I0505 16:54:38.167060 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 16:54:38.167149 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 16:54:38.167197 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 16:54:38.169373 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 16:54:38.169657 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 16:54:38.169760 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 16:54:38.169770 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 16:54:38.171404 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 16:54:38.193645 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 16:54:38.206757 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 16:54:38.209282 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 16:54:38.211755 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 16:54:38.214167 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 16:54:38.217257 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 16:54:38.217296 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 16:54:38.217309 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 16:54:38.218628 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 16:54:38.220462 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 16:54:38.222147 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 16:54:38.226714 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 16:54:38.232107 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 16:54:38.232167 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 16:54:38.232192 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 16:54:38.234565 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 16:54:38.234638 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 16:54:38.237363 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 16:54:38.239957 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 16:54:38.242434 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 16:54:38.244824 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 16:54:38.247493 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 16:54:38.249917 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 16:54:38.255181 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 16:54:38.260895 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 16:54:38.265536 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.265935 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.267588 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.280399 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.296585 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.311407 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.323505 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.335158 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.348412 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:38.352839 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:54:54.747480 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 16:54:54.747444308 +0000 UTC m=+16.608017062 I0505 16:54:55.468655 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 16:54:55.468640745 +0000 UTC m=+17.329213479 I0505 16:54:55.468905 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:54:55.469136 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 16:54:55.469122618 +0000 UTC m=+17.329695322 E0505 16:54:55.483481 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 16:54:55.483655 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 16:54:55.483646884 +0000 UTC m=+17.344219578 E0505 16:54:55.483708 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 16:54:55.487326 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:54:55.491369 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 16:54:55.49135614 +0000 UTC m=+17.351928864 E0505 16:54:55.495156 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 16:54:55.495295 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:54:55.495325 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:54:55.495361 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 16:54:55.514488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:54:55.535544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-pjgbj" condition "Approved" to 2026-05-05 16:54:55.535532151 +0000 UTC m=+17.396104865 I0505 16:54:55.552464 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-pjgbj" condition "Ready" to 2026-05-05 16:54:55.552443329 +0000 UTC m=+17.413016063 I0505 16:54:55.581549 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:54:55.581534201 +0000 UTC m=+17.442106925 I0505 16:54:55.595394 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:54:55.595769 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:54:55.595759637 +0000 UTC m=+17.456332351 I0505 16:54:55.615399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:55:00.496443 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:55:00.496425381 +0000 UTC m=+22.356998105 I0505 16:55:22.579421 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:55:22.579448 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 16:55:22.579428843 +0000 UTC m=+44.440002017 I0505 16:55:22.579470 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 16:55:22.579461173 +0000 UTC m=+44.440033877 I0505 16:55:22.595121 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 16:55:22.595096474 +0000 UTC m=+44.455669168 I0505 16:55:22.605014 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:55:22.605098 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:55:22.605149 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 16:55:22.605143779 +0000 UTC m=+44.465716473 I0505 16:55:22.995515 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:55:23.004024 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-f5dzm" condition "Approved" to 2026-05-05 16:55:23.004014497 +0000 UTC m=+44.864587211 I0505 16:55:23.034023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-f5dzm" condition "Ready" to 2026-05-05 16:55:23.034008552 +0000 UTC m=+44.894581276 I0505 16:55:23.064668 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:55:23.0646545 +0000 UTC m=+44.925227194 I0505 16:55:23.086005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:00:20.629771 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-74.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:00:20.629863 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-74.nip.io-tls" condition "Issuing" to 2026-05-05 17:00:20.629854141 +0000 UTC m=+342.490426875 I0505 17:00:20.629762 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-74.nip.io-tls" condition "Ready" to 2026-05-05 17:00:20.629721793 +0000 UTC m=+342.490294527 I0505 17:00:20.652014 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:00:20.652099 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-74.nip.io-tls" condition "Ready" to 2026-05-05 17:00:20.652088444 +0000 UTC m=+342.512661178 I0505 17:00:20.746043 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:00:20.823358 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-74.nip.io-tls-4vp4w" condition "Approved" to 2026-05-05 17:00:20.823343222 +0000 UTC m=+342.683915946 I0505 17:00:20.852988 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-74.nip.io-tls-4vp4w" condition "Ready" to 2026-05-05 17:00:20.852971417 +0000 UTC m=+342.713544151 I0505 17:00:20.880262 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-74.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:00:20.880246089 +0000 UTC m=+342.740818803 I0505 17:00:20.906077 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:00:20.906932 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-74.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:00:20.906909242 +0000 UTC m=+342.767481946 I0505 17:00:20.923982 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:01:24.936936 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 17:01:24.936909858 +0000 UTC m=+406.797482562 I0505 17:01:24.936972 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:01:24.937244 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 17:01:24.937234304 +0000 UTC m=+406.797807018 E0505 17:01:24.949998 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 17:01:24.950060 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 17:01:24.950050754 +0000 UTC m=+406.810623458 E0505 17:01:24.950117 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 17:01:24.951335 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:01:24.951428 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:01:24.951457 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 17:01:24.951449657 +0000 UTC m=+406.812022381 E0505 17:01:24.960268 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 17:01:24.960446 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 17:01:24.960549 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 17:01:24.960665 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 17:01:24.991706 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hmmhv" condition "Approved" to 2026-05-05 17:01:24.991695229 +0000 UTC m=+406.852267933 I0505 17:01:24.992625 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:01:25.007927 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hmmhv" condition "Ready" to 2026-05-05 17:01:25.007915141 +0000 UTC m=+406.868487845 I0505 17:01:25.033634 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:01:25.033620359 +0000 UTC m=+406.894193083 I0505 17:01:25.051973 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:01:25.092543 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:01:29.961712 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:01:29.961690453 +0000 UTC m=+411.822263177 I0505 17:02:09.251207 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:02:09.251286 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 17:02:09.251256429 +0000 UTC m=+451.111829123 I0505 17:02:09.251670 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 17:02:09.251665933 +0000 UTC m=+451.112238627 I0505 17:02:09.269175 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 17:02:09.269162776 +0000 UTC m=+451.129735460 I0505 17:02:09.269474 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:02:09.269532 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 17:02:09.26952812 +0000 UTC m=+451.130100814 I0505 17:02:09.275437 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:02:09.275470 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 17:02:09.275460398 +0000 UTC m=+451.136033102 I0505 17:02:09.275980 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 17:02:09.275974695 +0000 UTC m=+451.136547399 I0505 17:02:09.316677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:09.316695 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:09.316764 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:02:09.316768 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 17:02:09.316763595 +0000 UTC m=+451.177336289 I0505 17:02:09.316791 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 17:02:09.316785366 +0000 UTC m=+451.177358070 I0505 17:02:09.319240 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:09.319387 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 17:02:09.319378437 +0000 UTC m=+451.179951141 I0505 17:02:09.487198 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:09.532531 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tdzn2" condition "Approved" to 2026-05-05 17:02:09.532523081 +0000 UTC m=+451.393095775 I0505 17:02:09.562273 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tdzn2" condition "Ready" to 2026-05-05 17:02:09.562264904 +0000 UTC m=+451.422837598 I0505 17:02:09.610595 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:02:09.610581118 +0000 UTC m=+451.471153812 I0505 17:02:09.634479 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:09.661342 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:09.696927 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:09.699616 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gbh5f" condition "Approved" to 2026-05-05 17:02:09.699606119 +0000 UTC m=+451.560178813 I0505 17:02:09.732402 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9tptv" condition "Approved" to 2026-05-05 17:02:09.732381439 +0000 UTC m=+451.592954133 I0505 17:02:09.733372 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gbh5f" condition "Ready" to 2026-05-05 17:02:09.733366803 +0000 UTC m=+451.593939497 I0505 17:02:09.844624 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9tptv" condition "Ready" to 2026-05-05 17:02:09.844614394 +0000 UTC m=+451.705187078 I0505 17:02:10.289213 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:02:10.289199152 +0000 UTC m=+452.149771886 I0505 17:02:10.366862 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:02:10.366853052 +0000 UTC m=+452.227425746 I0505 17:02:10.493984 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:10.596334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:10.607473 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:02:10.607458386 +0000 UTC m=+452.468031080 I0505 17:02:10.887096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:11.139752 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:17.697766 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" condition "Ready" to 2026-05-05 17:02:17.697735724 +0000 UTC m=+459.558308448 I0505 17:02:17.697784 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:02:17.698081 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" condition "Issuing" to 2026-05-05 17:02:17.698071035 +0000 UTC m=+459.558643759 I0505 17:02:17.717532 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:17.717603 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" condition "Ready" to 2026-05-05 17:02:17.717594013 +0000 UTC m=+459.578166717 I0505 17:02:18.096619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:18.123882 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kmqr9-g4zfn" condition "Approved" to 2026-05-05 17:02:18.123870015 +0000 UTC m=+459.984442709 I0505 17:02:18.143272 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kmqr9-g4zfn" condition "Ready" to 2026-05-05 17:02:18.143261916 +0000 UTC m=+460.003834620 I0505 17:02:18.180401 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:02:18.180387081 +0000 UTC m=+460.040959785 I0505 17:02:18.204248 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kmqr9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:31.400522 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:02:31.400553 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 17:02:31.400544139 +0000 UTC m=+473.261116823 I0505 17:02:31.401269 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 17:02:31.401256822 +0000 UTC m=+473.261829516 I0505 17:02:31.415948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:31.416005 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:02:31.416023 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 17:02:31.416016857 +0000 UTC m=+473.276589561 I0505 17:02:31.659668 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mmxvv" condition "Approved" to 2026-05-05 17:02:31.659651544 +0000 UTC m=+473.520224258 I0505 17:02:31.678715 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mmxvv" condition "Ready" to 2026-05-05 17:02:31.678704955 +0000 UTC m=+473.539277659 I0505 17:02:31.711025 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:02:31.711002612 +0000 UTC m=+473.571575326 I0505 17:02:31.734148 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:02:31.735294 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:02:31.735282648 +0000 UTC m=+473.595855342 I0505 17:02:31.760700 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:05:57.457151 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 17:05:57.457106909 +0000 UTC m=+679.317679643 I0505 17:05:57.457499 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:05:57.457533 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 17:05:57.457526255 +0000 UTC m=+679.318098979 I0505 17:05:57.474064 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:05:57.474124 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:05:57.474239 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 17:05:57.47423265 +0000 UTC m=+679.334805354 I0505 17:05:57.591907 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-86lvl" condition "Approved" to 2026-05-05 17:05:57.59188839 +0000 UTC m=+679.452461094 I0505 17:05:57.610748 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-86lvl" condition "Ready" to 2026-05-05 17:05:57.61073846 +0000 UTC m=+679.471311144 I0505 17:05:57.638291 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:05:57.638279472 +0000 UTC m=+679.498852176 I0505 17:05:57.659399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:05:57.659906 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:05:57.659899936 +0000 UTC m=+679.520472640 I0505 17:05:57.682968 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:06:37.720548 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:06:37.720593 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 17:06:37.720587605 +0000 UTC m=+719.581160299 I0505 17:06:37.720952 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 17:06:37.72094763 +0000 UTC m=+719.581520324 I0505 17:06:37.738415 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:06:37.738461 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 17:06:37.738455519 +0000 UTC m=+719.599028233 I0505 17:06:38.061904 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:06:38.092844 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-wmvxn" condition "Approved" to 2026-05-05 17:06:38.092834255 +0000 UTC m=+719.953406959 I0505 17:06:38.114952 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-wmvxn" condition "Ready" to 2026-05-05 17:06:38.114940525 +0000 UTC m=+719.975513229 I0505 17:06:38.145804 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:06:38.14579114 +0000 UTC m=+720.006363844 I0505 17:06:38.173365 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:06:38.173646 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:06:38.173640618 +0000 UTC m=+720.034213312 I0505 17:06:38.190774 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:06:38.192086 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:06:38.192075451 +0000 UTC m=+720.052648155