I0505 02:23:53.476692 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 02:23:53.476803 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 02:23:53.476869 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 02:23:53.482073 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 02:23:53.482608 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 02:23:53.482795 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 02:23:53.482831 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 02:23:53.485405 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 02:23:53.501857 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 02:23:53.506361 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 02:23:53.511073 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 02:23:53.513665 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 02:23:53.513706 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 02:23:53.515405 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 02:23:53.515478 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 02:23:53.517381 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 02:23:53.519106 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 02:23:53.520965 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 02:23:53.522892 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 02:23:53.527461 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 02:23:53.527548 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 02:23:53.529482 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 02:23:53.531132 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 02:23:53.532875 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 02:23:53.534668 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 02:23:53.536552 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 02:23:53.538328 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 02:23:53.539899 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 02:23:53.543698 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 02:23:53.546381 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 02:23:53.546409 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 02:23:53.546420 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 02:23:53.546819 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 02:23:53.550432 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.551309 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.551655 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.564954 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.581923 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.597187 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.612912 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.626514 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.641820 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:23:53.648555 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 02:24:04.640213 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 02:24:04.640200738 +0000 UTC m=+11.194050257 I0505 02:24:05.341184 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 02:24:05.34116758 +0000 UTC m=+11.895017109 I0505 02:24:05.342402 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:24:05.342518 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 02:24:05.342507256 +0000 UTC m=+11.896356795 E0505 02:24:05.357484 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 02:24:05.357589 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 02:24:05.357582111 +0000 UTC m=+11.911431630 E0505 02:24:05.359769 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 02:24:05.361430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:24:05.361488 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 02:24:05.361481309 +0000 UTC m=+11.915330828 E0505 02:24:05.370316 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 02:24:05.370765 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 02:24:05.370795 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 02:24:05.370851 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 02:24:05.379815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:24:05.401037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b8dz7" condition "Approved" to 2026-05-05 02:24:05.399885831 +0000 UTC m=+11.953735360 I0505 02:24:05.413689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b8dz7" condition "Ready" to 2026-05-05 02:24:05.41367783 +0000 UTC m=+11.967527349 I0505 02:24:05.438472 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:24:05.438459464 +0000 UTC m=+11.992309003 I0505 02:24:05.457677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:24:10.370747 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:24:10.370719378 +0000 UTC m=+16.924568897 I0505 02:24:33.473891 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 02:24:33.473848771 +0000 UTC m=+40.027698320 I0505 02:24:33.474123 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:24:33.474180 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 02:24:33.474170906 +0000 UTC m=+40.028020425 I0505 02:24:33.486934 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 02:24:33.486919015 +0000 UTC m=+40.040768534 I0505 02:24:33.498746 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:24:33.498999 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:24:33.499035 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 02:24:33.499025368 +0000 UTC m=+40.052874907 I0505 02:24:33.862868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-7f782" condition "Approved" to 2026-05-05 02:24:33.862849672 +0000 UTC m=+40.416699201 I0505 02:24:33.889780 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-7f782" condition "Ready" to 2026-05-05 02:24:33.889769609 +0000 UTC m=+40.443619118 I0505 02:24:33.930973 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:24:33.930958951 +0000 UTC m=+40.484808460 I0505 02:24:33.962141 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:28:46.504872 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready" to 2026-05-05 02:28:46.504840428 +0000 UTC m=+293.058689937 I0505 02:28:46.504955 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:28:46.505037 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Issuing" to 2026-05-05 02:28:46.505027282 +0000 UTC m=+293.058876821 I0505 02:28:46.521430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:28:46.521697 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:28:46.521721 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Issuing" to 2026-05-05 02:28:46.52171421 +0000 UTC m=+293.075563729 I0505 02:28:47.156733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:28:47.186745 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-169.nip.io-tls-nbz4c" condition "Approved" to 2026-05-05 02:28:47.186728521 +0000 UTC m=+293.740578060 I0505 02:28:47.249651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-169.nip.io-tls-nbz4c" condition "Ready" to 2026-05-05 02:28:47.24964038 +0000 UTC m=+293.803489899 I0505 02:28:47.275819 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:28:47.275806554 +0000 UTC m=+293.829656063 I0505 02:28:47.294511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:28:47.336715 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:29:49.851209 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:29:49.851478 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 02:29:49.851464586 +0000 UTC m=+356.405314125 I0505 02:29:49.851395 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 02:29:49.851375595 +0000 UTC m=+356.405225144 E0505 02:29:49.865723 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 02:29:49.865865 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 02:29:49.865856965 +0000 UTC m=+356.419706484 E0505 02:29:49.865980 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 02:29:49.867767 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:29:49.867881 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 02:29:49.867870909 +0000 UTC m=+356.421720458 E0505 02:29:49.877270 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 02:29:49.877394 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 02:29:49.877447 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 02:29:49.877520 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 02:29:49.881068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:29:49.881169 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 02:29:49.881156839 +0000 UTC m=+356.435006388 I0505 02:29:49.883514 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:29:49.888411 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jng29" condition "Approved" to 2026-05-05 02:29:49.888403734 +0000 UTC m=+356.442253253 I0505 02:29:49.893263 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 02:29:49.893253908 +0000 UTC m=+356.447103427 I0505 02:29:49.904516 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:29:49.906466 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jng29" condition "Ready" to 2026-05-05 02:29:49.906457596 +0000 UTC m=+356.460307105 I0505 02:29:49.920954 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:29:49.920944546 +0000 UTC m=+356.474794095 I0505 02:29:49.934318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:29:49.934597 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:29:49.934590911 +0000 UTC m=+356.488440430 I0505 02:29:49.952693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:29:54.877703 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:29:54.877690164 +0000 UTC m=+361.431539713 I0505 02:30:33.455838 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 02:30:33.455802999 +0000 UTC m=+400.009652508 I0505 02:30:33.456124 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:33.457454 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 02:30:33.457443675 +0000 UTC m=+400.011293194 I0505 02:30:33.467491 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 02:30:33.467482821 +0000 UTC m=+400.021332330 I0505 02:30:33.468102 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:33.475735 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 02:30:33.47572141 +0000 UTC m=+400.029570919 I0505 02:30:33.468268 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 02:30:33.468264004 +0000 UTC m=+400.022113503 I0505 02:30:33.468293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:33.479058 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 02:30:33.479035821 +0000 UTC m=+400.032885370 I0505 02:30:33.492610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:33.492653 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:33.492668 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 02:30:33.492662435 +0000 UTC m=+400.046511944 I0505 02:30:33.506835 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:33.506942 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:33.506982 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 02:30:33.506976328 +0000 UTC m=+400.060825827 I0505 02:30:33.509674 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:33.509752 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:33.509783 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 02:30:33.509778722 +0000 UTC m=+400.063628241 I0505 02:30:33.764418 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-k7vfp" condition "Approved" to 2026-05-05 02:30:33.764409002 +0000 UTC m=+400.318258511 I0505 02:30:33.795902 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-k7vfp" condition "Ready" to 2026-05-05 02:30:33.795773762 +0000 UTC m=+400.349623281 I0505 02:30:33.823333 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:33.823321023 +0000 UTC m=+400.377170532 I0505 02:30:33.836768 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rncv9" condition "Approved" to 2026-05-05 02:30:33.836751573 +0000 UTC m=+400.390601092 I0505 02:30:33.846126 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:33.854903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rncv9" condition "Ready" to 2026-05-05 02:30:33.854895388 +0000 UTC m=+400.408744897 I0505 02:30:33.881390 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:33.881382331 +0000 UTC m=+400.435231830 I0505 02:30:33.931461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:33.931734 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:33.931728778 +0000 UTC m=+400.485578287 I0505 02:30:33.988607 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:34.035860 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fwqqp" condition "Approved" to 2026-05-05 02:30:34.035846384 +0000 UTC m=+400.589695903 I0505 02:30:34.596166 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fwqqp" condition "Ready" to 2026-05-05 02:30:34.596154425 +0000 UTC m=+401.150003944 I0505 02:30:34.636196 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:34.692655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:34.933591 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:34.933573699 +0000 UTC m=+401.487423248 I0505 02:30:35.035005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:35.035786 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:35.035772932 +0000 UTC m=+401.589622481 I0505 02:30:35.294094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:35.332403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:41.407717 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" condition "Ready" to 2026-05-05 02:30:41.407702571 +0000 UTC m=+407.961552090 I0505 02:30:41.407819 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:41.407882 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" condition "Issuing" to 2026-05-05 02:30:41.407870564 +0000 UTC m=+407.961720103 I0505 02:30:41.421523 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:41.421710 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:41.421771 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" condition "Issuing" to 2026-05-05 02:30:41.421762807 +0000 UTC m=+407.975612326 I0505 02:30:41.563927 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lj2b9-d8wgj" condition "Approved" to 2026-05-05 02:30:41.563912424 +0000 UTC m=+408.117761943 I0505 02:30:41.582048 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lj2b9-d8wgj" condition "Ready" to 2026-05-05 02:30:41.582032924 +0000 UTC m=+408.135882473 I0505 02:30:41.612665 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:41.612651635 +0000 UTC m=+408.166501154 I0505 02:30:41.642587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:41.644451 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:41.644437704 +0000 UTC m=+408.198287223 I0505 02:30:41.658325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:41.658638 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-lj2b9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:41.658631022 +0000 UTC m=+408.212480531 I0505 02:30:52.856734 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:30:52.856764 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 02:30:52.856755458 +0000 UTC m=+419.410604977 I0505 02:30:52.856985 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 02:30:52.856968681 +0000 UTC m=+419.410818190 I0505 02:30:52.874684 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:52.876479 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 02:30:52.876464935 +0000 UTC m=+419.430314444 I0505 02:30:53.091331 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:53.120958 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-r2z4v" condition "Approved" to 2026-05-05 02:30:53.120148777 +0000 UTC m=+419.673998306 I0505 02:30:53.139985 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-r2z4v" condition "Ready" to 2026-05-05 02:30:53.139973465 +0000 UTC m=+419.693822984 I0505 02:30:53.171560 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:30:53.17154264 +0000 UTC m=+419.725392159 I0505 02:30:53.203533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:30:53.253680 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:08.047139 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 02:34:08.04711872 +0000 UTC m=+614.600968249 I0505 02:34:08.047156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:34:08.047309 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 02:34:08.047291132 +0000 UTC m=+614.601140651 I0505 02:34:08.062056 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:08.062238 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:34:08.062308 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 02:34:08.062297448 +0000 UTC m=+614.616146987 I0505 02:34:08.453957 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:08.462865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-rc7v8" condition "Approved" to 2026-05-05 02:34:08.462856619 +0000 UTC m=+615.016706128 I0505 02:34:08.483677 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-rc7v8" condition "Ready" to 2026-05-05 02:34:08.483665248 +0000 UTC m=+615.037514797 I0505 02:34:08.513034 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:34:08.513024281 +0000 UTC m=+615.066873800 I0505 02:34:08.548259 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:08.604003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:47.196236 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 02:34:47.196217743 +0000 UTC m=+653.750067282 I0505 02:34:47.197025 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:34:47.197088 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 02:34:47.197081533 +0000 UTC m=+653.750931072 I0505 02:34:47.217757 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:47.217804 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 02:34:47.217817 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 02:34:47.217812806 +0000 UTC m=+653.771662315 I0505 02:34:47.409117 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:47.421549 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-cwbp9" condition "Approved" to 2026-05-05 02:34:47.421539221 +0000 UTC m=+653.975388740 I0505 02:34:47.443097 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-cwbp9" condition "Ready" to 2026-05-05 02:34:47.443087213 +0000 UTC m=+653.996936722 I0505 02:34:47.466719 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:34:47.466700511 +0000 UTC m=+654.020550030 I0505 02:34:47.484623 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:47.484807 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 02:34:47.484802422 +0000 UTC m=+654.038651931 I0505 02:34:47.507395 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 02:34:47.510136 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"