I0520 04:08:32.566600 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0520 04:08:32.566906 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0520 04:08:32.567112 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0520 04:08:32.573852 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0520 04:08:32.574377 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0520 04:08:32.574494 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0520 04:08:32.574506 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0520 04:08:32.577310 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0520 04:08:43.149930 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0520 04:08:43.155317 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0520 04:08:43.158308 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0520 04:08:43.158362 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0520 04:08:43.160279 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0520 04:08:43.162087 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0520 04:08:43.162120 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0520 04:08:43.169194 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0520 04:08:43.171521 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0520 04:08:43.173727 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0520 04:08:43.175320 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0520 04:08:43.177140 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0520 04:08:43.178824 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0520 04:08:43.178846 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0520 04:08:43.178884 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0520 04:08:43.180616 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0520 04:08:43.180674 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0520 04:08:43.182392 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0520 04:08:43.188908 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0520 04:08:43.192115 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0520 04:08:43.194380 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0520 04:08:43.196809 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0520 04:08:43.199051 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0520 04:08:43.199116 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0520 04:08:43.200897 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0520 04:08:43.203023 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.203557 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.204044 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.204073 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.204460 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.204482 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.205635 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.208493 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.208871 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:08:43.325830 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0520 04:09:15.987524 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-20 04:09:15.987493395 +0000 UTC m=+43.452939845 I0520 04:09:16.783000 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:16.783314 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-20 04:09:16.783293982 +0000 UTC m=+44.248740472 I0520 04:09:16.783026 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-20 04:09:16.783011855 +0000 UTC m=+44.248458315 I0520 04:09:16.801433 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:16.801635 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-20 04:09:16.801621854 +0000 UTC m=+44.267068334 E0520 04:09:16.809637 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0520 04:09:16.809702 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-20 04:09:16.8096945 +0000 UTC m=+44.275140940 E0520 04:09:16.809726 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0520 04:09:16.821099 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" E0520 04:09:16.824459 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0520 04:09:16.824596 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0520 04:09:16.824656 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0520 04:09:16.824683 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0520 04:09:16.842323 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-79vg2" condition "Approved" to 2026-05-20 04:09:16.842311559 +0000 UTC m=+44.307758009 I0520 04:09:16.856223 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-79vg2" condition "Ready" to 2026-05-20 04:09:16.856213686 +0000 UTC m=+44.321660126 I0520 04:09:16.897429 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:16.897418525 +0000 UTC m=+44.362864975 I0520 04:09:16.920571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:16.921052 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:16.921040361 +0000 UTC m=+44.386486841 I0520 04:09:16.937214 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:21.825675 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:21.825661241 +0000 UTC m=+49.291107721 I0520 04:09:41.100189 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:41.100232 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-05-20 04:09:41.100198188 +0000 UTC m=+68.565644668 I0520 04:09:41.100242 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-05-20 04:09:41.100229799 +0000 UTC m=+68.565676279 I0520 04:09:41.352272 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-20 04:09:41.352256274 +0000 UTC m=+68.817702754 I0520 04:09:41.352798 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:41.352848 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-20 04:09:41.352837299 +0000 UTC m=+68.818283769 I0520 04:09:42.179476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:42.179595 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:42.179642 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-05-20 04:09:42.179633974 +0000 UTC m=+69.645080424 I0520 04:09:42.410758 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:42.410861 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:42.410912 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-20 04:09:42.410903835 +0000 UTC m=+69.876350295 I0520 04:09:44.841146 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:44.841212 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-05-20 04:09:44.841199968 +0000 UTC m=+72.306646448 E0520 04:09:44.841385 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:44.841439 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-05-20 04:09:44.841429124 +0000 UTC m=+72.306875604 I0520 04:09:44.841496 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:44.841522 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-20 04:09:44.841510796 +0000 UTC m=+72.306957266 E0520 04:09:45.722727 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0520 04:09:45.723107 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:45.723167 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0520 04:09:45.723214 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0520 04:09:45.726168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:45.726255 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-20 04:09:45.726247237 +0000 UTC m=+73.191693687 I0520 04:09:46.387976 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-gk4gd" condition "Approved" to 2026-05-20 04:09:46.387960189 +0000 UTC m=+73.853406659 I0520 04:09:47.614482 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-20 04:09:47.6144633 +0000 UTC m=+75.079909750 I0520 04:09:47.615007 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:47.614967 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-69n54" condition "Approved" to 2026-05-20 04:09:47.614943933 +0000 UTC m=+75.080390383 I0520 04:09:47.615069 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-20 04:09:47.615043725 +0000 UTC m=+75.080490175 I0520 04:09:47.615104 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-20 04:09:47.615088496 +0000 UTC m=+75.080534976 I0520 04:09:48.957438 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-gk4gd" condition "Ready" to 2026-05-20 04:09:48.957426246 +0000 UTC m=+76.422872696 E0520 04:09:49.446747 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"libvirt-vnc-ca\" not found" logger="cert-manager.issuers.setup" resource_name="libvirt-vnc" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:49.446803 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-05-20 04:09:49.44679298 +0000 UTC m=+76.912239430 I0520 04:09:49.446853 1 sync.go:62] "Error initializing issuer: secret \"libvirt-vnc-ca\" not found" logger="cert-manager.issuers" resource_name="libvirt-vnc" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:49.450670 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:49.450834 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:49.450868 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-20 04:09:49.450857654 +0000 UTC m=+76.916304114 I0520 04:09:49.451094 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-69n54" condition "Ready" to 2026-05-20 04:09:49.451080239 +0000 UTC m=+76.916526679 I0520 04:09:49.809675 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:49.813243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" E0520 04:09:50.707532 1 controller.go:167] "re-queuing item due to error processing" err="secret \"libvirt-vnc-ca\" not found" logger="cert-manager.issuers" key="openstack/libvirt-vnc" E0520 04:09:50.707694 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"libvirt-vnc-ca\" not found" logger="cert-manager.issuers.setup" resource_name="libvirt-vnc" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:50.707721 1 sync.go:62] "Error initializing issuer: secret \"libvirt-vnc-ca\" not found" logger="cert-manager.issuers" resource_name="libvirt-vnc" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:50.707749 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:09:50.707780 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-20 04:09:50.707770888 +0000 UTC m=+78.173217338 E0520 04:09:50.707754 1 controller.go:167] "re-queuing item due to error processing" err="secret \"libvirt-vnc-ca\" not found" logger="cert-manager.issuers" key="openstack/libvirt-vnc" E0520 04:09:50.723984 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:50.724069 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0520 04:09:50.724117 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0520 04:09:53.326454 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-f6wp4" condition "Approved" to 2026-05-20 04:09:53.326442548 +0000 UTC m=+80.791888998 I0520 04:09:53.649823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" E0520 04:09:54.819983 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers.setup" resource_name="libvirt-api" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:54.820043 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-05-20 04:09:54.820030973 +0000 UTC m=+82.285477453 I0520 04:09:54.820074 1 sync.go:62] "Error initializing issuer: secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers" resource_name="libvirt-api" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:54.821879 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-f6wp4" condition "Ready" to 2026-05-20 04:09:54.82186485 +0000 UTC m=+82.287311320 I0520 04:09:54.822361 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:54.822351283 +0000 UTC m=+82.287797743 I0520 04:09:54.822603 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:54.822590819 +0000 UTC m=+82.288037269 I0520 04:09:55.077604 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:55.686993 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-r4qvl" condition "Approved" to 2026-05-20 04:09:55.686972667 +0000 UTC m=+83.152419137 I0520 04:09:55.707941 1 conditions.go:85] Found status change for Issuer "libvirt-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:55.707923126 +0000 UTC m=+83.173369596 I0520 04:09:56.270196 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:56.270939 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" E0520 04:09:56.271008 1 controller.go:167] "re-queuing item due to error processing" err="secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers" key="openstack/libvirt-api" E0520 04:09:56.271080 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers.setup" resource_name="libvirt-api" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:56.271107 1 sync.go:62] "Error initializing issuer: secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers" resource_name="libvirt-api" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0520 04:09:56.271161 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:56.271154938 +0000 UTC m=+83.736601388 E0520 04:09:56.271193 1 controller.go:167] "re-queuing item due to error processing" err="secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers" key="openstack/libvirt-api" I0520 04:09:56.271393 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:56.271608 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:56.271604239 +0000 UTC m=+83.737050689 I0520 04:09:56.658560 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-r4qvl" condition "Ready" to 2026-05-20 04:09:56.658546012 +0000 UTC m=+84.123992482 I0520 04:09:58.345614 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:09:58.345599179 +0000 UTC m=+85.811045659 I0520 04:09:58.347623 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:58.347687 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:59.383710 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:59.388117 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:59.388528 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:09:59.647440 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:10:01.271582 1 conditions.go:85] Found status change for Issuer "libvirt-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:10:01.271566451 +0000 UTC m=+88.737012931 I0520 04:10:05.085712 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-20 04:10:05.085693448 +0000 UTC m=+92.551139928 I0520 04:10:05.086084 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:10:05.086147 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-20 04:10:05.086136069 +0000 UTC m=+92.551582539 I0520 04:10:05.111406 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-20 04:10:05.111391616 +0000 UTC m=+92.576838086 I0520 04:10:05.226929 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:10:05.227164 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0520 04:10:05.227207 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-20 04:10:05.227194262 +0000 UTC m=+92.692640742 I0520 04:10:05.601726 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9sn7p" condition "Approved" to 2026-05-20 04:10:05.601707643 +0000 UTC m=+93.067154123 I0520 04:10:05.684561 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9sn7p" condition "Ready" to 2026-05-20 04:10:05.684545484 +0000 UTC m=+93.149991944 I0520 04:10:05.760944 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:10:05.76093049 +0000 UTC m=+93.226376950 I0520 04:10:05.801661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:10:05.802032 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:10:05.802023423 +0000 UTC m=+93.267469863 I0520 04:10:05.844020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:10:05.845402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:10:10.725014 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:10:10.725002977 +0000 UTC m=+98.190449417 I0520 04:10:11.007838 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-r4qvl" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:10:11.00782355 +0000 UTC m=+98.473270000 I0520 04:10:11.041974 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:10:11.041958925 +0000 UTC m=+98.507405375 I0520 04:10:11.062590 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:10:11.062972 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 04:10:11.062963522 +0000 UTC m=+98.528409972 I0520 04:10:11.090828 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0520 04:10:11.095144 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" E0520 04:18:00.184161 1 leaderelection.go:369] Failed to update lock: etcdserver: request timed out E0520 04:18:21.894913 1 leaderelection.go:369] Failed to update lock: Put "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": context deadline exceeded I0520 04:18:21.894997 1 leaderelection.go:285] failed to renew lease cert-manager/cert-manager-controller: timed out waiting for the condition E0520 04:18:24.837976 1 leaderelection.go:308] Failed to release lock: Operation cannot be fulfilled on leases.coordination.k8s.io "cert-manager-controller": the object has been modified; please apply your changes to the latest version and try again I0520 04:18:24.838174 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-approver" I0520 04:18:24.838209 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.ingress-shim" I0520 04:18:24.838240 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-revision-manager" I0520 04:18:24.838258 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-metrics" I0520 04:18:24.838289 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-acme" I0520 04:18:24.838159 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-trigger" I0520 04:18:24.838415 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-selfsigned" I0520 04:18:24.838551 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-request-manager" I0520 04:18:24.838548 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-venafi" I0520 04:18:24.838569 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.challenges" I0520 04:18:24.838589 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-readiness" I0520 04:18:24.838591 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-key-manager" I0520 04:18:24.838635 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-ca" I0520 04:18:24.838646 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.orders" I0520 04:18:24.838688 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.issuers" I0520 04:18:24.838603 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.clusterissuers" I0520 04:18:24.838655 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-issuing" I0520 04:18:24.838680 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-vault" E0520 04:18:24.839786 1 main.go:35] "error executing command" err="error starting controller: leader election lost" logger="cert-manager"