I0408 22:57:03.670427 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0408 22:57:03.670571 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0408 22:57:03.670634 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0408 22:57:03.675360 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0408 22:57:03.675764 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0408 22:57:03.675879 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0408 22:57:03.675913 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0408 22:57:03.678273 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0408 22:57:03.690782 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0408 22:57:03.694899 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0408 22:57:03.697477 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0408 22:57:03.697570 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0408 22:57:03.703227 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0408 22:57:03.705636 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0408 22:57:03.707981 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0408 22:57:03.710730 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0408 22:57:03.713211 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0408 22:57:03.714987 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0408 22:57:03.717185 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0408 22:57:03.722550 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0408 22:57:03.725810 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0408 22:57:03.728199 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0408 22:57:03.730311 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0408 22:57:03.730337 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0408 22:57:03.730342 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0408 22:57:03.732527 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0408 22:57:03.734221 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0408 22:57:03.735798 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0408 22:57:03.735812 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0408 22:57:03.735819 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0408 22:57:03.735872 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0408 22:57:03.737533 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0408 22:57:03.739204 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0408 22:57:03.741691 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.744448 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.744846 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.744888 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.761601 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.777443 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.792032 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.824153 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.826103 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:03.837881 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 22:57:13.599375 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-08 22:57:13.599354143 +0000 UTC m=+9.960619717 I0408 22:57:14.277176 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-08 22:57:14.277163081 +0000 UTC m=+10.638428645 I0408 22:57:14.278316 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 22:57:14.278348 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 22:57:14.278341011 +0000 UTC m=+10.639606575 E0408 22:57:14.291092 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 22:57:14.291187 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-08 22:57:14.291175217 +0000 UTC m=+10.652441151 E0408 22:57:14.291220 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 22:57:14.294298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:57:14.294386 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 22:57:14.294409 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 22:57:14.294402347 +0000 UTC m=+10.655667921 E0408 22:57:14.303010 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0408 22:57:14.303146 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 22:57:14.303220 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 22:57:14.303262 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0408 22:57:14.330559 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-s2w65" condition "Approved" to 2026-04-08 22:57:14.330552238 +0000 UTC m=+10.691817782 I0408 22:57:14.340670 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-s2w65" condition "Ready" to 2026-04-08 22:57:14.340661108 +0000 UTC m=+10.701926652 I0408 22:57:14.361522 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:57:14.361507654 +0000 UTC m=+10.722773228 I0408 22:57:14.380645 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:57:19.304043 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:57:19.304030949 +0000 UTC m=+15.665296513 I0408 22:57:40.133956 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 22:57:40.133906686 +0000 UTC m=+36.495172260 I0408 22:57:40.134042 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 22:57:40.134111 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-08 22:57:40.134103831 +0000 UTC m=+36.495369375 I0408 22:57:40.145222 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-08 22:57:40.145209352 +0000 UTC m=+36.506474906 I0408 22:57:40.154489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:57:40.154563 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 22:57:40.154608 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-08 22:57:40.154602909 +0000 UTC m=+36.515868453 I0408 22:57:40.353138 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-r5s9w" condition "Approved" to 2026-04-08 22:57:40.353125336 +0000 UTC m=+36.714390900 I0408 22:57:40.382304 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-r5s9w" condition "Ready" to 2026-04-08 22:57:40.382291182 +0000 UTC m=+36.743556736 I0408 22:57:40.410063 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:57:40.410051964 +0000 UTC m=+36.771317498 I0408 22:57:40.428086 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:57:40.428581 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:57:40.428571882 +0000 UTC m=+36.789837456 I0408 22:57:40.445212 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:57:40.449943 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:30.067523 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-08 22:59:30.067477017 +0000 UTC m=+146.428742571 I0408 22:59:30.067662 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 22:59:30.067741 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-08 22:59:30.067730464 +0000 UTC m=+146.428996038 E0408 22:59:30.083397 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 22:59:30.083440 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-08 22:59:30.083432311 +0000 UTC m=+146.444697855 I0408 22:59:30.083479 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 22:59:30.084798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:30.084858 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 22:59:30.084879 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-08 22:59:30.084874456 +0000 UTC m=+146.446140000 E0408 22:59:30.095288 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0408 22:59:30.095472 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 22:59:30.095505 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0408 22:59:30.095538 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0408 22:59:30.098900 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 22:59:30.098899 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-08 22:59:30.098881401 +0000 UTC m=+146.460146945 I0408 22:59:30.098932 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-08 22:59:30.098924832 +0000 UTC m=+146.460190376 I0408 22:59:30.118433 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:30.118551 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-08 22:59:30.118539546 +0000 UTC m=+146.479805090 I0408 22:59:30.284640 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-x588t" condition "Approved" to 2026-04-08 22:59:30.284625961 +0000 UTC m=+146.645891525 I0408 22:59:30.315836 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-x588t" condition "Ready" to 2026-04-08 22:59:30.31582613 +0000 UTC m=+146.677091664 I0408 22:59:30.344208 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:30.344197829 +0000 UTC m=+146.705463373 I0408 22:59:30.362630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:30.362944 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:30.362937182 +0000 UTC m=+146.724202726 I0408 22:59:30.380983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:30.381302 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:30.381293104 +0000 UTC m=+146.742558648 I0408 22:59:30.384481 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:30.423474 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:30.451743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-nhmjh" condition "Approved" to 2026-04-08 22:59:30.45172879 +0000 UTC m=+146.812994364 I0408 22:59:30.506398 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-nhmjh" condition "Ready" to 2026-04-08 22:59:30.506379928 +0000 UTC m=+146.867645492 I0408 22:59:35.096607 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:35.096593697 +0000 UTC m=+151.457859271 I0408 22:59:35.110347 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-nhmjh" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:35.110336067 +0000 UTC m=+151.471601611 I0408 22:59:35.142152 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:35.142134809 +0000 UTC m=+151.503400413 I0408 22:59:35.161096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:35.161504 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:35.161495932 +0000 UTC m=+151.522761476 I0408 22:59:35.178653 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 22:59:35.178945 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 22:59:35.17893646 +0000 UTC m=+151.540202004 I0408 22:59:35.183210 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:02:01.949904 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-36.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:02:01.949952 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-36.nip.io-tls" condition "Issuing" to 2026-04-08 23:02:01.949943283 +0000 UTC m=+298.311208817 I0408 23:02:01.950186 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-36.nip.io-tls" condition "Ready" to 2026-04-08 23:02:01.950165599 +0000 UTC m=+298.311431133 I0408 23:02:01.970787 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-36.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-36.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:02:01.970853 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-36.nip.io-tls" condition "Ready" to 2026-04-08 23:02:01.970843086 +0000 UTC m=+298.332108630 I0408 23:02:02.195574 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-36.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-36.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:02:02.225417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-36.nip.io-tls-krrm2" condition "Approved" to 2026-04-08 23:02:02.225401967 +0000 UTC m=+298.586667541 I0408 23:02:02.243135 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-36.nip.io-tls-krrm2" condition "Ready" to 2026-04-08 23:02:02.243124123 +0000 UTC m=+298.604389647 I0408 23:02:02.270689 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-36.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:02:02.270675115 +0000 UTC m=+298.631940649 I0408 23:02:02.300777 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-36.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-36.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:14.039915 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:03:14.039919 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-08 23:03:14.039888909 +0000 UTC m=+370.401154473 I0408 23:03:14.039962 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-08 23:03:14.039951921 +0000 UTC m=+370.401217465 E0408 23:03:14.052097 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 23:03:14.052154 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-08 23:03:14.052148804 +0000 UTC m=+370.413414348 E0408 23:03:14.052174 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 23:03:14.053421 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:14.053596 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:03:14.053749 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-08 23:03:14.053709972 +0000 UTC m=+370.414975546 E0408 23:03:14.061861 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0408 23:03:14.061977 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 23:03:14.062019 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 23:03:14.062165 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0408 23:03:14.090530 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:14.094711 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-crdzm" condition "Approved" to 2026-04-08 23:03:14.094694636 +0000 UTC m=+370.455960200 I0408 23:03:14.108320 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-crdzm" condition "Ready" to 2026-04-08 23:03:14.108308103 +0000 UTC m=+370.469573677 I0408 23:03:14.131196 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:14.131181933 +0000 UTC m=+370.492447477 I0408 23:03:14.149664 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:14.150033 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:14.150025416 +0000 UTC m=+370.511290960 I0408 23:03:14.164234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:14.164605 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:19.062321 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:19.062311252 +0000 UTC m=+375.423576796 I0408 23:03:55.820488 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-08 23:03:55.820477362 +0000 UTC m=+412.181742906 I0408 23:03:55.821523 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:03:55.821574 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-08 23:03:55.821569759 +0000 UTC m=+412.182835293 I0408 23:03:55.843073 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:03:55.843095 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-08 23:03:55.84281278 +0000 UTC m=+412.204078304 I0408 23:03:55.843132 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-08 23:03:55.843123368 +0000 UTC m=+412.204388902 I0408 23:03:55.844209 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-08 23:03:55.844204094 +0000 UTC m=+412.205469628 I0408 23:03:55.844351 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:03:55.844381 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-08 23:03:55.844375978 +0000 UTC m=+412.205641522 I0408 23:03:55.858153 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:55.858243 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:03:55.858272 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-08 23:03:55.858264913 +0000 UTC m=+412.219530447 I0408 23:03:55.863947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:55.864005 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-08 23:03:55.863999331 +0000 UTC m=+412.225264865 I0408 23:03:55.865233 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:55.865270 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-08 23:03:55.865266621 +0000 UTC m=+412.226532155 I0408 23:03:56.047533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.054053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.061295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8n9hk" condition "Approved" to 2026-04-08 23:03:56.061279596 +0000 UTC m=+412.422545160 I0408 23:03:56.075781 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-8c8gl" condition "Approved" to 2026-04-08 23:03:56.075765365 +0000 UTC m=+412.437030939 I0408 23:03:56.082772 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8n9hk" condition "Ready" to 2026-04-08 23:03:56.082761484 +0000 UTC m=+412.444027028 I0408 23:03:56.090705 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-8c8gl" condition "Ready" to 2026-04-08 23:03:56.090698196 +0000 UTC m=+412.451963740 I0408 23:03:56.125589 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:56.125576836 +0000 UTC m=+412.486842380 I0408 23:03:56.125634 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:56.125624167 +0000 UTC m=+412.486889701 I0408 23:03:56.140484 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.140718 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:56.140711862 +0000 UTC m=+412.501977396 I0408 23:03:56.160369 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.160723 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:56.160714844 +0000 UTC m=+412.521980368 I0408 23:03:56.264354 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.360274 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.514498 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.710425 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:56.813430 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-sfdnh" condition "Approved" to 2026-04-08 23:03:56.813412826 +0000 UTC m=+413.174678390 I0408 23:03:57.017144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-sfdnh" condition "Ready" to 2026-04-08 23:03:57.017129546 +0000 UTC m=+413.378395110 I0408 23:03:57.410357 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:57.410338834 +0000 UTC m=+413.771604398 I0408 23:03:57.508329 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:57.508724 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:03:57.508713265 +0000 UTC m=+413.869978809 I0408 23:03:57.758039 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:03:57.808179 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:04:04.155721 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" condition "Ready" to 2026-04-08 23:04:04.155706231 +0000 UTC m=+420.516971775 I0408 23:04:04.156159 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:04:04.156179 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" condition "Issuing" to 2026-04-08 23:04:04.156174852 +0000 UTC m=+420.517440396 I0408 23:04:04.170207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:04:04.170311 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:04:04.170387 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" condition "Issuing" to 2026-04-08 23:04:04.170373434 +0000 UTC m=+420.531639008 I0408 23:04:04.407683 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-hlhbc-fs4ls" condition "Approved" to 2026-04-08 23:04:04.407670244 +0000 UTC m=+420.768935798 I0408 23:04:04.428740 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-hlhbc-fs4ls" condition "Ready" to 2026-04-08 23:04:04.428731981 +0000 UTC m=+420.789997515 I0408 23:04:04.460993 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:04:04.460981999 +0000 UTC m=+420.822247543 I0408 23:04:04.483158 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:04:04.483448 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:04:04.483438331 +0000 UTC m=+420.844703875 I0408 23:04:04.505700 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:04:04.505971 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:04:04.505964283 +0000 UTC m=+420.867229817 I0408 23:04:04.510012 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hlhbc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:04:27.155650 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-08 23:04:27.155625831 +0000 UTC m=+443.516891395 I0408 23:04:27.156094 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:04:27.156123 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 23:04:27.156116983 +0000 UTC m=+443.517382547 I0408 23:04:27.170447 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:04:27.170499 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:04:27.170512 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 23:04:27.170507909 +0000 UTC m=+443.531773453 I0408 23:04:27.482808 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-bq7sj" condition "Approved" to 2026-04-08 23:04:27.482789997 +0000 UTC m=+443.844055571 I0408 23:04:27.510353 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-bq7sj" condition "Ready" to 2026-04-08 23:04:27.51034278 +0000 UTC m=+443.871608324 I0408 23:04:27.544338 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:04:27.54432389 +0000 UTC m=+443.905589434 I0408 23:04:27.565881 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:04:27.566155 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:04:27.566150385 +0000 UTC m=+443.927415909 I0408 23:04:27.595184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:07:48.014097 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-08 23:07:48.014077521 +0000 UTC m=+644.375343055 I0408 23:07:48.014302 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:07:48.014375 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-08 23:07:48.014361748 +0000 UTC m=+644.375627292 I0408 23:07:48.029402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:07:48.029495 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:07:48.029515 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-08 23:07:48.02950871 +0000 UTC m=+644.390774254 I0408 23:07:48.298502 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vm2rw" condition "Approved" to 2026-04-08 23:07:48.29849276 +0000 UTC m=+644.659758294 I0408 23:07:48.323906 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vm2rw" condition "Ready" to 2026-04-08 23:07:48.323896468 +0000 UTC m=+644.685162002 I0408 23:07:48.356451 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:07:48.356439537 +0000 UTC m=+644.717705071 I0408 23:07:48.382501 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:07:48.382805 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:07:48.382798737 +0000 UTC m=+644.744064281 I0408 23:07:48.396667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:07:48.399412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:10:19.453320 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:10:19.453428 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-08 23:10:19.453398145 +0000 UTC m=+795.814663709 I0408 23:10:19.453537 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-08 23:10:19.453519258 +0000 UTC m=+795.814784832 I0408 23:10:19.473230 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:10:19.473354 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:10:19.473389 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-08 23:10:19.473378886 +0000 UTC m=+795.834644430 I0408 23:10:19.804018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:10:19.805186 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-zfldm" condition "Approved" to 2026-04-08 23:10:19.805165341 +0000 UTC m=+796.166430885 I0408 23:10:19.830391 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-zfldm" condition "Ready" to 2026-04-08 23:10:19.830373807 +0000 UTC m=+796.191639371 I0408 23:10:19.859187 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:10:19.85917107 +0000 UTC m=+796.220436614 I0408 23:10:19.884151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:11:31.976541 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:11:31.976628 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-08 23:11:31.976617679 +0000 UTC m=+868.337883243 I0408 23:11:31.976823 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-08 23:11:31.976792364 +0000 UTC m=+868.338057958 I0408 23:11:31.999423 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:11:31.999547 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-08 23:11:31.99953684 +0000 UTC m=+868.360802414 I0408 23:11:32.176497 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:11:32.215479 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-j7kj2" condition "Approved" to 2026-04-08 23:11:32.215468391 +0000 UTC m=+868.576733925 I0408 23:11:32.241410 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-j7kj2" condition "Ready" to 2026-04-08 23:11:32.241393635 +0000 UTC m=+868.602659179 I0408 23:11:32.275260 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:11:32.275242319 +0000 UTC m=+868.636507863 I0408 23:11:32.301444 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:11:32.302033 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:11:32.302024363 +0000 UTC m=+868.663289897 I0408 23:11:32.324733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:14:39.865738 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-08 23:14:39.865719074 +0000 UTC m=+1056.226984638 I0408 23:14:39.866374 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 23:14:39.866402 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-08 23:14:39.866395571 +0000 UTC m=+1056.227661135 I0408 23:14:39.882686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:14:39.882772 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-08 23:14:39.882765649 +0000 UTC m=+1056.244031213 I0408 23:14:39.968026 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:14:40.000735 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-8fm8j" condition "Approved" to 2026-04-08 23:14:40.000720546 +0000 UTC m=+1056.361986090 I0408 23:14:40.020705 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-8fm8j" condition "Ready" to 2026-04-08 23:14:40.020693222 +0000 UTC m=+1056.381958766 I0408 23:14:40.053504 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:14:40.053482661 +0000 UTC m=+1056.414748225 I0408 23:14:40.072894 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 23:14:40.073145 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 23:14:40.073137348 +0000 UTC m=+1056.434402892 I0408 23:14:40.095714 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"