I0409 17:36:02.572165 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0409 17:36:02.572291 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0409 17:36:02.572389 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0409 17:36:02.576281 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0409 17:36:02.576686 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0409 17:36:02.576790 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0409 17:36:02.576790 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0409 17:36:02.581811 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0409 17:36:02.635530 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0409 17:36:02.639043 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0409 17:36:02.641459 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0409 17:36:02.641501 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0409 17:36:02.641514 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0409 17:36:02.641597 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0409 17:36:02.643990 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0409 17:36:02.644112 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0409 17:36:02.646912 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0409 17:36:02.649174 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0409 17:36:02.652605 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0409 17:36:02.658332 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0409 17:36:02.662347 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0409 17:36:02.662414 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0409 17:36:02.664304 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0409 17:36:02.666002 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0409 17:36:02.667758 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0409 17:36:02.669678 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0409 17:36:02.669732 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0409 17:36:02.671928 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0409 17:36:02.673804 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0409 17:36:02.675393 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0409 17:36:02.681430 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0409 17:36:02.685724 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0409 17:36:02.688193 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0409 17:36:02.690131 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.690819 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.690860 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.690961 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.690979 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.691429 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.691495 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.691826 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.693352 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:02.786706 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:36:13.879576 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-09 17:36:13.879558889 +0000 UTC m=+11.341304871 I0409 17:36:14.623972 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:36:14.624031 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-09 17:36:14.62402254 +0000 UTC m=+12.085768482 I0409 17:36:14.624146 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 17:36:14.624121552 +0000 UTC m=+12.085867524 E0409 17:36:14.638807 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:36:14.638895 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-09 17:36:14.638887415 +0000 UTC m=+12.100633367 E0409 17:36:14.638920 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:36:14.641699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:14.641802 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 17:36:14.641788408 +0000 UTC m=+12.103534360 E0409 17:36:14.648934 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0409 17:36:14.649293 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:36:14.649371 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:36:14.649424 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0409 17:36:14.660027 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:14.685618 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-s8c7m" condition "Approved" to 2026-04-09 17:36:14.685604237 +0000 UTC m=+12.147350199 I0409 17:36:14.698023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-s8c7m" condition "Ready" to 2026-04-09 17:36:14.698010878 +0000 UTC m=+12.159756830 I0409 17:36:14.722064 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:36:14.722048195 +0000 UTC m=+12.183794147 I0409 17:36:14.742093 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:14.742761 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:36:14.742749297 +0000 UTC m=+12.204495279 I0409 17:36:14.745744 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:14.758207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:14.758411 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:36:14.75840362 +0000 UTC m=+12.220149572 I0409 17:36:14.764183 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:19.649324 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:36:19.649313264 +0000 UTC m=+17.111059216 I0409 17:36:38.079269 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:36:38.079323 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 17:36:38.079319466 +0000 UTC m=+35.541065408 I0409 17:36:38.079265 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 17:36:38.079228324 +0000 UTC m=+35.540974266 I0409 17:36:38.087892 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-09 17:36:38.087879352 +0000 UTC m=+35.549625314 I0409 17:36:38.103365 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:38.103430 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:36:38.103449 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 17:36:38.10344302 +0000 UTC m=+35.565188972 I0409 17:36:38.471328 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:38.479589 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bfjml" condition "Approved" to 2026-04-09 17:36:38.479571763 +0000 UTC m=+35.941318055 I0409 17:36:38.508368 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bfjml" condition "Ready" to 2026-04-09 17:36:38.508356659 +0000 UTC m=+35.970102611 I0409 17:36:38.537648 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:36:38.537636995 +0000 UTC m=+35.999382947 I0409 17:36:38.556966 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:36:38.611166 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:22.005352 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:38:22.005406 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-09 17:38:22.005395795 +0000 UTC m=+139.467141777 I0409 17:38:22.005346 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-09 17:38:22.005301013 +0000 UTC m=+139.467047045 E0409 17:38:22.023177 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 17:38:22.023221 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-09 17:38:22.023215149 +0000 UTC m=+139.484961091 I0409 17:38:22.023250 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 17:38:22.031581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:22.031663 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:38:22.031680 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-09 17:38:22.031672982 +0000 UTC m=+139.493418934 E0409 17:38:22.037158 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0409 17:38:22.037326 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 17:38:22.037377 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0409 17:38:22.037436 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0409 17:38:22.041951 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-09 17:38:22.041931364 +0000 UTC m=+139.503677316 I0409 17:38:22.041968 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:38:22.042005 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-09 17:38:22.041995606 +0000 UTC m=+139.503741558 I0409 17:38:22.055177 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:22.055272 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-09 17:38:22.055262963 +0000 UTC m=+139.517008915 I0409 17:38:22.213634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-mp8jb" condition "Approved" to 2026-04-09 17:38:22.213608515 +0000 UTC m=+139.675354477 I0409 17:38:22.242871 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-mp8jb" condition "Ready" to 2026-04-09 17:38:22.242854188 +0000 UTC m=+139.704600170 I0409 17:38:22.272469 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:22.272454207 +0000 UTC m=+139.734200179 I0409 17:38:22.294338 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:22.294610 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:22.294586966 +0000 UTC m=+139.756332918 I0409 17:38:22.299984 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:22.311242 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:22.311504 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:22.311497481 +0000 UTC m=+139.773243433 I0409 17:38:22.465467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:22.494915 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-4nzzs" condition "Approved" to 2026-04-09 17:38:22.494895906 +0000 UTC m=+139.956641858 I0409 17:38:22.511348 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-4nzzs" condition "Ready" to 2026-04-09 17:38:22.511319942 +0000 UTC m=+139.973065904 I0409 17:38:27.038451 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:27.038436063 +0000 UTC m=+144.500182035 I0409 17:38:27.051708 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-4nzzs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:27.051696279 +0000 UTC m=+144.513442231 I0409 17:38:27.078834 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:27.078819435 +0000 UTC m=+144.540565417 I0409 17:38:27.102476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:27.102892 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:27.102882486 +0000 UTC m=+144.564628438 I0409 17:38:27.120900 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:27.121318 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:27.121306594 +0000 UTC m=+144.583052566 I0409 17:38:27.121510 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:59.616362 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-96.nip.io-tls" condition "Ready" to 2026-04-09 17:40:59.616324433 +0000 UTC m=+297.078070385 I0409 17:40:59.616539 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-96.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:40:59.616711 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-96.nip.io-tls" condition "Issuing" to 2026-04-09 17:40:59.616699431 +0000 UTC m=+297.078445403 I0409 17:40:59.632377 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-96.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-96.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:59.632477 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-96.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:40:59.632504 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-96.nip.io-tls" condition "Issuing" to 2026-04-09 17:40:59.632495561 +0000 UTC m=+297.094241543 I0409 17:40:59.873621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-96.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-96.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:59.882759 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-96.nip.io-tls-rvmk4" condition "Approved" to 2026-04-09 17:40:59.882745413 +0000 UTC m=+297.344491365 I0409 17:40:59.902273 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-96.nip.io-tls-rvmk4" condition "Ready" to 2026-04-09 17:40:59.902260273 +0000 UTC m=+297.364006225 I0409 17:40:59.926946 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-96.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:59.926929434 +0000 UTC m=+297.388675416 I0409 17:40:59.950520 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-96.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-96.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:59.950937 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-96.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:59.950927941 +0000 UTC m=+297.412673923 I0409 17:40:59.966241 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-96.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-96.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:59.966631 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-96.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:59.966621267 +0000 UTC m=+297.428367239 I0409 17:42:10.203957 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:10.204027 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 17:42:10.203996858 +0000 UTC m=+367.665742800 I0409 17:42:10.204354 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 17:42:10.204338615 +0000 UTC m=+367.666084557 E0409 17:42:10.219299 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:42:10.219337 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-09 17:42:10.219327868 +0000 UTC m=+367.681073830 E0409 17:42:10.219382 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:42:10.220393 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:10.220486 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 17:42:10.220476403 +0000 UTC m=+367.682222355 E0409 17:42:10.228922 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0409 17:42:10.229032 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:42:10.229073 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:42:10.229115 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0409 17:42:10.240849 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:10.262538 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-snhfr" condition "Approved" to 2026-04-09 17:42:10.262512999 +0000 UTC m=+367.724258941 I0409 17:42:10.277628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-snhfr" condition "Ready" to 2026-04-09 17:42:10.277610994 +0000 UTC m=+367.739356946 I0409 17:42:10.301056 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:10.301040738 +0000 UTC m=+367.762786710 I0409 17:42:10.318361 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:15.229307 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:15.22929497 +0000 UTC m=+372.691040922 I0409 17:42:53.929680 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-09 17:42:53.929642511 +0000 UTC m=+411.391388453 I0409 17:42:53.930025 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.930062 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 17:42:53.9300559 +0000 UTC m=+411.391801842 I0409 17:42:53.946346 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-09 17:42:53.946332469 +0000 UTC m=+411.408078421 I0409 17:42:53.946528 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.946557 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 17:42:53.946551604 +0000 UTC m=+411.408297546 I0409 17:42:53.952815 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-09 17:42:53.952799919 +0000 UTC m=+411.414545881 I0409 17:42:53.953195 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.953222 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 17:42:53.953216728 +0000 UTC m=+411.414962690 I0409 17:42:53.963771 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:53.963883 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.963906 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 17:42:53.963900557 +0000 UTC m=+411.425646499 I0409 17:42:53.977964 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:53.978033 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.978060 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 17:42:53.97805519 +0000 UTC m=+411.439801132 I0409 17:42:53.980428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:53.980503 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.980538 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 17:42:53.980530022 +0000 UTC m=+411.442276004 I0409 17:42:54.163058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:54.179274 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9875n" condition "Approved" to 2026-04-09 17:42:54.179259636 +0000 UTC m=+411.641005588 I0409 17:42:54.195862 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9875n" condition "Ready" to 2026-04-09 17:42:54.195851352 +0000 UTC m=+411.657597304 I0409 17:42:54.240630 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:54.240619562 +0000 UTC m=+411.702365504 I0409 17:42:54.279747 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:54.279958 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:54.280460 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:54.280452177 +0000 UTC m=+411.742198139 I0409 17:42:54.300636 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:54.300909 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:54.300900716 +0000 UTC m=+411.762646658 I0409 17:42:54.301089 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:54.401544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-zwpjx" condition "Approved" to 2026-04-09 17:42:54.401533995 +0000 UTC m=+411.863279947 I0409 17:42:54.420695 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-zwpjx" condition "Ready" to 2026-04-09 17:42:54.420674725 +0000 UTC m=+411.882420677 I0409 17:42:54.526343 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gmnbz" condition "Approved" to 2026-04-09 17:42:54.526332401 +0000 UTC m=+411.988078353 I0409 17:42:54.578655 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:54.578636003 +0000 UTC m=+412.040381945 I0409 17:42:54.779445 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gmnbz" condition "Ready" to 2026-04-09 17:42:54.779428261 +0000 UTC m=+412.241174233 I0409 17:42:55.023570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:55.024007 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:55.023999147 +0000 UTC m=+412.485745079 I0409 17:42:55.373155 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:55.373136597 +0000 UTC m=+412.834882589 I0409 17:42:55.422372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:55.521084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:55.521519 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:55.52149255 +0000 UTC m=+412.983238522 I0409 17:42:55.823466 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:55.871728 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:43:01.932214 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:43:01.932251 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" condition "Issuing" to 2026-04-09 17:43:01.932242681 +0000 UTC m=+419.393988633 I0409 17:43:01.932822 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" condition "Ready" to 2026-04-09 17:43:01.932810163 +0000 UTC m=+419.394556145 I0409 17:43:01.954826 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2gr64-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:43:01.954953 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" condition "Ready" to 2026-04-09 17:43:01.954942118 +0000 UTC m=+419.416688090 I0409 17:43:02.071891 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2gr64-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:43:02.110011 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2gr64-964ss" condition "Approved" to 2026-04-09 17:43:02.109992474 +0000 UTC m=+419.571738426 I0409 17:43:02.142562 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2gr64-964ss" condition "Ready" to 2026-04-09 17:43:02.142548453 +0000 UTC m=+419.604294405 I0409 17:43:02.183754 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:43:02.183743426 +0000 UTC m=+419.645489378 I0409 17:43:02.206068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2gr64-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2gr64-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:43:26.558784 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:43:26.558821 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 17:43:26.558809904 +0000 UTC m=+444.020555856 I0409 17:43:26.558857 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 17:43:26.558847575 +0000 UTC m=+444.020593537 I0409 17:43:26.576387 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:43:26.576485 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:43:26.576507 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 17:43:26.576501223 +0000 UTC m=+444.038247175 I0409 17:43:26.726939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-dpsct" condition "Approved" to 2026-04-09 17:43:26.726926221 +0000 UTC m=+444.188672173 I0409 17:43:26.744160 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-dpsct" condition "Ready" to 2026-04-09 17:43:26.74414288 +0000 UTC m=+444.205888832 I0409 17:43:26.774550 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:43:26.774522541 +0000 UTC m=+444.236268493 I0409 17:43:26.799117 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:43:26.799540 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:43:26.799531698 +0000 UTC m=+444.261277650 I0409 17:43:26.816834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:43:26.819285 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:43:26.819275692 +0000 UTC m=+444.281021634 I0409 17:46:41.218888 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:46:41.219035 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 17:46:41.218994668 +0000 UTC m=+638.680740640 I0409 17:46:41.219188 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 17:46:41.219164082 +0000 UTC m=+638.680910054 I0409 17:46:41.243667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:46:41.243837 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 17:46:41.243820103 +0000 UTC m=+638.705566085 I0409 17:46:41.386857 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:46:41.416513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-djpsm" condition "Approved" to 2026-04-09 17:46:41.416499098 +0000 UTC m=+638.878245050 I0409 17:46:41.435492 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-djpsm" condition "Ready" to 2026-04-09 17:46:41.435472016 +0000 UTC m=+638.897217998 I0409 17:46:41.461690 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:46:41.461677539 +0000 UTC m=+638.923423481 I0409 17:46:41.486790 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:46:41.487088 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:46:41.487082096 +0000 UTC m=+638.948828048 I0409 17:46:41.507105 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:49:02.308614 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:49:02.308677 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-09 17:49:02.308646725 +0000 UTC m=+779.770392707 I0409 17:49:02.308786 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 17:49:02.308763457 +0000 UTC m=+779.770509439 I0409 17:49:02.324940 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:49:02.325087 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 17:49:02.325078764 +0000 UTC m=+779.786824736 I0409 17:49:02.689395 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:49:02.724691 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-bnbgf" condition "Approved" to 2026-04-09 17:49:02.724678728 +0000 UTC m=+780.186424680 I0409 17:49:02.743187 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-bnbgf" condition "Ready" to 2026-04-09 17:49:02.743169171 +0000 UTC m=+780.204915153 I0409 17:49:02.771332 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:49:02.77131355 +0000 UTC m=+780.233059512 I0409 17:49:02.794779 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:50:02.779891 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-09 17:50:02.779858843 +0000 UTC m=+840.241604795 I0409 17:50:02.779928 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:50:02.779970 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-09 17:50:02.779959955 +0000 UTC m=+840.241705927 I0409 17:50:02.796125 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:50:02.796275 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:50:02.796307 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-09 17:50:02.796293693 +0000 UTC m=+840.258039645 I0409 17:50:03.052633 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-rwqxq" condition "Approved" to 2026-04-09 17:50:03.052621492 +0000 UTC m=+840.514367434 I0409 17:50:03.074125 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-rwqxq" condition "Ready" to 2026-04-09 17:50:03.074112058 +0000 UTC m=+840.535858030 I0409 17:50:03.103381 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:50:03.103366651 +0000 UTC m=+840.565112583 I0409 17:50:03.122941 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:50:03.123322 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:50:03.123315905 +0000 UTC m=+840.585061857 I0409 17:50:03.128800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:50:03.144189 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:52:58.549479 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-09 17:52:58.549453654 +0000 UTC m=+1016.011199606 I0409 17:52:58.549878 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:52:58.549947 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-09 17:52:58.549939105 +0000 UTC m=+1016.011685067 I0409 17:52:58.566274 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:52:58.566373 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:52:58.566397 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-09 17:52:58.566390819 +0000 UTC m=+1016.028136761 I0409 17:52:58.796492 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fltt5" condition "Approved" to 2026-04-09 17:52:58.796482682 +0000 UTC m=+1016.258228624 I0409 17:52:58.818524 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fltt5" condition "Ready" to 2026-04-09 17:52:58.818513066 +0000 UTC m=+1016.280259018 I0409 17:52:58.850636 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:52:58.850620858 +0000 UTC m=+1016.312366820 I0409 17:52:58.869039 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:52:58.869371 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:52:58.869362493 +0000 UTC m=+1016.331108455 I0409 17:52:58.886193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:52:58.899925 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"