I0429 22:20:03.964218 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0429 22:20:03.964322 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0429 22:20:03.964394 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0429 22:20:03.969319 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0429 22:20:03.969789 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0429 22:20:03.969876 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0429 22:20:03.969905 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0429 22:20:03.972380 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0429 22:20:03.991220 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0429 22:20:03.991839 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0429 22:20:03.995868 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0429 22:20:03.998762 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0429 22:20:04.004787 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0429 22:20:04.007941 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0429 22:20:04.010612 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0429 22:20:04.012652 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0429 22:20:04.016688 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0429 22:20:04.020836 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0429 22:20:04.028114 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0429 22:20:04.031694 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0429 22:20:04.034364 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0429 22:20:04.036729 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0429 22:20:04.036808 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0429 22:20:04.039403 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0429 22:20:04.042072 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0429 22:20:04.043930 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0429 22:20:04.045806 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0429 22:20:04.045839 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0429 22:20:04.045844 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0429 22:20:04.052099 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0429 22:20:04.055060 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0429 22:20:04.055081 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0429 22:20:04.055562 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0429 22:20:04.057892 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.057915 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.058231 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.058445 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.081660 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.102904 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.117180 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.132349 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.144812 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:04.152965 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 22:20:15.433789 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-29 22:20:15.433772834 +0000 UTC m=+11.507548726 I0429 22:20:16.130898 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-29 22:20:16.1308856 +0000 UTC m=+12.204661462 I0429 22:20:16.131450 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:20:16.131599 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-29 22:20:16.131588269 +0000 UTC m=+12.205364161 E0429 22:20:16.144157 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0429 22:20:16.144284 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-29 22:20:16.144277265 +0000 UTC m=+12.218053117 E0429 22:20:16.144331 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0429 22:20:16.147217 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:20:16.147374 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:20:16.147421 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-29 22:20:16.147413461 +0000 UTC m=+12.221189323 E0429 22:20:16.161055 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0429 22:20:16.161495 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 22:20:16.161583 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 22:20:16.161658 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0429 22:20:16.197986 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-gvs2n" condition "Approved" to 2026-04-29 22:20:16.197964991 +0000 UTC m=+12.271740853 I0429 22:20:16.211245 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-gvs2n" condition "Ready" to 2026-04-29 22:20:16.211228764 +0000 UTC m=+12.285004616 I0429 22:20:16.237431 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:20:16.237416868 +0000 UTC m=+12.311192730 I0429 22:20:16.256548 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:20:16.309889 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:20:21.161522 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:20:21.16151092 +0000 UTC m=+17.235286782 I0429 22:20:45.815018 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:20:45.815110 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-29 22:20:45.815101521 +0000 UTC m=+41.888877383 I0429 22:20:45.815051 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-29 22:20:45.815004339 +0000 UTC m=+41.888780201 I0429 22:20:45.834887 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-29 22:20:45.834877481 +0000 UTC m=+41.908653333 I0429 22:20:45.853484 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:20:45.853593 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:20:45.853618 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-29 22:20:45.853612987 +0000 UTC m=+41.927388839 I0429 22:20:46.102707 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:20:46.111544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ksw7l" condition "Approved" to 2026-04-29 22:20:46.111532243 +0000 UTC m=+42.185308095 I0429 22:20:46.150098 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ksw7l" condition "Ready" to 2026-04-29 22:20:46.150086653 +0000 UTC m=+42.223862515 I0429 22:20:46.187828 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:20:46.187814226 +0000 UTC m=+42.261590088 I0429 22:20:46.218983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:25:12.566537 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-22.nip.io-tls" condition "Ready" to 2026-04-29 22:25:12.566495904 +0000 UTC m=+308.640271766 I0429 22:25:12.567056 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-22.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:25:12.567123 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-22.nip.io-tls" condition "Issuing" to 2026-04-29 22:25:12.567078377 +0000 UTC m=+308.640854269 I0429 22:25:12.584059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-22.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-22.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:25:12.584172 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-22.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:25:12.584222 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-22.nip.io-tls" condition "Issuing" to 2026-04-29 22:25:12.584187947 +0000 UTC m=+308.657963799 I0429 22:25:12.986714 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-22.nip.io-tls-m9pbp" condition "Approved" to 2026-04-29 22:25:12.986704988 +0000 UTC m=+309.060480850 I0429 22:25:13.009913 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-22.nip.io-tls-m9pbp" condition "Ready" to 2026-04-29 22:25:13.009900809 +0000 UTC m=+309.083676671 I0429 22:25:13.033609 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-22.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:25:13.03359996 +0000 UTC m=+309.107375822 I0429 22:25:13.052686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-22.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-22.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:25:13.053118 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-22.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:25:13.053110741 +0000 UTC m=+309.126886603 I0429 22:25:13.068467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-22.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-22.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:25:13.069062 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-22.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:25:13.069053985 +0000 UTC m=+309.142829847 I0429 22:25:13.073246 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-22.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-22.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:26:17.826206 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:26:17.826331 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-29 22:26:17.826294569 +0000 UTC m=+373.900070451 I0429 22:26:17.826928 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-29 22:26:17.826917421 +0000 UTC m=+373.900693303 E0429 22:26:17.855441 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0429 22:26:17.855485 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-29 22:26:17.855476368 +0000 UTC m=+373.929252240 E0429 22:26:17.855672 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0429 22:26:17.859138 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:26:17.859510 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:26:17.859619 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-29 22:26:17.859547849 +0000 UTC m=+373.933323751 E0429 22:26:17.868884 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0429 22:26:17.869147 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 22:26:17.869223 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 22:26:17.869255 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0429 22:26:17.935022 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-rqvkn" condition "Approved" to 2026-04-29 22:26:17.934998198 +0000 UTC m=+374.008774090 I0429 22:26:17.956132 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-rqvkn" condition "Ready" to 2026-04-29 22:26:17.956122103 +0000 UTC m=+374.029897965 I0429 22:26:17.991917 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:26:17.991905067 +0000 UTC m=+374.065680929 I0429 22:26:18.008044 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:26:18.128505 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:26:22.869529 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:26:22.869512969 +0000 UTC m=+378.943288861 I0429 22:27:06.772842 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-29 22:27:06.772803196 +0000 UTC m=+422.846579048 I0429 22:27:06.777898 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-29 22:27:06.777888667 +0000 UTC m=+422.851664519 I0429 22:27:06.777970 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:06.778017 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-29 22:27:06.778011689 +0000 UTC m=+422.851787541 I0429 22:27:06.777417 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:06.784992 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-29 22:27:06.784984229 +0000 UTC m=+422.858760081 I0429 22:27:06.778161 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:06.785122 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-29 22:27:06.785117641 +0000 UTC m=+422.858893493 I0429 22:27:06.778188 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-29 22:27:06.778185891 +0000 UTC m=+422.851961743 I0429 22:27:06.819458 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:06.819583 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:06.819624 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-29 22:27:06.819618328 +0000 UTC m=+422.893394180 I0429 22:27:06.824958 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:06.825084 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-29 22:27:06.825040474 +0000 UTC m=+422.898816336 I0429 22:27:06.832702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:06.832819 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:06.832857 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-29 22:27:06.832850468 +0000 UTC m=+422.906626330 I0429 22:27:06.993742 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-c6z4f" condition "Approved" to 2026-04-29 22:27:06.993733401 +0000 UTC m=+423.067509253 I0429 22:27:07.024819 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-c6z4f" condition "Ready" to 2026-04-29 22:27:07.024808452 +0000 UTC m=+423.098584314 I0429 22:27:07.050067 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:07.050056802 +0000 UTC m=+423.123832654 I0429 22:27:07.083791 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:07.169294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:07.178974 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jhwsd" condition "Approved" to 2026-04-29 22:27:07.178967183 +0000 UTC m=+423.252743035 I0429 22:27:07.197863 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jhwsd" condition "Ready" to 2026-04-29 22:27:07.197852061 +0000 UTC m=+423.271627933 I0429 22:27:07.218606 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:07.21859775 +0000 UTC m=+423.292373602 I0429 22:27:07.240368 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:07.550487 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:07.657155 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-7z57l" condition "Approved" to 2026-04-29 22:27:07.657134792 +0000 UTC m=+423.730910684 I0429 22:27:07.713789 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-7z57l" condition "Ready" to 2026-04-29 22:27:07.71377877 +0000 UTC m=+423.787554632 I0429 22:27:08.326301 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:08.326285736 +0000 UTC m=+424.400061598 I0429 22:27:08.348463 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:08.599387 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:19.081241 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:19.081291 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" condition "Issuing" to 2026-04-29 22:27:19.081277737 +0000 UTC m=+435.155053589 I0429 22:27:19.081751 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" condition "Ready" to 2026-04-29 22:27:19.081730565 +0000 UTC m=+435.155506447 I0429 22:27:19.107575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4h65x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:19.108179 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" condition "Ready" to 2026-04-29 22:27:19.108163164 +0000 UTC m=+435.181939126 I0429 22:27:19.572113 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4h65x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:19.700588 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4h65x-t7drp" condition "Approved" to 2026-04-29 22:27:19.700571442 +0000 UTC m=+435.774347324 I0429 22:27:19.987814 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4h65x-t7drp" condition "Ready" to 2026-04-29 22:27:19.987769576 +0000 UTC m=+436.061545438 I0429 22:27:20.020219 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:20.020210008 +0000 UTC m=+436.093985860 I0429 22:27:20.041249 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4h65x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:20.041597 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:20.041589487 +0000 UTC m=+436.115365349 I0429 22:27:20.060174 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4h65x-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:20.060580 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-4h65x-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:20.060571671 +0000 UTC m=+436.134347533 I0429 22:27:33.343343 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-29 22:27:33.343314012 +0000 UTC m=+449.417089874 I0429 22:27:33.343776 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:33.343813 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-29 22:27:33.343807379 +0000 UTC m=+449.417583241 I0429 22:27:33.363234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:33.363389 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:27:33.363419 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-29 22:27:33.363412355 +0000 UTC m=+449.437188227 I0429 22:27:33.864360 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-prgvr" condition "Approved" to 2026-04-29 22:27:33.864346689 +0000 UTC m=+449.938122541 I0429 22:27:33.886510 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-prgvr" condition "Ready" to 2026-04-29 22:27:33.886501154 +0000 UTC m=+449.960277006 I0429 22:27:33.927399 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:33.927388911 +0000 UTC m=+450.001164773 I0429 22:27:33.945445 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:27:33.945938 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:27:33.945931341 +0000 UTC m=+450.019707213 I0429 22:27:33.961878 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:30:56.075877 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:30:56.076516 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-29 22:30:56.076506719 +0000 UTC m=+652.150282571 I0429 22:30:56.076291 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-29 22:30:56.076206905 +0000 UTC m=+652.149982787 I0429 22:30:56.097988 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:30:56.098265 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-29 22:30:56.098253011 +0000 UTC m=+652.172028903 I0429 22:30:56.463271 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:30:56.496077 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vn8kh" condition "Approved" to 2026-04-29 22:30:56.496065442 +0000 UTC m=+652.569841294 I0429 22:30:56.513571 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vn8kh" condition "Ready" to 2026-04-29 22:30:56.513552572 +0000 UTC m=+652.587328434 I0429 22:30:56.547320 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:30:56.547294644 +0000 UTC m=+652.621070496 I0429 22:30:56.582628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:31:38.306507 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-29 22:31:38.306487984 +0000 UTC m=+694.380263866 I0429 22:31:38.306583 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 22:31:38.306608 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-29 22:31:38.306600975 +0000 UTC m=+694.380376837 I0429 22:31:38.321337 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:31:38.321677 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-29 22:31:38.321663721 +0000 UTC m=+694.395439613 I0429 22:31:38.530455 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:31:38.567354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-5vmcv" condition "Approved" to 2026-04-29 22:31:38.567340073 +0000 UTC m=+694.641115925 I0429 22:31:38.585639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-5vmcv" condition "Ready" to 2026-04-29 22:31:38.585627298 +0000 UTC m=+694.659403160 I0429 22:31:38.649040 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:31:38.64902891 +0000 UTC m=+694.722804762 I0429 22:31:38.681199 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:31:38.681500 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:31:38.68149404 +0000 UTC m=+694.755269892 I0429 22:31:38.699401 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 22:31:38.699729 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 22:31:38.699718465 +0000 UTC m=+694.773494327