I0413 02:47:22.998192 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0413 02:47:22.998344 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0413 02:47:22.998443 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0413 02:47:23.005165 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0413 02:47:23.005515 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0413 02:47:23.005594 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0413 02:47:23.005606 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0413 02:47:23.007968 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0413 02:47:23.020548 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0413 02:47:23.025096 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0413 02:47:23.029508 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0413 02:47:23.033363 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0413 02:47:23.035538 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0413 02:47:23.039479 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0413 02:47:23.039527 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0413 02:47:23.039678 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0413 02:47:23.045105 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0413 02:47:23.047506 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0413 02:47:23.049938 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0413 02:47:23.052028 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0413 02:47:23.053593 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0413 02:47:23.053646 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0413 02:47:23.055470 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0413 02:47:23.057236 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0413 02:47:23.059000 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0413 02:47:23.064545 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0413 02:47:23.069008 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0413 02:47:23.071529 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0413 02:47:23.074077 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0413 02:47:23.076611 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0413 02:47:23.076664 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0413 02:47:23.076722 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0413 02:47:23.079824 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0413 02:47:23.081220 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.081640 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.083371 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.083589 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.083792 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.084415 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.084461 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.085109 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.085309 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:23.168173 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 02:47:38.400227 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-13 02:47:38.40021149 +0000 UTC m=+15.434208516 I0413 02:47:39.110918 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-13 02:47:39.110903195 +0000 UTC m=+16.144900231 I0413 02:47:39.112067 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:47:39.112097 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 02:47:39.112091103 +0000 UTC m=+16.146088139 E0413 02:47:39.127977 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 02:47:39.128056 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-13 02:47:39.128045823 +0000 UTC m=+16.162042869 E0413 02:47:39.128094 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 02:47:39.131747 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:47:39.131806 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:47:39.131826 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 02:47:39.131821034 +0000 UTC m=+16.165818050 E0413 02:47:39.136232 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0413 02:47:39.136513 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 02:47:39.136691 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 02:47:39.136868 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0413 02:47:39.168048 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:47:39.174584 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8pqv4" condition "Approved" to 2026-04-13 02:47:39.17456668 +0000 UTC m=+16.208563686 I0413 02:47:39.185409 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8pqv4" condition "Ready" to 2026-04-13 02:47:39.185396857 +0000 UTC m=+16.219393873 I0413 02:47:39.204369 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:47:39.204356853 +0000 UTC m=+16.238353869 I0413 02:47:39.220077 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:47:39.220381 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:47:39.220374524 +0000 UTC m=+16.254371540 I0413 02:47:39.232458 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:47:39.232581 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:47:39.232575275 +0000 UTC m=+16.266572281 I0413 02:47:44.136558 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:47:44.136548192 +0000 UTC m=+21.170545188 I0413 02:48:05.036125 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:48:05.036162 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-13 02:48:05.036156106 +0000 UTC m=+42.070153122 I0413 02:48:05.036123 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-13 02:48:05.036075634 +0000 UTC m=+42.070072660 I0413 02:48:05.054550 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-13 02:48:05.054541621 +0000 UTC m=+42.088538627 I0413 02:48:05.061071 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:48:05.061275 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-13 02:48:05.061269075 +0000 UTC m=+42.095266081 I0413 02:48:05.515415 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:48:05.545013 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lgw2p" condition "Approved" to 2026-04-13 02:48:05.54500383 +0000 UTC m=+42.579000846 I0413 02:48:05.584136 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lgw2p" condition "Ready" to 2026-04-13 02:48:05.584124493 +0000 UTC m=+42.618121499 I0413 02:48:05.616515 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:48:05.616499241 +0000 UTC m=+42.650496287 I0413 02:48:05.638002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:48:05.638322 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:48:05.638315485 +0000 UTC m=+42.672312511 I0413 02:48:05.659303 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:52:09.674396 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-110.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:52:09.674432 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-110.nip.io-tls" condition "Issuing" to 2026-04-13 02:52:09.674424919 +0000 UTC m=+286.708421925 I0413 02:52:09.674623 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-110.nip.io-tls" condition "Ready" to 2026-04-13 02:52:09.674608227 +0000 UTC m=+286.708605233 I0413 02:52:09.695946 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-110.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-110.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:52:09.695996 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-110.nip.io-tls" condition "Ready" to 2026-04-13 02:52:09.695990649 +0000 UTC m=+286.729987665 I0413 02:52:09.780454 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-110.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-110.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:52:09.808801 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-110.nip.io-tls-prlhh" condition "Approved" to 2026-04-13 02:52:09.808786344 +0000 UTC m=+286.842783360 I0413 02:52:09.833968 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-110.nip.io-tls-prlhh" condition "Ready" to 2026-04-13 02:52:09.833951392 +0000 UTC m=+286.867948448 I0413 02:52:09.858165 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-110.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:52:09.858155149 +0000 UTC m=+286.892152165 I0413 02:52:09.877118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-110.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-110.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:52:09.877709 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-110.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:52:09.877701642 +0000 UTC m=+286.911698658 I0413 02:52:09.894572 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-110.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-110.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:13.981132 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:53:13.981177 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 02:53:13.981166286 +0000 UTC m=+351.015163322 I0413 02:53:13.981638 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-13 02:53:13.981063962 +0000 UTC m=+351.015060978 E0413 02:53:13.990695 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 02:53:13.990732 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-13 02:53:13.990724066 +0000 UTC m=+351.024721092 E0413 02:53:13.990778 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 02:53:13.992168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:13.992276 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:53:13.992302 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 02:53:13.99229692 +0000 UTC m=+351.026293946 E0413 02:53:13.999933 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0413 02:53:14.000047 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 02:53:14.000224 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 02:53:14.000280 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0413 02:53:14.032521 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-cqftm" condition "Approved" to 2026-04-13 02:53:14.032511067 +0000 UTC m=+351.066508083 I0413 02:53:14.049738 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-cqftm" condition "Ready" to 2026-04-13 02:53:14.049727713 +0000 UTC m=+351.083724709 I0413 02:53:14.071433 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:53:14.071420989 +0000 UTC m=+351.105418045 I0413 02:53:14.088238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:14.119892 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:19.001235 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:53:19.001220828 +0000 UTC m=+356.035217874 I0413 02:53:59.334490 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:53:59.334526 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 02:53:59.334518203 +0000 UTC m=+396.368515219 I0413 02:53:59.334785 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-13 02:53:59.334778031 +0000 UTC m=+396.368775047 I0413 02:53:59.351682 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-13 02:53:59.351668389 +0000 UTC m=+396.385665395 I0413 02:53:59.351698 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:53:59.351964 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-13 02:53:59.351950058 +0000 UTC m=+396.385947064 I0413 02:53:59.361456 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:53:59.361486 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-13 02:53:59.361480783 +0000 UTC m=+396.395477789 I0413 02:53:59.361686 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 02:53:59.361682909 +0000 UTC m=+396.395679915 I0413 02:53:59.378721 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:59.378782 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:53:59.378800 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 02:53:59.378794484 +0000 UTC m=+396.412791490 I0413 02:53:59.379723 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:59.379871 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:53:59.379927 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-13 02:53:59.379920147 +0000 UTC m=+396.413917153 I0413 02:53:59.389609 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:59.389723 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 02:53:59.389692519 +0000 UTC m=+396.423689535 I0413 02:53:59.647073 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-c5rl8" condition "Approved" to 2026-04-13 02:53:59.647065651 +0000 UTC m=+396.681062657 I0413 02:53:59.667412 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vg555" condition "Approved" to 2026-04-13 02:53:59.666929525 +0000 UTC m=+396.700926551 I0413 02:53:59.673722 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-c5rl8" condition "Ready" to 2026-04-13 02:53:59.673715311 +0000 UTC m=+396.707712317 I0413 02:53:59.685641 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vg555" condition "Ready" to 2026-04-13 02:53:59.685630146 +0000 UTC m=+396.719627142 I0413 02:53:59.711637 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:53:59.711626047 +0000 UTC m=+396.745623053 I0413 02:53:59.716977 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:53:59.716970472 +0000 UTC m=+396.750967478 I0413 02:53:59.746671 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:59.752085 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:59.759602 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:59.759898 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:53:59.759892093 +0000 UTC m=+396.793889099 I0413 02:53:59.794516 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:53:59.943246 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-s97br" condition "Approved" to 2026-04-13 02:53:59.943237924 +0000 UTC m=+396.977234920 I0413 02:54:00.096872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-s97br" condition "Ready" to 2026-04-13 02:54:00.096855637 +0000 UTC m=+397.130852683 E0413 02:54:00.440265 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-kmbn5\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0413 02:54:00.741044 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:00.793991 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:54:00.793976345 +0000 UTC m=+397.827973361 I0413 02:54:00.941741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:00.942785 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:54:00.942743304 +0000 UTC m=+397.976740350 I0413 02:54:00.992652 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:01.190378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:05.111359 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:54:05.111393 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" condition "Issuing" to 2026-04-13 02:54:05.111385034 +0000 UTC m=+402.145382050 I0413 02:54:05.112987 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" condition "Ready" to 2026-04-13 02:54:05.112929347 +0000 UTC m=+402.146926373 I0413 02:54:05.126842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:05.126958 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:54:05.127107 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" condition "Issuing" to 2026-04-13 02:54:05.126974757 +0000 UTC m=+402.160971773 I0413 02:54:05.270579 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:05.287522 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-6sx6x-qjzlw" condition "Approved" to 2026-04-13 02:54:05.287502108 +0000 UTC m=+402.321499114 I0413 02:54:05.318078 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-6sx6x-qjzlw" condition "Ready" to 2026-04-13 02:54:05.318063747 +0000 UTC m=+402.352060763 I0413 02:54:05.353543 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:54:05.353526485 +0000 UTC m=+402.387523501 I0413 02:54:05.387139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:05.477355 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-6sx6x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:19.305222 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-13 02:54:19.305209761 +0000 UTC m=+416.339206757 I0413 02:54:19.305663 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:54:19.305677 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-13 02:54:19.305674053 +0000 UTC m=+416.339671059 I0413 02:54:19.324749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:19.324888 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:54:19.324926 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-13 02:54:19.32491971 +0000 UTC m=+416.358916706 I0413 02:54:19.610749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:19.622021 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2c48m" condition "Approved" to 2026-04-13 02:54:19.622004755 +0000 UTC m=+416.656001801 I0413 02:54:19.646068 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2c48m" condition "Ready" to 2026-04-13 02:54:19.646058384 +0000 UTC m=+416.680055380 I0413 02:54:19.675760 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:54:19.675746775 +0000 UTC m=+416.709743791 I0413 02:54:19.694922 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:54:19.695538 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:54:19.695505196 +0000 UTC m=+416.729502242 I0413 02:54:19.719033 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:57:35.113660 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:57:35.113693 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-13 02:57:35.113685108 +0000 UTC m=+612.147682114 I0413 02:57:35.114090 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-13 02:57:35.114086236 +0000 UTC m=+612.148083242 I0413 02:57:35.131755 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:57:35.131830 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:57:35.131849 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-13 02:57:35.131843373 +0000 UTC m=+612.165840369 I0413 02:57:35.317173 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hmrsx" condition "Approved" to 2026-04-13 02:57:35.317159003 +0000 UTC m=+612.351156009 I0413 02:57:35.337267 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hmrsx" condition "Ready" to 2026-04-13 02:57:35.337253768 +0000 UTC m=+612.371250784 I0413 02:57:35.366885 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:57:35.366856094 +0000 UTC m=+612.400853130 I0413 02:57:35.390096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:58:20.455447 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:58:20.455515 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-13 02:58:20.455506319 +0000 UTC m=+657.489503335 I0413 02:58:20.455857 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-13 02:58:20.455851166 +0000 UTC m=+657.489848182 I0413 02:58:20.468231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:58:20.468285 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 02:58:20.468306 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-13 02:58:20.46829878 +0000 UTC m=+657.502295796 I0413 02:58:20.944751 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-2pd2f" condition "Approved" to 2026-04-13 02:58:20.944734819 +0000 UTC m=+657.978731835 I0413 02:58:20.969155 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-2pd2f" condition "Ready" to 2026-04-13 02:58:20.969141677 +0000 UTC m=+658.003138693 I0413 02:58:21.003375 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:58:21.003358835 +0000 UTC m=+658.037355851 I0413 02:58:21.025184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 02:58:21.025458 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 02:58:21.025451667 +0000 UTC m=+658.059448663 I0413 02:58:21.052146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"