I0510 03:58:32.548480 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0510 03:58:32.548627 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0510 03:58:32.548732 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0510 03:58:32.554429 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0510 03:58:32.555126 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0510 03:58:32.555307 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0510 03:58:32.555304 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0510 03:58:32.560375 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0510 03:58:32.577887 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0510 03:58:32.584124 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0510 03:58:32.588274 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0510 03:58:32.588328 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0510 03:58:32.590318 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0510 03:58:32.596662 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0510 03:58:32.598418 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0510 03:58:32.599979 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0510 03:58:32.602057 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0510 03:58:32.604811 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0510 03:58:32.607093 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0510 03:58:32.607124 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0510 03:58:32.607301 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0510 03:58:32.610110 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0510 03:58:32.615776 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0510 03:58:32.618622 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0510 03:58:32.618687 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0510 03:58:32.621358 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0510 03:58:32.624285 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0510 03:58:32.627765 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0510 03:58:32.629044 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0510 03:58:32.629205 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0510 03:58:32.630858 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0510 03:58:32.630998 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0510 03:58:32.635307 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0510 03:58:32.636754 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.639067 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.639612 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.656197 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.669389 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.686357 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.702019 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.716627 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.731396 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:32.732909 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0510 03:58:45.403694 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-10 03:58:45.403679069 +0000 UTC m=+12.884596613 I0510 03:58:46.198570 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 03:58:46.198683 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-10 03:58:46.198666113 +0000 UTC m=+13.679583697 I0510 03:58:46.200551 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-10 03:58:46.200544199 +0000 UTC m=+13.681461743 E0510 03:58:46.217781 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0510 03:58:46.217852 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-10 03:58:46.217844429 +0000 UTC m=+13.698761973 E0510 03:58:46.217884 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0510 03:58:46.221629 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 03:58:46.221739 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-10 03:58:46.221728345 +0000 UTC m=+13.702645879 E0510 03:58:46.232568 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0510 03:58:46.233373 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0510 03:58:46.233427 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0510 03:58:46.233464 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0510 03:58:46.240676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 03:58:46.265059 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qxx6l" condition "Approved" to 2026-05-10 03:58:46.265044144 +0000 UTC m=+13.745961688 I0510 03:58:46.278386 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qxx6l" condition "Ready" to 2026-05-10 03:58:46.278373836 +0000 UTC m=+13.759291370 I0510 03:58:46.306112 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 03:58:46.306095159 +0000 UTC m=+13.787012703 I0510 03:58:46.323667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 03:58:46.324136 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 03:58:46.324126153 +0000 UTC m=+13.805043697 I0510 03:58:46.352964 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 03:58:51.235054 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 03:58:51.235030955 +0000 UTC m=+18.715948519 I0510 03:59:14.772500 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 03:59:14.772552 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-10 03:59:14.772546523 +0000 UTC m=+42.253464067 I0510 03:59:14.772365 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-10 03:59:14.772326019 +0000 UTC m=+42.253243563 I0510 03:59:14.786761 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-10 03:59:14.786744563 +0000 UTC m=+42.267662107 I0510 03:59:14.812020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0510 03:59:14.812120 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 03:59:14.812146 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-10 03:59:14.81213828 +0000 UTC m=+42.293055824 I0510 03:59:14.956719 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9w27z" condition "Approved" to 2026-05-10 03:59:14.95670702 +0000 UTC m=+42.437624554 I0510 03:59:14.990727 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9w27z" condition "Ready" to 2026-05-10 03:59:14.99070759 +0000 UTC m=+42.471625134 I0510 03:59:15.024081 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 03:59:15.024063496 +0000 UTC m=+42.504981040 I0510 03:59:15.045238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0510 03:59:15.045755 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 03:59:15.045744497 +0000 UTC m=+42.526662051 I0510 03:59:15.070414 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:03:47.931438 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-53.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:03:47.931495 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-53.nip.io-tls" condition "Issuing" to 2026-05-10 04:03:47.931488424 +0000 UTC m=+315.412405968 I0510 04:03:47.931579 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-53.nip.io-tls" condition "Ready" to 2026-05-10 04:03:47.931564665 +0000 UTC m=+315.412482209 I0510 04:03:47.951343 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-53.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-53.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:03:47.951437 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-53.nip.io-tls" condition "Ready" to 2026-05-10 04:03:47.951430865 +0000 UTC m=+315.432348399 I0510 04:03:48.052410 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-53.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-53.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:03:48.081172 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-53.nip.io-tls-tfm5t" condition "Approved" to 2026-05-10 04:03:48.081161407 +0000 UTC m=+315.562078951 I0510 04:03:48.111692 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-53.nip.io-tls-tfm5t" condition "Ready" to 2026-05-10 04:03:48.111681937 +0000 UTC m=+315.592599481 I0510 04:03:48.136296 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-53.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:03:48.136282715 +0000 UTC m=+315.617200289 I0510 04:03:48.160909 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-53.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-53.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:03:48.161604 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-53.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:03:48.161595692 +0000 UTC m=+315.642513246 I0510 04:03:48.177883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-53.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-53.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:04:53.499145 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:04:53.499211 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-10 04:04:53.499201294 +0000 UTC m=+380.980118858 I0510 04:04:53.499146 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-10 04:04:53.499129203 +0000 UTC m=+380.980046777 I0510 04:04:53.513746 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:04:53.513830 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:04:53.513855 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-10 04:04:53.51384738 +0000 UTC m=+380.994764934 E0510 04:04:53.514676 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0510 04:04:53.514711 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-10 04:04:53.514703782 +0000 UTC m=+380.995621336 E0510 04:04:53.514830 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0510 04:04:53.529000 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0510 04:04:53.529250 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0510 04:04:53.529291 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0510 04:04:53.529467 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0510 04:04:53.565186 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9xb8h" condition "Approved" to 2026-05-10 04:04:53.565175324 +0000 UTC m=+381.046092858 I0510 04:04:53.579378 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9xb8h" condition "Ready" to 2026-05-10 04:04:53.579366733 +0000 UTC m=+381.060284267 I0510 04:04:53.604085 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:04:53.604069471 +0000 UTC m=+381.084987015 I0510 04:04:53.623507 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:04:53.623798 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:04:53.623738418 +0000 UTC m=+381.104655962 I0510 04:04:53.641058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:04:53.641466 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:04:53.641639 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:04:53.64163153 +0000 UTC m=+381.122549074 I0510 04:04:58.530020 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:04:58.530003915 +0000 UTC m=+386.010921499 I0510 04:05:38.638619 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:05:38.638643 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-10 04:05:38.638638215 +0000 UTC m=+426.119555749 I0510 04:05:38.639631 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:05:38.639666 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-10 04:05:38.639659729 +0000 UTC m=+426.120577253 I0510 04:05:38.639667 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-10 04:05:38.639652369 +0000 UTC m=+426.120569913 I0510 04:05:38.639894 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-10 04:05:38.639889362 +0000 UTC m=+426.120806896 I0510 04:05:38.656092 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:05:38.656120 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-10 04:05:38.656113391 +0000 UTC m=+426.137030925 I0510 04:05:38.656204 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-10 04:05:38.656189002 +0000 UTC m=+426.137106546 I0510 04:05:38.682906 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:38.682984 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-10 04:05:38.682977229 +0000 UTC m=+426.163894763 I0510 04:05:38.685721 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:38.685812 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-10 04:05:38.685806619 +0000 UTC m=+426.166724143 I0510 04:05:38.696481 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:38.696540 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-10 04:05:38.696532929 +0000 UTC m=+426.177450463 I0510 04:05:38.863016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:38.869828 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:38.901206 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4dth2" condition "Approved" to 2026-05-10 04:05:38.901194041 +0000 UTC m=+426.382111585 I0510 04:05:38.909884 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-m4k44" condition "Approved" to 2026-05-10 04:05:38.909873573 +0000 UTC m=+426.390791107 I0510 04:05:38.933065 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4dth2" condition "Ready" to 2026-05-10 04:05:38.933055859 +0000 UTC m=+426.413973393 I0510 04:05:38.936621 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-m4k44" condition "Ready" to 2026-05-10 04:05:38.936610408 +0000 UTC m=+426.417527953 I0510 04:05:38.943814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:39.141856 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:39.141841897 +0000 UTC m=+426.622759441 I0510 04:05:39.142410 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bfl2n" condition "Approved" to 2026-05-10 04:05:39.142390975 +0000 UTC m=+426.623308529 I0510 04:05:39.172741 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:39.172731603 +0000 UTC m=+426.653649147 I0510 04:05:39.266132 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:39.266526 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:39.266518533 +0000 UTC m=+426.747436077 I0510 04:05:39.324982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bfl2n" condition "Ready" to 2026-05-10 04:05:39.324973916 +0000 UTC m=+426.805891450 I0510 04:05:39.525993 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:39.527860 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:39.527851591 +0000 UTC m=+427.008769145 I0510 04:05:39.819437 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:39.939903 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:39.939886531 +0000 UTC m=+427.420804075 I0510 04:05:39.965761 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:39.965746085 +0000 UTC m=+427.446663609 I0510 04:05:40.011482 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:40.135667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:40.213025 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:40.213631 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:40.213619783 +0000 UTC m=+427.694537347 I0510 04:05:40.464458 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:49.909432 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-splw8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:05:49.909466 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-splw8-tls" condition "Issuing" to 2026-05-10 04:05:49.909459738 +0000 UTC m=+437.390377262 I0510 04:05:49.909585 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-splw8-tls" condition "Ready" to 2026-05-10 04:05:49.90956573 +0000 UTC m=+437.390483294 I0510 04:05:49.923603 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-splw8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-splw8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:49.923698 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-splw8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:05:49.923784 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-splw8-tls" condition "Issuing" to 2026-05-10 04:05:49.92377476 +0000 UTC m=+437.404692334 I0510 04:05:50.251998 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-splw8-d56h5" condition "Approved" to 2026-05-10 04:05:50.25198787 +0000 UTC m=+437.732905404 I0510 04:05:50.273268 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-splw8-d56h5" condition "Ready" to 2026-05-10 04:05:50.273257888 +0000 UTC m=+437.754175422 I0510 04:05:50.312323 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-splw8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:50.312312718 +0000 UTC m=+437.793230252 I0510 04:05:50.331642 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-splw8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-splw8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:05:50.331921 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-splw8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:05:50.331914544 +0000 UTC m=+437.812832078 I0510 04:05:50.356415 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-splw8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-splw8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:06:07.510448 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:06:07.510477 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-10 04:06:07.510471021 +0000 UTC m=+454.991388555 I0510 04:06:07.510820 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-10 04:06:07.510802456 +0000 UTC m=+454.991720000 I0510 04:06:07.525496 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:06:07.525578 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-10 04:06:07.525568253 +0000 UTC m=+455.006485807 I0510 04:06:07.805475 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:06:07.834472 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-qt7jb" condition "Approved" to 2026-05-10 04:06:07.83445737 +0000 UTC m=+455.315374914 I0510 04:06:07.852867 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-qt7jb" condition "Ready" to 2026-05-10 04:06:07.852856559 +0000 UTC m=+455.333774103 I0510 04:06:07.883223 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:06:07.883210206 +0000 UTC m=+455.364127750 I0510 04:06:07.903075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:06:07.903337 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:06:07.903331869 +0000 UTC m=+455.384249403 I0510 04:06:07.926321 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:09:24.262693 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-10 04:09:24.262652149 +0000 UTC m=+651.743569723 I0510 04:09:24.263140 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:09:24.263183 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-10 04:09:24.263175257 +0000 UTC m=+651.744092791 I0510 04:09:24.280779 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:09:24.280866 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-10 04:09:24.280857455 +0000 UTC m=+651.761774999 I0510 04:09:24.589567 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:09:24.622764 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-krwr8" condition "Approved" to 2026-05-10 04:09:24.622752354 +0000 UTC m=+652.103669898 I0510 04:09:24.646596 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-krwr8" condition "Ready" to 2026-05-10 04:09:24.64658415 +0000 UTC m=+652.127501704 I0510 04:09:24.678090 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:09:24.678075173 +0000 UTC m=+652.158992717 I0510 04:09:24.702551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:09:24.702999 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:09:24.702993514 +0000 UTC m=+652.183911038 I0510 04:09:24.717618 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:09:24.718050 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:09:24.718041425 +0000 UTC m=+652.198958979 I0510 04:10:03.320277 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0510 04:10:03.320300 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-10 04:10:03.320213399 +0000 UTC m=+690.801130933 I0510 04:10:03.320340 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-10 04:10:03.320330341 +0000 UTC m=+690.801247885 I0510 04:10:03.337488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:10:03.337803 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-10 04:10:03.337793627 +0000 UTC m=+690.818711171 I0510 04:10:03.753982 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0510 04:10:03.925024 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-qwfvd" condition "Approved" to 2026-05-10 04:10:03.925010637 +0000 UTC m=+691.405928201 I0510 04:10:03.942897 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-qwfvd" condition "Ready" to 2026-05-10 04:10:03.942885178 +0000 UTC m=+691.423802732 I0510 04:10:03.973750 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-10 04:10:03.973738963 +0000 UTC m=+691.454656497 I0510 04:10:03.998489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"