The error in the previous comment was due to a different problem with the app's cluster role rules; this still needs to be fixed.
What it looks like is happening is that the controller service which handles cross model secrets is failing to create the cluster role attenuated to the viewable secrets. If this is done by hand, things start to work. So if we fix that, it should address the problem.
The error in the previous comment was due to a different problem with the app's cluster role rules; this still needs to be fixed.
What it looks like is happening is that the controller service which handles cross model secrets is failing to create the cluster role attenuated to the viewable secrets. If this is done by hand, things start to work. So if we fix that, it should address the problem.