I0320 10:14:54.746903 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0320 10:14:54.747040 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0320 10:14:54.747152 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0320 10:14:54.754906 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0320 10:14:54.755457 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0320 10:14:54.755565 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0320 10:14:54.755571 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0320 10:14:54.759102 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0320 10:14:54.775732 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0320 10:14:54.779582 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0320 10:14:54.782341 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0320 10:14:54.782388 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0320 10:14:54.788223 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0320 10:14:54.792117 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0320 10:14:54.795755 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0320 10:14:54.799165 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0320 10:14:54.800935 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0320 10:14:54.802715 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0320 10:14:54.804551 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0320 10:14:54.804576 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0320 10:14:54.804620 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0320 10:14:54.810315 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0320 10:14:54.812977 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0320 10:14:54.815439 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0320 10:14:54.817876 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0320 10:14:54.820077 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0320 10:14:54.820138 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0320 10:14:54.822514 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0320 10:14:54.824260 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0320 10:14:54.826016 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0320 10:14:54.827707 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0320 10:14:54.827729 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0320 10:14:54.829783 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0320 10:14:54.832666 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.832690 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.832911 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.833513 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.852155 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.865570 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.871666 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.895822 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.919985 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:14:54.933245 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0320 10:15:04.676302 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-20 10:15:04.676264466 +0000 UTC m=+9.961555939 I0320 10:15:05.389313 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:15:05.389340 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-20 10:15:05.389315736 +0000 UTC m=+10.674607249 I0320 10:15:05.389421 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-20 10:15:05.389412057 +0000 UTC m=+10.674703570 E0320 10:15:05.404631 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0320 10:15:05.404683 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-20 10:15:05.404677712 +0000 UTC m=+10.689969195 E0320 10:15:05.404734 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0320 10:15:05.407525 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:15:05.407578 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-20 10:15:05.407572676 +0000 UTC m=+10.692864159 E0320 10:15:05.415984 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0320 10:15:05.416056 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0320 10:15:05.416207 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0320 10:15:05.416382 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0320 10:15:05.426035 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:15:05.454343 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hzkzg" condition "Approved" to 2026-03-20 10:15:05.454325917 +0000 UTC m=+10.739617400 I0320 10:15:05.470102 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hzkzg" condition "Ready" to 2026-03-20 10:15:05.4700843 +0000 UTC m=+10.755375773 I0320 10:15:05.491956 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:15:05.491932278 +0000 UTC m=+10.777223781 I0320 10:15:05.512930 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:15:05.513545 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:15:05.513529671 +0000 UTC m=+10.798821154 I0320 10:15:05.527606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:15:05.527847 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:15:05.527837557 +0000 UTC m=+10.813129040 I0320 10:15:10.416721 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:15:10.416704007 +0000 UTC m=+15.701995510 I0320 10:15:30.086951 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-20 10:15:30.086932709 +0000 UTC m=+35.372224192 I0320 10:15:30.086964 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:15:30.087021 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-20 10:15:30.087008911 +0000 UTC m=+35.372300394 I0320 10:15:30.099962 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-20 10:15:30.099916682 +0000 UTC m=+35.385208165 I0320 10:15:30.109948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:15:30.110113 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:15:30.110187 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-20 10:15:30.110177873 +0000 UTC m=+35.395469356 I0320 10:15:30.372410 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:15:30.382502 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-2w2jz" condition "Approved" to 2026-03-20 10:15:30.382486107 +0000 UTC m=+35.667777620 I0320 10:15:30.414652 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-2w2jz" condition "Ready" to 2026-03-20 10:15:30.414635227 +0000 UTC m=+35.699926730 I0320 10:15:30.454735 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:15:30.454719914 +0000 UTC m=+35.740011397 I0320 10:15:30.482326 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:17:03.528126 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:17:03.528186 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-20 10:17:03.528166515 +0000 UTC m=+128.813458388 I0320 10:17:03.528221 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-20 10:17:03.528144555 +0000 UTC m=+128.813436068 E0320 10:17:03.542122 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0320 10:17:03.542221 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-20 10:17:03.542211507 +0000 UTC m=+128.827503020 I0320 10:17:03.542284 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0320 10:17:03.547022 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:17:03.547113 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-20 10:17:03.547103889 +0000 UTC m=+128.832395372 E0320 10:17:03.555630 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0320 10:17:03.555722 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0320 10:17:03.555751 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0320 10:17:03.555783 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0320 10:17:03.563100 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:17:03.563149 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-20 10:17:03.563136649 +0000 UTC m=+128.848428172 I0320 10:17:03.563542 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-20 10:17:03.563530366 +0000 UTC m=+128.848821879 I0320 10:17:03.578354 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:17:03.578612 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:17:03.578657 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-20 10:17:03.578647299 +0000 UTC m=+128.863938812 I0320 10:17:03.688619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:17:03.711307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-w9m9h" condition "Approved" to 2026-03-20 10:17:03.711294419 +0000 UTC m=+128.996585902 I0320 10:17:03.737452 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-w9m9h" condition "Ready" to 2026-03-20 10:17:03.737442027 +0000 UTC m=+129.022733500 I0320 10:17:03.763563 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:17:03.763544726 +0000 UTC m=+129.048836239 I0320 10:17:03.785174 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:17:04.099268 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:17:04.107480 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-p7hkd" condition "Approved" to 2026-03-20 10:17:04.107465785 +0000 UTC m=+129.392757268 I0320 10:17:04.123134 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-p7hkd" condition "Ready" to 2026-03-20 10:17:04.123124069 +0000 UTC m=+129.408415552 I0320 10:17:08.556804 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:17:08.556790122 +0000 UTC m=+133.842081625 I0320 10:17:08.574422 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-p7hkd" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:17:08.574415722 +0000 UTC m=+133.859707205 I0320 10:17:08.603108 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:17:08.603096608 +0000 UTC m=+133.888388091 I0320 10:17:08.622532 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:19:30.968357 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-221.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:19:30.968418 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Ready" to 2026-03-20 10:19:30.968362724 +0000 UTC m=+276.253654227 I0320 10:19:30.968424 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Issuing" to 2026-03-20 10:19:30.968408995 +0000 UTC m=+276.253700498 I0320 10:19:30.983519 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:19:30.983610 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-221.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:19:30.983636 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Issuing" to 2026-03-20 10:19:30.983630205 +0000 UTC m=+276.268921698 I0320 10:19:31.132761 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:19:31.141235 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-221.nip.io-tls-hqmkw" condition "Approved" to 2026-03-20 10:19:31.141220931 +0000 UTC m=+276.426512444 I0320 10:19:31.161913 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-221.nip.io-tls-hqmkw" condition "Ready" to 2026-03-20 10:19:31.161899584 +0000 UTC m=+276.447191097 I0320 10:19:31.189638 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:19:31.189629011 +0000 UTC m=+276.474920494 I0320 10:19:31.212607 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:19:31.212994 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:19:31.212985676 +0000 UTC m=+276.498277159 I0320 10:19:31.221356 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:19:31.233251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:20:40.887754 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-20 10:20:40.887712718 +0000 UTC m=+346.173004231 I0320 10:20:40.888319 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:20:40.888350 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-20 10:20:40.888343319 +0000 UTC m=+346.173634832 E0320 10:20:40.900965 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0320 10:20:40.901013 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-20 10:20:40.9010043 +0000 UTC m=+346.186295783 E0320 10:20:40.901063 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0320 10:20:40.903984 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:20:40.904092 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:20:40.904115 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-20 10:20:40.904109888 +0000 UTC m=+346.189401361 E0320 10:20:40.909233 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0320 10:20:40.909351 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0320 10:20:40.909419 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0320 10:20:40.909496 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0320 10:20:40.939120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:20:40.945115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-b8444" condition "Approved" to 2026-03-20 10:20:40.945098567 +0000 UTC m=+346.230390070 I0320 10:20:40.956560 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-b8444" condition "Ready" to 2026-03-20 10:20:40.956548184 +0000 UTC m=+346.241839667 I0320 10:20:40.978217 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:20:40.978203065 +0000 UTC m=+346.263494548 I0320 10:20:40.997628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:20:41.042201 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:20:45.910016 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:20:45.910000551 +0000 UTC m=+351.195292064 I0320 10:21:22.682731 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:22.682765 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-20 10:21:22.682757722 +0000 UTC m=+387.968049205 I0320 10:21:22.683454 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-20 10:21:22.683447944 +0000 UTC m=+387.968739427 I0320 10:21:22.694892 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-20 10:21:22.694885509 +0000 UTC m=+387.980176972 I0320 10:21:22.695961 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:22.696011 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-20 10:21:22.696003391 +0000 UTC m=+387.981294874 I0320 10:21:22.696457 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-20 10:21:22.696451279 +0000 UTC m=+387.981742762 I0320 10:21:22.696752 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:22.696775 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-20 10:21:22.696770915 +0000 UTC m=+387.982062398 I0320 10:21:22.747606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:22.747777 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:22.748032 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-20 10:21:22.748023689 +0000 UTC m=+388.033315162 I0320 10:21:22.757037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:22.757084 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:22.757099 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-20 10:21:22.75709446 +0000 UTC m=+388.042385933 I0320 10:21:22.761314 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:22.761349 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:22.761363 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-20 10:21:22.76135957 +0000 UTC m=+388.046651053 I0320 10:21:22.988335 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-v59rz" condition "Approved" to 2026-03-20 10:21:22.988323111 +0000 UTC m=+388.273614584 I0320 10:21:23.008660 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-v59rz" condition "Ready" to 2026-03-20 10:21:23.008648453 +0000 UTC m=+388.293939926 I0320 10:21:23.039912 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:23.039902112 +0000 UTC m=+388.325193585 I0320 10:21:23.071155 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:23.071474 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:23.071467625 +0000 UTC m=+388.356759098 I0320 10:21:23.082559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:23.088064 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-g8499" condition "Approved" to 2026-03-20 10:21:23.088051838 +0000 UTC m=+388.373343321 I0320 10:21:23.091946 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:23.092401 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:23.092388019 +0000 UTC m=+388.377679492 I0320 10:21:23.099124 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:23.102307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-g8499" condition "Ready" to 2026-03-20 10:21:23.102299005 +0000 UTC m=+388.387590478 I0320 10:21:23.136789 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:23.136772235 +0000 UTC m=+388.422063718 I0320 10:21:23.324883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:23.326122 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:23.326101247 +0000 UTC m=+388.611392750 I0320 10:21:23.376936 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-czwbz" condition "Approved" to 2026-03-20 10:21:23.376903063 +0000 UTC m=+388.662194556 I0320 10:21:23.734601 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-czwbz" condition "Ready" to 2026-03-20 10:21:23.734583394 +0000 UTC m=+389.019874897 I0320 10:21:24.011973 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:24.026632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:24.274674 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:24.274658546 +0000 UTC m=+389.559950059 I0320 10:21:24.372040 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:24.372436 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:24.372426005 +0000 UTC m=+389.657717518 I0320 10:21:24.623353 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:24.673328 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:30.206616 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" condition "Ready" to 2026-03-20 10:21:30.206600856 +0000 UTC m=+395.491892329 I0320 10:21:30.207667 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:30.207685 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" condition "Issuing" to 2026-03-20 10:21:30.207681187 +0000 UTC m=+395.492972660 I0320 10:21:30.229498 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:30.229571 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" condition "Ready" to 2026-03-20 10:21:30.229564959 +0000 UTC m=+395.514856442 I0320 10:21:31.082762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:31.115546 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-g9rj2-hwxhn" condition "Approved" to 2026-03-20 10:21:31.115529299 +0000 UTC m=+396.400820772 I0320 10:21:31.141635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-g9rj2-hwxhn" condition "Ready" to 2026-03-20 10:21:31.14162437 +0000 UTC m=+396.426915853 I0320 10:21:31.171684 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:31.171671325 +0000 UTC m=+396.456962808 I0320 10:21:31.191176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:31.191578 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:31.19156698 +0000 UTC m=+396.476858463 I0320 10:21:31.225759 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g9rj2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:52.447483 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-20 10:21:52.447438279 +0000 UTC m=+417.732729762 I0320 10:21:52.447625 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:52.447787 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-20 10:21:52.447772115 +0000 UTC m=+417.733063628 I0320 10:21:52.463222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:52.463439 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:21:52.463555 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-20 10:21:52.46345918 +0000 UTC m=+417.748750663 I0320 10:21:52.735058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mpt65" condition "Approved" to 2026-03-20 10:21:52.73504846 +0000 UTC m=+418.020339933 I0320 10:21:52.758170 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mpt65" condition "Ready" to 2026-03-20 10:21:52.758153326 +0000 UTC m=+418.043444839 I0320 10:21:52.798027 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:52.798012835 +0000 UTC m=+418.083304348 I0320 10:21:52.822337 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:52.822917 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:52.822905504 +0000 UTC m=+418.108196987 I0320 10:21:52.839321 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:21:52.839771 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:21:52.839761501 +0000 UTC m=+418.125053004 I0320 10:25:11.928643 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:25:11.928685 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-20 10:25:11.928664659 +0000 UTC m=+617.213956132 I0320 10:25:11.928947 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-20 10:25:11.928942434 +0000 UTC m=+617.214233917 I0320 10:25:11.945004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:25:11.945080 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:25:11.945098 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-20 10:25:11.945092238 +0000 UTC m=+617.230383721 I0320 10:25:12.097710 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-tldfv" condition "Approved" to 2026-03-20 10:25:12.097694694 +0000 UTC m=+617.382986177 I0320 10:25:12.120069 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-tldfv" condition "Ready" to 2026-03-20 10:25:12.120056575 +0000 UTC m=+617.405348058 I0320 10:25:12.150382 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:25:12.150364813 +0000 UTC m=+617.435656326 I0320 10:25:12.172535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:25:12.215783 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:27:36.157143 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:27:36.157223 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-20 10:27:36.157192736 +0000 UTC m=+761.442484219 I0320 10:27:36.157299 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-20 10:27:36.157277817 +0000 UTC m=+761.442569320 I0320 10:27:36.174545 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:27:36.174619 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-20 10:27:36.17461209 +0000 UTC m=+761.459903573 I0320 10:27:36.310423 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:27:36.341636 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-whjkg" condition "Approved" to 2026-03-20 10:27:36.341624861 +0000 UTC m=+761.626916344 I0320 10:27:36.365148 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-whjkg" condition "Ready" to 2026-03-20 10:27:36.365132689 +0000 UTC m=+761.650424212 I0320 10:27:36.399211 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:27:36.399200884 +0000 UTC m=+761.684492367 I0320 10:27:36.424870 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:27:36.425336 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:27:36.425328391 +0000 UTC m=+761.710619894 I0320 10:27:36.436811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:27:36.443974 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:28:37.656252 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-20 10:28:37.656209986 +0000 UTC m=+822.941501499 I0320 10:28:37.656801 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:28:37.656841 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-20 10:28:37.656832968 +0000 UTC m=+822.942124481 I0320 10:28:37.672816 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:28:37.672904 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:28:37.672919 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-20 10:28:37.672914067 +0000 UTC m=+822.958205550 I0320 10:28:37.873636 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:28:37.879691 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6fs4v" condition "Approved" to 2026-03-20 10:28:37.87967716 +0000 UTC m=+823.164968663 I0320 10:28:37.903125 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6fs4v" condition "Ready" to 2026-03-20 10:28:37.903114947 +0000 UTC m=+823.188406420 I0320 10:28:37.935605 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:28:37.935588732 +0000 UTC m=+823.220880245 I0320 10:28:37.967002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:31:34.411046 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:31:34.411176 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-20 10:31:34.411140268 +0000 UTC m=+999.696431751 I0320 10:31:34.411174 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-20 10:31:34.411117778 +0000 UTC m=+999.696409271 I0320 10:31:34.427781 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:31:34.427873 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0320 10:31:34.427900 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-20 10:31:34.42789306 +0000 UTC m=+999.713184543 I0320 10:31:34.698707 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tqc8f" condition "Approved" to 2026-03-20 10:31:34.698690968 +0000 UTC m=+999.983982451 I0320 10:31:34.718413 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tqc8f" condition "Ready" to 2026-03-20 10:31:34.718391994 +0000 UTC m=+1000.003683477 I0320 10:31:34.761499 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 10:31:34.761488276 +0000 UTC m=+1000.046779749 I0320 10:31:34.785451 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0320 10:31:34.831546 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"