I0529 05:40:38.097234 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0529 05:40:38.097473 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0529 05:40:38.097661 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0529 05:40:38.103749 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0529 05:40:38.104239 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0529 05:40:38.104325 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0529 05:40:38.104350 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0529 05:40:38.107263 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0529 05:40:38.121749 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0529 05:40:38.126973 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0529 05:40:38.130131 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0529 05:40:38.130156 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0529 05:40:38.130330 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0529 05:40:38.134780 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0529 05:40:38.137313 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0529 05:40:38.139777 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0529 05:40:38.139801 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0529 05:40:38.139878 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0529 05:40:38.139926 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0529 05:40:38.140015 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0529 05:40:38.142373 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0529 05:40:38.144017 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0529 05:40:38.145889 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0529 05:40:38.148430 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0529 05:40:38.154530 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0529 05:40:38.157178 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0529 05:40:38.159609 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0529 05:40:38.162142 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0529 05:40:38.164609 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0529 05:40:38.166805 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0529 05:40:38.168673 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0529 05:40:38.170766 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0529 05:40:38.174514 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0529 05:40:38.177824 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.178245 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.179508 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.179685 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.196090 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.207203 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.226200 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.244150 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.260739 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:38.270701 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:40:55.981693 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-29 05:40:55.981680443 +0000 UTC m=+17.916916181 I0529 05:40:56.682426 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:40:56.682570 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-29 05:40:56.682561151 +0000 UTC m=+18.617796919 I0529 05:40:56.682493 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 05:40:56.682481441 +0000 UTC m=+18.617717199 E0529 05:40:56.917343 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:40:56.917543 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-29 05:40:56.917531358 +0000 UTC m=+18.852767116 E0529 05:40:56.918113 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:40:56.919990 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:40:56.920239 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:40:56.920273 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-29 05:40:56.92026449 +0000 UTC m=+18.855500258 E0529 05:40:57.053384 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0529 05:40:57.053524 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:40:57.053577 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:40:57.053611 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0529 05:40:57.081534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:40:57.081705 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jzjgc" condition "Approved" to 2026-05-29 05:40:57.081695652 +0000 UTC m=+19.016931420 I0529 05:40:57.094150 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jzjgc" condition "Ready" to 2026-05-29 05:40:57.094138758 +0000 UTC m=+19.029374496 I0529 05:40:57.132310 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:40:57.132294681 +0000 UTC m=+19.067530439 I0529 05:40:57.147701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:40:57.147924 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:40:57.147917792 +0000 UTC m=+19.083153530 I0529 05:40:57.163109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:41:02.053812 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:41:02.053793242 +0000 UTC m=+23.989029010 I0529 05:41:41.351265 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-29 05:41:41.351243096 +0000 UTC m=+63.286478874 I0529 05:41:41.351344 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:41:41.351384 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-29 05:41:41.351376116 +0000 UTC m=+63.286611854 I0529 05:41:41.457334 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-29 05:41:41.457320107 +0000 UTC m=+63.392555865 I0529 05:41:41.471160 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:41:41.471234 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:41:41.471256 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-29 05:41:41.47125131 +0000 UTC m=+63.406487038 I0529 05:41:41.753840 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fz5bh" condition "Approved" to 2026-05-29 05:41:41.753825782 +0000 UTC m=+63.689061540 I0529 05:41:41.794621 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fz5bh" condition "Ready" to 2026-05-29 05:41:41.794609507 +0000 UTC m=+63.729845235 I0529 05:41:41.830705 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:41:41.830688671 +0000 UTC m=+63.765924409 I0529 05:41:41.868696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:47:19.257541 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Ready" to 2026-05-29 05:47:19.257528465 +0000 UTC m=+401.192764223 I0529 05:47:19.257960 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-186.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:47:19.257989 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Issuing" to 2026-05-29 05:47:19.257982492 +0000 UTC m=+401.193218250 I0529 05:47:19.271406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:47:19.271462 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-186.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:47:19.271480 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Issuing" to 2026-05-29 05:47:19.271473883 +0000 UTC m=+401.206709641 I0529 05:47:19.541798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:47:19.552307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-186.nip.io-tls-wx8fd" condition "Approved" to 2026-05-29 05:47:19.552293697 +0000 UTC m=+401.487529455 I0529 05:47:19.573981 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-186.nip.io-tls-wx8fd" condition "Ready" to 2026-05-29 05:47:19.573975089 +0000 UTC m=+401.509210817 I0529 05:47:19.603220 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:47:19.603212041 +0000 UTC m=+401.538447779 I0529 05:47:19.632335 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:47:19.632644 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:47:19.632638436 +0000 UTC m=+401.567874164 I0529 05:47:19.641118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:47:19.651465 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:48:23.791449 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:48:23.791501 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-29 05:48:23.791491795 +0000 UTC m=+465.726727533 I0529 05:48:23.791742 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-29 05:48:23.791715727 +0000 UTC m=+465.726951485 E0529 05:48:23.806422 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:48:23.806527 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-29 05:48:23.806518082 +0000 UTC m=+465.741753850 E0529 05:48:23.806624 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:48:23.807497 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:48:23.807626 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:48:23.807696 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-29 05:48:23.807687256 +0000 UTC m=+465.742923014 E0529 05:48:23.818447 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0529 05:48:23.819012 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:48:23.819050 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:48:23.819141 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0529 05:48:23.849810 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-69wkh" condition "Approved" to 2026-05-29 05:48:23.849793653 +0000 UTC m=+465.785029391 I0529 05:48:23.866086 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-69wkh" condition "Ready" to 2026-05-29 05:48:23.866072374 +0000 UTC m=+465.801308102 I0529 05:48:23.892146 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:48:23.892134122 +0000 UTC m=+465.827369860 I0529 05:48:23.909769 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:48:23.910137 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:48:23.910127584 +0000 UTC m=+465.845363322 I0529 05:48:23.929102 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:48:23.929598 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:48:23.929582454 +0000 UTC m=+465.864818192 I0529 05:48:28.819476 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:48:28.819458333 +0000 UTC m=+470.754694091 I0529 05:49:10.434397 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-29 05:49:10.434371383 +0000 UTC m=+512.369607121 I0529 05:49:10.434946 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:10.434982 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-29 05:49:10.434976839 +0000 UTC m=+512.370212577 I0529 05:49:10.435397 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:10.435422 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-29 05:49:10.435418183 +0000 UTC m=+512.370653921 I0529 05:49:10.435880 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-29 05:49:10.435873709 +0000 UTC m=+512.371109447 I0529 05:49:10.428895 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-29 05:49:10.428881892 +0000 UTC m=+512.364117620 I0529 05:49:10.437091 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:10.437120 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-29 05:49:10.437113862 +0000 UTC m=+512.372349600 I0529 05:49:10.482397 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:10.482514 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:10.482565 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-29 05:49:10.482553713 +0000 UTC m=+512.417789461 I0529 05:49:10.489291 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:10.489373 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-29 05:49:10.489364888 +0000 UTC m=+512.424600616 I0529 05:49:10.489855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:10.489905 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:10.489924 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-29 05:49:10.489921094 +0000 UTC m=+512.425156822 I0529 05:49:11.260663 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:11.262817 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-275vf" condition "Approved" to 2026-05-29 05:49:11.262810691 +0000 UTC m=+513.198046419 I0529 05:49:11.345343 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:11.601508 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-275vf" condition "Ready" to 2026-05-29 05:49:11.601490005 +0000 UTC m=+513.536725773 I0529 05:49:11.983988 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:11.995010 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rnsc6" condition "Approved" to 2026-05-29 05:49:11.994999323 +0000 UTC m=+513.930235061 I0529 05:49:11.995504 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2smmx" condition "Approved" to 2026-05-29 05:49:11.995494699 +0000 UTC m=+513.930730437 I0529 05:49:12.030103 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:12.030091569 +0000 UTC m=+513.965327287 I0529 05:49:12.043495 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rnsc6" condition "Ready" to 2026-05-29 05:49:12.043475886 +0000 UTC m=+513.978711654 I0529 05:49:12.055847 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2smmx" condition "Ready" to 2026-05-29 05:49:12.055829602 +0000 UTC m=+513.991065320 I0529 05:49:12.060051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:12.085166 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:12.085154324 +0000 UTC m=+514.020390062 I0529 05:49:12.086453 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:12.086438197 +0000 UTC m=+514.021673915 I0529 05:49:12.129201 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:12.129492 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:12.1294842 +0000 UTC m=+514.064719928 I0529 05:49:12.142027 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:12.177503 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:12.177752 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:12.177745561 +0000 UTC m=+514.112981279 E0529 05:49:12.448417 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-ht7jz\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0529 05:49:28.068276 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" condition "Ready" to 2026-05-29 05:49:28.068260265 +0000 UTC m=+530.003496003 I0529 05:49:28.068696 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:28.068710 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" condition "Issuing" to 2026-05-29 05:49:28.06870612 +0000 UTC m=+530.003941858 I0529 05:49:28.084703 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:28.084812 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:28.084937 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" condition "Issuing" to 2026-05-29 05:49:28.084930845 +0000 UTC m=+530.020166613 I0529 05:49:28.329943 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mhrbj-xrmx8" condition "Approved" to 2026-05-29 05:49:28.329927816 +0000 UTC m=+530.265163534 I0529 05:49:28.420354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mhrbj-xrmx8" condition "Ready" to 2026-05-29 05:49:28.420342571 +0000 UTC m=+530.355578299 I0529 05:49:28.623228 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:28.623206758 +0000 UTC m=+530.558442516 I0529 05:49:28.706588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:28.708463 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:28.708453227 +0000 UTC m=+530.643688965 I0529 05:49:28.898318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mhrbj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:46.597315 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-29 05:49:46.59729508 +0000 UTC m=+548.532530798 I0529 05:49:46.597490 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:46.597544 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-29 05:49:46.597533253 +0000 UTC m=+548.532768991 I0529 05:49:46.610672 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:46.610780 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:49:46.610806 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-29 05:49:46.610798213 +0000 UTC m=+548.546033941 I0529 05:49:47.090163 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-twzn2" condition "Approved" to 2026-05-29 05:49:47.090146904 +0000 UTC m=+549.025382622 I0529 05:49:47.116173 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-twzn2" condition "Ready" to 2026-05-29 05:49:47.11615082 +0000 UTC m=+549.051386588 I0529 05:49:47.144435 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:47.144421928 +0000 UTC m=+549.079657656 I0529 05:49:47.182294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:49:47.183139 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:49:47.183125397 +0000 UTC m=+549.118361155 I0529 05:49:47.246229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:04.703578 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:53:04.703655 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-29 05:53:04.703648998 +0000 UTC m=+746.638884726 I0529 05:53:04.704496 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-29 05:53:04.70448882 +0000 UTC m=+746.639724678 I0529 05:53:04.830418 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:04.830533 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:53:04.830556 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-29 05:53:04.830549602 +0000 UTC m=+746.765785350 I0529 05:53:05.925206 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hck5f" condition "Approved" to 2026-05-29 05:53:05.92519089 +0000 UTC m=+747.860426648 I0529 05:53:05.988804 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hck5f" condition "Ready" to 2026-05-29 05:53:05.988792642 +0000 UTC m=+747.924028380 I0529 05:53:06.025712 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:53:06.025702091 +0000 UTC m=+747.960937829 I0529 05:53:06.053416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:53.642024 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 05:53:53.641968327 +0000 UTC m=+795.577204075 I0529 05:53:53.642399 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:53:53.642481 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-29 05:53:53.642472529 +0000 UTC m=+795.577708257 I0529 05:53:53.662191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:53.662273 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 05:53:53.662261814 +0000 UTC m=+795.597497562 I0529 05:53:53.786551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:53.828420 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-thdjv" condition "Approved" to 2026-05-29 05:53:53.828408421 +0000 UTC m=+795.763644159 I0529 05:53:53.846990 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-thdjv" condition "Ready" to 2026-05-29 05:53:53.846983056 +0000 UTC m=+795.782218784 I0529 05:53:53.888467 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:53:53.888440453 +0000 UTC m=+795.823676201 I0529 05:53:53.905833 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:53.906011 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:53:53.906004454 +0000 UTC m=+795.841240182 I0529 05:53:53.919698 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:53.940714 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:53:53.941086 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:53:53.941075505 +0000 UTC m=+795.876311233