I0319 09:03:06.576619 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0319 09:03:06.576773 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0319 09:03:06.576850 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0319 09:03:06.583302 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0319 09:03:06.583678 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0319 09:03:06.583786 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0319 09:03:06.583796 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0319 09:03:06.586253 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0319 09:03:06.599065 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0319 09:03:06.602426 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0319 09:03:06.605202 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0319 09:03:06.610588 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0319 09:03:06.614894 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0319 09:03:06.617334 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0319 09:03:06.617429 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0319 09:03:06.619449 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0319 09:03:06.621288 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0319 09:03:06.623012 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0319 09:03:06.625903 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0319 09:03:06.625950 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0319 09:03:06.625967 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0319 09:03:06.625980 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0319 09:03:06.626092 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0319 09:03:06.630723 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0319 09:03:06.633340 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0319 09:03:06.633460 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0319 09:03:06.636141 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0319 09:03:06.638411 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0319 09:03:06.640534 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0319 09:03:06.642583 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0319 09:03:06.644279 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0319 09:03:06.646275 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0319 09:03:06.652907 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0319 09:03:06.657336 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.657913 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.658488 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.658574 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.658949 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.659238 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.659381 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.659518 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.660050 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:06.691325 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:03:23.176483 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-19 09:03:23.176446336 +0000 UTC m=+16.631891756 I0319 09:03:23.841478 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-19 09:03:23.841464028 +0000 UTC m=+17.296909438 I0319 09:03:23.841682 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:23.841756 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-19 09:03:23.841744616 +0000 UTC m=+17.297190056 I0319 09:03:23.855577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:23.855684 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-19 09:03:23.855673553 +0000 UTC m=+17.311118973 E0319 09:03:23.855981 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:03:23.856041 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-19 09:03:23.856032233 +0000 UTC m=+17.311477613 E0319 09:03:23.856072 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:03:23.871739 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0319 09:03:23.871832 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:03:23.871857 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:03:23.871883 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0319 09:03:23.873661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:23.895375 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-cmcjq" condition "Approved" to 2026-03-19 09:03:23.895358493 +0000 UTC m=+17.350803913 I0319 09:03:23.909771 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-cmcjq" condition "Ready" to 2026-03-19 09:03:23.909758873 +0000 UTC m=+17.365204263 I0319 09:03:23.938356 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:23.938335907 +0000 UTC m=+17.393781317 I0319 09:03:23.958206 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:28.872961 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:28.872942826 +0000 UTC m=+22.328388246 I0319 09:03:52.406535 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-19 09:03:52.406519809 +0000 UTC m=+45.861965229 I0319 09:03:52.406655 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:52.406688 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-19 09:03:52.406681924 +0000 UTC m=+45.862127324 I0319 09:03:52.423363 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-19 09:03:52.423324138 +0000 UTC m=+45.878769518 I0319 09:03:52.438062 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:52.438211 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:52.438296 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-19 09:03:52.438282904 +0000 UTC m=+45.893728334 I0319 09:03:52.601144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fkkfc" condition "Approved" to 2026-03-19 09:03:52.601128523 +0000 UTC m=+46.056573943 I0319 09:03:52.627377 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fkkfc" condition "Ready" to 2026-03-19 09:03:52.62736542 +0000 UTC m=+46.082810810 I0319 09:03:52.662964 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:52.662950694 +0000 UTC m=+46.118396084 I0319 09:03:52.682348 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:17.520553 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:06:17.520641 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-19 09:06:17.520630743 +0000 UTC m=+190.976076163 I0319 09:06:17.520637 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-19 09:06:17.520620003 +0000 UTC m=+190.976065383 E0319 09:06:17.537113 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:06:17.537198 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-19 09:06:17.53719071 +0000 UTC m=+190.992636100 I0319 09:06:17.537220 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:06:17.540632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:17.540721 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:06:17.540750 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-19 09:06:17.540742486 +0000 UTC m=+190.996187906 E0319 09:06:17.548032 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0319 09:06:17.548211 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:06:17.548279 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0319 09:06:17.548361 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0319 09:06:17.550775 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-19 09:06:17.550764897 +0000 UTC m=+191.006210307 I0319 09:06:17.551313 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:06:17.551360 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-19 09:06:17.551348863 +0000 UTC m=+191.006794333 I0319 09:06:17.568588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:17.568710 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-19 09:06:17.568697552 +0000 UTC m=+191.024142972 I0319 09:06:17.705096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:17.709673 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-cs7ps" condition "Approved" to 2026-03-19 09:06:17.709662528 +0000 UTC m=+191.165107918 I0319 09:06:17.732639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-h6gzp" condition "Approved" to 2026-03-19 09:06:17.732623718 +0000 UTC m=+191.188069128 I0319 09:06:17.736650 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-cs7ps" condition "Ready" to 2026-03-19 09:06:17.736633696 +0000 UTC m=+191.192079106 I0319 09:06:17.749217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-h6gzp" condition "Ready" to 2026-03-19 09:06:17.749206436 +0000 UTC m=+191.204651846 I0319 09:06:17.763404 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:17.763387099 +0000 UTC m=+191.218832519 I0319 09:06:17.782676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:22.549342 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:22.549328621 +0000 UTC m=+196.004774041 I0319 09:06:22.566737 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-h6gzp" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:22.566725831 +0000 UTC m=+196.022171221 I0319 09:06:22.594019 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:22.594003938 +0000 UTC m=+196.049449358 I0319 09:06:22.616477 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:59.035066 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-243.nip.io-tls" condition "Ready" to 2026-03-19 09:08:59.03505065 +0000 UTC m=+352.490496060 I0319 09:08:59.035081 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-243.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:08:59.035483 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-243.nip.io-tls" condition "Issuing" to 2026-03-19 09:08:59.035472681 +0000 UTC m=+352.490918071 I0319 09:08:59.057800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-243.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-243.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:59.057941 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-243.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:08:59.058008 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-243.nip.io-tls" condition "Issuing" to 2026-03-19 09:08:59.05799528 +0000 UTC m=+352.513440700 I0319 09:08:59.283747 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-243.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-243.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:59.292751 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-243.nip.io-tls-srg9q" condition "Approved" to 2026-03-19 09:08:59.292732848 +0000 UTC m=+352.748178268 I0319 09:08:59.311112 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-243.nip.io-tls-srg9q" condition "Ready" to 2026-03-19 09:08:59.311095515 +0000 UTC m=+352.766540935 I0319 09:08:59.335006 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-243.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:59.334994541 +0000 UTC m=+352.790439951 I0319 09:08:59.354936 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-243.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-243.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:59.355264 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-243.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:59.355258358 +0000 UTC m=+352.810703748 I0319 09:08:59.375682 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-243.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-243.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:59.376004 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-243.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:59.375998988 +0000 UTC m=+352.831444378 I0319 09:08:59.379835 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-243.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-243.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:09.406996 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:09.407064 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-19 09:10:09.407047178 +0000 UTC m=+422.862492588 I0319 09:10:09.407065 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:10:09.407037798 +0000 UTC m=+422.862483218 E0319 09:10:09.419388 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:10:09.419430 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-19 09:10:09.419421932 +0000 UTC m=+422.874867322 E0319 09:10:09.419468 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:10:09.426057 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:09.426151 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:10:09.426141313 +0000 UTC m=+422.881586703 E0319 09:10:09.432497 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0319 09:10:09.433216 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:10:09.433331 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:10:09.433388 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0319 09:10:09.441592 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:09.462509 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zfbxn" condition "Approved" to 2026-03-19 09:10:09.462472143 +0000 UTC m=+422.917917563 I0319 09:10:09.476769 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zfbxn" condition "Ready" to 2026-03-19 09:10:09.476751077 +0000 UTC m=+422.932196487 I0319 09:10:09.506155 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:09.50613216 +0000 UTC m=+422.961577550 I0319 09:10:09.525551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:09.576087 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:14.433425 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:14.433407709 +0000 UTC m=+427.888853119 I0319 09:10:51.292384 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:51.292423 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-19 09:10:51.292415424 +0000 UTC m=+464.747860814 I0319 09:10:51.292909 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-19 09:10:51.292902456 +0000 UTC m=+464.748347846 I0319 09:10:51.294546 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-19 09:10:51.29452683 +0000 UTC m=+464.749972220 I0319 09:10:51.295024 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:51.295048 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-19 09:10:51.295044594 +0000 UTC m=+464.750489984 I0319 09:10:51.297858 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:51.297883 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-19 09:10:51.29787861 +0000 UTC m=+464.753323980 I0319 09:10:51.298084 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-19 09:10:51.298080776 +0000 UTC m=+464.753526146 I0319 09:10:51.319612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.319697 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-19 09:10:51.319689749 +0000 UTC m=+464.775135149 I0319 09:10:51.332558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.332751 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:51.332827 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-19 09:10:51.332817723 +0000 UTC m=+464.788263113 I0319 09:10:51.340519 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.340621 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:51.340647 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-19 09:10:51.340640573 +0000 UTC m=+464.796085973 I0319 09:10:51.510019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.519718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rkw7f" condition "Approved" to 2026-03-19 09:10:51.519705871 +0000 UTC m=+464.975151241 I0319 09:10:51.544295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rkw7f" condition "Ready" to 2026-03-19 09:10:51.544280023 +0000 UTC m=+464.999725413 I0319 09:10:51.592234 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:51.592220216 +0000 UTC m=+465.047665606 I0319 09:10:51.608392 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.608756 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:51.608750552 +0000 UTC m=+465.064195932 I0319 09:10:51.635161 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.710656 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.749131 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-nj87r" condition "Approved" to 2026-03-19 09:10:51.749116256 +0000 UTC m=+465.204561646 I0319 09:10:51.766365 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-nj87r" condition "Ready" to 2026-03-19 09:10:51.766354971 +0000 UTC m=+465.221800351 I0319 09:10:51.802215 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:51.802191248 +0000 UTC m=+465.257636638 I0319 09:10:51.878277 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.878771 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:51.878758762 +0000 UTC m=+465.334204162 I0319 09:10:51.927706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:51.981207 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-jfh67" condition "Approved" to 2026-03-19 09:10:51.981192753 +0000 UTC m=+465.436638123 I0319 09:10:52.485162 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-jfh67" condition "Ready" to 2026-03-19 09:10:52.485146252 +0000 UTC m=+465.940591642 I0319 09:10:52.526313 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:52.778080 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:52.77806006 +0000 UTC m=+466.233505460 I0319 09:10:52.877856 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:52.878358 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:52.878350133 +0000 UTC m=+466.333795523 I0319 09:10:53.078278 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:00.948742 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" condition "Ready" to 2026-03-19 09:11:00.948718817 +0000 UTC m=+474.404164217 I0319 09:11:00.949074 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:11:00.949140 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" condition "Issuing" to 2026-03-19 09:11:00.949124168 +0000 UTC m=+474.404569588 I0319 09:11:00.971549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:00.971689 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" condition "Ready" to 2026-03-19 09:11:00.971674985 +0000 UTC m=+474.427120405 I0319 09:11:01.094048 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:01.143780 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-hjpb6-p8jmw" condition "Approved" to 2026-03-19 09:11:01.143767015 +0000 UTC m=+474.599212385 I0319 09:11:01.170867 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-hjpb6-p8jmw" condition "Ready" to 2026-03-19 09:11:01.170855096 +0000 UTC m=+474.626300476 I0319 09:11:01.202604 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:11:01.202582892 +0000 UTC m=+474.658028272 I0319 09:11:01.320801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hjpb6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:32.644098 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-19 09:11:32.644075709 +0000 UTC m=+506.099521099 I0319 09:11:32.644198 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:11:32.644245 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-19 09:11:32.644235673 +0000 UTC m=+506.099681063 I0319 09:11:32.662536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:32.662697 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-19 09:11:32.662688208 +0000 UTC m=+506.118133598 I0319 09:11:32.894141 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:32.930263 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xq5m5" condition "Approved" to 2026-03-19 09:11:32.930240887 +0000 UTC m=+506.385686297 I0319 09:11:32.948904 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xq5m5" condition "Ready" to 2026-03-19 09:11:32.948888728 +0000 UTC m=+506.404334108 I0319 09:11:32.974713 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:11:32.974695064 +0000 UTC m=+506.430140454 I0319 09:11:32.994990 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:33.046370 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:14:58.624893 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-19 09:14:58.624871249 +0000 UTC m=+712.080316649 I0319 09:14:58.625074 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:14:58.625160 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-19 09:14:58.625150156 +0000 UTC m=+712.080595566 I0319 09:14:58.643910 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:14:58.644005 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-19 09:14:58.643997835 +0000 UTC m=+712.099443215 I0319 09:14:58.823857 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:14:58.854498 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-stfbc" condition "Approved" to 2026-03-19 09:14:58.854485842 +0000 UTC m=+712.309931222 I0319 09:14:58.875037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-stfbc" condition "Ready" to 2026-03-19 09:14:58.875020088 +0000 UTC m=+712.330465468 I0319 09:14:58.902750 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:14:58.902732616 +0000 UTC m=+712.358178016 I0319 09:14:58.920226 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:14:58.920743 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:14:58.920729642 +0000 UTC m=+712.376175042 I0319 09:14:58.942033 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:26.081903 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:17:26.081983 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-19 09:17:26.081973489 +0000 UTC m=+859.537418899 I0319 09:17:26.082266 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-19 09:17:26.082213565 +0000 UTC m=+859.537658975 I0319 09:17:26.097773 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:26.097866 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-19 09:17:26.097854562 +0000 UTC m=+859.553299952 I0319 09:17:26.264598 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:26.297234 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-l8b5t" condition "Approved" to 2026-03-19 09:17:26.29722092 +0000 UTC m=+859.752666310 I0319 09:17:26.320149 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-l8b5t" condition "Ready" to 2026-03-19 09:17:26.320138359 +0000 UTC m=+859.775583739 I0319 09:17:26.358402 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:17:26.358360577 +0000 UTC m=+859.813805957 I0319 09:17:26.387541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:26.387910 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:17:26.387902654 +0000 UTC m=+859.843348044 I0319 09:17:26.393110 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:26.417536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:26.421178 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:26.421616 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:17:26.421604472 +0000 UTC m=+859.877049882 I0319 09:18:43.197093 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-19 09:18:43.197069321 +0000 UTC m=+936.652514741 I0319 09:18:43.197169 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:18:43.197267 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-19 09:18:43.197253715 +0000 UTC m=+936.652699135 I0319 09:18:43.220332 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:43.220399 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-19 09:18:43.220392451 +0000 UTC m=+936.675837821 I0319 09:18:43.369716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:43.399032 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-8q5xt" condition "Approved" to 2026-03-19 09:18:43.399022427 +0000 UTC m=+936.854467817 I0319 09:18:43.427184 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-8q5xt" condition "Ready" to 2026-03-19 09:18:43.427176266 +0000 UTC m=+936.882621646 I0319 09:18:43.469365 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:18:43.46935286 +0000 UTC m=+936.924798260 I0319 09:18:43.495693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:43.496046 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:18:43.4960413 +0000 UTC m=+936.951486680 I0319 09:18:43.519910 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:21:53.633365 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-19 09:21:53.63334854 +0000 UTC m=+1127.088793950 I0319 09:21:53.633831 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:21:53.633951 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-19 09:21:53.633940715 +0000 UTC m=+1127.089386135 I0319 09:21:53.678524 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:21:53.678630 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:21:53.678721 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-19 09:21:53.678652941 +0000 UTC m=+1127.134098361 I0319 09:21:53.909170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:21:53.913467 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-qxbqh" condition "Approved" to 2026-03-19 09:21:53.913452978 +0000 UTC m=+1127.368898398 I0319 09:21:53.931738 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-qxbqh" condition "Ready" to 2026-03-19 09:21:53.931731282 +0000 UTC m=+1127.387176662 I0319 09:21:53.969795 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:21:53.969783601 +0000 UTC m=+1127.425228981 I0319 09:21:53.993549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:21:53.993820 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:21:53.993813678 +0000 UTC m=+1127.449259058 I0319 09:21:54.019663 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"