I0331 18:28:04.806304 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 18:28:04.806501 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 18:28:04.806601 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 18:28:04.812288 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 18:28:04.813543 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 18:28:04.813566 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 18:28:04.813814 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 18:28:04.819569 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 18:28:04.836036 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 18:28:04.842017 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 18:28:04.845803 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 18:28:04.848838 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 18:28:04.848886 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 18:28:04.855089 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 18:28:04.855171 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 18:28:04.858018 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 18:28:04.860332 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 18:28:04.862893 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 18:28:04.862925 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 18:28:04.862934 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 18:28:04.863059 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 18:28:04.865453 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 18:28:04.867948 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 18:28:04.870105 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 18:28:04.870195 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 18:28:04.873524 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 18:28:04.878162 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 18:28:04.881153 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 18:28:04.883705 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 18:28:04.885890 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 18:28:04.887968 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 18:28:04.890097 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 18:28:04.893483 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 18:28:04.894785 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.896801 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.897870 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.898755 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.917363 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.929817 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.949039 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.962831 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.980882 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:04.983975 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:17.352169 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 18:28:17.352156288 +0000 UTC m=+12.583913026 I0331 18:28:18.065240 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:28:18.065256 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 18:28:18.065243934 +0000 UTC m=+13.297000662 I0331 18:28:18.065302 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 18:28:18.065285815 +0000 UTC m=+13.297042583 E0331 18:28:18.078773 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:28:18.078857 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 18:28:18.078848635 +0000 UTC m=+13.310605383 E0331 18:28:18.078887 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:28:18.080495 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:18.080637 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:28:18.080671 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 18:28:18.080662298 +0000 UTC m=+13.312419036 E0331 18:28:18.091533 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0331 18:28:18.093232 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:28:18.093284 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:28:18.093339 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 18:28:18.124397 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5hwql" condition "Approved" to 2026-03-31 18:28:18.124383209 +0000 UTC m=+13.356139977 I0331 18:28:18.149534 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5hwql" condition "Ready" to 2026-03-31 18:28:18.149519902 +0000 UTC m=+13.381276660 I0331 18:28:18.183624 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:28:18.183606545 +0000 UTC m=+13.415363313 I0331 18:28:18.212819 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:23.092503 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:28:23.092490348 +0000 UTC m=+18.324247116 I0331 18:28:45.956535 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 18:28:45.956520783 +0000 UTC m=+41.188277551 I0331 18:28:45.956646 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:28:45.956822 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 18:28:45.956811019 +0000 UTC m=+41.188567777 I0331 18:28:45.974856 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 18:28:45.974843289 +0000 UTC m=+41.206600027 I0331 18:28:45.998125 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:45.998183 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 18:28:45.998177833 +0000 UTC m=+41.229934561 I0331 18:28:46.112345 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:46.152027 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-p88m5" condition "Approved" to 2026-03-31 18:28:46.152001266 +0000 UTC m=+41.383758004 I0331 18:28:46.186792 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-p88m5" condition "Ready" to 2026-03-31 18:28:46.186779786 +0000 UTC m=+41.418536514 I0331 18:28:46.219629 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:28:46.219617251 +0000 UTC m=+41.451373979 I0331 18:28:46.245054 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:46.245336 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:28:46.24533011 +0000 UTC m=+41.477086858 I0331 18:28:46.264154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:56.889663 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-57.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:33:56.889702 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-57.nip.io-tls" condition "Issuing" to 2026-03-31 18:33:56.889694908 +0000 UTC m=+352.121451636 I0331 18:33:56.890236 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-57.nip.io-tls" condition "Ready" to 2026-03-31 18:33:56.890231281 +0000 UTC m=+352.121988009 I0331 18:33:56.910583 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-57.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-57.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:56.910672 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-57.nip.io-tls" condition "Ready" to 2026-03-31 18:33:56.91066414 +0000 UTC m=+352.142420878 I0331 18:33:57.088044 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-57.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-57.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:57.114920 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-57.nip.io-tls-zs72v" condition "Approved" to 2026-03-31 18:33:57.114907341 +0000 UTC m=+352.346664069 I0331 18:33:57.144996 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-57.nip.io-tls-zs72v" condition "Ready" to 2026-03-31 18:33:57.144983396 +0000 UTC m=+352.376740134 I0331 18:33:57.169104 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-57.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:57.169094992 +0000 UTC m=+352.400851730 I0331 18:33:57.186375 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-57.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-57.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:57.231733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-57.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-57.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:04.515499 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 18:35:04.515470893 +0000 UTC m=+419.747227631 I0331 18:35:04.515622 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:04.515674 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 18:35:04.515663378 +0000 UTC m=+419.747420146 E0331 18:35:04.528163 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:35:04.528242 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 18:35:04.528234192 +0000 UTC m=+419.759990930 E0331 18:35:04.528266 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:35:04.529094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:04.529193 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 18:35:04.529183534 +0000 UTC m=+419.760940292 E0331 18:35:04.537495 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 18:35:04.537634 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:35:04.537664 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:35:04.537696 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 18:35:04.542641 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:04.564441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-f2557" condition "Approved" to 2026-03-31 18:35:04.564431358 +0000 UTC m=+419.796188096 I0331 18:35:04.575653 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-f2557" condition "Ready" to 2026-03-31 18:35:04.575642041 +0000 UTC m=+419.807398789 I0331 18:35:04.594432 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:04.59441057 +0000 UTC m=+419.826167308 I0331 18:35:04.608855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:04.609180 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:04.609171575 +0000 UTC m=+419.840928313 I0331 18:35:04.657805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:04.657975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:09.538537 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:09.538526392 +0000 UTC m=+424.770283130 I0331 18:35:47.579764 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 18:35:47.579753821 +0000 UTC m=+462.811510559 I0331 18:35:47.581101 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:47.581145 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 18:35:47.581140623 +0000 UTC m=+462.812897361 I0331 18:35:47.581485 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:47.581534 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 18:35:47.581526222 +0000 UTC m=+462.813282960 I0331 18:35:47.581780 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 18:35:47.581775488 +0000 UTC m=+462.813532226 I0331 18:35:47.584794 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 18:35:47.584780418 +0000 UTC m=+462.816537156 I0331 18:35:47.585315 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:47.585349 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 18:35:47.585342752 +0000 UTC m=+462.817099500 I0331 18:35:47.614612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:47.614693 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:47.614716 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 18:35:47.614709078 +0000 UTC m=+462.846465826 I0331 18:35:47.617762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:47.617850 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:47.617880 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 18:35:47.617872002 +0000 UTC m=+462.849628740 I0331 18:35:47.620769 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:47.622058 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:47.622127 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 18:35:47.622118982 +0000 UTC m=+462.853875720 I0331 18:35:47.925506 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-s9zrp" condition "Approved" to 2026-03-31 18:35:47.925492808 +0000 UTC m=+463.157249536 I0331 18:35:47.954895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-s9zrp" condition "Ready" to 2026-03-31 18:35:47.954886056 +0000 UTC m=+463.186642784 I0331 18:35:47.967630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:47.976619 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7zr27" condition "Approved" to 2026-03-31 18:35:47.976607544 +0000 UTC m=+463.208364282 I0331 18:35:47.986616 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:47.986607528 +0000 UTC m=+463.218364246 I0331 18:35:47.991130 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pddz2" condition "Approved" to 2026-03-31 18:35:47.991122443 +0000 UTC m=+463.222879181 I0331 18:35:47.994248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7zr27" condition "Ready" to 2026-03-31 18:35:47.994232436 +0000 UTC m=+463.225989164 I0331 18:35:48.006200 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pddz2" condition "Ready" to 2026-03-31 18:35:48.006186486 +0000 UTC m=+463.237943224 I0331 18:35:48.006580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" E0331 18:35:48.421437 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-j9crg\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0331 18:35:48.517274 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:48.51725581 +0000 UTC m=+463.749012578 I0331 18:35:48.528666 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:48.528650407 +0000 UTC m=+463.760407155 I0331 18:35:48.723245 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:48.723723 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:48.72371387 +0000 UTC m=+463.955470638 I0331 18:35:48.824233 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:48.824780 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:48.824773054 +0000 UTC m=+464.056529792 I0331 18:35:49.278435 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:49.324851 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:49.422425 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:55.607745 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" condition "Ready" to 2026-03-31 18:35:55.60772688 +0000 UTC m=+470.839483638 I0331 18:35:55.607789 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:55.607827 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" condition "Issuing" to 2026-03-31 18:35:55.607815652 +0000 UTC m=+470.839572410 I0331 18:35:55.625081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ln46w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:55.625162 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:55.625187 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" condition "Issuing" to 2026-03-31 18:35:55.625179088 +0000 UTC m=+470.856935856 I0331 18:35:55.888813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ln46w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:55.894826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ln46w-ngd76" condition "Approved" to 2026-03-31 18:35:55.894817315 +0000 UTC m=+471.126574053 I0331 18:35:55.909269 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ln46w-ngd76" condition "Ready" to 2026-03-31 18:35:55.909256213 +0000 UTC m=+471.141012951 I0331 18:35:55.933291 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:55.933277665 +0000 UTC m=+471.165034403 I0331 18:35:55.951575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ln46w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:55.951890 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:55.95188405 +0000 UTC m=+471.183640768 I0331 18:35:55.959558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ln46w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:55.969895 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ln46w-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ln46w-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:36:27.450536 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:36:27.450578 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 18:36:27.450567946 +0000 UTC m=+502.682324704 I0331 18:36:27.450633 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 18:36:27.450621407 +0000 UTC m=+502.682378175 I0331 18:36:27.466806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:36:27.466864 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 18:36:27.466859426 +0000 UTC m=+502.698616164 I0331 18:36:27.570092 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:36:27.600120 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-9r2j5" condition "Approved" to 2026-03-31 18:36:27.600103957 +0000 UTC m=+502.831860695 I0331 18:36:27.616562 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-9r2j5" condition "Ready" to 2026-03-31 18:36:27.616551441 +0000 UTC m=+502.848308179 I0331 18:36:27.643596 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:36:27.643578072 +0000 UTC m=+502.875334840 I0331 18:36:27.659119 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:36:27.659696 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:36:27.659680458 +0000 UTC m=+502.891437246 I0331 18:36:27.677159 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:36:27.677553 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:36:27.677545475 +0000 UTC m=+502.909302203 I0331 18:39:46.140984 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 18:39:46.140931879 +0000 UTC m=+701.372688657 I0331 18:39:46.141218 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:39:46.141265 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 18:39:46.141254587 +0000 UTC m=+701.373011355 I0331 18:39:46.163905 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:46.163992 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 18:39:46.163984147 +0000 UTC m=+701.395740895 I0331 18:39:46.268377 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:46.304836 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-5hn6g" condition "Approved" to 2026-03-31 18:39:46.304819392 +0000 UTC m=+701.536576140 I0331 18:39:46.323522 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-5hn6g" condition "Ready" to 2026-03-31 18:39:46.323509098 +0000 UTC m=+701.555265836 I0331 18:39:46.349336 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:39:46.34932286 +0000 UTC m=+701.581079598 I0331 18:39:46.378988 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:23.522809 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 18:42:23.522754208 +0000 UTC m=+858.754510936 I0331 18:42:23.522833 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:42:23.523068 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 18:42:23.523053795 +0000 UTC m=+858.754810533 I0331 18:42:23.538550 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:23.538648 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 18:42:23.538640739 +0000 UTC m=+858.770397467 I0331 18:42:23.766678 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:23.798933 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-rfb92" condition "Approved" to 2026-03-31 18:42:23.798917955 +0000 UTC m=+859.030674703 I0331 18:42:23.824087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-rfb92" condition "Ready" to 2026-03-31 18:42:23.824064032 +0000 UTC m=+859.055820760 I0331 18:42:23.855870 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:23.855858185 +0000 UTC m=+859.087614913 I0331 18:42:23.884019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:23.884395 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:23.884388001 +0000 UTC m=+859.116144739 I0331 18:42:23.905278 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:23.905636 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:23.905627587 +0000 UTC m=+859.137384325 I0331 18:43:25.316043 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:43:25.316087 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 18:43:25.316079589 +0000 UTC m=+920.547836327 I0331 18:43:25.316158 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 18:43:25.316145961 +0000 UTC m=+920.547902689 I0331 18:43:25.330371 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:43:25.330571 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 18:43:25.330564157 +0000 UTC m=+920.562320885 I0331 18:43:25.530896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:43:25.568597 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-x754n" condition "Approved" to 2026-03-31 18:43:25.568582014 +0000 UTC m=+920.800338772 I0331 18:43:25.589826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-x754n" condition "Ready" to 2026-03-31 18:43:25.589813199 +0000 UTC m=+920.821569947 I0331 18:43:25.616618 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:43:25.616601793 +0000 UTC m=+920.848358531 I0331 18:43:25.637247 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:30.959364 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:46:30.959365 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 18:46:30.959312932 +0000 UTC m=+1106.191069700 I0331 18:46:30.959425 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 18:46:30.959417974 +0000 UTC m=+1106.191174712 I0331 18:46:30.976701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:30.976779 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:46:30.976801 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 18:46:30.976793489 +0000 UTC m=+1106.208550227 I0331 18:46:31.336232 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:31.345342 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ltbkp" condition "Approved" to 2026-03-31 18:46:31.345330982 +0000 UTC m=+1106.577087710 I0331 18:46:31.364973 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ltbkp" condition "Ready" to 2026-03-31 18:46:31.364959009 +0000 UTC m=+1106.596715757 I0331 18:46:31.393335 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:46:31.393320511 +0000 UTC m=+1106.625077239 I0331 18:46:31.412737 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"