I0422 16:40:42.728744 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0422 16:40:42.729011 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0422 16:40:42.729237 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0422 16:40:42.736175 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0422 16:40:42.736889 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0422 16:40:42.736962 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0422 16:40:42.737003 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0422 16:40:42.739592 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0422 16:40:42.756891 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0422 16:40:42.761111 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0422 16:40:42.766689 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0422 16:40:42.771098 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0422 16:40:42.771129 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0422 16:40:42.771139 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0422 16:40:42.773602 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0422 16:40:42.775706 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0422 16:40:42.775825 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0422 16:40:42.777841 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0422 16:40:42.780037 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0422 16:40:42.782094 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0422 16:40:42.787803 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0422 16:40:42.791433 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0422 16:40:42.791480 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0422 16:40:42.791526 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0422 16:40:42.794957 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0422 16:40:42.797038 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0422 16:40:42.798809 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0422 16:40:42.801126 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0422 16:40:42.802884 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0422 16:40:42.803032 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0422 16:40:42.804818 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0422 16:40:42.809821 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0422 16:40:42.813799 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0422 16:40:42.816536 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.816578 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.818380 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.838292 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.853282 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.868247 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.884670 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.901893 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.905663 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:40:42.915511 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:41:06.250924 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-22 16:41:06.250906894 +0000 UTC m=+23.558221416 I0422 16:41:07.298800 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:41:07.298760 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-22 16:41:07.298737694 +0000 UTC m=+24.606052246 I0422 16:41:07.298868 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-22 16:41:07.298855697 +0000 UTC m=+24.606170259 E0422 16:41:07.552824 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:41:07.552969 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-22 16:41:07.552957146 +0000 UTC m=+24.860271708 E0422 16:41:07.553006 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:41:07.557349 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:41:07.557462 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:41:07.557503 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-22 16:41:07.557492107 +0000 UTC m=+24.864806669 E0422 16:41:08.147576 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0422 16:41:08.147681 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:41:08.147711 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:41:08.147753 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0422 16:41:09.231122 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:41:09.231681 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-zdzf2" condition "Approved" to 2026-04-22 16:41:09.231663684 +0000 UTC m=+26.538978246 I0422 16:41:09.380271 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-zdzf2" condition "Ready" to 2026-04-22 16:41:09.380254919 +0000 UTC m=+26.687569481 I0422 16:41:09.516525 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:41:09.516503109 +0000 UTC m=+26.823817661 I0422 16:41:09.711114 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:41:13.148939 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:41:13.148922069 +0000 UTC m=+30.456236591 I0422 16:42:05.122828 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-22 16:42:05.122810193 +0000 UTC m=+82.430124725 I0422 16:42:05.123099 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:42:05.123151 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-22 16:42:05.12314768 +0000 UTC m=+82.430462202 I0422 16:42:05.186458 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-22 16:42:05.186443414 +0000 UTC m=+82.493757946 I0422 16:42:05.195292 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:42:05.195458 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-22 16:42:05.195444354 +0000 UTC m=+82.502758886 I0422 16:42:05.491256 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:42:05.545393 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6zvx4" condition "Approved" to 2026-04-22 16:42:05.545376044 +0000 UTC m=+82.852690636 I0422 16:42:05.620033 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6zvx4" condition "Ready" to 2026-04-22 16:42:05.620018699 +0000 UTC m=+82.927333241 I0422 16:42:05.763656 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:42:05.763467711 +0000 UTC m=+83.070782273 I0422 16:42:05.798069 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:42:05.798424 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:42:05.798416215 +0000 UTC m=+83.105730747 I0422 16:42:05.836958 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:42:05.843042 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:15.037483 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-22 16:45:15.037465446 +0000 UTC m=+272.344779978 I0422 16:45:15.037621 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:45:15.037761 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-22 16:45:15.037745752 +0000 UTC m=+272.345060304 E0422 16:45:15.214906 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0422 16:45:15.214982 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-22 16:45:15.214973323 +0000 UTC m=+272.522287845 I0422 16:45:15.215028 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0422 16:45:15.218736 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:15.218863 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:45:15.218954 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-22 16:45:15.218944102 +0000 UTC m=+272.526258634 E0422 16:45:15.289108 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0422 16:45:15.289230 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0422 16:45:15.289271 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0422 16:45:15.289316 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0422 16:45:15.290491 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:45:15.290535 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-22 16:45:15.290524789 +0000 UTC m=+272.597839341 I0422 16:45:15.290561 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-22 16:45:15.29053232 +0000 UTC m=+272.597846872 I0422 16:45:15.321889 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:15.321989 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-22 16:45:15.321979716 +0000 UTC m=+272.629294248 I0422 16:45:15.678569 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-nvpk2" condition "Approved" to 2026-04-22 16:45:15.678527972 +0000 UTC m=+272.985842534 I0422 16:45:15.725972 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:15.730168 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-nvpk2" condition "Ready" to 2026-04-22 16:45:15.730151251 +0000 UTC m=+273.037465793 I0422 16:45:15.809054 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:15.809034013 +0000 UTC m=+273.116348565 I0422 16:45:15.812159 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-cnkwx" condition "Approved" to 2026-04-22 16:45:15.812146392 +0000 UTC m=+273.119460944 I0422 16:45:15.842812 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:15.843188 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-cnkwx" condition "Ready" to 2026-04-22 16:45:15.843171919 +0000 UTC m=+273.150486481 I0422 16:45:15.843599 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:15.843588538 +0000 UTC m=+273.150903090 I0422 16:45:15.866773 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:20.290217 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:20.290200169 +0000 UTC m=+277.597514711 I0422 16:45:20.382760 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-cnkwx" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:20.382739027 +0000 UTC m=+277.690053599 I0422 16:45:20.462270 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:20.462259663 +0000 UTC m=+277.769574195 I0422 16:45:20.484270 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:20.484686 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:20.484678186 +0000 UTC m=+277.791992718 I0422 16:45:20.496423 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:20.503736 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:20.504110 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:20.504100643 +0000 UTC m=+277.811415175 I0422 16:45:20.507891 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:50:40.674021 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-204.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:50:40.674030 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-204.nip.io-tls" condition "Ready" to 2026-04-22 16:50:40.674001644 +0000 UTC m=+597.981316216 I0422 16:50:40.674117 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-204.nip.io-tls" condition "Issuing" to 2026-04-22 16:50:40.674106666 +0000 UTC m=+597.981421188 I0422 16:50:40.721841 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-204.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-204.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:50:40.722195 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-204.nip.io-tls" condition "Ready" to 2026-04-22 16:50:40.722175616 +0000 UTC m=+598.029490248 I0422 16:50:40.899244 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-204.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-204.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:50:40.935405 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-204.nip.io-tls-snl6f" condition "Approved" to 2026-04-22 16:50:40.935368075 +0000 UTC m=+598.242682637 I0422 16:50:40.963235 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-204.nip.io-tls-snl6f" condition "Ready" to 2026-04-22 16:50:40.963212921 +0000 UTC m=+598.270527483 I0422 16:50:40.995825 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-204.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:50:40.995812193 +0000 UTC m=+598.303126735 I0422 16:50:41.020082 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-204.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-204.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:50:41.020609 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-204.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:50:41.02060013 +0000 UTC m=+598.327914692 I0422 16:50:41.037618 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-204.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-204.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:50:41.037874 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-204.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:50:41.037866238 +0000 UTC m=+598.345180760 I0422 16:51:59.366720 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:51:59.366771 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-22 16:51:59.366742888 +0000 UTC m=+676.674057440 I0422 16:51:59.366785 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-22 16:51:59.366772418 +0000 UTC m=+676.674086980 E0422 16:51:59.487136 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:51:59.487266 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-22 16:51:59.487251496 +0000 UTC m=+676.794566068 E0422 16:51:59.487318 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:51:59.492258 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:51:59.492369 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-22 16:51:59.492360713 +0000 UTC m=+676.799675245 E0422 16:51:59.520907 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0422 16:51:59.521104 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:51:59.521177 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:51:59.521259 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0422 16:51:59.526027 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:51:59.562960 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9zvks" condition "Approved" to 2026-04-22 16:51:59.562936606 +0000 UTC m=+676.870251188 I0422 16:51:59.584939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9zvks" condition "Ready" to 2026-04-22 16:51:59.584921646 +0000 UTC m=+676.892236178 I0422 16:51:59.611713 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:51:59.611695914 +0000 UTC m=+676.919010466 I0422 16:51:59.637497 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:51:59.637833 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:51:59.637821559 +0000 UTC m=+676.945136081 I0422 16:51:59.693737 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:04.521417 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:52:04.521403072 +0000 UTC m=+681.828717604 I0422 16:52:52.065728 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:52:52.065898 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-22 16:52:52.065890021 +0000 UTC m=+729.373204543 I0422 16:52:52.067075 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-22 16:52:52.067070508 +0000 UTC m=+729.374385030 I0422 16:52:52.070946 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:52:52.072310 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-22 16:52:52.072299657 +0000 UTC m=+729.379614189 I0422 16:52:52.073211 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-22 16:52:52.073186206 +0000 UTC m=+729.380500748 I0422 16:52:52.073554 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:52:52.073613 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-22 16:52:52.073608887 +0000 UTC m=+729.380923399 I0422 16:52:52.073648 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-22 16:52:52.073643348 +0000 UTC m=+729.380957880 I0422 16:52:52.101788 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:52.101859 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-22 16:52:52.101852699 +0000 UTC m=+729.409167221 I0422 16:52:52.102279 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:52.102322 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:52:52.102346 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-22 16:52:52.10234247 +0000 UTC m=+729.409656992 I0422 16:52:52.103373 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:52.103477 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:52:52.103517 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-22 16:52:52.103509536 +0000 UTC m=+729.410824058 I0422 16:52:52.288635 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:52.299584 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pt49h" condition "Approved" to 2026-04-22 16:52:52.299570341 +0000 UTC m=+729.606884903 I0422 16:52:52.325081 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pt49h" condition "Ready" to 2026-04-22 16:52:52.325061651 +0000 UTC m=+729.632376193 I0422 16:52:52.347713 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-d4mkq" condition "Approved" to 2026-04-22 16:52:52.347693895 +0000 UTC m=+729.655008417 I0422 16:52:52.375245 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:52:52.375232171 +0000 UTC m=+729.682546693 I0422 16:52:52.376831 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-d4mkq" condition "Ready" to 2026-04-22 16:52:52.376826007 +0000 UTC m=+729.684140529 I0422 16:52:52.409490 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:52.417086 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:52:52.417072272 +0000 UTC m=+729.724386794 I0422 16:52:52.445617 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:52.752266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:52.952809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:53.049647 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-x7kmn" condition "Approved" to 2026-04-22 16:52:53.049627207 +0000 UTC m=+730.356941739 I0422 16:52:53.114172 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-x7kmn" condition "Ready" to 2026-04-22 16:52:53.114155264 +0000 UTC m=+730.421469916 I0422 16:52:53.605766 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:52:53.605746676 +0000 UTC m=+730.913061198 I0422 16:52:53.676109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:53.676510 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:52:53.676502814 +0000 UTC m=+730.983817336 I0422 16:52:53.907043 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:53.954166 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:53:04.240172 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" condition "Ready" to 2026-04-22 16:53:04.240139532 +0000 UTC m=+741.547454064 I0422 16:53:04.240293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:53:04.240337 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" condition "Issuing" to 2026-04-22 16:53:04.240328356 +0000 UTC m=+741.547642888 I0422 16:53:04.278499 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:53:04.278562 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" condition "Ready" to 2026-04-22 16:53:04.278556104 +0000 UTC m=+741.585870626 I0422 16:53:04.548836 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:53:05.038240 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-s4dgd-zp5pd" condition "Approved" to 2026-04-22 16:53:05.038214399 +0000 UTC m=+742.345528961 I0422 16:53:05.087289 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-s4dgd-zp5pd" condition "Ready" to 2026-04-22 16:53:05.087278133 +0000 UTC m=+742.394592665 I0422 16:53:05.168999 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:53:05.16897908 +0000 UTC m=+742.476293622 I0422 16:53:05.304113 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-s4dgd-tls\": the object has been modified; please apply your changes to the latest version and try again" E0422 16:53:40.673271 1 leaderelection.go:369] Failed to update lock: etcdserver: request timed out I0422 16:54:19.384593 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-22 16:54:19.384567368 +0000 UTC m=+816.691881930 I0422 16:54:19.384661 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:54:19.384764 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-22 16:54:19.384749002 +0000 UTC m=+816.692063554 I0422 16:54:19.565527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:54:19.565795 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:54:19.565908 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-22 16:54:19.565897116 +0000 UTC m=+816.873211708 I0422 16:54:20.762295 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:54:20.803433 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-rlsws" condition "Approved" to 2026-04-22 16:54:20.803409918 +0000 UTC m=+818.110724480 I0422 16:54:20.835990 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-rlsws" condition "Ready" to 2026-04-22 16:54:20.835972016 +0000 UTC m=+818.143286558 I0422 16:54:20.882537 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:54:20.882514281 +0000 UTC m=+818.189828843 I0422 16:54:20.912090 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:54:20.912433 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:54:20.912426338 +0000 UTC m=+818.219740860 I0422 16:54:20.937399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:57:59.480069 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:57:59.480154 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-22 16:57:59.480142336 +0000 UTC m=+1036.787456888 I0422 16:57:59.480987 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-22 16:57:59.480978635 +0000 UTC m=+1036.788293197 I0422 16:57:59.506722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:57:59.506888 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-22 16:57:59.5068763 +0000 UTC m=+1036.814190862 I0422 16:57:59.771236 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:57:59.838634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-shkst" condition "Approved" to 2026-04-22 16:57:59.838613538 +0000 UTC m=+1037.145928090 I0422 16:57:59.861477 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-shkst" condition "Ready" to 2026-04-22 16:57:59.861458675 +0000 UTC m=+1037.168773207 I0422 16:57:59.889057 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:57:59.889044209 +0000 UTC m=+1037.196358731 I0422 16:57:59.917193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:57:59.985729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:00:37.863778 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 17:00:37.863871 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-22 17:00:37.863862411 +0000 UTC m=+1195.171176943 I0422 17:00:37.864069 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-22 17:00:37.864037735 +0000 UTC m=+1195.171352287 I0422 17:00:37.883517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:00:37.883739 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 17:00:37.883798 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-22 17:00:37.88378858 +0000 UTC m=+1195.191103112 I0422 17:00:38.138195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-689ft" condition "Approved" to 2026-04-22 17:00:38.138176357 +0000 UTC m=+1195.445490889 I0422 17:00:38.162717 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-689ft" condition "Ready" to 2026-04-22 17:00:38.162702348 +0000 UTC m=+1195.470016880 I0422 17:00:38.195336 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 17:00:38.195320283 +0000 UTC m=+1195.502634815 I0422 17:00:38.221852 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:00:38.222145 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 17:00:38.222139537 +0000 UTC m=+1195.529454069 I0422 17:00:38.273074 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:00:38.273368 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 17:00:38.27335988 +0000 UTC m=+1195.580674422 I0422 17:02:20.189712 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-22 17:02:20.189700265 +0000 UTC m=+1297.497014787 I0422 17:02:20.189798 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 17:02:20.189895 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-22 17:02:20.189883649 +0000 UTC m=+1297.497198191 I0422 17:02:20.208330 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:02:20.208435 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 17:02:20.208461 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-22 17:02:20.208453168 +0000 UTC m=+1297.515767690 I0422 17:02:20.612749 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-tb8zs" condition "Approved" to 2026-04-22 17:02:20.612725319 +0000 UTC m=+1297.920039871 I0422 17:02:20.641538 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-tb8zs" condition "Ready" to 2026-04-22 17:02:20.641520007 +0000 UTC m=+1297.948834539 I0422 17:02:20.680917 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 17:02:20.680892343 +0000 UTC m=+1297.988206905 I0422 17:02:20.705096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:02:20.705414 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 17:02:20.705406345 +0000 UTC m=+1298.012720877 I0422 17:02:20.734454 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:05:51.473695 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-22 17:05:51.473668677 +0000 UTC m=+1508.780983250 I0422 17:05:51.473998 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 17:05:51.474283 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-22 17:05:51.474268622 +0000 UTC m=+1508.781583174 I0422 17:05:51.503531 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:05:51.503729 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 17:05:51.503773 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-22 17:05:51.503762765 +0000 UTC m=+1508.811077297 I0422 17:05:51.664089 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tmrnt" condition "Approved" to 2026-04-22 17:05:51.664068734 +0000 UTC m=+1508.971383296 I0422 17:05:51.694694 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tmrnt" condition "Ready" to 2026-04-22 17:05:51.694679343 +0000 UTC m=+1509.001993875 I0422 17:05:51.734792 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 17:05:51.734768726 +0000 UTC m=+1509.042083278 I0422 17:05:51.766530 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 17:05:51.766943 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 17:05:51.76693432 +0000 UTC m=+1509.074248852 I0422 17:05:51.803742 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"