I0408 06:13:29.566434 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0408 06:13:29.566537 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0408 06:13:29.566609 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0408 06:13:29.570875 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0408 06:13:29.571164 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0408 06:13:29.572484 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0408 06:13:29.572509 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0408 06:13:29.573587 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0408 06:13:29.587122 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0408 06:13:29.592664 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0408 06:13:29.592776 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0408 06:13:29.592724 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0408 06:13:29.599013 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0408 06:13:29.601225 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0408 06:13:29.603277 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0408 06:13:29.605428 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0408 06:13:29.607686 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0408 06:13:29.609772 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0408 06:13:29.613350 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0408 06:13:29.617525 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0408 06:13:29.619873 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0408 06:13:29.622000 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0408 06:13:29.624138 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0408 06:13:29.626221 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0408 06:13:29.626254 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0408 06:13:29.628398 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0408 06:13:29.628516 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0408 06:13:29.630687 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0408 06:13:29.630794 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0408 06:13:29.632965 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0408 06:13:29.634969 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0408 06:13:29.639964 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0408 06:13:29.640130 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0408 06:13:29.643076 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.643578 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.643840 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.644101 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.644247 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.644364 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.644675 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.644838 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.645415 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:29.760590 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 06:13:45.806290 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-08 06:13:45.806268003 +0000 UTC m=+16.275584768 I0408 06:13:46.511976 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-08 06:13:46.511961113 +0000 UTC m=+16.981277898 I0408 06:13:46.512389 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:13:46.512544 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 06:13:46.512533013 +0000 UTC m=+16.981849798 E0408 06:13:46.527786 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 06:13:46.527860 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-08 06:13:46.527850692 +0000 UTC m=+16.997167457 E0408 06:13:46.527890 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 06:13:46.528708 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:13:46.528802 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:13:46.528842 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 06:13:46.528834596 +0000 UTC m=+16.998151361 E0408 06:13:46.542299 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0408 06:13:46.542412 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 06:13:46.542460 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 06:13:46.542491 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0408 06:13:46.566034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:13:46.566971 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qg96q" condition "Approved" to 2026-04-08 06:13:46.566956172 +0000 UTC m=+17.036272937 I0408 06:13:46.580854 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qg96q" condition "Ready" to 2026-04-08 06:13:46.580843531 +0000 UTC m=+17.050160286 I0408 06:13:46.605565 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:13:46.605552803 +0000 UTC m=+17.074869578 I0408 06:13:46.622602 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:13:46.661406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:13:51.543093 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:13:51.543080474 +0000 UTC m=+22.012397269 I0408 06:14:12.304061 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 06:14:12.304035236 +0000 UTC m=+42.773352011 I0408 06:14:12.305037 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:14:12.305072 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-08 06:14:12.305065823 +0000 UTC m=+42.774382588 I0408 06:14:12.315380 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-08 06:14:12.315370406 +0000 UTC m=+42.784687161 I0408 06:14:12.341437 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:14:12.341538 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 06:14:12.341531738 +0000 UTC m=+42.810848493 I0408 06:14:12.580557 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:14:12.622493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z86j6" condition "Approved" to 2026-04-08 06:14:12.622482006 +0000 UTC m=+43.091798761 I0408 06:14:12.649439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z86j6" condition "Ready" to 2026-04-08 06:14:12.649428289 +0000 UTC m=+43.118745054 I0408 06:14:12.688845 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:14:12.688832693 +0000 UTC m=+43.158149458 I0408 06:14:12.714947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:14:12.715598 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:14:12.715584011 +0000 UTC m=+43.184900806 I0408 06:14:12.724377 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:14:12.743360 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:14:12.743702 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:14:12.743692985 +0000 UTC m=+43.213009780 I0408 06:18:12.214687 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-25.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:18:12.214609 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Ready" to 2026-04-08 06:18:12.214585886 +0000 UTC m=+282.683902651 I0408 06:18:12.214719 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Issuing" to 2026-04-08 06:18:12.214712229 +0000 UTC m=+282.684028994 I0408 06:18:12.228370 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-25.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-25.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:18:12.228429 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-25.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:18:12.228450 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Issuing" to 2026-04-08 06:18:12.228445546 +0000 UTC m=+282.697762301 I0408 06:18:12.348838 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-25.nip.io-tls-wcp8g" condition "Approved" to 2026-04-08 06:18:12.348824929 +0000 UTC m=+282.818141694 I0408 06:18:12.379692 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-25.nip.io-tls-wcp8g" condition "Ready" to 2026-04-08 06:18:12.379680805 +0000 UTC m=+282.848997570 I0408 06:18:12.401070 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:18:12.401060101 +0000 UTC m=+282.870376886 I0408 06:18:12.420366 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-25.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-25.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:18:12.420650 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:18:12.420642928 +0000 UTC m=+282.889959693 I0408 06:18:12.435267 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-25.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-25.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:15.499588 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:19:15.499624 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-08 06:19:15.499613222 +0000 UTC m=+345.968929977 I0408 06:19:15.499720 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-08 06:19:15.499695043 +0000 UTC m=+345.969011808 E0408 06:19:15.522884 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 06:19:15.522973 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-08 06:19:15.522961731 +0000 UTC m=+345.992278516 E0408 06:19:15.523004 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 06:19:15.527991 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:15.528206 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:19:15.528287 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-08 06:19:15.528231386 +0000 UTC m=+345.997548141 E0408 06:19:15.535506 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0408 06:19:15.535633 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 06:19:15.535684 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 06:19:15.535719 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0408 06:19:15.572492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:15.579701 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-m26w8" condition "Approved" to 2026-04-08 06:19:15.579691057 +0000 UTC m=+346.049007802 I0408 06:19:15.597686 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-m26w8" condition "Ready" to 2026-04-08 06:19:15.597675778 +0000 UTC m=+346.066992533 I0408 06:19:15.628899 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:19:15.628883349 +0000 UTC m=+346.098200114 I0408 06:19:15.655307 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:15.695685 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:20.536050 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:19:20.536035989 +0000 UTC m=+351.005352774 I0408 06:19:59.633226 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:19:59.633262 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-08 06:19:59.633255783 +0000 UTC m=+390.102572538 I0408 06:19:59.633915 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-08 06:19:59.633906196 +0000 UTC m=+390.103222951 I0408 06:19:59.639261 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:19:59.639318 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-08 06:19:59.639313039 +0000 UTC m=+390.108629794 I0408 06:19:59.641574 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:19:59.641653 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-08 06:19:59.641646654 +0000 UTC m=+390.110963429 I0408 06:19:59.645682 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-08 06:19:59.645668961 +0000 UTC m=+390.114985706 I0408 06:19:59.634127 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-08 06:19:59.63412339 +0000 UTC m=+390.103440145 I0408 06:19:59.688898 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:59.688959 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:19:59.688976 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-08 06:19:59.688971834 +0000 UTC m=+390.158288589 I0408 06:19:59.690430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:59.691616 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:59.691658 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:19:59.691676 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-08 06:19:59.691671415 +0000 UTC m=+390.160988160 I0408 06:19:59.692181 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-08 06:19:59.692174165 +0000 UTC m=+390.161490950 I0408 06:19:59.965540 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:19:59.986666 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6dw9b" condition "Approved" to 2026-04-08 06:19:59.986653032 +0000 UTC m=+390.455969787 I0408 06:20:00.010097 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6dw9b" condition "Ready" to 2026-04-08 06:20:00.010088591 +0000 UTC m=+390.479405346 I0408 06:20:00.046154 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:00.046139432 +0000 UTC m=+390.515456197 I0408 06:20:00.082363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:00.082607 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:00.0826026 +0000 UTC m=+390.551919355 I0408 06:20:00.094534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:00.100661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:00.100957 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:00.100949692 +0000 UTC m=+390.570266457 I0408 06:20:00.127724 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-nnst6" condition "Approved" to 2026-04-08 06:20:00.127706864 +0000 UTC m=+390.597023629 I0408 06:20:00.154551 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-nnst6" condition "Ready" to 2026-04-08 06:20:00.154540569 +0000 UTC m=+390.623857334 I0408 06:20:00.189697 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:00.189684091 +0000 UTC m=+390.659000866 I0408 06:20:00.215344 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:00.608393 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:00.659630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:00.716686 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rd52c" condition "Approved" to 2026-04-08 06:20:00.71667241 +0000 UTC m=+391.185989175 I0408 06:20:00.817892 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rd52c" condition "Ready" to 2026-04-08 06:20:00.817882989 +0000 UTC m=+391.287199744 I0408 06:20:01.265985 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:01.265966872 +0000 UTC m=+391.735283667 I0408 06:20:01.359684 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:01.360139 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:01.360132721 +0000 UTC m=+391.829449476 I0408 06:20:01.611344 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:01.659139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:01.765003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:08.069387 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:20:08.069427 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" condition "Issuing" to 2026-04-08 06:20:08.069419588 +0000 UTC m=+398.538736343 I0408 06:20:08.070049 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" condition "Ready" to 2026-04-08 06:20:08.07004454 +0000 UTC m=+398.539361285 I0408 06:20:08.081327 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-85qfb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:08.081465 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:20:08.081516 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" condition "Issuing" to 2026-04-08 06:20:08.081510316 +0000 UTC m=+398.550827071 I0408 06:20:08.233115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-85qfb-lbhtf" condition "Approved" to 2026-04-08 06:20:08.233100213 +0000 UTC m=+398.702416978 I0408 06:20:08.260364 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-85qfb-lbhtf" condition "Ready" to 2026-04-08 06:20:08.260353264 +0000 UTC m=+398.729670019 I0408 06:20:08.293189 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:08.293174411 +0000 UTC m=+398.762491166 I0408 06:20:08.316045 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-85qfb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:08.375776 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-85qfb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-85qfb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:20.824397 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-08 06:20:20.824382802 +0000 UTC m=+411.293699547 I0408 06:20:20.824430 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:20:20.824468 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 06:20:20.824458014 +0000 UTC m=+411.293774799 I0408 06:20:20.842005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:20.842078 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:20:20.842094 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 06:20:20.842089206 +0000 UTC m=+411.311405961 I0408 06:20:21.189899 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-brnjs" condition "Approved" to 2026-04-08 06:20:21.189890258 +0000 UTC m=+411.659207013 I0408 06:20:21.205849 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-brnjs" condition "Ready" to 2026-04-08 06:20:21.20583976 +0000 UTC m=+411.675156515 I0408 06:20:21.243344 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:21.243331132 +0000 UTC m=+411.712647887 I0408 06:20:21.263586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:20:21.263835 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:20:21.263828705 +0000 UTC m=+411.733145450 I0408 06:20:21.293981 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:23:36.117422 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:23:36.117445 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-08 06:23:36.117427709 +0000 UTC m=+606.586744464 I0408 06:23:36.117502 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-08 06:23:36.11748996 +0000 UTC m=+606.586806755 I0408 06:23:36.133597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:23:36.133652 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:23:36.133666 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-08 06:23:36.133659818 +0000 UTC m=+606.602976583 I0408 06:23:36.333341 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7vbq9" condition "Approved" to 2026-04-08 06:23:36.333328522 +0000 UTC m=+606.802645287 I0408 06:23:36.358228 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7vbq9" condition "Ready" to 2026-04-08 06:23:36.358216123 +0000 UTC m=+606.827532888 I0408 06:23:36.388822 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:23:36.388810774 +0000 UTC m=+606.858127539 I0408 06:23:36.408446 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:23:36.408797 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:23:36.408790086 +0000 UTC m=+606.878106851 I0408 06:23:36.432844 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:24:18.388685 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-08 06:24:18.388674077 +0000 UTC m=+648.857990832 I0408 06:24:18.388910 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:24:18.389268 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-08 06:24:18.388984481 +0000 UTC m=+648.858301266 I0408 06:24:18.417749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:24:18.421617 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 06:24:18.421676 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-08 06:24:18.421669491 +0000 UTC m=+648.890986256 I0408 06:24:18.558227 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-g89qm" condition "Approved" to 2026-04-08 06:24:18.558211781 +0000 UTC m=+649.027528546 I0408 06:24:18.583823 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-g89qm" condition "Ready" to 2026-04-08 06:24:18.583814914 +0000 UTC m=+649.053131659 I0408 06:24:18.617751 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 06:24:18.617736122 +0000 UTC m=+649.087052877 I0408 06:24:18.652499 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 06:24:18.703740 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"