I0404 10:16:11.460995 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0404 10:16:11.461216 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0404 10:16:11.478958 1 options.go:259] "enabling the sig-network Gateway API certificate-shim and HTTP-01 solver" logger="cert-manager" I0404 10:16:11.479073 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers gateway-shim ingress-shim issuers orders]" logger="cert-manager.controller" I0404 10:16:11.479102 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0404 10:16:11.479120 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0404 10:16:11.479746 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0404 10:16:11.479843 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0404 10:16:11.479829 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0404 10:16:11.486629 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0404 10:16:11.543470 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0404 10:16:11.550762 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0404 10:16:11.560875 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0404 10:16:11.565387 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0404 10:16:11.570043 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0404 10:16:11.570075 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0404 10:16:11.570083 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0404 10:16:11.570129 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0404 10:16:11.574118 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0404 10:16:11.578041 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0404 10:16:11.585941 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0404 10:16:11.585997 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0404 10:16:11.591984 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0404 10:16:11.595313 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0404 10:16:11.600334 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0404 10:16:11.605041 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0404 10:16:11.609107 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0404 10:16:11.617247 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0404 10:16:11.623263 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0404 10:16:11.627481 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0404 10:16:11.632849 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0404 10:16:11.637678 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0404 10:16:11.641490 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0404 10:16:11.641565 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0404 10:16:11.646221 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="gateway-shim" I0404 10:16:11.649007 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.649015 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.649840 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.650789 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.651268 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.651985 1 reflector.go:359] Caches populated for *v1.Gateway from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.653052 1 reflector.go:359] Caches populated for *v1.HTTPRoute from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.671931 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.689658 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.717139 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.731716 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.750569 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:11.775026 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0404 10:16:23.714693 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-04 10:16:23.714662155 +0000 UTC m=+12.281057180 I0404 10:16:24.457839 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-04 10:16:24.457819162 +0000 UTC m=+13.024214187 I0404 10:16:24.457959 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:16:24.458011 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-04 10:16:24.457999086 +0000 UTC m=+13.024394121 E0404 10:16:24.537105 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:16:24.537154 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-04 10:16:24.537146193 +0000 UTC m=+13.103541188 E0404 10:16:24.537199 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:16:24.539423 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:24.539656 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:16:24.539690 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-04 10:16:24.539681298 +0000 UTC m=+13.106076333 E0404 10:16:24.564180 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" E0404 10:16:24.564374 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:16:24.564431 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:16:24.564490 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" I0404 10:16:24.606408 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Approved" to 2026-04-04 10:16:24.606389768 +0000 UTC m=+13.172784793 I0404 10:16:24.630204 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Ready" to 2026-04-04 10:16:24.630184031 +0000 UTC m=+13.196579066 I0404 10:16:24.650289 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:24.650277444 +0000 UTC m=+13.216672449 I0404 10:16:24.663592 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:24.664195 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:24.664185874 +0000 UTC m=+13.230580909 I0404 10:16:24.675034 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:29.565055 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:29.565039245 +0000 UTC m=+18.131434270 I0404 10:16:45.424967 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:16:45.425012 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Issuing" to 2026-04-04 10:16:45.425006082 +0000 UTC m=+33.991401087 I0404 10:16:45.425274 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Ready" to 2026-04-04 10:16:45.425269297 +0000 UTC m=+33.991664302 I0404 10:16:45.437887 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:45.437960 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Ready" to 2026-04-04 10:16:45.437951231 +0000 UTC m=+34.004346246 I0404 10:16:45.813517 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:45.880474 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "gateway-tls-1" condition "Approved" to 2026-04-04 10:16:45.88045628 +0000 UTC m=+34.446851315 I0404 10:16:45.897601 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "gateway-tls-1" condition "Ready" to 2026-04-04 10:16:45.897585199 +0000 UTC m=+34.463980244 I0404 10:16:45.921777 1 conditions.go:192] Found status change for Certificate "gateway-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:45.921765091 +0000 UTC m=+34.488160126 I0404 10:16:45.940187 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:45.941092 1 conditions.go:192] Found status change for Certificate "gateway-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:45.941081399 +0000 UTC m=+34.507476434 I0404 10:16:45.946666 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:45.953398 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:45.953940 1 conditions.go:192] Found status change for Certificate "gateway-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:45.953932595 +0000 UTC m=+34.520327590 I0404 10:16:52.913131 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:16:52.913189 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-04 10:16:52.913167422 +0000 UTC m=+41.479562457 I0404 10:16:52.913206 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-04 10:16:52.913197152 +0000 UTC m=+41.479592157 I0404 10:16:52.924853 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-04 10:16:52.924826424 +0000 UTC m=+41.491221419 I0404 10:16:52.925809 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:52.925997 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-04 10:16:52.925897487 +0000 UTC m=+41.492292492 I0404 10:16:53.082791 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:53.109801 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Approved" to 2026-04-04 10:16:53.109789335 +0000 UTC m=+41.676184340 I0404 10:16:53.133312 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Ready" to 2026-04-04 10:16:53.133297012 +0000 UTC m=+41.699692037 I0404 10:16:53.158607 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:53.158589448 +0000 UTC m=+41.724984453 I0404 10:16:53.176111 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:53.176657 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:16:53.176647657 +0000 UTC m=+41.743042662 I0404 10:16:53.192511 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:16:53.198177 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:18:42.390885 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-04 10:18:42.390829273 +0000 UTC m=+150.957224328 I0404 10:18:42.390911 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:18:42.391298 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-04 10:18:42.391236952 +0000 UTC m=+150.957631977 E0404 10:18:42.436168 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0404 10:18:42.436254 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-04 10:18:42.436245857 +0000 UTC m=+151.002640852 I0404 10:18:42.436278 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0404 10:18:42.437409 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:18:42.437463 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-04 10:18:42.437458343 +0000 UTC m=+151.003853338 E0404 10:18:42.444274 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" E0404 10:18:42.444383 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0404 10:18:42.444416 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0404 10:18:42.444470 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" I0404 10:18:42.447315 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-04 10:18:42.447305853 +0000 UTC m=+151.013700858 I0404 10:18:42.447532 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:18:42.447577 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-04 10:18:42.447566588 +0000 UTC m=+151.013961623 I0404 10:18:42.458917 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:18:42.459022 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:18:42.459054 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-04 10:18:42.459047442 +0000 UTC m=+151.025442437 I0404 10:18:42.582608 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:18:42.615889 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Approved" to 2026-04-04 10:18:42.615866171 +0000 UTC m=+151.182261196 I0404 10:18:42.630709 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Ready" to 2026-04-04 10:18:42.630696766 +0000 UTC m=+151.197091771 I0404 10:18:42.655738 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:18:42.655726307 +0000 UTC m=+151.222121312 I0404 10:18:42.672577 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:18:42.673057 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:18:42.673048755 +0000 UTC m=+151.239443760 I0404 10:18:42.685127 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:18:42.685986 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:18:42.723398 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Approved" to 2026-04-04 10:18:42.723379124 +0000 UTC m=+151.289774129 I0404 10:18:42.738852 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Ready" to 2026-04-04 10:18:42.738838103 +0000 UTC m=+151.305233108 I0404 10:18:47.445059 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:18:47.445044203 +0000 UTC m=+156.011439228 I0404 10:18:47.457036 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:18:47.457025257 +0000 UTC m=+156.023420262 I0404 10:18:47.487068 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:18:47.487052095 +0000 UTC m=+156.053447100 I0404 10:18:47.500540 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:20.163361 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-30.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:20.163329 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Ready" to 2026-04-04 10:21:20.16280562 +0000 UTC m=+308.729200625 I0404 10:21:20.163526 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Issuing" to 2026-04-04 10:21:20.163516345 +0000 UTC m=+308.729911340 I0404 10:21:20.175631 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-30.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-30.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:20.175737 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-30.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:20.175764 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Issuing" to 2026-04-04 10:21:20.175753633 +0000 UTC m=+308.742148628 I0404 10:21:20.359036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-30.nip.io-tls-1" condition "Approved" to 2026-04-04 10:21:20.359018266 +0000 UTC m=+308.925413271 I0404 10:21:20.375510 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-30.nip.io-tls-1" condition "Ready" to 2026-04-04 10:21:20.375495953 +0000 UTC m=+308.941890958 I0404 10:21:20.398723 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:20.398706062 +0000 UTC m=+308.965101087 I0404 10:21:20.413326 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-30.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-30.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:20.413989 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:20.413981364 +0000 UTC m=+308.980376369 I0404 10:21:20.420993 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-30.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-30.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:20.428158 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-30.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-30.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:36.738020 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:22:36.738081 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-04 10:22:36.738065889 +0000 UTC m=+385.304460894 I0404 10:22:36.738081 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-04 10:22:36.738064189 +0000 UTC m=+385.304459214 E0404 10:22:36.750581 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:22:36.750681 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-04 10:22:36.750668211 +0000 UTC m=+385.317063236 E0404 10:22:36.750710 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:22:36.751546 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:36.751661 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:22:36.751709 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-04 10:22:36.751698283 +0000 UTC m=+385.318093298 E0404 10:22:36.759803 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" E0404 10:22:36.760525 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:22:36.760629 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:22:36.760699 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" I0404 10:22:36.784110 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:36.793926 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Approved" to 2026-04-04 10:22:36.793901911 +0000 UTC m=+385.360296936 I0404 10:22:36.810920 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Ready" to 2026-04-04 10:22:36.810899044 +0000 UTC m=+385.377294069 I0404 10:22:36.834569 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:36.834545776 +0000 UTC m=+385.400940811 I0404 10:22:36.849173 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:36.889342 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:41.761244 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:41.761229135 +0000 UTC m=+390.327624150 I0404 10:23:28.645315 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" condition "Ready" to 2026-04-04 10:23:28.645285939 +0000 UTC m=+437.211681024 I0404 10:23:28.645427 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:23:28.645523 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" condition "Issuing" to 2026-04-04 10:23:28.645507724 +0000 UTC m=+437.211902739 I0404 10:23:28.662887 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:28.663000 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:23:28.663049 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" condition "Issuing" to 2026-04-04 10:23:28.663041211 +0000 UTC m=+437.229436226 I0404 10:23:28.819149 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:28.833926 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls-1" condition "Approved" to 2026-04-04 10:23:28.83390205 +0000 UTC m=+437.400297045 I0404 10:23:28.862189 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls-1" condition "Ready" to 2026-04-04 10:23:28.862176693 +0000 UTC m=+437.428571688 I0404 10:23:28.964582 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:23:28.964565197 +0000 UTC m=+437.530960192 I0404 10:23:28.980933 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:29.016060 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bkm4w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:40.919455 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:23:40.919604 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-04 10:23:40.919590608 +0000 UTC m=+449.485985613 I0404 10:23:40.919957 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-04 10:23:40.919938405 +0000 UTC m=+449.486333400 I0404 10:23:40.930771 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:40.930919 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:23:40.930988 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-04 10:23:40.930973866 +0000 UTC m=+449.497368871 I0404 10:23:41.105228 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:41.117775 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Approved" to 2026-04-04 10:23:41.117756369 +0000 UTC m=+449.684151384 I0404 10:23:41.147693 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Ready" to 2026-04-04 10:23:41.147681085 +0000 UTC m=+449.714076090 I0404 10:23:41.177934 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:23:41.177915688 +0000 UTC m=+449.744310703 I0404 10:23:41.190295 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:41.190766 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:23:41.190760468 +0000 UTC m=+449.757155473 I0404 10:23:41.202024 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:23:41.202912 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again"