I0512 05:41:44.091020 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0512 05:41:44.091127 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0512 05:41:44.091192 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0512 05:41:44.094934 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0512 05:41:44.095394 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0512 05:41:44.095479 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0512 05:41:44.095632 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0512 05:41:44.098210 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0512 05:41:44.113203 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0512 05:41:44.117498 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0512 05:41:44.122420 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0512 05:41:44.124489 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0512 05:41:44.126395 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0512 05:41:44.126416 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0512 05:41:44.126418 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0512 05:41:44.126431 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0512 05:41:44.128449 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0512 05:41:44.130517 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0512 05:41:44.132341 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0512 05:41:44.135876 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0512 05:41:44.139375 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0512 05:41:44.143241 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0512 05:41:44.146049 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0512 05:41:44.147926 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0512 05:41:44.149592 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0512 05:41:44.151218 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0512 05:41:44.151242 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0512 05:41:44.151249 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0512 05:41:44.151281 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0512 05:41:44.153477 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0512 05:41:44.155138 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0512 05:41:44.156863 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0512 05:41:44.159558 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0512 05:41:44.163614 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.165448 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.165713 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.165988 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.166096 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.166199 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.166370 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.166578 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.166904 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:44.259745 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:41:59.548955 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-12 05:41:59.548927031 +0000 UTC m=+15.493679950 I0512 05:42:00.344857 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-12 05:42:00.34483658 +0000 UTC m=+16.289589489 I0512 05:42:00.345950 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:42:00.345976 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-12 05:42:00.345970905 +0000 UTC m=+16.290723794 E0512 05:42:00.358853 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:42:00.359000 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-12 05:42:00.3589904 +0000 UTC m=+16.303743299 E0512 05:42:00.359051 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:42:00.363131 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:42:00.363257 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:42:00.363286 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-12 05:42:00.363278317 +0000 UTC m=+16.308031216 E0512 05:42:00.381112 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0512 05:42:00.381242 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:42:00.381308 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:42:00.381345 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0512 05:42:00.407602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-wnxk4" condition "Approved" to 2026-05-12 05:42:00.407579159 +0000 UTC m=+16.352332078 I0512 05:42:00.422714 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-wnxk4" condition "Ready" to 2026-05-12 05:42:00.422701456 +0000 UTC m=+16.367454355 I0512 05:42:00.450410 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:42:00.450291419 +0000 UTC m=+16.395044308 I0512 05:42:00.468334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:42:00.468730 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:42:00.468726186 +0000 UTC m=+16.413479065 I0512 05:42:00.481955 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:42:05.382173 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:42:05.382124595 +0000 UTC m=+21.326877524 I0512 05:42:29.622631 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:42:29.622705 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-12 05:42:29.622693257 +0000 UTC m=+45.567446166 I0512 05:42:29.622785 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-12 05:42:29.622773049 +0000 UTC m=+45.567525948 I0512 05:42:29.640892 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-12 05:42:29.640882294 +0000 UTC m=+45.585635203 I0512 05:42:29.646406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:42:29.646476 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:42:29.646496 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-12 05:42:29.646489486 +0000 UTC m=+45.591242385 I0512 05:42:30.042489 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-s64mm" condition "Approved" to 2026-05-12 05:42:30.04247893 +0000 UTC m=+45.987231829 I0512 05:42:30.077896 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-s64mm" condition "Ready" to 2026-05-12 05:42:30.077881914 +0000 UTC m=+46.022634833 I0512 05:42:30.107353 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:42:30.107344328 +0000 UTC m=+46.052097227 I0512 05:42:30.128150 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:42:30.128485 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:42:30.128480374 +0000 UTC m=+46.073233263 I0512 05:42:30.147238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:42:30.147623 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:42:30.147616513 +0000 UTC m=+46.092369412 I0512 05:47:08.484150 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-75.nip.io-tls" condition "Ready" to 2026-05-12 05:47:08.484118793 +0000 UTC m=+324.428871702 I0512 05:47:08.484871 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-75.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:47:08.484895 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-75.nip.io-tls" condition "Issuing" to 2026-05-12 05:47:08.484891272 +0000 UTC m=+324.429644171 I0512 05:47:08.630321 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-75.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-75.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:47:08.630376 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-75.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:47:08.630392 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-75.nip.io-tls" condition "Issuing" to 2026-05-12 05:47:08.630385399 +0000 UTC m=+324.575138288 I0512 05:47:08.924068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-75.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-75.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:47:08.929166 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-75.nip.io-tls-mzhjp" condition "Approved" to 2026-05-12 05:47:08.929151592 +0000 UTC m=+324.873904481 I0512 05:47:08.959680 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-75.nip.io-tls-mzhjp" condition "Ready" to 2026-05-12 05:47:08.959664336 +0000 UTC m=+324.904417225 I0512 05:47:08.984956 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-75.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:47:08.984932005 +0000 UTC m=+324.929684904 I0512 05:47:09.004384 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-75.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-75.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:47:09.053863 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-75.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-75.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:13.650277 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:48:13.650369 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-12 05:48:13.65035707 +0000 UTC m=+389.595109989 I0512 05:48:13.650803 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-12 05:48:13.650164076 +0000 UTC m=+389.594917005 E0512 05:48:13.662225 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:48:13.662257 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-12 05:48:13.662249553 +0000 UTC m=+389.607002452 E0512 05:48:13.662396 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:48:13.665164 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:13.665223 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-12 05:48:13.665216345 +0000 UTC m=+389.609969224 E0512 05:48:13.674584 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0512 05:48:13.675372 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:48:13.675447 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:48:13.675482 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0512 05:48:13.681776 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:13.682037 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-12 05:48:13.682025621 +0000 UTC m=+389.626778520 I0512 05:48:13.684494 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-c7xxz" condition "Approved" to 2026-05-12 05:48:13.684481493 +0000 UTC m=+389.629234402 I0512 05:48:13.695401 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-c7xxz" condition "Ready" to 2026-05-12 05:48:13.695391253 +0000 UTC m=+389.640144142 I0512 05:48:13.715289 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:48:13.715275773 +0000 UTC m=+389.660028672 I0512 05:48:13.732951 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:13.733289 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:48:13.733281394 +0000 UTC m=+389.678034293 I0512 05:48:13.738418 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:13.749442 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:18.675086 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:48:18.675070414 +0000 UTC m=+394.619823343 I0512 05:49:00.985891 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:00.986565 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-12 05:49:00.98595253 +0000 UTC m=+436.930705429 I0512 05:49:00.985991 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-12 05:49:00.98595257 +0000 UTC m=+436.930705459 I0512 05:49:00.990159 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-12 05:49:00.990152869 +0000 UTC m=+436.934905758 I0512 05:49:00.990176 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:00.990337 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-12 05:49:00.990299922 +0000 UTC m=+436.935052811 I0512 05:49:00.995318 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:00.995339 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-12 05:49:00.995335458 +0000 UTC m=+436.940088347 I0512 05:49:01.004926 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-12 05:49:01.004913441 +0000 UTC m=+436.949666330 I0512 05:49:01.021394 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:01.021448 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:01.021466 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-12 05:49:01.021459264 +0000 UTC m=+436.966212163 I0512 05:49:01.021562 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:01.021676 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-12 05:49:01.021658489 +0000 UTC m=+436.966411418 I0512 05:49:01.026080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:01.026121 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:01.026133 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-12 05:49:01.026128844 +0000 UTC m=+436.970881733 I0512 05:49:01.608487 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:01.794292 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rcdvg" condition "Approved" to 2026-05-12 05:49:01.794278638 +0000 UTC m=+437.739031557 I0512 05:49:01.795655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:01.868403 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-82kbj" condition "Approved" to 2026-05-12 05:49:01.868393586 +0000 UTC m=+437.813146475 I0512 05:49:01.871453 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-tltjp" condition "Approved" to 2026-05-12 05:49:01.871447164 +0000 UTC m=+437.816200053 I0512 05:49:01.872530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rcdvg" condition "Ready" to 2026-05-12 05:49:01.872523945 +0000 UTC m=+437.817276834 I0512 05:49:01.918167 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-82kbj" condition "Ready" to 2026-05-12 05:49:01.918153552 +0000 UTC m=+437.862906451 I0512 05:49:01.920950 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-tltjp" condition "Ready" to 2026-05-12 05:49:01.920935885 +0000 UTC m=+437.865688784 I0512 05:49:02.031880 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:02.031868971 +0000 UTC m=+437.976621850 I0512 05:49:02.039338 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:02.039326403 +0000 UTC m=+437.984079292 I0512 05:49:02.039660 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:02.039646899 +0000 UTC m=+437.984399788 I0512 05:49:02.061065 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:02.062254 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:02.062247567 +0000 UTC m=+438.007000456 I0512 05:49:02.064533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:02.064745 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:02.064741625 +0000 UTC m=+438.009494514 I0512 05:49:02.070289 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:02.200025 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:02.548789 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:02.600542 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:02.673860 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:11.678813 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:11.678913 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" condition "Issuing" to 2026-05-12 05:49:11.678906848 +0000 UTC m=+447.623659747 I0512 05:49:11.678828 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" condition "Ready" to 2026-05-12 05:49:11.678812266 +0000 UTC m=+447.623565195 I0512 05:49:11.700253 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:11.700304 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:11.700317 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" condition "Issuing" to 2026-05-12 05:49:11.700311986 +0000 UTC m=+447.645064865 I0512 05:49:11.868487 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-r4tmb-vpzmz" condition "Approved" to 2026-05-12 05:49:11.868475743 +0000 UTC m=+447.813228642 I0512 05:49:11.892162 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-r4tmb-vpzmz" condition "Ready" to 2026-05-12 05:49:11.892150684 +0000 UTC m=+447.836903583 I0512 05:49:11.925523 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:11.925509346 +0000 UTC m=+447.870262235 I0512 05:49:11.943855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:11.944217 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:11.944208665 +0000 UTC m=+447.888961554 I0512 05:49:11.956564 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:11.973905 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-r4tmb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:26.864914 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-12 05:49:26.864889815 +0000 UTC m=+462.809642704 I0512 05:49:26.865671 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:26.865692 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-12 05:49:26.865688599 +0000 UTC m=+462.810441488 I0512 05:49:26.886749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:26.886968 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:26.887033 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-12 05:49:26.887026497 +0000 UTC m=+462.831779386 I0512 05:49:27.251348 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:27.259939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-g8zcn" condition "Approved" to 2026-05-12 05:49:27.259921483 +0000 UTC m=+463.204674372 I0512 05:49:27.284816 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-g8zcn" condition "Ready" to 2026-05-12 05:49:27.284799565 +0000 UTC m=+463.229552464 I0512 05:49:27.326826 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:27.326805536 +0000 UTC m=+463.271558425 I0512 05:49:27.347080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:52:48.033443 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:52:48.033543 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-12 05:52:48.033534111 +0000 UTC m=+663.978287030 I0512 05:52:48.033455 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-12 05:52:48.03342269 +0000 UTC m=+663.978175589 I0512 05:52:48.051270 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:52:48.051345 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:52:48.051362 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-12 05:52:48.05135596 +0000 UTC m=+663.996108859 I0512 05:52:48.233820 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:52:48.240909 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kttfl" condition "Approved" to 2026-05-12 05:52:48.240897564 +0000 UTC m=+664.185650453 I0512 05:52:48.264678 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kttfl" condition "Ready" to 2026-05-12 05:52:48.264670002 +0000 UTC m=+664.209422891 I0512 05:52:48.305391 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:52:48.305374837 +0000 UTC m=+664.250127726 I0512 05:52:48.322853 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:52:48.323066 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:52:48.323061004 +0000 UTC m=+664.267813893 I0512 05:52:48.339585 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:53:30.251953 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:53:30.252000 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 05:53:30.251973209 +0000 UTC m=+706.196726098 I0512 05:53:30.252186 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-12 05:53:30.252182182 +0000 UTC m=+706.196935071 I0512 05:53:30.282276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:53:30.282412 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-12 05:53:30.282401972 +0000 UTC m=+706.227154861 I0512 05:53:30.489001 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:53:30.521876 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9zgsr" condition "Approved" to 2026-05-12 05:53:30.521861155 +0000 UTC m=+706.466614064 I0512 05:53:30.543563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9zgsr" condition "Ready" to 2026-05-12 05:53:30.543549918 +0000 UTC m=+706.488302817 I0512 05:53:30.573579 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:53:30.573563485 +0000 UTC m=+706.518316384 I0512 05:53:30.596143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:53:30.596591 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:53:30.596581997 +0000 UTC m=+706.541334886 I0512 05:53:30.617667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"