I0509 21:40:20.244222 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0509 21:40:20.244323 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0509 21:40:20.244386 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0509 21:40:20.247666 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0509 21:40:20.248883 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0509 21:40:20.249134 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0509 21:40:20.249320 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0509 21:40:20.252483 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0509 21:40:20.266297 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0509 21:40:20.266501 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0509 21:40:20.266530 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0509 21:40:20.270176 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0509 21:40:20.273059 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0509 21:40:20.275603 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0509 21:40:20.275628 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0509 21:40:20.275665 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0509 21:40:20.278116 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0509 21:40:20.282993 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0509 21:40:20.286920 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0509 21:40:20.290028 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0509 21:40:20.292834 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0509 21:40:20.292874 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0509 21:40:20.295282 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0509 21:40:20.297172 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0509 21:40:20.299095 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0509 21:40:20.300991 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0509 21:40:20.303773 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0509 21:40:20.304235 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0509 21:40:20.308744 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0509 21:40:20.311367 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0509 21:40:20.314129 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0509 21:40:20.316208 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0509 21:40:20.318084 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0509 21:40:20.321589 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.322150 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.322581 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.323509 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.339750 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.359033 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.376362 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.385963 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.404216 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:20.406115 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 21:40:30.214299 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-09 21:40:30.214281761 +0000 UTC m=+10.002174822 I0509 21:40:30.963777 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-09 21:40:30.963765768 +0000 UTC m=+10.751658819 I0509 21:40:30.964102 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:40:30.964280 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-09 21:40:30.964249039 +0000 UTC m=+10.752142120 E0509 21:40:30.980038 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 21:40:30.980110 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-09 21:40:30.980101905 +0000 UTC m=+10.767994976 E0509 21:40:30.980139 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 21:40:30.983506 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:40:30.983760 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:40:30.983887 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-09 21:40:30.983876836 +0000 UTC m=+10.771769917 E0509 21:40:30.994562 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0509 21:40:30.994755 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 21:40:30.994809 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 21:40:30.994900 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0509 21:40:31.069285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:40:31.069539 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ktpfz" condition "Approved" to 2026-05-09 21:40:31.069532302 +0000 UTC m=+10.857425363 I0509 21:40:31.082500 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ktpfz" condition "Ready" to 2026-05-09 21:40:31.082493159 +0000 UTC m=+10.870386210 I0509 21:40:31.106669 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:40:31.10665817 +0000 UTC m=+10.894551261 I0509 21:40:31.120456 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:40:31.120672 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:40:31.120667131 +0000 UTC m=+10.908560192 I0509 21:40:31.131903 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:40:31.132074 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:40:31.132069202 +0000 UTC m=+10.919962263 I0509 21:40:35.995361 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:40:35.995345039 +0000 UTC m=+15.783238140 I0509 21:40:57.152630 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-09 21:40:57.152576822 +0000 UTC m=+36.940469883 I0509 21:40:57.152625 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:40:57.153107 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-09 21:40:57.153099899 +0000 UTC m=+36.940992950 I0509 21:40:57.176246 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-09 21:40:57.17623695 +0000 UTC m=+36.964130001 I0509 21:40:57.187846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:40:57.187883 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:40:57.187897 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-09 21:40:57.187892593 +0000 UTC m=+36.975785644 I0509 21:40:57.401507 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-7wnn8" condition "Approved" to 2026-05-09 21:40:57.401497721 +0000 UTC m=+37.189390772 I0509 21:40:57.432877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-7wnn8" condition "Ready" to 2026-05-09 21:40:57.432862765 +0000 UTC m=+37.220755826 I0509 21:40:57.459754 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:40:57.459742286 +0000 UTC m=+37.247635337 I0509 21:40:57.478732 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:40:57.478953 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:40:57.478946481 +0000 UTC m=+37.266839532 I0509 21:40:57.488308 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:40:57.501833 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:45:09.149492 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-72.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:45:09.157023 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-72.nip.io-tls" condition "Issuing" to 2026-05-09 21:45:09.157003174 +0000 UTC m=+288.944896225 I0509 21:45:09.150515 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-72.nip.io-tls" condition "Ready" to 2026-05-09 21:45:09.150462401 +0000 UTC m=+288.938355462 I0509 21:45:09.185656 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-72.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-72.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:45:09.185735 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-72.nip.io-tls" condition "Ready" to 2026-05-09 21:45:09.185727863 +0000 UTC m=+288.973620924 I0509 21:45:09.481632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-72.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-72.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:45:09.509425 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-72.nip.io-tls-hdtdm" condition "Approved" to 2026-05-09 21:45:09.509409822 +0000 UTC m=+289.297302913 I0509 21:45:09.555724 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-72.nip.io-tls-hdtdm" condition "Ready" to 2026-05-09 21:45:09.555713456 +0000 UTC m=+289.343606517 I0509 21:45:09.589927 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-72.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:45:09.589914609 +0000 UTC m=+289.377807660 I0509 21:45:09.615551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-72.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-72.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:45:09.660705 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-72.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-72.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:46:13.422832 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:46:13.422834 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-09 21:46:13.422777967 +0000 UTC m=+353.210671058 I0509 21:46:13.422879 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-09 21:46:13.42286987 +0000 UTC m=+353.210762931 E0509 21:46:13.441992 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 21:46:13.442035 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-09 21:46:13.44202706 +0000 UTC m=+353.229920111 E0509 21:46:13.442082 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 21:46:13.442757 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:46:13.442843 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-09 21:46:13.442833747 +0000 UTC m=+353.230726818 E0509 21:46:13.453872 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0509 21:46:13.453977 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 21:46:13.454111 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 21:46:13.454191 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0509 21:46:13.457542 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:46:13.457660 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-09 21:46:13.457650442 +0000 UTC m=+353.245543543 I0509 21:46:13.461448 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-585dc" condition "Approved" to 2026-05-09 21:46:13.461434048 +0000 UTC m=+353.249327119 I0509 21:46:13.468268 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-09 21:46:13.468253366 +0000 UTC m=+353.256146427 I0509 21:46:13.473645 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-585dc" condition "Ready" to 2026-05-09 21:46:13.473633826 +0000 UTC m=+353.261526877 I0509 21:46:13.474638 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:46:13.492267 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:46:13.492251578 +0000 UTC m=+353.280144649 I0509 21:46:13.507546 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:46:13.507798 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:46:13.507792447 +0000 UTC m=+353.295685498 I0509 21:46:13.523537 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:46:18.455120 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:46:18.455105486 +0000 UTC m=+358.242998567 I0509 21:47:00.087247 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-09 21:47:00.087202311 +0000 UTC m=+399.875095382 I0509 21:47:00.087590 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:00.087667 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-09 21:47:00.087660894 +0000 UTC m=+399.875553945 I0509 21:47:00.088180 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-09 21:47:00.088168528 +0000 UTC m=+399.876061589 I0509 21:47:00.088203 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:00.088229 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-09 21:47:00.088225479 +0000 UTC m=+399.876118530 I0509 21:47:00.110667 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:00.110704 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-09 21:47:00.110696222 +0000 UTC m=+399.898589273 I0509 21:47:00.110869 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-09 21:47:00.110855716 +0000 UTC m=+399.898748767 I0509 21:47:00.155087 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.155169 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:00.155188 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-09 21:47:00.155183154 +0000 UTC m=+399.943076205 I0509 21:47:00.155541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.155603 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-09 21:47:00.155598855 +0000 UTC m=+399.943491916 I0509 21:47:00.161372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.161479 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-09 21:47:00.161469131 +0000 UTC m=+399.949362212 I0509 21:47:00.300453 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.334540 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5dvgl" condition "Approved" to 2026-05-09 21:47:00.334528912 +0000 UTC m=+400.122421963 I0509 21:47:00.357867 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5dvgl" condition "Ready" to 2026-05-09 21:47:00.357856818 +0000 UTC m=+400.145749879 I0509 21:47:00.421144 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:00.421135149 +0000 UTC m=+400.209028200 I0509 21:47:00.458632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.459028 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:00.459019225 +0000 UTC m=+400.246912316 I0509 21:47:00.467888 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.478094 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-q8d5j" condition "Approved" to 2026-05-09 21:47:00.478077531 +0000 UTC m=+400.265970582 I0509 21:47:00.478468 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.503387 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-q8d5j" condition "Ready" to 2026-05-09 21:47:00.503377133 +0000 UTC m=+400.291270184 I0509 21:47:00.506705 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.533407 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:00.533395969 +0000 UTC m=+400.321289030 I0509 21:47:00.630584 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.631143 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:00.631134029 +0000 UTC m=+400.419027110 I0509 21:47:00.924324 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:00.973370 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:01.132431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5jzjw" condition "Approved" to 2026-05-09 21:47:01.132416066 +0000 UTC m=+400.920309117 I0509 21:47:01.183426 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5jzjw" condition "Ready" to 2026-05-09 21:47:01.183408346 +0000 UTC m=+400.971301427 I0509 21:47:01.673964 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:01.673950377 +0000 UTC m=+401.461843438 I0509 21:47:01.774298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:08.120585 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:08.120626 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" condition "Issuing" to 2026-05-09 21:47:08.120616519 +0000 UTC m=+407.908509580 I0509 21:47:08.120613 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" condition "Ready" to 2026-05-09 21:47:08.120582848 +0000 UTC m=+407.908475939 I0509 21:47:08.135782 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:08.135875 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:08.135897 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" condition "Issuing" to 2026-05-09 21:47:08.135890959 +0000 UTC m=+407.923784030 I0509 21:47:08.399970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-xzkwp-xk89x" condition "Approved" to 2026-05-09 21:47:08.399951581 +0000 UTC m=+408.187844672 I0509 21:47:08.430210 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-xzkwp-xk89x" condition "Ready" to 2026-05-09 21:47:08.430199871 +0000 UTC m=+408.218092932 I0509 21:47:08.474451 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:08.474441234 +0000 UTC m=+408.262334285 I0509 21:47:08.496571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:08.496769 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:08.496763947 +0000 UTC m=+408.284656998 I0509 21:47:08.518792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xzkwp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:21.535068 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:21.535103 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-09 21:47:21.535096013 +0000 UTC m=+421.322989064 I0509 21:47:21.535672 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-09 21:47:21.535667698 +0000 UTC m=+421.323560749 I0509 21:47:21.551990 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:21.552092 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:47:21.552114 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-09 21:47:21.552108051 +0000 UTC m=+421.340001102 I0509 21:47:21.998466 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-c8fhb" condition "Approved" to 2026-05-09 21:47:21.998456563 +0000 UTC m=+421.786349624 I0509 21:47:22.013487 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-c8fhb" condition "Ready" to 2026-05-09 21:47:22.013478338 +0000 UTC m=+421.801371399 I0509 21:47:22.043576 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:22.043564188 +0000 UTC m=+421.831457249 I0509 21:47:22.117204 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:22.121274 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:22.121261969 +0000 UTC m=+421.909155020 I0509 21:47:22.150442 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:47:22.150911 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:47:22.150899928 +0000 UTC m=+421.938793019 I0509 21:50:26.729419 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:50:26.729514 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-09 21:50:26.729478628 +0000 UTC m=+606.517371689 I0509 21:50:26.729602 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-09 21:50:26.72958563 +0000 UTC m=+606.517478731 I0509 21:50:26.751223 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:50:26.751309 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:50:26.751334 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-09 21:50:26.751328016 +0000 UTC m=+606.539221067 I0509 21:50:26.880391 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:50:26.886037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-g98qr" condition "Approved" to 2026-05-09 21:50:26.886026932 +0000 UTC m=+606.673919993 I0509 21:50:26.907556 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-g98qr" condition "Ready" to 2026-05-09 21:50:26.907548924 +0000 UTC m=+606.695441975 I0509 21:50:26.941875 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:50:26.941851774 +0000 UTC m=+606.729744835 I0509 21:50:26.973081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:51:05.009103 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 21:51:05.009172 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-09 21:51:05.009098394 +0000 UTC m=+644.796991485 I0509 21:51:05.009168 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-09 21:51:05.009135235 +0000 UTC m=+644.797028326 I0509 21:51:05.045317 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:51:05.045413 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-09 21:51:05.04540215 +0000 UTC m=+644.833295211 I0509 21:51:05.289472 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:51:05.320808 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-7586b" condition "Approved" to 2026-05-09 21:51:05.320785802 +0000 UTC m=+645.108678863 I0509 21:51:05.335261 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-7586b" condition "Ready" to 2026-05-09 21:51:05.335249043 +0000 UTC m=+645.123142094 I0509 21:51:05.367607 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:51:05.367585238 +0000 UTC m=+645.155478299 I0509 21:51:05.397043 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 21:51:05.397553 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 21:51:05.397541159 +0000 UTC m=+645.185434220 I0509 21:51:05.424776 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"