image [azureuser@bastion ~]$ oc describe -n openshift-sandboxed-containers-operator pod/osc-caa-ds-9vjtx Name: osc-caa-ds-9vjtx Namespace: openshift-sandboxed-containers-operator Priority: 0 Service Account: default Node: ssheribe-c41-n5xhk-worker-eastus23-s8fk8/10.0.128.4 Start Time: Wed, 03 Dec 2025 08:57:52 +0000 Labels: controller-revision-hash=645d765b78 name=osc-caa-ds pod-template-generation=4 Annotations: openshift.io/scc: node-exporter seccomp.security.alpha.kubernetes.io/pod: runtime/default Status: Pending IP: 10.0.128.4 IPs: IP: 10.0.128.4 Controlled By: DaemonSet/osc-caa-ds Containers: caa-pod: Container ID: Image: registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05 Image ID: Port: Host Port: Command: /usr/local/bin/entrypoint.sh State: Waiting Reason: ImagePullBackOff Ready: False Restart Count: 0 Environment Variables from: peer-pods-secret Secret Optional: false peer-pods-cm ConfigMap Optional: false Environment: NODE_NAME: (v1:spec.nodeName) Mounts: /root/.ssh from ssh (ro) /root/containers/ from auth-json-volume (ro) /run/netns from netns (rw) /run/peerpod from pods-dir (rw) /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-f5mz5 (ro) Conditions: Type Status PodReadyToStartContainers True Initialized True Ready False ContainersReady False PodScheduled True Volumes: auth-json-volume: Type: Secret (a volume populated by a Secret) SecretName: auth-json-secret Optional: true ssh: Type: Secret (a volume populated by a Secret) SecretName: ssh-key-secret Optional: true pods-dir: Type: HostPath (bare host directory volume) Path: /run/peerpod HostPathType: netns: Type: HostPath (bare host directory volume) Path: /run/netns HostPathType: kube-api-access-f5mz5: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt ConfigMapOptional: DownwardAPI: true ConfigMapName: openshift-service-ca.crt ConfigMapOptional: QoS Class: BestEffort Node-Selectors: node-role.kubernetes.io/kata-oc= Tolerations: node.kubernetes.io/disk-pressure:NoSchedule op=Exists node.kubernetes.io/memory-pressure:NoSchedule op=Exists node.kubernetes.io/network-unavailable:NoSchedule op=Exists node.kubernetes.io/not-ready:NoExecute op=Exists node.kubernetes.io/pid-pressure:NoSchedule op=Exists node.kubernetes.io/unreachable:NoExecute op=Exists node.kubernetes.io/unschedulable:NoSchedule op=Exists Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Pulling 142m (x190 over 27h) kubelet Pulling image "registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05" Normal BackOff 7m30s (x4556 over 27h) kubelet Back-off pulling image "registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05" Warning Failed 100s (x300 over 26h) kubelet (combined from similar events): Failed to pull image "registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05": rpc error: code = DeadlineExceeded desc = initializing source docker://registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05: (Mirrors also failed: [quay.io/redhat-user-workloads/ose-osc-tenant/osc-caa@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05: pinging container registry quay.io: Get "https://quay.io/v2/": dial tcp 3.229.251.199:443: i/o timeout] [quay.io/redhat-user-workloads/ose-osc-tenant/osc-caa-v1-10@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05: pinging container registry quay.io: Get "https://quay.io/v2/": dial tcp 34.226.78.167:443: i/o timeout]): registry.redhat.io/openshift-sandboxed-containers/osc-cloud-api-adaptor-rhel9@sha256:7d1fa1e85af0d34c23e75868b1388eff17abe633c04a8dc55fbefcc470195c05: pinging container registry registry.redhat.io: Get "https://registry.redhat.io/v2/": dial tcp 34.207.7.212:443: i/o timeout