I0402 16:48:14.273738 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0402 16:48:14.273930 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0402 16:48:14.274114 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0402 16:48:14.279024 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0402 16:48:14.279687 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0402 16:48:14.279691 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0402 16:48:14.279760 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0402 16:48:14.285450 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0402 16:48:14.298707 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0402 16:48:14.303180 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0402 16:48:14.307368 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0402 16:48:14.307486 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0402 16:48:14.310164 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0402 16:48:14.310220 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0402 16:48:14.314003 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0402 16:48:14.318629 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0402 16:48:14.322219 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0402 16:48:14.325131 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0402 16:48:14.326857 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0402 16:48:14.328596 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0402 16:48:14.330132 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0402 16:48:14.330155 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0402 16:48:14.330160 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0402 16:48:14.330234 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0402 16:48:14.332620 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0402 16:48:14.337806 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0402 16:48:14.341277 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0402 16:48:14.343633 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0402 16:48:14.345971 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0402 16:48:14.348535 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0402 16:48:14.350716 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0402 16:48:14.353382 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0402 16:48:14.353410 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0402 16:48:14.356667 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.357222 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.358224 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.358862 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.359090 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.359266 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.359513 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.360908 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.361035 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:14.448519 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:48:25.619982 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-02 16:48:25.619970082 +0000 UTC m=+11.375991207 I0402 16:48:26.300296 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:48:26.300375 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 16:48:26.300365339 +0000 UTC m=+12.056386484 I0402 16:48:26.300677 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-02 16:48:26.300666147 +0000 UTC m=+12.056687302 E0402 16:48:26.314964 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 16:48:26.315065 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-02 16:48:26.315054146 +0000 UTC m=+12.071075291 E0402 16:48:26.315100 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 16:48:26.319200 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:26.319262 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:48:26.319278 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 16:48:26.319272 +0000 UTC m=+12.075293125 E0402 16:48:26.327444 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0402 16:48:26.327820 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 16:48:26.327863 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 16:48:26.327921 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0402 16:48:26.356432 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:26.357035 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-q9jvl" condition "Approved" to 2026-04-02 16:48:26.357018668 +0000 UTC m=+12.113039793 I0402 16:48:26.370269 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-q9jvl" condition "Ready" to 2026-04-02 16:48:26.370254715 +0000 UTC m=+12.126275870 I0402 16:48:26.393036 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:48:26.393024919 +0000 UTC m=+12.149046044 I0402 16:48:26.410504 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:26.410735 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:48:26.410727237 +0000 UTC m=+12.166748362 I0402 16:48:26.426171 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:31.328089 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:48:31.328076397 +0000 UTC m=+17.084097542 I0402 16:48:51.302770 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-02 16:48:51.302759383 +0000 UTC m=+37.058780508 I0402 16:48:51.302839 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:48:51.302908 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-02 16:48:51.302900647 +0000 UTC m=+37.058921772 I0402 16:48:51.314523 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-02 16:48:51.31451 +0000 UTC m=+37.070531125 I0402 16:48:51.323526 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:51.323583 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:48:51.323605 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-02 16:48:51.323601556 +0000 UTC m=+37.079622671 I0402 16:48:51.577786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:51.586986 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-xdtmp" condition "Approved" to 2026-04-02 16:48:51.586971767 +0000 UTC m=+37.342992902 I0402 16:48:51.618017 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-xdtmp" condition "Ready" to 2026-04-02 16:48:51.618001504 +0000 UTC m=+37.374022649 I0402 16:48:51.650989 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:48:51.650976705 +0000 UTC m=+37.406997830 I0402 16:48:51.675517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:51.675841 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:48:51.675834176 +0000 UTC m=+37.431855311 I0402 16:48:51.692524 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:48:51.692823 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:48:51.692815044 +0000 UTC m=+37.448836179 I0402 16:50:34.036811 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-02 16:50:34.036763585 +0000 UTC m=+139.792784710 I0402 16:50:34.036812 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:50:34.036911 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-02 16:50:34.036902929 +0000 UTC m=+139.792924054 E0402 16:50:34.050854 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 16:50:34.050888 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-02 16:50:34.050882638 +0000 UTC m=+139.806903753 I0402 16:50:34.050920 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 16:50:34.056585 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:50:34.056723 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-02 16:50:34.056654155 +0000 UTC m=+139.812675270 E0402 16:50:34.068290 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0402 16:50:34.068388 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 16:50:34.068414 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0402 16:50:34.068456 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0402 16:50:34.069508 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-02 16:50:34.069503453 +0000 UTC m=+139.825524558 I0402 16:50:34.069512 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:50:34.069541 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-02 16:50:34.069534154 +0000 UTC m=+139.825555289 I0402 16:50:34.082892 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:50:34.082980 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:50:34.083006 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-02 16:50:34.082998909 +0000 UTC m=+139.839020034 I0402 16:50:34.181716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:50:34.212992 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2dnrl" condition "Approved" to 2026-04-02 16:50:34.212971025 +0000 UTC m=+139.968992150 I0402 16:50:34.243674 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2dnrl" condition "Ready" to 2026-04-02 16:50:34.243654418 +0000 UTC m=+139.999675573 I0402 16:50:34.270093 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:50:34.270067164 +0000 UTC m=+140.026088319 I0402 16:50:34.288662 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:50:34.328289 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:50:34.340863 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-jbpqk" condition "Approved" to 2026-04-02 16:50:34.340848984 +0000 UTC m=+140.096870109 I0402 16:50:34.357310 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-jbpqk" condition "Ready" to 2026-04-02 16:50:34.357297441 +0000 UTC m=+140.113318566 I0402 16:50:39.069515 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:50:39.069501723 +0000 UTC m=+144.825522878 I0402 16:50:39.086889 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-jbpqk" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:50:39.086873604 +0000 UTC m=+144.842894749 I0402 16:50:39.116352 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:50:39.116339364 +0000 UTC m=+144.872360489 I0402 16:50:39.132775 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:50:39.133096 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:50:39.133089078 +0000 UTC m=+144.889110203 I0402 16:50:39.151390 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:50:39.151646 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:50:39.151637811 +0000 UTC m=+144.907658926 I0402 16:53:11.452459 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-145.nip.io-tls" condition "Ready" to 2026-04-02 16:53:11.452397006 +0000 UTC m=+297.208418151 I0402 16:53:11.452475 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-145.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:53:11.452535 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-145.nip.io-tls" condition "Issuing" to 2026-04-02 16:53:11.452523439 +0000 UTC m=+297.208544594 I0402 16:53:11.505989 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-145.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-145.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:53:11.506206 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-145.nip.io-tls" condition "Ready" to 2026-04-02 16:53:11.506193733 +0000 UTC m=+297.262214888 I0402 16:53:11.596819 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-145.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-145.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:53:11.642761 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-145.nip.io-tls-gpkzx" condition "Approved" to 2026-04-02 16:53:11.642730459 +0000 UTC m=+297.398751614 I0402 16:53:11.673868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-145.nip.io-tls-gpkzx" condition "Ready" to 2026-04-02 16:53:11.67384987 +0000 UTC m=+297.429871015 I0402 16:53:11.723439 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-145.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:53:11.723414904 +0000 UTC m=+297.479436049 I0402 16:53:11.753069 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-145.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-145.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:54:22.634068 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-02 16:54:22.633997712 +0000 UTC m=+368.390018837 I0402 16:54:22.634225 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:54:22.634408 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-02 16:54:22.634395342 +0000 UTC m=+368.390416487 E0402 16:54:22.645541 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 16:54:22.645584 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-02 16:54:22.64557654 +0000 UTC m=+368.401597665 E0402 16:54:22.645626 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 16:54:22.647389 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:54:22.647444 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:54:22.647460 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-02 16:54:22.647456181 +0000 UTC m=+368.403477306 E0402 16:54:22.655092 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0402 16:54:22.655326 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 16:54:22.655445 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 16:54:22.655561 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0402 16:54:22.679545 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-ntpg7" condition "Approved" to 2026-04-02 16:54:22.679528527 +0000 UTC m=+368.435549672 I0402 16:54:22.691330 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-ntpg7" condition "Ready" to 2026-04-02 16:54:22.691318972 +0000 UTC m=+368.447340117 I0402 16:54:22.710276 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:54:22.710258907 +0000 UTC m=+368.466280052 I0402 16:54:22.724351 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:54:22.724714 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:54:22.724706393 +0000 UTC m=+368.480727538 I0402 16:54:22.738324 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:54:22.739133 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:54:22.739355 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:54:22.739347304 +0000 UTC m=+368.495368429 I0402 16:54:27.655546 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:54:27.655532217 +0000 UTC m=+373.411553372 I0402 16:55:04.818758 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-02 16:55:04.818708729 +0000 UTC m=+410.574729854 I0402 16:55:04.819188 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:04.819240 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-02 16:55:04.819206642 +0000 UTC m=+410.575227767 I0402 16:55:04.820900 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-02 16:55:04.820893227 +0000 UTC m=+410.576914352 I0402 16:55:04.820949 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:04.820987 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-02 16:55:04.820975449 +0000 UTC m=+410.576996574 I0402 16:55:04.821108 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 16:55:04.821102983 +0000 UTC m=+410.577124108 I0402 16:55:04.821181 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:04.821199 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-02 16:55:04.821196265 +0000 UTC m=+410.577217390 I0402 16:55:04.858766 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:04.858846 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:04.858870 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-02 16:55:04.858864108 +0000 UTC m=+410.614885213 I0402 16:55:04.872129 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:04.872226 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-02 16:55:04.872216254 +0000 UTC m=+410.628237369 I0402 16:55:04.874801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:04.874845 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 16:55:04.874841234 +0000 UTC m=+410.630862349 I0402 16:55:04.968587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:05.005615 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-k4x86" condition "Approved" to 2026-04-02 16:55:05.005602928 +0000 UTC m=+410.761624033 I0402 16:55:05.013080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:05.024737 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-k4x86" condition "Ready" to 2026-04-02 16:55:05.024722977 +0000 UTC m=+410.780744132 I0402 16:55:05.045617 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bc8s6" condition "Approved" to 2026-04-02 16:55:05.045594823 +0000 UTC m=+410.801615978 I0402 16:55:05.067218 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:55:05.067202529 +0000 UTC m=+410.823223644 I0402 16:55:05.080960 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bc8s6" condition "Ready" to 2026-04-02 16:55:05.080947265 +0000 UTC m=+410.836968380 I0402 16:55:05.098105 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:05.125724 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:05.125774 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-02 16:55:05.125762249 +0000 UTC m=+410.881783404 I0402 16:55:05.133494 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:55:05.133474674 +0000 UTC m=+410.889495819 I0402 16:55:05.347717 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:05.348054 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:55:05.34804617 +0000 UTC m=+411.104067295 I0402 16:55:05.501568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:05.804583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-k4mqt" condition "Approved" to 2026-04-02 16:55:05.804556752 +0000 UTC m=+411.560577897 E0402 16:55:05.846860 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-qqc2h\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0402 16:55:05.953144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bwl4q" condition "Approved" to 2026-04-02 16:55:05.953126 +0000 UTC m=+411.709147125 I0402 16:55:06.263474 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-k4mqt" condition "Ready" to 2026-04-02 16:55:06.263456327 +0000 UTC m=+412.019477452 I0402 16:55:06.355087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bwl4q" condition "Ready" to 2026-04-02 16:55:06.355062688 +0000 UTC m=+412.111083833 I0402 16:55:06.948389 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:55:06.948372054 +0000 UTC m=+412.704393199 I0402 16:55:07.147628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:07.148025 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:55:07.148015644 +0000 UTC m=+412.904036789 I0402 16:55:07.248020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:07.548772 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:07.598215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:12.932880 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2z874-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:12.932934 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2z874-tls" condition "Issuing" to 2026-04-02 16:55:12.932922943 +0000 UTC m=+418.688944098 I0402 16:55:12.932889 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2z874-tls" condition "Ready" to 2026-04-02 16:55:12.932869642 +0000 UTC m=+418.688890797 I0402 16:55:12.948274 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2z874-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2z874-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:12.948366 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2z874-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:12.948395 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2z874-tls" condition "Issuing" to 2026-04-02 16:55:12.948385595 +0000 UTC m=+418.704406750 I0402 16:55:13.106458 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2z874-npvwt" condition "Approved" to 2026-04-02 16:55:13.106436896 +0000 UTC m=+418.862458041 I0402 16:55:13.124738 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2z874-npvwt" condition "Ready" to 2026-04-02 16:55:13.124724763 +0000 UTC m=+418.880745878 I0402 16:55:13.149516 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2z874-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:55:13.149502013 +0000 UTC m=+418.905523128 I0402 16:55:13.170150 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2z874-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2z874-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:35.795374 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-02 16:55:35.795352572 +0000 UTC m=+441.551373727 I0402 16:55:35.795867 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:35.795919 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-02 16:55:35.795907177 +0000 UTC m=+441.551928322 I0402 16:55:35.808857 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:55:35.808999 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:55:35.809038 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-02 16:55:35.809025936 +0000 UTC m=+441.565047091 I0402 16:55:36.265850 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-tpg77" condition "Approved" to 2026-04-02 16:55:36.265835196 +0000 UTC m=+442.021856311 I0402 16:55:36.282507 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-tpg77" condition "Ready" to 2026-04-02 16:55:36.28249467 +0000 UTC m=+442.038515795 I0402 16:55:36.312195 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:55:36.312179871 +0000 UTC m=+442.068200996 I0402 16:55:36.333742 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:58:59.078643 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-02 16:58:59.07859784 +0000 UTC m=+644.834618985 I0402 16:58:59.078733 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:58:59.078905 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-02 16:58:59.078894918 +0000 UTC m=+644.834916043 I0402 16:58:59.095921 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:58:59.096030 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-02 16:58:59.096020204 +0000 UTC m=+644.852041329 I0402 16:58:59.316415 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:58:59.347753 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nnw2j" condition "Approved" to 2026-04-02 16:58:59.347734104 +0000 UTC m=+645.103755249 I0402 16:58:59.367727 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nnw2j" condition "Ready" to 2026-04-02 16:58:59.367714238 +0000 UTC m=+645.123735363 I0402 16:58:59.392723 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:58:59.392708285 +0000 UTC m=+645.148729410 I0402 16:58:59.419151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:58:59.419504 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:58:59.4194978 +0000 UTC m=+645.175518915 I0402 16:58:59.440412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:58:59.440626 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:58:59.440621004 +0000 UTC m=+645.196642129 I0402 17:01:48.825747 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-02 17:01:48.825721944 +0000 UTC m=+814.581743069 I0402 17:01:48.826418 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:01:48.826521 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-02 17:01:48.826509325 +0000 UTC m=+814.582530470 I0402 17:01:48.845876 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:48.845996 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:01:48.846053 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-02 17:01:48.846043765 +0000 UTC m=+814.602064890 I0402 17:01:49.527742 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:49.535317 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-rnwpr" condition "Approved" to 2026-04-02 17:01:49.535304994 +0000 UTC m=+815.291326119 I0402 17:01:49.554551 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-rnwpr" condition "Ready" to 2026-04-02 17:01:49.554535276 +0000 UTC m=+815.310556401 I0402 17:01:49.586332 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:49.586314461 +0000 UTC m=+815.342335596 I0402 17:01:49.609851 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:49.610339 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:49.610332171 +0000 UTC m=+815.366353296 I0402 17:01:49.629785 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:59.465288 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-02 17:02:59.465277651 +0000 UTC m=+885.221298776 I0402 17:02:59.465665 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:02:59.466289 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-02 17:02:59.466282398 +0000 UTC m=+885.222303533 I0402 17:02:59.487329 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:59.487403 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:02:59.487420 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-02 17:02:59.48741334 +0000 UTC m=+885.243434465 I0402 17:02:59.895808 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-ftqs7" condition "Approved" to 2026-04-02 17:02:59.895797622 +0000 UTC m=+885.651818747 I0402 17:02:59.915336 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-ftqs7" condition "Ready" to 2026-04-02 17:02:59.915322481 +0000 UTC m=+885.671343606 I0402 17:02:59.950586 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:02:59.95057129 +0000 UTC m=+885.706592415 I0402 17:02:59.976370 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:59.976686 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:02:59.976679665 +0000 UTC m=+885.732700790 I0402 17:02:59.996834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:59.997186 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:02:59.99717785 +0000 UTC m=+885.753198975 I0402 17:06:08.432068 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-02 17:06:08.432045221 +0000 UTC m=+1074.188066346 I0402 17:06:08.432196 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:06:08.432268 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-02 17:06:08.432259456 +0000 UTC m=+1074.188280591 I0402 17:06:08.455744 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:06:08.455908 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-02 17:06:08.455894345 +0000 UTC m=+1074.211915460 I0402 17:06:08.550948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:06:08.581871 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-46zvs" condition "Approved" to 2026-04-02 17:06:08.581850284 +0000 UTC m=+1074.337871439 I0402 17:06:08.604278 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-46zvs" condition "Ready" to 2026-04-02 17:06:08.60426104 +0000 UTC m=+1074.360282185 I0402 17:06:08.635841 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:06:08.635825879 +0000 UTC m=+1074.391847004 I0402 17:06:08.660953 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:06:08.725569 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"