I0417 18:44:34.175874 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0417 18:44:34.176045 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0417 18:44:34.176152 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0417 18:44:34.180485 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0417 18:44:34.180851 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0417 18:44:34.180967 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0417 18:44:34.181005 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0417 18:44:34.183375 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0417 18:44:34.201576 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0417 18:44:34.209472 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0417 18:44:34.212854 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0417 18:44:34.215616 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0417 18:44:34.218125 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0417 18:44:34.220677 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0417 18:44:34.220815 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0417 18:44:34.222483 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0417 18:44:34.227999 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0417 18:44:34.230907 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0417 18:44:34.233761 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0417 18:44:34.233785 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0417 18:44:34.233794 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0417 18:44:34.233914 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0417 18:44:34.236277 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0417 18:44:34.238077 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0417 18:44:34.239956 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0417 18:44:34.241784 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0417 18:44:34.243668 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0417 18:44:34.243684 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0417 18:44:34.243699 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0417 18:44:34.247066 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0417 18:44:34.250024 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0417 18:44:34.252688 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0417 18:44:34.256030 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0417 18:44:34.259825 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.259954 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.260049 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.260505 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.260744 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.260761 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.261176 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.261277 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.262745 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:34.350337 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:44:46.938185 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-17 18:44:46.938170013 +0000 UTC m=+12.797628355 I0417 18:44:47.664937 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-17 18:44:47.664914964 +0000 UTC m=+13.524373316 I0417 18:44:47.664975 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:44:47.665280 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-17 18:44:47.665262282 +0000 UTC m=+13.524720594 E0417 18:44:47.679622 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 18:44:47.679723 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-17 18:44:47.679714298 +0000 UTC m=+13.539172620 E0417 18:44:47.679759 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 18:44:47.682823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:44:47.682929 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-17 18:44:47.682920062 +0000 UTC m=+13.542378394 E0417 18:44:47.691372 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0417 18:44:47.691450 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:44:47.691488 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:44:47.691537 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0417 18:44:47.702192 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:44:47.724707 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-42jqf" condition "Approved" to 2026-04-17 18:44:47.724682275 +0000 UTC m=+13.584140677 I0417 18:44:47.738409 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-42jqf" condition "Ready" to 2026-04-17 18:44:47.738398193 +0000 UTC m=+13.597856525 I0417 18:44:47.762066 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:44:47.762051048 +0000 UTC m=+13.621509390 I0417 18:44:47.777924 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:44:47.778212 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:44:47.778205233 +0000 UTC m=+13.637663555 I0417 18:44:47.796953 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:44:52.692026 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:44:52.692013339 +0000 UTC m=+18.551471691 I0417 18:45:12.093557 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-17 18:45:12.093525413 +0000 UTC m=+37.952983735 I0417 18:45:12.093598 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:45:12.093812 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-17 18:45:12.093753418 +0000 UTC m=+37.953211740 I0417 18:45:12.115376 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-17 18:45:12.11536059 +0000 UTC m=+37.974818922 I0417 18:45:12.123587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:45:12.123822 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:45:12.123852 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-17 18:45:12.123845939 +0000 UTC m=+37.983304261 I0417 18:45:12.387575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:45:12.396263 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-l7rqg" condition "Approved" to 2026-04-17 18:45:12.396246798 +0000 UTC m=+38.255705160 I0417 18:45:12.438930 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-l7rqg" condition "Ready" to 2026-04-17 18:45:12.438913851 +0000 UTC m=+38.298372203 I0417 18:45:12.474112 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:45:12.474090516 +0000 UTC m=+38.333548868 I0417 18:45:12.499411 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:45:12.499779 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:45:12.499768038 +0000 UTC m=+38.359226350 I0417 18:45:12.519696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:49:48.552415 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-138.nip.io-tls" condition "Ready" to 2026-04-17 18:49:48.552396995 +0000 UTC m=+314.411855347 I0417 18:49:48.553556 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-138.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:49:48.553596 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-138.nip.io-tls" condition "Issuing" to 2026-04-17 18:49:48.553587542 +0000 UTC m=+314.413045884 I0417 18:49:48.570825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-138.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-138.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:49:48.570882 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-138.nip.io-tls" condition "Ready" to 2026-04-17 18:49:48.57087516 +0000 UTC m=+314.430333482 I0417 18:49:48.701619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-138.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-138.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:49:48.734585 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-138.nip.io-tls-459xg" condition "Approved" to 2026-04-17 18:49:48.734568229 +0000 UTC m=+314.594026551 I0417 18:49:48.762413 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-138.nip.io-tls-459xg" condition "Ready" to 2026-04-17 18:49:48.762394168 +0000 UTC m=+314.621852490 I0417 18:49:48.791200 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-138.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:49:48.791186248 +0000 UTC m=+314.650644600 I0417 18:49:48.814234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-138.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-138.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:50:55.763987 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-17 18:50:55.763966254 +0000 UTC m=+381.623424596 I0417 18:50:55.764153 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:50:55.764214 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-17 18:50:55.764200309 +0000 UTC m=+381.623658651 E0417 18:50:55.776611 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 18:50:55.776681 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-17 18:50:55.776668551 +0000 UTC m=+381.636126903 E0417 18:50:55.776759 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 18:50:55.780458 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:50:55.780551 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:50:55.780573 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-17 18:50:55.780568247 +0000 UTC m=+381.640026569 E0417 18:50:55.790678 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0417 18:50:55.790801 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:50:55.790856 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:50:55.790916 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0417 18:50:55.824138 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:50:55.824370 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-qnwnd" condition "Approved" to 2026-04-17 18:50:55.824347343 +0000 UTC m=+381.683805665 I0417 18:50:55.834893 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-qnwnd" condition "Ready" to 2026-04-17 18:50:55.834871743 +0000 UTC m=+381.694330085 I0417 18:50:55.857229 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:50:55.857216021 +0000 UTC m=+381.716674373 I0417 18:50:55.876461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:00.791850 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:00.791832574 +0000 UTC m=+386.651290916 I0417 18:51:40.167817 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:40.167878 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-17 18:51:40.16786558 +0000 UTC m=+426.027323922 I0417 18:51:40.168356 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 18:51:40.16834842 +0000 UTC m=+426.027806772 I0417 18:51:40.180488 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:40.180519 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-17 18:51:40.180512887 +0000 UTC m=+426.039971199 I0417 18:51:40.180780 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-17 18:51:40.180775973 +0000 UTC m=+426.040234285 I0417 18:51:40.186197 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:40.186276 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-17 18:51:40.186266843 +0000 UTC m=+426.045725175 I0417 18:51:40.186225 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-17 18:51:40.186200682 +0000 UTC m=+426.045659034 I0417 18:51:40.197915 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.197986 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 18:51:40.19797974 +0000 UTC m=+426.057438052 I0417 18:51:40.208429 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.208545 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:40.208571 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-17 18:51:40.208564353 +0000 UTC m=+426.068022675 I0417 18:51:40.215057 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.215147 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-17 18:51:40.215139587 +0000 UTC m=+426.074597899 I0417 18:51:40.444595 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.489219 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-psv55" condition "Approved" to 2026-04-17 18:51:40.489204701 +0000 UTC m=+426.348663053 I0417 18:51:40.510964 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-psv55" condition "Ready" to 2026-04-17 18:51:40.510951839 +0000 UTC m=+426.370410141 I0417 18:51:40.544998 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:40.544982085 +0000 UTC m=+426.404440427 I0417 18:51:40.564159 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.564688 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:40.564680548 +0000 UTC m=+426.424138870 I0417 18:51:40.589768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.596929 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.598933 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:40.599262 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:40.599252387 +0000 UTC m=+426.458710709 I0417 18:51:40.627183 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5z8g2" condition "Approved" to 2026-04-17 18:51:40.627166449 +0000 UTC m=+426.486624791 I0417 18:51:40.645374 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5z8g2" condition "Ready" to 2026-04-17 18:51:40.645358758 +0000 UTC m=+426.504817090 I0417 18:51:40.673826 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:40.673808292 +0000 UTC m=+426.533266594 I0417 18:51:40.710286 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:41.116741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:41.176111 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5px2z" condition "Approved" to 2026-04-17 18:51:41.176085395 +0000 UTC m=+427.035543717 I0417 18:51:41.425006 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5px2z" condition "Ready" to 2026-04-17 18:51:41.424988997 +0000 UTC m=+427.284447309 I0417 18:51:41.755233 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:41.755204774 +0000 UTC m=+427.614663126 I0417 18:51:41.822081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:41.822504 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:41.822495871 +0000 UTC m=+427.681954193 I0417 18:51:42.013695 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:48.156305 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:48.156341 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" condition "Ready" to 2026-04-17 18:51:48.1563284 +0000 UTC m=+434.015786722 I0417 18:51:48.156352 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" condition "Issuing" to 2026-04-17 18:51:48.15634251 +0000 UTC m=+434.015800892 I0417 18:51:48.192080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:48.192169 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:48.192436 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" condition "Issuing" to 2026-04-17 18:51:48.192357991 +0000 UTC m=+434.051816363 I0417 18:51:48.319601 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:48.327325 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-jc7j7-ftr9h" condition "Approved" to 2026-04-17 18:51:48.327311082 +0000 UTC m=+434.186769394 I0417 18:51:48.352965 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-jc7j7-ftr9h" condition "Ready" to 2026-04-17 18:51:48.352953615 +0000 UTC m=+434.212411937 I0417 18:51:48.392553 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:48.392538903 +0000 UTC m=+434.251997225 I0417 18:51:48.414078 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:48.465511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jc7j7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:14.201679 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:52:14.201717 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 18:52:14.201708278 +0000 UTC m=+460.061166600 I0417 18:52:14.201773 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-17 18:52:14.201754519 +0000 UTC m=+460.061212851 I0417 18:52:14.219798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:14.219884 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:52:14.219902 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 18:52:14.219896157 +0000 UTC m=+460.079354479 I0417 18:52:14.475702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:14.481245 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-rtsqs" condition "Approved" to 2026-04-17 18:52:14.481225942 +0000 UTC m=+460.340684264 I0417 18:52:14.503177 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-rtsqs" condition "Ready" to 2026-04-17 18:52:14.503161173 +0000 UTC m=+460.362619525 I0417 18:52:14.538173 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:52:14.538157252 +0000 UTC m=+460.397615564 I0417 18:52:14.559786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:14.560231 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:52:14.560223676 +0000 UTC m=+460.419681988 I0417 18:52:14.579748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:55:26.677983 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:55:26.678053 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-17 18:55:26.678047969 +0000 UTC m=+652.537506291 I0417 18:55:26.678028 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-17 18:55:26.678013708 +0000 UTC m=+652.537472060 I0417 18:55:26.698521 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:55:26.698602 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:55:26.698625 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-17 18:55:26.698616639 +0000 UTC m=+652.558074991 I0417 18:55:26.875561 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:55:26.885763 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-df6s6" condition "Approved" to 2026-04-17 18:55:26.885749686 +0000 UTC m=+652.745208008 I0417 18:55:26.901999 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-df6s6" condition "Ready" to 2026-04-17 18:55:26.90198737 +0000 UTC m=+652.761445682 I0417 18:55:26.929245 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:55:26.929219835 +0000 UTC m=+652.788678187 I0417 18:55:26.954430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:55:26.954892 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:55:26.954882436 +0000 UTC m=+652.814340758 I0417 18:55:26.978610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:55:26.978920 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:55:26.978911701 +0000 UTC m=+652.838370013 I0417 18:57:51.785236 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-17 18:57:51.785201962 +0000 UTC m=+797.644660264 I0417 18:57:51.785302 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:57:51.785633 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-17 18:57:51.78556288 +0000 UTC m=+797.645021252 I0417 18:57:51.802644 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:51.802728 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:57:51.802752 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-17 18:57:51.802744792 +0000 UTC m=+797.662203114 I0417 18:57:52.017605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-6h9b5" condition "Approved" to 2026-04-17 18:57:52.017577457 +0000 UTC m=+797.877035809 I0417 18:57:52.049238 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-6h9b5" condition "Ready" to 2026-04-17 18:57:52.049223472 +0000 UTC m=+797.908681794 I0417 18:57:52.078892 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:57:52.078877365 +0000 UTC m=+797.938335687 I0417 18:57:52.101465 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:52.101775 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:57:52.101769801 +0000 UTC m=+797.961228123 I0417 18:57:52.127647 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:58:49.694094 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-17 18:58:49.694072156 +0000 UTC m=+855.553530508 I0417 18:58:49.694442 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:58:49.694553 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-17 18:58:49.694543036 +0000 UTC m=+855.554001388 I0417 18:58:49.709913 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:58:49.709995 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:58:49.710024 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-17 18:58:49.710018511 +0000 UTC m=+855.569476853 I0417 18:58:50.131775 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-mk4nz" condition "Approved" to 2026-04-17 18:58:50.131755629 +0000 UTC m=+855.991213971 I0417 18:58:50.148738 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-mk4nz" condition "Ready" to 2026-04-17 18:58:50.148727487 +0000 UTC m=+856.008185789 I0417 18:58:50.178805 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:58:50.178782148 +0000 UTC m=+856.038240500 I0417 18:58:50.204502 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:58:50.204815 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:58:50.204808622 +0000 UTC m=+856.064266934 I0417 18:58:50.226753 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:01:49.043277 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-17 19:01:49.043263153 +0000 UTC m=+1034.902721495 I0417 19:01:49.043294 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 19:01:49.043365 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-17 19:01:49.043358195 +0000 UTC m=+1034.902816517 I0417 19:01:49.062151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:01:49.062276 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-17 19:01:49.062262493 +0000 UTC m=+1034.921720855 I0417 19:01:49.278032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:01:49.315688 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-z92qs" condition "Approved" to 2026-04-17 19:01:49.315677189 +0000 UTC m=+1035.175135511 I0417 19:01:49.338210 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-z92qs" condition "Ready" to 2026-04-17 19:01:49.338196116 +0000 UTC m=+1035.197654458 I0417 19:01:49.365321 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 19:01:49.365305782 +0000 UTC m=+1035.224764094 I0417 19:01:49.385064 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:01:49.385415 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 19:01:49.385409376 +0000 UTC m=+1035.244867688 I0417 19:01:49.407693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:01:49.417317 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"