I0420 05:50:58.003099 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0420 05:50:58.003260 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0420 05:50:58.003416 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0420 05:50:58.008148 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0420 05:50:58.008632 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0420 05:50:58.008784 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0420 05:50:58.008835 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0420 05:50:58.011304 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0420 05:50:58.027813 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0420 05:50:58.028078 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0420 05:50:58.028122 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0420 05:50:58.031154 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0420 05:50:58.037167 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0420 05:50:58.039298 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0420 05:50:58.041072 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0420 05:50:58.041129 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0420 05:50:58.043013 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0420 05:50:58.044883 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0420 05:50:58.047562 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0420 05:50:58.047842 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0420 05:50:58.053612 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0420 05:50:58.053748 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0420 05:50:58.056296 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0420 05:50:58.058140 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0420 05:50:58.060011 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0420 05:50:58.061811 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0420 05:50:58.063926 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0420 05:50:58.065630 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0420 05:50:58.070247 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0420 05:50:58.073339 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0420 05:50:58.076884 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0420 05:50:58.076942 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0420 05:50:58.079800 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0420 05:50:58.083539 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.083742 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.084036 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.085082 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.085550 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.085879 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.086543 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.086930 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.087749 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:50:58.180123 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:51:07.894164 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-20 05:51:07.894131224 +0000 UTC m=+9.928250479 I0420 05:51:08.627511 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:51:08.627578 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 05:51:08.627567998 +0000 UTC m=+10.661687283 I0420 05:51:08.627834 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 05:51:08.627809753 +0000 UTC m=+10.661929038 E0420 05:51:08.646618 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:51:08.646763 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-20 05:51:08.64671065 +0000 UTC m=+10.680829945 E0420 05:51:08.646812 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:51:08.647118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:51:08.647220 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 05:51:08.64721466 +0000 UTC m=+10.681333925 E0420 05:51:08.659739 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0420 05:51:08.659944 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:51:08.660024 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:51:08.660105 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0420 05:51:08.662870 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:51:08.663101 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 05:51:08.663046271 +0000 UTC m=+10.697165566 I0420 05:51:08.667613 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:51:08.673227 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hr49n" condition "Approved" to 2026-04-20 05:51:08.673213259 +0000 UTC m=+10.707332534 I0420 05:51:08.674710 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 05:51:08.674695062 +0000 UTC m=+10.708814367 I0420 05:51:08.685822 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:51:08.687417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hr49n" condition "Ready" to 2026-04-20 05:51:08.687401254 +0000 UTC m=+10.721520519 I0420 05:51:08.712556 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:51:08.712538135 +0000 UTC m=+10.746657420 I0420 05:51:08.733589 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:51:13.660849 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:51:13.660829899 +0000 UTC m=+15.694949154 I0420 05:51:33.092441 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-20 05:51:33.092418103 +0000 UTC m=+35.126537398 I0420 05:51:33.092514 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:51:33.092817 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 05:51:33.092777331 +0000 UTC m=+35.126896596 I0420 05:51:33.103846 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-20 05:51:33.103831018 +0000 UTC m=+35.137950283 I0420 05:51:33.118200 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:51:33.118492 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:51:33.118630 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 05:51:33.118617345 +0000 UTC m=+35.152736620 I0420 05:51:33.324384 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:51:33.333802 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gqgjq" condition "Approved" to 2026-04-20 05:51:33.333756517 +0000 UTC m=+35.367875842 I0420 05:51:33.365047 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gqgjq" condition "Ready" to 2026-04-20 05:51:33.365027197 +0000 UTC m=+35.399146492 I0420 05:51:33.397825 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:51:33.39780059 +0000 UTC m=+35.431919885 I0420 05:51:33.425483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:56:00.787076 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready" to 2026-04-20 05:56:00.786934339 +0000 UTC m=+302.821053624 I0420 05:56:00.787492 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-242.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:56:00.787540 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Issuing" to 2026-04-20 05:56:00.787532072 +0000 UTC m=+302.821651357 I0420 05:56:00.805174 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:56:00.805360 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready" to 2026-04-20 05:56:00.80534655 +0000 UTC m=+302.839465815 I0420 05:56:01.006120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:56:01.038478 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-242.nip.io-tls-wzh7l" condition "Approved" to 2026-04-20 05:56:01.038463409 +0000 UTC m=+303.072582694 I0420 05:56:01.070006 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-242.nip.io-tls-wzh7l" condition "Ready" to 2026-04-20 05:56:01.0699867 +0000 UTC m=+303.104105995 I0420 05:56:01.100755 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:56:01.100731315 +0000 UTC m=+303.134850600 I0420 05:56:01.125731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:56:01.126387 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:56:01.12637546 +0000 UTC m=+303.160494755 I0420 05:56:01.142427 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:56:01.143729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:56:01.144047 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:56:01.144040875 +0000 UTC m=+303.178160140 I0420 05:57:09.360609 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-20 05:57:09.360579719 +0000 UTC m=+371.394698984 I0420 05:57:09.360801 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:09.360861 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 05:57:09.360849415 +0000 UTC m=+371.394968690 E0420 05:57:09.375234 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:57:09.375300 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-20 05:57:09.375289763 +0000 UTC m=+371.409409058 E0420 05:57:09.375368 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:57:09.378459 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:09.378550 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:09.378583 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 05:57:09.378576894 +0000 UTC m=+371.412696179 E0420 05:57:09.386161 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0420 05:57:09.386257 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:57:09.386298 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:57:09.386341 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0420 05:57:09.415577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:09.415644 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-cgzjd" condition "Approved" to 2026-04-20 05:57:09.415615296 +0000 UTC m=+371.449734591 I0420 05:57:09.428677 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-cgzjd" condition "Ready" to 2026-04-20 05:57:09.428665634 +0000 UTC m=+371.462784899 I0420 05:57:09.452687 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:09.452670028 +0000 UTC m=+371.486789323 I0420 05:57:09.470950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:09.515711 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:14.387224 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:14.387207332 +0000 UTC m=+376.421326627 I0420 05:57:54.159923 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 05:57:54.159907533 +0000 UTC m=+416.194026808 I0420 05:57:54.160311 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:54.160341 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-20 05:57:54.160337492 +0000 UTC m=+416.194456747 I0420 05:57:54.170123 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:54.170163 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 05:57:54.170156072 +0000 UTC m=+416.204275327 I0420 05:57:54.170784 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-20 05:57:54.170778065 +0000 UTC m=+416.204897320 I0420 05:57:54.177674 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:54.177708 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 05:57:54.177701773 +0000 UTC m=+416.211821028 I0420 05:57:54.178454 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-20 05:57:54.17843636 +0000 UTC m=+416.212555615 I0420 05:57:54.197909 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.198054 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:54.198100 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 05:57:54.19809241 +0000 UTC m=+416.232211665 I0420 05:57:54.198046 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.199173 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 05:57:54.199167953 +0000 UTC m=+416.233287198 I0420 05:57:54.201808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.201861 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:54.201881 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 05:57:54.201876531 +0000 UTC m=+416.235995786 I0420 05:57:54.447208 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.461434 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hxf9z" condition "Approved" to 2026-04-20 05:57:54.461421126 +0000 UTC m=+416.495540391 I0420 05:57:54.475375 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.498778 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hxf9z" condition "Ready" to 2026-04-20 05:57:54.498764375 +0000 UTC m=+416.532883630 I0420 05:57:54.539904 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:54.539884525 +0000 UTC m=+416.574003790 I0420 05:57:54.587744 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.588263 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:54.588253171 +0000 UTC m=+416.622372456 I0420 05:57:54.637815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.638284 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:54.672892 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xj5w2" condition "Approved" to 2026-04-20 05:57:54.672858661 +0000 UTC m=+416.706977966 I0420 05:57:54.697028 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xj5w2" condition "Ready" to 2026-04-20 05:57:54.697011338 +0000 UTC m=+416.731130633 I0420 05:57:54.725895 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:54.725882476 +0000 UTC m=+416.760001741 I0420 05:57:54.797583 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:55.154733 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dgd6c" condition "Approved" to 2026-04-20 05:57:55.154710114 +0000 UTC m=+417.188829399 I0420 05:57:55.463601 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dgd6c" condition "Ready" to 2026-04-20 05:57:55.463587934 +0000 UTC m=+417.497707199 E0420 05:57:55.742518 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-p7lzj\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0420 05:57:56.019248 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-dgd6c" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-l8fzx" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0420 05:57:56.109310 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cgn96" condition "Approved" to 2026-04-20 05:57:56.109282695 +0000 UTC m=+418.143401990 I0420 05:57:56.500092 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cgn96" condition "Ready" to 2026-04-20 05:57:56.500072178 +0000 UTC m=+418.534191463 I0420 05:57:56.652293 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:56.652271466 +0000 UTC m=+418.686390761 I0420 05:57:56.749312 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:56.749933 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:56.749923746 +0000 UTC m=+418.784043031 I0420 05:57:56.948766 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:58:02.080075 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" condition "Ready" to 2026-04-20 05:58:02.080046164 +0000 UTC m=+424.114165449 I0420 05:58:02.080168 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:58:02.080220 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" condition "Issuing" to 2026-04-20 05:58:02.080206927 +0000 UTC m=+424.114326182 I0420 05:58:02.098150 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:58:02.098268 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:58:02.098298 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" condition "Issuing" to 2026-04-20 05:58:02.098288385 +0000 UTC m=+424.132407670 I0420 05:58:02.463537 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ztnsr-xxnvb" condition "Approved" to 2026-04-20 05:58:02.463524111 +0000 UTC m=+424.497643366 I0420 05:58:02.483017 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ztnsr-xxnvb" condition "Ready" to 2026-04-20 05:58:02.482998518 +0000 UTC m=+424.517117783 I0420 05:58:02.514829 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:58:02.51480514 +0000 UTC m=+424.548924425 I0420 05:58:02.535748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:58:02.536359 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:58:02.53634706 +0000 UTC m=+424.570466325 I0420 05:58:02.562669 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ztnsr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:58:30.057945 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-20 05:58:30.057924934 +0000 UTC m=+452.092044199 I0420 05:58:30.058224 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:58:30.058272 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 05:58:30.058262391 +0000 UTC m=+452.092381656 I0420 05:58:30.072291 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:58:30.072368 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:58:30.072391 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 05:58:30.072385474 +0000 UTC m=+452.106504739 I0420 05:58:30.277295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mrvbx" condition "Approved" to 2026-04-20 05:58:30.277278909 +0000 UTC m=+452.311398174 I0420 05:58:30.303725 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mrvbx" condition "Ready" to 2026-04-20 05:58:30.303712514 +0000 UTC m=+452.337831769 I0420 05:58:30.333925 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:58:30.33390514 +0000 UTC m=+452.368024395 I0420 05:58:30.354870 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:58:30.355434 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:58:30.355420511 +0000 UTC m=+452.389539776 I0420 05:58:30.384365 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:58:30.384745 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:58:30.384734638 +0000 UTC m=+452.418853893 I0420 06:01:36.602824 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-20 06:01:36.602781798 +0000 UTC m=+638.636901093 I0420 06:01:36.602791 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:01:36.603932 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 06:01:36.603894952 +0000 UTC m=+638.638014257 I0420 06:01:36.620108 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:01:36.620271 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:01:36.620310 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 06:01:36.620299141 +0000 UTC m=+638.654418396 I0420 06:01:36.948912 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:01:36.960389 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ld6hg" condition "Approved" to 2026-04-20 06:01:36.960377003 +0000 UTC m=+638.994496268 I0420 06:01:36.987835 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ld6hg" condition "Ready" to 2026-04-20 06:01:36.987819158 +0000 UTC m=+639.021938453 I0420 06:01:37.016705 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:01:37.016690973 +0000 UTC m=+639.050810238 I0420 06:01:37.042997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:01:37.099359 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:00.785383 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:04:00.785360 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-20 06:04:00.785302211 +0000 UTC m=+782.819421496 I0420 06:04:00.785418 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-20 06:04:00.785408464 +0000 UTC m=+782.819527719 I0420 06:04:00.804169 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:00.804301 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:04:00.804337 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-20 06:04:00.804326287 +0000 UTC m=+782.838445572 I0420 06:04:01.015147 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-j5z84" condition "Approved" to 2026-04-20 06:04:01.01512636 +0000 UTC m=+783.049245625 I0420 06:04:01.055415 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-j5z84" condition "Ready" to 2026-04-20 06:04:01.055400048 +0000 UTC m=+783.089519323 I0420 06:04:01.085935 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:04:01.085912768 +0000 UTC m=+783.120032033 I0420 06:04:01.112309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:01.112843 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:04:01.112833022 +0000 UTC m=+783.146952317 I0420 06:04:01.149820 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:59.147177 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:04:59.147221 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-20 06:04:59.147215301 +0000 UTC m=+841.181334556 I0420 06:04:59.147321 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-20 06:04:59.147304423 +0000 UTC m=+841.181423688 I0420 06:04:59.173901 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:59.174005 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-20 06:04:59.173994452 +0000 UTC m=+841.208113717 I0420 06:04:59.441432 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:59.499975 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-h2dqk" condition "Approved" to 2026-04-20 06:04:59.499962359 +0000 UTC m=+841.534081624 I0420 06:04:59.518480 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-h2dqk" condition "Ready" to 2026-04-20 06:04:59.518423373 +0000 UTC m=+841.552542658 I0420 06:04:59.548186 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:04:59.548168657 +0000 UTC m=+841.582287912 I0420 06:04:59.572461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:59.572967 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:04:59.572952425 +0000 UTC m=+841.607071720 I0420 06:04:59.593037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:04:59.593474 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:04:59.593465312 +0000 UTC m=+841.627584587 I0420 06:07:58.166146 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:07:58.166294 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-20 06:07:58.166245625 +0000 UTC m=+1020.200364920 I0420 06:07:58.166316 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-20 06:07:58.166290976 +0000 UTC m=+1020.200410261 I0420 06:07:58.185897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:58.186012 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-20 06:07:58.186001287 +0000 UTC m=+1020.220120552 I0420 06:07:58.321283 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:58.354145 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-t6nts" condition "Approved" to 2026-04-20 06:07:58.3541295 +0000 UTC m=+1020.388248765 I0420 06:07:58.372358 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-t6nts" condition "Ready" to 2026-04-20 06:07:58.37234369 +0000 UTC m=+1020.406462945 I0420 06:07:58.408562 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:07:58.408517543 +0000 UTC m=+1020.442636808 I0420 06:07:58.433323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:58.433622 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:07:58.43361493 +0000 UTC m=+1020.467734185 I0420 06:07:58.466523 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"