Used this to delete it since vault sidecar will mount it.
- path: spec.template.spec.volumes[name:ingressgateway-ca-certs]
- path: spec.template.spec.volumes[name:ingressgateway-certs]
but in final solution, configured and rendered certificates at a different path to avoid conflicts with default paths. E.g.
/etc/istio/ingressgateway/certs/tls.key
/etc/istio/ingressgateway/certs/tls.cert
/etc/istio/ingressgateway/ca-certs/ca-chain.cert.pem
CLICK HERE to find out more related problems solutions.