I0427 01:25:44.540042 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0427 01:25:44.540242 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0427 01:25:44.540338 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0427 01:25:44.547879 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0427 01:25:44.548248 1 controller.go:156] "cert-manager/controller: starting leader election" I0427 01:25:44.548361 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0427 01:25:44.548479 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0427 01:25:44.551572 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0427 01:25:44.572359 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0427 01:25:44.576588 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0427 01:25:44.578895 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0427 01:25:44.585324 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0427 01:25:44.585351 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0427 01:25:44.585382 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0427 01:25:44.588207 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0427 01:25:44.590918 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0427 01:25:44.593148 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0427 01:25:44.593385 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0427 01:25:44.595676 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0427 01:25:44.597564 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0427 01:25:44.597587 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0427 01:25:44.597596 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0427 01:25:44.597680 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0427 01:25:44.599675 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0427 01:25:44.606846 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0427 01:25:44.610854 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0427 01:25:44.614563 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0427 01:25:44.616554 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0427 01:25:44.618450 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0427 01:25:44.620556 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0427 01:25:44.622334 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0427 01:25:44.624293 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0427 01:25:44.627473 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0427 01:25:57.897779 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-27 01:25:57.89771603 +0000 UTC m=+13.398272889 I0427 01:25:58.657422 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-27 01:25:58.657397393 +0000 UTC m=+14.157954232 I0427 01:25:58.657665 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:25:58.657843 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-27 01:25:58.65783075 +0000 UTC m=+14.158387619 E0427 01:25:58.672894 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 01:25:58.672957 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-27 01:25:58.672948842 +0000 UTC m=+14.173505671 E0427 01:25:58.672986 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 01:25:58.675161 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:25:58.675221 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:25:58.675234 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-27 01:25:58.675231421 +0000 UTC m=+14.175788240 E0427 01:25:58.684382 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0427 01:25:58.684550 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 01:25:58.684667 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 01:25:58.684796 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0427 01:25:58.714106 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:25:58.717433 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hxrsw" condition "Approved" to 2026-04-27 01:25:58.717413245 +0000 UTC m=+14.217970084 I0427 01:25:58.729709 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hxrsw" condition "Ready" to 2026-04-27 01:25:58.729695537 +0000 UTC m=+14.230252376 I0427 01:25:58.755733 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:25:58.755668685 +0000 UTC m=+14.256225524 I0427 01:25:58.771301 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:26:03.685031 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:26:03.685018469 +0000 UTC m=+19.185575328 I0427 01:26:29.182333 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-27 01:26:29.182304332 +0000 UTC m=+44.682861191 I0427 01:26:29.182927 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:26:29.182970 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-27 01:26:29.182962021 +0000 UTC m=+44.683518860 I0427 01:26:29.237431 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-27 01:26:29.237415506 +0000 UTC m=+44.737972375 I0427 01:26:29.240836 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:26:29.240909 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:26:29.241469 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-27 01:26:29.240928629 +0000 UTC m=+44.741485458 I0427 01:26:29.467369 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-n6bgf" condition "Approved" to 2026-04-27 01:26:29.46735812 +0000 UTC m=+44.967914959 I0427 01:26:29.497130 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-n6bgf" condition "Ready" to 2026-04-27 01:26:29.497117461 +0000 UTC m=+44.997674300 I0427 01:26:29.534007 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:26:29.533990471 +0000 UTC m=+45.034547310 I0427 01:26:29.571193 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:26:29.571690 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:26:29.571682845 +0000 UTC m=+45.072239684 I0427 01:26:29.573001 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:26:29.594801 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:26:29.595155 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:26:29.595149002 +0000 UTC m=+45.095705831 I0427 01:29:29.944427 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Ready" to 2026-04-27 01:29:29.944394453 +0000 UTC m=+225.444951302 I0427 01:29:29.944434 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-9.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:29:29.944474 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Issuing" to 2026-04-27 01:29:29.944469634 +0000 UTC m=+225.445026483 I0427 01:29:29.964138 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:29:29.964214 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-9.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:29:29.964243 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Issuing" to 2026-04-27 01:29:29.96423439 +0000 UTC m=+225.464791229 I0427 01:29:30.139474 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:29:30.154235 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-9.nip.io-tls-447jz" condition "Approved" to 2026-04-27 01:29:30.154214335 +0000 UTC m=+225.654771204 I0427 01:29:30.185075 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-9.nip.io-tls-447jz" condition "Ready" to 2026-04-27 01:29:30.18504759 +0000 UTC m=+225.685604429 I0427 01:29:30.227128 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:29:30.227107838 +0000 UTC m=+225.727664697 I0427 01:29:30.245857 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:29:30.246599 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:29:30.246590399 +0000 UTC m=+225.747147238 I0427 01:29:30.263151 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:30:29.680529 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:30:29.680611 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-27 01:30:29.680560773 +0000 UTC m=+285.181117642 I0427 01:30:29.680738 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-27 01:30:29.680706928 +0000 UTC m=+285.181263757 E0427 01:30:29.697519 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 01:30:29.697635 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-27 01:30:29.697568837 +0000 UTC m=+285.198125696 E0427 01:30:29.697792 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 01:30:29.703414 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:30:29.703578 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-27 01:30:29.703568851 +0000 UTC m=+285.204125690 E0427 01:30:29.738870 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0427 01:30:29.739758 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 01:30:29.739900 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 01:30:29.740057 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0427 01:30:29.744011 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:30:29.780627 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jlcxd" condition "Approved" to 2026-04-27 01:30:29.7806117 +0000 UTC m=+285.281168539 I0427 01:30:29.795565 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jlcxd" condition "Ready" to 2026-04-27 01:30:29.795550823 +0000 UTC m=+285.296107652 I0427 01:30:29.821834 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:30:29.821811908 +0000 UTC m=+285.322368767 I0427 01:30:29.845032 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:30:34.739385 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:30:34.739370769 +0000 UTC m=+290.239927608 I0427 01:31:26.852819 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-27 01:31:26.852778187 +0000 UTC m=+342.353335026 I0427 01:31:26.852871 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:26.853957 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-27 01:31:26.853951874 +0000 UTC m=+342.354508703 I0427 01:31:26.854162 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:26.854181 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-27 01:31:26.854177971 +0000 UTC m=+342.354734800 I0427 01:31:26.852918 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-27 01:31:26.852908281 +0000 UTC m=+342.353465110 I0427 01:31:26.862553 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-27 01:31:26.862534673 +0000 UTC m=+342.363091512 I0427 01:31:26.863157 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:26.863214 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-27 01:31:26.863204534 +0000 UTC m=+342.363761363 I0427 01:31:26.911425 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:26.913445 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:26.913629 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-27 01:31:26.913614863 +0000 UTC m=+342.414171732 I0427 01:31:26.913453 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:26.917553 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:26.917630 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-27 01:31:26.917622468 +0000 UTC m=+342.418179307 I0427 01:31:26.914988 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:26.920346 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:26.921875 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-27 01:31:26.921865141 +0000 UTC m=+342.422422020 I0427 01:31:27.376998 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n5gq4" condition "Approved" to 2026-04-27 01:31:27.376967824 +0000 UTC m=+342.877524653 I0427 01:31:27.410754 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n5gq4" condition "Ready" to 2026-04-27 01:31:27.410741569 +0000 UTC m=+342.911298408 I0427 01:31:27.420872 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:27.435462 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rn4kx" condition "Approved" to 2026-04-27 01:31:27.43544056 +0000 UTC m=+342.935997389 I0427 01:31:27.452000 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rn4kx" condition "Ready" to 2026-04-27 01:31:27.451987196 +0000 UTC m=+342.952544025 I0427 01:31:27.457718 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:31:27.457709195 +0000 UTC m=+342.958266024 I0427 01:31:27.491068 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:27.502547 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-zmqhz" condition "Approved" to 2026-04-27 01:31:27.502524613 +0000 UTC m=+343.003081442 I0427 01:31:27.508043 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:27.518856 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:31:27.518841313 +0000 UTC m=+343.019398152 I0427 01:31:27.533145 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:31:27.533132399 +0000 UTC m=+343.033689228 I0427 01:31:27.538283 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-zmqhz" condition "Ready" to 2026-04-27 01:31:27.538263069 +0000 UTC m=+343.038819898 I0427 01:31:27.578897 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:27.579302 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:31:27.57929316 +0000 UTC m=+343.079849989 E0427 01:31:28.080736 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"alertmanager-tls-xswvx\" already exists" key="monitoring/alertmanager-tls" I0427 01:31:28.089118 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:31:28.089095914 +0000 UTC m=+343.589652743 I0427 01:31:28.124652 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:28.277603 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:28.472588 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" E0427 01:31:28.886667 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"grafana-tls-c5r55\" not found" key="monitoring/grafana-tls" I0427 01:31:42.535070 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" condition "Ready" to 2026-04-27 01:31:42.535023872 +0000 UTC m=+358.035580711 I0427 01:31:42.535508 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:42.535534 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" condition "Issuing" to 2026-04-27 01:31:42.535529237 +0000 UTC m=+358.036086076 I0427 01:31:42.752400 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:42.752487 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:31:42.752507 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" condition "Issuing" to 2026-04-27 01:31:42.752499811 +0000 UTC m=+358.253056650 I0427 01:31:44.946716 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-tx8hx-66qd8" condition "Approved" to 2026-04-27 01:31:44.946702842 +0000 UTC m=+360.447259671 I0427 01:31:44.948923 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:31:45.132420 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-tx8hx-66qd8" condition "Ready" to 2026-04-27 01:31:45.13239716 +0000 UTC m=+360.632954009 I0427 01:31:45.309803 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:31:45.309783269 +0000 UTC m=+360.810340138 I0427 01:31:45.403564 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tx8hx-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:32:42.225329 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-27 01:32:42.225308465 +0000 UTC m=+417.725865294 I0427 01:32:42.226086 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:32:42.226106 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-27 01:32:42.226102645 +0000 UTC m=+417.726659474 I0427 01:32:42.250724 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:32:42.250820 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-27 01:32:42.250812646 +0000 UTC m=+417.751369475 I0427 01:32:42.430278 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:32:42.486067 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mgnc4" condition "Approved" to 2026-04-27 01:32:42.486047254 +0000 UTC m=+417.986604093 I0427 01:32:42.513337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mgnc4" condition "Ready" to 2026-04-27 01:32:42.51329235 +0000 UTC m=+418.013849219 I0427 01:32:42.570592 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:32:42.570570841 +0000 UTC m=+418.071127680 I0427 01:32:42.629095 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:32:42.629895 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:32:42.629887303 +0000 UTC m=+418.130444142 I0427 01:32:42.681324 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:35:41.440777 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-27 01:35:41.440725301 +0000 UTC m=+596.941282140 I0427 01:35:41.441253 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:35:41.441401 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-27 01:35:41.441392994 +0000 UTC m=+596.941949843 I0427 01:35:41.457453 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:35:41.457527 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:35:41.457552 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-27 01:35:41.457542788 +0000 UTC m=+596.958099627 I0427 01:35:41.689167 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-r5c6s" condition "Approved" to 2026-04-27 01:35:41.689153695 +0000 UTC m=+597.189710524 I0427 01:35:41.707947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-r5c6s" condition "Ready" to 2026-04-27 01:35:41.70793052 +0000 UTC m=+597.208487369 I0427 01:35:41.737690 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:35:41.737670129 +0000 UTC m=+597.238226958 I0427 01:35:41.751757 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:35:41.752400 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:35:41.752393215 +0000 UTC m=+597.252950044 I0427 01:35:41.771846 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:36:25.345578 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-27 01:36:25.345518797 +0000 UTC m=+640.846075666 I0427 01:36:25.346260 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:36:25.346302 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-27 01:36:25.346291472 +0000 UTC m=+640.846848311 I0427 01:36:25.480307 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:36:25.480465 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 01:36:25.480516 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-27 01:36:25.480510731 +0000 UTC m=+640.981067560 I0427 01:36:26.009885 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:36:26.043977 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nlwc5" condition "Approved" to 2026-04-27 01:36:26.043954718 +0000 UTC m=+641.544511547 I0427 01:36:26.089294 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nlwc5" condition "Ready" to 2026-04-27 01:36:26.089267725 +0000 UTC m=+641.589824554 I0427 01:36:26.173335 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:36:26.173312453 +0000 UTC m=+641.673869282 I0427 01:36:26.208436 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 01:36:26.210764 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 01:36:26.210749461 +0000 UTC m=+641.711306290 I0427 01:36:26.275497 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"