I0331 20:22:02.077349 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 20:22:02.077543 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 20:22:02.077649 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 20:22:02.083615 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 20:22:02.084093 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 20:22:02.084128 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 20:22:02.084102 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 20:22:02.086420 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 20:22:02.101318 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 20:22:02.106891 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 20:22:02.109689 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 20:22:02.115375 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 20:22:02.117364 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 20:22:02.119047 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 20:22:02.120855 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 20:22:02.122739 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 20:22:02.126720 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 20:22:02.132525 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 20:22:02.132601 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 20:22:02.135516 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 20:22:02.135625 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 20:22:02.138340 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 20:22:02.138365 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 20:22:02.138397 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 20:22:02.140480 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 20:22:02.142428 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 20:22:02.144318 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 20:22:02.146755 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 20:22:02.148296 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 20:22:02.148321 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 20:22:02.148328 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 20:22:02.150461 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 20:22:02.155818 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 20:22:02.158066 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.158501 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.160045 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.176734 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.213649 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.226711 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.237366 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.255645 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.266862 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:02.268441 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:15.268460 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 20:22:15.268446439 +0000 UTC m=+13.223727565 I0331 20:22:15.973221 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:22:15.973275 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 20:22:15.97326263 +0000 UTC m=+13.928543786 I0331 20:22:15.973441 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 20:22:15.973433674 +0000 UTC m=+13.928714790 E0331 20:22:15.987358 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:22:15.987466 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 20:22:15.987438726 +0000 UTC m=+13.942719862 E0331 20:22:15.987498 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:22:15.989021 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:15.989089 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 20:22:15.989082545 +0000 UTC m=+13.944363671 E0331 20:22:16.005826 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0331 20:22:16.005969 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:22:16.006012 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:22:16.006059 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 20:22:16.011349 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:16.011433 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 20:22:16.011425515 +0000 UTC m=+13.966706631 I0331 20:22:16.019000 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-snrdt" condition "Approved" to 2026-03-31 20:22:16.018982834 +0000 UTC m=+13.974263980 I0331 20:22:16.034990 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-snrdt" condition "Ready" to 2026-03-31 20:22:16.034979624 +0000 UTC m=+13.990260760 I0331 20:22:16.061312 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:16.061296609 +0000 UTC m=+14.016577735 I0331 20:22:16.084691 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:16.085216 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:16.085207186 +0000 UTC m=+14.040488332 I0331 20:22:16.102116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:16.102472 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:16.102461175 +0000 UTC m=+14.057742331 I0331 20:22:21.007139 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:21.007127373 +0000 UTC m=+18.962408529 I0331 20:22:42.139782 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 20:22:42.13976421 +0000 UTC m=+40.095045366 I0331 20:22:42.139839 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:22:42.139935 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 20:22:42.139927704 +0000 UTC m=+40.095208850 I0331 20:22:42.152262 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 20:22:42.152249042 +0000 UTC m=+40.107530168 I0331 20:22:42.162341 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:42.162464 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:22:42.162502 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 20:22:42.162492298 +0000 UTC m=+40.117773424 I0331 20:22:42.510553 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:42.518133 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-nwtlf" condition "Approved" to 2026-03-31 20:22:42.518119588 +0000 UTC m=+40.473400734 I0331 20:22:42.555133 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-nwtlf" condition "Ready" to 2026-03-31 20:22:42.555118722 +0000 UTC m=+40.510399868 I0331 20:22:42.583810 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:42.583798218 +0000 UTC m=+40.539079324 I0331 20:22:42.615203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:42.665269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:24:24.823554 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:24:24.823672 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 20:24:24.823657819 +0000 UTC m=+142.778939005 I0331 20:24:24.823684 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 20:24:24.823655819 +0000 UTC m=+142.778936935 I0331 20:24:24.840738 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" E0331 20:24:24.840837 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 20:24:24.840846 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 20:24:24.840833766 +0000 UTC m=+142.796114922 I0331 20:24:24.840881 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-31 20:24:24.840870567 +0000 UTC m=+142.796151703 I0331 20:24:24.840945 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 20:24:24.850166 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0331 20:24:24.850676 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 20:24:24.850738 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 20:24:24.850816 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0331 20:24:24.855515 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 20:24:24.855498111 +0000 UTC m=+142.810779267 I0331 20:24:24.855976 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:24:24.856007 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 20:24:24.856000224 +0000 UTC m=+142.811281380 I0331 20:24:24.872473 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:24:24.872581 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:24:24.872608 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 20:24:24.872597726 +0000 UTC m=+142.827878882 I0331 20:24:25.109561 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:24:25.119872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-fj7xj" condition "Approved" to 2026-03-31 20:24:25.119861921 +0000 UTC m=+143.075143047 I0331 20:24:25.136254 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-fj7xj" condition "Ready" to 2026-03-31 20:24:25.136242628 +0000 UTC m=+143.091523764 I0331 20:24:25.206438 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:24:25.232906 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2gg59" condition "Approved" to 2026-03-31 20:24:25.232890602 +0000 UTC m=+143.188171728 I0331 20:24:25.257400 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2gg59" condition "Ready" to 2026-03-31 20:24:25.257386115 +0000 UTC m=+143.212667241 I0331 20:24:25.286740 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:24:25.286722747 +0000 UTC m=+143.242003903 I0331 20:24:25.307997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:24:25.308490 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:24:25.308483384 +0000 UTC m=+143.263764510 I0331 20:24:25.322051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:24:25.322801 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:24:25.322785931 +0000 UTC m=+143.278067087 I0331 20:24:29.850820 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:24:29.85080699 +0000 UTC m=+147.806088116 I0331 20:24:29.863298 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-fj7xj" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:24:29.863285884 +0000 UTC m=+147.818567000 I0331 20:24:29.899880 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:24:29.899861885 +0000 UTC m=+147.855143011 I0331 20:24:29.918307 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:24:29.918545 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:24:29.918537964 +0000 UTC m=+147.873819080 I0331 20:24:29.938399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:06.270203 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-129.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:27:06.270295 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-129.nip.io-tls" condition "Issuing" to 2026-03-31 20:27:06.270285228 +0000 UTC m=+304.225566354 I0331 20:27:06.270226 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-129.nip.io-tls" condition "Ready" to 2026-03-31 20:27:06.270154045 +0000 UTC m=+304.225435211 I0331 20:27:06.287996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-129.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-129.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:06.288086 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-129.nip.io-tls" condition "Ready" to 2026-03-31 20:27:06.288074356 +0000 UTC m=+304.243355512 I0331 20:27:06.550670 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-129.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-129.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:06.583569 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-129.nip.io-tls-lgxjl" condition "Approved" to 2026-03-31 20:27:06.583553351 +0000 UTC m=+304.538834477 I0331 20:27:06.602635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-129.nip.io-tls-lgxjl" condition "Ready" to 2026-03-31 20:27:06.602609399 +0000 UTC m=+304.557890545 I0331 20:27:06.632509 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-129.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:27:06.632490241 +0000 UTC m=+304.587771397 I0331 20:27:06.652991 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-129.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-129.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:18.055193 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:28:18.055178554 +0000 UTC m=+376.010459680 I0331 20:28:18.055337 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:28:18.055422 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 20:28:18.0554107 +0000 UTC m=+376.010691826 E0331 20:28:18.068448 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:28:18.068534 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 20:28:18.068512367 +0000 UTC m=+376.023793523 E0331 20:28:18.068609 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:28:18.070604 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:18.070669 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:28:18.070660147 +0000 UTC m=+376.025941273 E0331 20:28:18.083176 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 20:28:18.083312 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:28:18.083367 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:28:18.083416 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 20:28:18.087597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:18.087698 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:28:18.087687947 +0000 UTC m=+376.042969083 I0331 20:28:18.094276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wqswl" condition "Approved" to 2026-03-31 20:28:18.094258661 +0000 UTC m=+376.049539787 I0331 20:28:18.099404 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:28:18.099394572 +0000 UTC m=+376.054675728 I0331 20:28:18.109592 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:18.110874 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wqswl" condition "Ready" to 2026-03-31 20:28:18.11086094 +0000 UTC m=+376.066142056 I0331 20:28:18.135843 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:18.135823776 +0000 UTC m=+376.091104922 I0331 20:28:18.154997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:18.155304 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:18.155294672 +0000 UTC m=+376.110575788 I0331 20:28:18.175457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:23.084487 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:23.084471868 +0000 UTC m=+381.039753024 I0331 20:29:01.636212 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:01.636283 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 20:29:01.63627483 +0000 UTC m=+419.591555966 I0331 20:29:01.636296 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 20:29:01.63628174 +0000 UTC m=+419.591562876 I0331 20:29:01.636832 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 20:29:01.636827993 +0000 UTC m=+419.592109109 I0331 20:29:01.637517 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:01.637541 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 20:29:01.637538069 +0000 UTC m=+419.592819185 I0331 20:29:01.639655 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:01.639752 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 20:29:01.639746781 +0000 UTC m=+419.595027897 I0331 20:29:01.636614 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 20:29:01.636593737 +0000 UTC m=+419.591874873 I0331 20:29:01.667905 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:01.668016 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:01.668071 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 20:29:01.668063491 +0000 UTC m=+419.623344607 I0331 20:29:01.671541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:01.671694 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:01.671727 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 20:29:01.671721606 +0000 UTC m=+419.627002722 I0331 20:29:01.673398 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:01.673450 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 20:29:01.673445336 +0000 UTC m=+419.628726462 I0331 20:29:01.898889 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:01.907096 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gd54l" condition "Approved" to 2026-03-31 20:29:01.907078772 +0000 UTC m=+419.862359938 I0331 20:29:01.936333 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gd54l" condition "Ready" to 2026-03-31 20:29:01.936318224 +0000 UTC m=+419.891599350 I0331 20:29:01.950068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:01.968503 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:01.968742 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:01.968723989 +0000 UTC m=+419.924005105 I0331 20:29:01.972388 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-2qkmg" condition "Approved" to 2026-03-31 20:29:01.972376844 +0000 UTC m=+419.927657970 I0331 20:29:01.997347 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-2qkmg" condition "Ready" to 2026-03-31 20:29:01.997332596 +0000 UTC m=+419.952613722 I0331 20:29:01.998261 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:02.027891 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:02.027872737 +0000 UTC m=+419.983153873 I0331 20:29:02.224066 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:02.224631 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:02.224615803 +0000 UTC m=+420.179896969 I0331 20:29:02.324066 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:02.688254 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:02.781898 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-q2hsk" condition "Approved" to 2026-03-31 20:29:02.781885382 +0000 UTC m=+420.737166498 I0331 20:29:02.987936 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-q2hsk" condition "Ready" to 2026-03-31 20:29:02.987913934 +0000 UTC m=+420.943195070 E0331 20:29:03.318515 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-zcsjl\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0331 20:29:03.575873 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" resource_name="alertmanager-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="alertmanager-tls-q2hsk" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="alertmanager-tls-zzfmb" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0331 20:29:03.684193 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-ldqp9" condition "Approved" to 2026-03-31 20:29:03.684172942 +0000 UTC m=+421.639454078 I0331 20:29:03.838219 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-ldqp9" condition "Ready" to 2026-03-31 20:29:03.838191712 +0000 UTC m=+421.793472868 I0331 20:29:04.226115 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:04.226096614 +0000 UTC m=+422.181377740 I0331 20:29:04.324732 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:04.325190 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:04.325182593 +0000 UTC m=+422.280463709 I0331 20:29:04.524231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:10.373952 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" condition "Ready" to 2026-03-31 20:29:10.373889194 +0000 UTC m=+428.329170380 I0331 20:29:10.375533 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:10.375557 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" condition "Issuing" to 2026-03-31 20:29:10.375552543 +0000 UTC m=+428.330833669 I0331 20:29:10.426935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:10.427038 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:10.427061 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" condition "Issuing" to 2026-03-31 20:29:10.427055584 +0000 UTC m=+428.382336710 I0331 20:29:10.796020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:10.806974 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2tvkr-z8l82" condition "Approved" to 2026-03-31 20:29:10.806957058 +0000 UTC m=+428.762238184 I0331 20:29:10.833501 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2tvkr-z8l82" condition "Ready" to 2026-03-31 20:29:10.833477996 +0000 UTC m=+428.788759142 I0331 20:29:10.861935 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:10.861918469 +0000 UTC m=+428.817199595 I0331 20:29:10.888037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2tvkr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:39.874836 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:39.874895 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 20:29:39.874870335 +0000 UTC m=+457.830151461 I0331 20:29:39.874889 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 20:29:39.874863785 +0000 UTC m=+457.830144951 I0331 20:29:39.892060 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:39.892206 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:39.892240 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 20:29:39.89223017 +0000 UTC m=+457.847511326 I0331 20:29:40.073838 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-6spvx" condition "Approved" to 2026-03-31 20:29:40.073824663 +0000 UTC m=+458.029105779 I0331 20:29:40.093524 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-6spvx" condition "Ready" to 2026-03-31 20:29:40.093509501 +0000 UTC m=+458.048790617 I0331 20:29:40.128084 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:40.128065337 +0000 UTC m=+458.083346483 I0331 20:29:40.146655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:40.147120 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:40.147109401 +0000 UTC m=+458.102390537 I0331 20:29:40.154509 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:40.164097 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:00.848332 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:00.848410 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 20:33:00.848401433 +0000 UTC m=+658.803682589 I0331 20:33:00.848485 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 20:33:00.848464754 +0000 UTC m=+658.803745900 I0331 20:33:00.866030 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:00.866137 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 20:33:00.866129436 +0000 UTC m=+658.821410562 I0331 20:33:00.976557 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:01.008921 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-q548l" condition "Approved" to 2026-03-31 20:33:01.008897163 +0000 UTC m=+658.964178319 I0331 20:33:01.027585 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-q548l" condition "Ready" to 2026-03-31 20:33:01.027574608 +0000 UTC m=+658.982855724 I0331 20:33:01.057654 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:01.057638859 +0000 UTC m=+659.012919985 I0331 20:33:01.078983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:01.136613 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:35:25.317833 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:35:25.317941 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 20:35:25.317929438 +0000 UTC m=+803.273210584 I0331 20:35:25.318105 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 20:35:25.318077802 +0000 UTC m=+803.273358958 I0331 20:35:25.342814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:35:25.342958 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 20:35:25.342947024 +0000 UTC m=+803.298228170 I0331 20:35:25.536139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:35:25.566293 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-6jblx" condition "Approved" to 2026-03-31 20:35:25.566280021 +0000 UTC m=+803.521561177 I0331 20:35:25.585144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-6jblx" condition "Ready" to 2026-03-31 20:35:25.585130822 +0000 UTC m=+803.540411948 I0331 20:35:25.616041 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:35:25.616026566 +0000 UTC m=+803.571307682 I0331 20:35:25.641721 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:35:25.642699 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:35:25.64269073 +0000 UTC m=+803.597971856 I0331 20:35:25.662215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:35:25.662487 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:35:25.662479483 +0000 UTC m=+803.617760599 I0331 20:35:25.664971 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:36:31.996822 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:36:31.997078 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 20:36:31.997066518 +0000 UTC m=+869.952347664 I0331 20:36:31.996923 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 20:36:31.996903214 +0000 UTC m=+869.952184350 I0331 20:36:32.014867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:36:32.015054 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:36:32.015115 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 20:36:32.01510501 +0000 UTC m=+869.970386156 I0331 20:36:32.138045 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:36:32.148454 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-skpfb" condition "Approved" to 2026-03-31 20:36:32.148439951 +0000 UTC m=+870.103721087 I0331 20:36:32.170584 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-skpfb" condition "Ready" to 2026-03-31 20:36:32.170574069 +0000 UTC m=+870.125855185 I0331 20:36:32.201548 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:36:32.201524393 +0000 UTC m=+870.156805519 I0331 20:36:32.233268 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:38.813990 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 20:39:38.813975545 +0000 UTC m=+1056.769256661 I0331 20:39:38.814009 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:39:38.814091 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 20:39:38.814080867 +0000 UTC m=+1056.769362023 I0331 20:39:38.830965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:38.831118 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 20:39:38.831106386 +0000 UTC m=+1056.786387512 I0331 20:39:38.913016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:38.948798 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-4cqgq" condition "Approved" to 2026-03-31 20:39:38.94878498 +0000 UTC m=+1056.904066126 I0331 20:39:38.966992 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-4cqgq" condition "Ready" to 2026-03-31 20:39:38.966979616 +0000 UTC m=+1056.922260742 I0331 20:39:38.997518 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:39:38.997504971 +0000 UTC m=+1056.952786097 I0331 20:39:39.015457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:39.015838 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:39:39.015827939 +0000 UTC m=+1056.971109075 I0331 20:39:39.027687 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:39.036017 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"