I0527 09:47:42.631253 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0527 09:47:42.631383 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0527 09:47:42.631511 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0527 09:47:42.637280 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0527 09:47:42.637629 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0527 09:47:42.637771 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0527 09:47:42.637791 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0527 09:47:42.640044 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0527 09:47:42.655975 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0527 09:47:42.656206 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0527 09:47:42.656285 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0527 09:47:42.659241 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0527 09:47:42.664700 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0527 09:47:42.667862 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0527 09:47:42.667937 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0527 09:47:42.670442 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0527 09:47:42.672904 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0527 09:47:42.674755 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0527 09:47:42.676446 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0527 09:47:42.680797 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0527 09:47:42.683540 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0527 09:47:42.683658 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0527 09:47:42.686112 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0527 09:47:42.689186 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0527 09:47:42.692719 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0527 09:47:42.694730 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0527 09:47:42.694787 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0527 09:47:42.696584 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0527 09:47:42.696699 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0527 09:47:42.698487 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0527 09:47:42.702361 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0527 09:47:42.704473 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0527 09:47:42.706571 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0527 09:47:42.709655 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.710053 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.710056 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.710645 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.726997 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.744845 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.760220 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.769271 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.786199 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:42.806296 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0527 09:47:54.611364 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-27 09:47:54.611305878 +0000 UTC m=+12.018340740 I0527 09:47:55.297180 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:47:55.297407 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-27 09:47:55.297392806 +0000 UTC m=+12.704427718 I0527 09:47:55.297225 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-27 09:47:55.297206658 +0000 UTC m=+12.704241520 I0527 09:47:55.311596 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:47:55.311674 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:47:55.311697 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-27 09:47:55.311689469 +0000 UTC m=+12.718724311 E0527 09:47:55.317910 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0527 09:47:55.318063 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-27 09:47:55.318055779 +0000 UTC m=+12.725090621 E0527 09:47:55.319522 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0527 09:47:55.335873 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0527 09:47:55.336032 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0527 09:47:55.336217 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0527 09:47:55.336336 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0527 09:47:55.348079 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-tdzk7" condition "Approved" to 2026-05-27 09:47:55.348069875 +0000 UTC m=+12.755104717 I0527 09:47:55.362580 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-tdzk7" condition "Ready" to 2026-05-27 09:47:55.362570246 +0000 UTC m=+12.769605078 I0527 09:47:55.388387 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:47:55.388373066 +0000 UTC m=+12.795407938 I0527 09:47:55.407859 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:47:55.408019 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:47:55.408013974 +0000 UTC m=+12.815048816 I0527 09:47:55.417906 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:47:55.423743 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:48:00.336593 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:48:00.33655848 +0000 UTC m=+17.743593352 I0527 09:48:33.188953 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:48:33.188988 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-27 09:48:33.188979903 +0000 UTC m=+50.596014735 I0527 09:48:33.189076 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-27 09:48:33.189055685 +0000 UTC m=+50.596090547 I0527 09:48:33.214022 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-27 09:48:33.21400729 +0000 UTC m=+50.621042152 I0527 09:48:33.225833 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:48:33.225912 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-27 09:48:33.225903261 +0000 UTC m=+50.632938123 I0527 09:48:33.352067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:48:33.401582 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lqt5r" condition "Approved" to 2026-05-27 09:48:33.401570667 +0000 UTC m=+50.808605509 I0527 09:48:33.473058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lqt5r" condition "Ready" to 2026-05-27 09:48:33.473046718 +0000 UTC m=+50.880081560 I0527 09:48:33.627571 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:48:33.627554246 +0000 UTC m=+51.034589088 I0527 09:48:33.675136 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:52:55.631509 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready" to 2026-05-27 09:52:55.631485971 +0000 UTC m=+313.038520843 I0527 09:52:55.631798 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:52:55.631942 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Issuing" to 2026-05-27 09:52:55.631878671 +0000 UTC m=+313.038913513 I0527 09:52:56.255816 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:52:56.255914 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready" to 2026-05-27 09:52:56.255900124 +0000 UTC m=+313.662935006 I0527 09:52:57.122552 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:52:57.774043 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-169.nip.io-tls-tzzq5" condition "Approved" to 2026-05-27 09:52:57.774032177 +0000 UTC m=+315.181067019 I0527 09:52:58.148219 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-169.nip.io-tls-tzzq5" condition "Ready" to 2026-05-27 09:52:58.148209381 +0000 UTC m=+315.555244223 I0527 09:52:59.425744 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:52:59.425727055 +0000 UTC m=+316.832761917 I0527 09:52:59.737445 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:54:16.980602 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-27 09:54:16.980566616 +0000 UTC m=+394.387601448 I0527 09:54:16.980731 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:54:16.980793 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-27 09:54:16.980776312 +0000 UTC m=+394.387811244 E0527 09:54:16.992472 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0527 09:54:16.992532 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-27 09:54:16.992524977 +0000 UTC m=+394.399559819 E0527 09:54:16.992554 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0527 09:54:16.993671 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:54:16.993819 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:54:16.993918 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-27 09:54:16.993906738 +0000 UTC m=+394.400941600 E0527 09:54:17.006514 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0527 09:54:17.006827 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0527 09:54:17.006911 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0527 09:54:17.006960 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0527 09:54:17.036516 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wbdlr" condition "Approved" to 2026-05-27 09:54:17.036505136 +0000 UTC m=+394.443539968 I0527 09:54:17.053437 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wbdlr" condition "Ready" to 2026-05-27 09:54:17.053422208 +0000 UTC m=+394.460457080 I0527 09:54:17.077336 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:54:17.077318109 +0000 UTC m=+394.484352971 I0527 09:54:17.096971 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:54:17.097241 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:54:17.097225271 +0000 UTC m=+394.504260103 I0527 09:54:17.113330 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:54:17.113710 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:54:17.113700639 +0000 UTC m=+394.520735481 I0527 09:54:22.006870 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:54:22.006860833 +0000 UTC m=+399.413895665 I0527 09:55:12.031076 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-27 09:55:12.031053808 +0000 UTC m=+449.438088650 I0527 09:55:12.031220 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-27 09:55:12.031215283 +0000 UTC m=+449.438250115 I0527 09:55:12.031259 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:55:12.031274 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-27 09:55:12.031272295 +0000 UTC m=+449.438307127 I0527 09:55:12.031211 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-27 09:55:12.031204953 +0000 UTC m=+449.438239785 I0527 09:55:12.031104 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:55:12.031573 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-27 09:55:12.031569724 +0000 UTC m=+449.438604556 I0527 09:55:12.031125 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:55:12.031753 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-27 09:55:12.03174699 +0000 UTC m=+449.438781822 I0527 09:55:12.326610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:12.326670 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:55:12.326689 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-27 09:55:12.326684018 +0000 UTC m=+449.733718850 I0527 09:55:12.327884 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:12.327920 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-27 09:55:12.327916768 +0000 UTC m=+449.734951600 I0527 09:55:12.331791 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:12.331868 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-27 09:55:12.331861183 +0000 UTC m=+449.738896015 I0527 09:55:13.217680 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:13.218664 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:13.484763 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:13.487013 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-k94ht" condition "Approved" to 2026-05-27 09:55:13.487001136 +0000 UTC m=+450.894035978 I0527 09:55:13.487407 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vtw6g" condition "Approved" to 2026-05-27 09:55:13.48740154 +0000 UTC m=+450.894436382 I0527 09:55:13.487666 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xfskg" condition "Approved" to 2026-05-27 09:55:13.487661058 +0000 UTC m=+450.894695900 I0527 09:55:14.071325 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-k94ht" condition "Ready" to 2026-05-27 09:55:14.071315842 +0000 UTC m=+451.478350674 I0527 09:55:14.072095 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vtw6g" condition "Ready" to 2026-05-27 09:55:14.072091867 +0000 UTC m=+451.479126699 I0527 09:55:14.072268 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xfskg" condition "Ready" to 2026-05-27 09:55:14.072258352 +0000 UTC m=+451.479293184 I0527 09:55:14.160104 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:55:14.16009387 +0000 UTC m=+451.567128702 I0527 09:55:14.185500 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:55:14.185485488 +0000 UTC m=+451.592520330 I0527 09:55:14.188464 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:55:14.188457503 +0000 UTC m=+451.595492345 I0527 09:55:14.224969 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:14.229951 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:55:14.229921924 +0000 UTC m=+451.636956756 I0527 09:55:14.238522 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:14.239448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:14.239664 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:55:14.239657363 +0000 UTC m=+451.646692185 I0527 09:55:14.249468 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:14.253118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:14.276915 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:14.306637 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:14.306979 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:55:14.306972387 +0000 UTC m=+451.714007219 E0527 09:55:14.340143 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-z5dpw\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0527 09:55:34.307406 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:55:34.307552 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" condition "Issuing" to 2026-05-27 09:55:34.307540045 +0000 UTC m=+471.714574927 I0527 09:55:34.307469 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" condition "Ready" to 2026-05-27 09:55:34.307429552 +0000 UTC m=+471.714464414 I0527 09:55:34.339683 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:55:34.339760 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:55:34.339803 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" condition "Issuing" to 2026-05-27 09:55:34.339795725 +0000 UTC m=+471.746830587 I0527 09:55:34.493705 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bkpv6-kbdvh" condition "Approved" to 2026-05-27 09:55:34.493692881 +0000 UTC m=+471.900727723 I0527 09:55:34.523460 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bkpv6-kbdvh" condition "Ready" to 2026-05-27 09:55:34.523446701 +0000 UTC m=+471.930481533 I0527 09:55:34.562255 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:55:34.562244122 +0000 UTC m=+471.969278954 I0527 09:55:34.593608 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bkpv6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:56:05.497009 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-27 09:56:05.49696903 +0000 UTC m=+502.904003862 I0527 09:56:05.497478 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:56:05.497498 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-27 09:56:05.497492837 +0000 UTC m=+502.904527689 I0527 09:56:05.517124 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:56:05.517179 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:56:05.517193 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-27 09:56:05.517188142 +0000 UTC m=+502.924222964 I0527 09:56:05.991030 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:56:06.000115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-pwmf2" condition "Approved" to 2026-05-27 09:56:06.000093838 +0000 UTC m=+503.407128690 I0527 09:56:06.017671 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-pwmf2" condition "Ready" to 2026-05-27 09:56:06.017662753 +0000 UTC m=+503.424697585 I0527 09:56:06.046912 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:56:06.046853571 +0000 UTC m=+503.453888423 I0527 09:56:06.079814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:56:06.210856 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:59:13.960798 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-27 09:59:13.960758144 +0000 UTC m=+691.367792986 I0527 09:59:13.961355 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:59:13.961374 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-27 09:59:13.961369933 +0000 UTC m=+691.368404775 I0527 09:59:13.978296 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:59:13.979252 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-27 09:59:13.979242845 +0000 UTC m=+691.386277687 I0527 09:59:14.305282 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:59:14.336935 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-mzhn7" condition "Approved" to 2026-05-27 09:59:14.336920135 +0000 UTC m=+691.743955007 I0527 09:59:14.367772 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-mzhn7" condition "Ready" to 2026-05-27 09:59:14.367762527 +0000 UTC m=+691.774797359 I0527 09:59:14.398940 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:59:14.398925192 +0000 UTC m=+691.805960034 I0527 09:59:14.426820 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:59:55.213733 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-27 09:59:55.213696553 +0000 UTC m=+732.620731385 I0527 09:59:55.213936 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:59:55.213953 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-27 09:59:55.213950277 +0000 UTC m=+732.620985109 I0527 09:59:55.241060 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0527 09:59:55.241113 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0527 09:59:55.241151 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-27 09:59:55.241124791 +0000 UTC m=+732.648159633 I0527 09:59:55.594430 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-gm4ln" condition "Approved" to 2026-05-27 09:59:55.594418742 +0000 UTC m=+733.001453564 I0527 09:59:55.613694 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-gm4ln" condition "Ready" to 2026-05-27 09:59:55.613683186 +0000 UTC m=+733.020718028 I0527 09:59:55.650048 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-27 09:59:55.650034853 +0000 UTC m=+733.057069695 I0527 09:59:55.671053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"