I0225 22:07:07.332182 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0225 22:07:07.332320 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0225 22:07:07.332406 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0225 22:07:07.338788 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0225 22:07:07.339335 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0225 22:07:07.339368 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0225 22:07:07.339479 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0225 22:07:07.342345 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0225 22:07:07.358787 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0225 22:07:07.363101 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0225 22:07:07.365472 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0225 22:07:07.372213 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0225 22:07:07.372324 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0225 22:07:07.372445 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0225 22:07:07.375742 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0225 22:07:07.377834 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0225 22:07:07.379811 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0225 22:07:07.381879 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0225 22:07:07.383859 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0225 22:07:07.385661 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0225 22:07:07.385830 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0225 22:07:07.392045 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0225 22:07:07.395625 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0225 22:07:07.395653 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0225 22:07:07.395696 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0225 22:07:07.398523 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0225 22:07:07.401185 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0225 22:07:07.403378 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0225 22:07:07.407713 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0225 22:07:07.411070 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0225 22:07:07.413326 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0225 22:07:07.413496 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0225 22:07:07.416491 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0225 22:07:07.419565 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.421155 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.421521 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.426685 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.444341 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.470815 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.480280 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.494307 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.510363 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:07.539331 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0225 22:07:18.920663 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-02-25 22:07:18.920636946 +0000 UTC m=+11.619499799 I0225 22:07:19.672846 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-02-25 22:07:19.672826572 +0000 UTC m=+12.371689425 I0225 22:07:19.673276 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:07:19.673489 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-02-25 22:07:19.673476991 +0000 UTC m=+12.372339844 E0225 22:07:19.690331 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0225 22:07:19.690414 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-02-25 22:07:19.690405449 +0000 UTC m=+12.389268312 E0225 22:07:19.690448 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0225 22:07:19.691896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:07:19.692064 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:07:19.692093 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-02-25 22:07:19.692086417 +0000 UTC m=+12.390949250 E0225 22:07:19.703117 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0225 22:07:19.703374 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0225 22:07:19.703490 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0225 22:07:19.703587 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0225 22:07:19.736095 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:07:19.743264 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-thb9n" condition "Approved" to 2026-02-25 22:07:19.743242733 +0000 UTC m=+12.442105586 I0225 22:07:19.755221 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-thb9n" condition "Ready" to 2026-02-25 22:07:19.755204061 +0000 UTC m=+12.454066914 I0225 22:07:19.782247 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:07:19.782229455 +0000 UTC m=+12.481092318 I0225 22:07:19.801139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:07:19.801906 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:07:19.801892191 +0000 UTC m=+12.500755044 I0225 22:07:19.817688 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:07:24.704375 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:07:24.704352053 +0000 UTC m=+17.403214916 I0225 22:07:46.387135 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:07:46.387280 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-02-25 22:07:46.387269073 +0000 UTC m=+39.086131946 I0225 22:07:46.387252 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-02-25 22:07:46.387178831 +0000 UTC m=+39.086041714 I0225 22:07:46.401168 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-02-25 22:07:46.401155276 +0000 UTC m=+39.100018109 I0225 22:07:46.414600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:07:46.414729 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-02-25 22:07:46.414703429 +0000 UTC m=+39.113566252 I0225 22:07:46.486605 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:07:46.524735 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z5bk7" condition "Approved" to 2026-02-25 22:07:46.524712609 +0000 UTC m=+39.223575472 I0225 22:07:46.552644 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z5bk7" condition "Ready" to 2026-02-25 22:07:46.552630468 +0000 UTC m=+39.251493301 I0225 22:07:46.583236 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:07:46.583214423 +0000 UTC m=+39.282077256 I0225 22:07:46.607398 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:07:46.607792 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:07:46.607780948 +0000 UTC m=+39.306643781 I0225 22:07:46.632297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:01.300368 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:10:01.300440 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-02-25 22:10:01.300414111 +0000 UTC m=+173.999276964 I0225 22:10:01.300471 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-02-25 22:10:01.300324698 +0000 UTC m=+173.999187551 E0225 22:10:01.314892 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0225 22:10:01.314964 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-02-25 22:10:01.314956184 +0000 UTC m=+174.013819017 I0225 22:10:01.315012 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0225 22:10:01.316821 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:01.316918 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-02-25 22:10:01.316907308 +0000 UTC m=+174.015770161 I0225 22:10:01.326942 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:10:01.326991 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-02-25 22:10:01.326979818 +0000 UTC m=+174.025842671 I0225 22:10:01.326958 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-02-25 22:10:01.326913826 +0000 UTC m=+174.025776689 E0225 22:10:01.327586 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0225 22:10:01.327732 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0225 22:10:01.327781 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0225 22:10:01.327857 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0225 22:10:01.343322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:01.343412 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-02-25 22:10:01.343407213 +0000 UTC m=+174.042270046 I0225 22:10:01.464368 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:01.494036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-t8q77" condition "Approved" to 2026-02-25 22:10:01.494010849 +0000 UTC m=+174.192873712 I0225 22:10:01.525452 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-t8q77" condition "Ready" to 2026-02-25 22:10:01.525437231 +0000 UTC m=+174.224300064 I0225 22:10:01.531637 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:01.551141 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:10:01.551119493 +0000 UTC m=+174.249982346 I0225 22:10:01.558843 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9g72v" condition "Approved" to 2026-02-25 22:10:01.558824067 +0000 UTC m=+174.257686930 I0225 22:10:01.570232 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:01.570619 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:10:01.570606374 +0000 UTC m=+174.269469207 I0225 22:10:01.578427 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9g72v" condition "Ready" to 2026-02-25 22:10:01.57841127 +0000 UTC m=+174.277274103 I0225 22:10:01.588002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:01.588657 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:10:01.588637633 +0000 UTC m=+174.287500506 I0225 22:10:06.328999 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:10:06.32898417 +0000 UTC m=+179.027847023 I0225 22:10:06.348117 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-9g72v" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:10:06.34810083 +0000 UTC m=+179.046963683 I0225 22:10:06.378231 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:10:06.378219406 +0000 UTC m=+179.077082239 I0225 22:10:06.400677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:10:06.400991 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:10:06.400973786 +0000 UTC m=+179.099836609 I0225 22:10:06.417088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:12:38.735169 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-49.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:12:38.735243 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Issuing" to 2026-02-25 22:12:38.735206321 +0000 UTC m=+331.434069184 I0225 22:12:38.735367 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready" to 2026-02-25 22:12:38.735352895 +0000 UTC m=+331.434215758 I0225 22:12:38.751921 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-49.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-49.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:12:38.751980 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready" to 2026-02-25 22:12:38.751974064 +0000 UTC m=+331.450836897 I0225 22:12:38.952253 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-49.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-49.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:12:38.983559 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-49.nip.io-tls-6w8r9" condition "Approved" to 2026-02-25 22:12:38.983546813 +0000 UTC m=+331.682409646 I0225 22:12:39.002916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-49.nip.io-tls-6w8r9" condition "Ready" to 2026-02-25 22:12:39.002893499 +0000 UTC m=+331.701756362 I0225 22:12:39.028019 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:12:39.028008137 +0000 UTC m=+331.726870970 I0225 22:12:39.048294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-49.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-49.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:12:39.048793 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:12:39.048782093 +0000 UTC m=+331.747644946 I0225 22:12:39.068769 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-49.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-49.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:13:48.131888 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:13:48.131939 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-02-25 22:13:48.131889824 +0000 UTC m=+400.830752677 I0225 22:13:48.131964 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-02-25 22:13:48.131951866 +0000 UTC m=+400.830814729 E0225 22:13:48.144376 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0225 22:13:48.144429 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-02-25 22:13:48.144414075 +0000 UTC m=+400.843276938 E0225 22:13:48.144495 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0225 22:13:48.146275 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:13:48.146346 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:13:48.146368 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-02-25 22:13:48.14636166 +0000 UTC m=+400.845224493 E0225 22:13:48.156948 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0225 22:13:48.157011 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0225 22:13:48.157032 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0225 22:13:48.157064 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0225 22:13:48.179735 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:13:48.184963 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kt5z2" condition "Approved" to 2026-02-25 22:13:48.184951423 +0000 UTC m=+400.883814276 I0225 22:13:48.197033 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kt5z2" condition "Ready" to 2026-02-25 22:13:48.197018612 +0000 UTC m=+400.895881465 I0225 22:13:48.220509 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:13:48.220496251 +0000 UTC m=+400.919359084 I0225 22:13:48.239490 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:13:48.286540 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:13:53.157393 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:13:53.157381009 +0000 UTC m=+405.856243842 I0225 22:14:29.132094 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-02-25 22:14:29.132081916 +0000 UTC m=+441.830944749 I0225 22:14:29.132222 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:29.132259 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-02-25 22:14:29.13224999 +0000 UTC m=+441.831112813 I0225 22:14:29.132313 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:29.132491 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-02-25 22:14:29.132483067 +0000 UTC m=+441.831345900 I0225 22:14:29.132516 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-02-25 22:14:29.132515148 +0000 UTC m=+441.831377961 I0225 22:14:29.132500 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-02-25 22:14:29.132496107 +0000 UTC m=+441.831358920 I0225 22:14:29.132634 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:29.132749 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-02-25 22:14:29.132744004 +0000 UTC m=+441.831606837 I0225 22:14:29.189327 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:29.189429 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-02-25 22:14:29.189399276 +0000 UTC m=+441.888262099 I0225 22:14:29.190416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:29.190475 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:29.190504 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-02-25 22:14:29.190499036 +0000 UTC m=+441.889361849 I0225 22:14:29.196405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:29.196473 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:29.196494 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-02-25 22:14:29.196489104 +0000 UTC m=+441.895351927 I0225 22:14:29.470605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-d2cp6" condition "Approved" to 2026-02-25 22:14:29.470595186 +0000 UTC m=+442.169457999 I0225 22:14:29.491693 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-d2cp6" condition "Ready" to 2026-02-25 22:14:29.491670384 +0000 UTC m=+442.190533247 I0225 22:14:29.517584 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:14:29.517573807 +0000 UTC m=+442.216436640 I0225 22:14:29.538447 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:29.602387 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:29.610744 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-hh7cr" condition "Approved" to 2026-02-25 22:14:29.610736097 +0000 UTC m=+442.309598930 I0225 22:14:29.629211 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-hh7cr" condition "Ready" to 2026-02-25 22:14:29.629200942 +0000 UTC m=+442.328063765 I0225 22:14:29.645758 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:29.666611 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:29.666641 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-02-25 22:14:29.666634627 +0000 UTC m=+442.365497450 I0225 22:14:29.694161 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:14:29.694149485 +0000 UTC m=+442.393012308 I0225 22:14:29.714134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:30.081967 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-vwgcw" condition "Approved" to 2026-02-25 22:14:30.081949761 +0000 UTC m=+442.780812624 E0225 22:14:30.161970 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-z2d2v\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0225 22:14:30.530285 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-vwgcw" condition "Ready" to 2026-02-25 22:14:30.530268096 +0000 UTC m=+443.229130959 I0225 22:14:30.620425 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-mljvd" condition "Approved" to 2026-02-25 22:14:30.620403843 +0000 UTC m=+443.319266696 I0225 22:14:31.177606 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-mljvd" condition "Ready" to 2026-02-25 22:14:31.177590017 +0000 UTC m=+443.876452870 I0225 22:14:31.543522 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:31.545673 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-mljvd" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-n8269" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0225 22:14:31.616492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:31.971252 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-74wjq" condition "Approved" to 2026-02-25 22:14:31.971240202 +0000 UTC m=+444.670103035 I0225 22:14:32.027092 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:32.327966 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-74wjq" condition "Ready" to 2026-02-25 22:14:32.32795514 +0000 UTC m=+445.026817973 I0225 22:14:32.618057 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:14:32.618037938 +0000 UTC m=+445.316900771 I0225 22:14:32.716144 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:32.716579 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:14:32.716566669 +0000 UTC m=+445.415429502 I0225 22:14:32.917722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:37.754955 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" condition "Ready" to 2026-02-25 22:14:37.754941287 +0000 UTC m=+450.453804120 I0225 22:14:37.756252 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:37.756301 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" condition "Issuing" to 2026-02-25 22:14:37.756289655 +0000 UTC m=+450.455152518 I0225 22:14:37.771362 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-njwbk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:37.771449 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:14:37.771474 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" condition "Issuing" to 2026-02-25 22:14:37.771466958 +0000 UTC m=+450.470329791 I0225 22:14:38.033723 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-njwbk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:38.041767 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-njwbk-p9tdw" condition "Approved" to 2026-02-25 22:14:38.041754314 +0000 UTC m=+450.740617137 I0225 22:14:38.065770 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-njwbk-p9tdw" condition "Ready" to 2026-02-25 22:14:38.065754874 +0000 UTC m=+450.764617707 I0225 22:14:38.594568 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:14:38.594544846 +0000 UTC m=+451.293407699 I0225 22:14:38.884931 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-njwbk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:38.885318 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:14:38.885310833 +0000 UTC m=+451.584173666 I0225 22:14:38.904314 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-njwbk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:14:38.906530 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-njwbk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-njwbk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:15:08.806864 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:15:08.806947 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-02-25 22:15:08.806895232 +0000 UTC m=+481.505758085 I0225 22:15:08.807054 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-02-25 22:15:08.807029126 +0000 UTC m=+481.505892019 I0225 22:15:08.833622 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:15:08.833719 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:15:08.833749 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-02-25 22:15:08.833739552 +0000 UTC m=+481.532602405 I0225 22:15:09.069299 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-kvz9g" condition "Approved" to 2026-02-25 22:15:09.069287706 +0000 UTC m=+481.768150539 I0225 22:15:09.087979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-kvz9g" condition "Ready" to 2026-02-25 22:15:09.087967497 +0000 UTC m=+481.786830330 I0225 22:15:09.113286 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:15:09.113273954 +0000 UTC m=+481.812136787 I0225 22:15:09.133371 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:15:09.176060 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:18:35.340952 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:18:35.341053 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-02-25 22:18:35.341028242 +0000 UTC m=+688.039891095 I0225 22:18:35.341090 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-02-25 22:18:35.341016342 +0000 UTC m=+688.039879195 I0225 22:18:35.356914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:18:35.357065 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-02-25 22:18:35.357050414 +0000 UTC m=+688.055913277 I0225 22:18:35.757246 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:18:35.786424 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-b686v" condition "Approved" to 2026-02-25 22:18:35.786408886 +0000 UTC m=+688.485271719 I0225 22:18:35.805825 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-b686v" condition "Ready" to 2026-02-25 22:18:35.805815621 +0000 UTC m=+688.504678454 I0225 22:18:35.833826 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:18:35.833811772 +0000 UTC m=+688.532674605 I0225 22:18:35.856211 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:18:35.856561 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:18:35.856554129 +0000 UTC m=+688.555416962 I0225 22:18:35.868121 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:18:35.876462 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:18:35.876769 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:18:35.876761096 +0000 UTC m=+688.575623929 I0225 22:18:35.878040 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:21:01.583124 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-02-25 22:21:01.583097238 +0000 UTC m=+834.281960091 I0225 22:21:01.583371 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:21:01.583466 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-02-25 22:21:01.583456778 +0000 UTC m=+834.282319641 I0225 22:21:01.600328 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:21:01.600419 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:21:01.600450 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-02-25 22:21:01.600441745 +0000 UTC m=+834.299304588 I0225 22:21:01.740890 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:21:01.759442 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-q2trs" condition "Approved" to 2026-02-25 22:21:01.759422015 +0000 UTC m=+834.458284848 I0225 22:21:01.776517 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-q2trs" condition "Ready" to 2026-02-25 22:21:01.776504385 +0000 UTC m=+834.475367218 I0225 22:21:01.802934 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:21:01.802919301 +0000 UTC m=+834.501782164 I0225 22:21:01.827997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:21:01.881066 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:22:20.933296 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:22:20.933323 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-02-25 22:22:20.933296967 +0000 UTC m=+913.632159800 I0225 22:22:20.933385 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-02-25 22:22:20.933375209 +0000 UTC m=+913.632238072 I0225 22:22:20.952475 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:22:20.952559 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:22:20.952579 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-02-25 22:22:20.952570877 +0000 UTC m=+913.651433710 I0225 22:22:21.061855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:22:21.066972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-tfjt8" condition "Approved" to 2026-02-25 22:22:21.066957499 +0000 UTC m=+913.765820352 I0225 22:22:21.089877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-tfjt8" condition "Ready" to 2026-02-25 22:22:21.089864819 +0000 UTC m=+913.788727652 I0225 22:22:21.116824 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:22:21.116814269 +0000 UTC m=+913.815677092 I0225 22:22:21.137632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:22:21.137948 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:22:21.13794125 +0000 UTC m=+913.836804083 I0225 22:22:21.154385 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:22:21.155575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:22:21.155842 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:22:21.155834541 +0000 UTC m=+913.854697374 I0225 22:25:27.171999 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-02-25 22:25:27.171961534 +0000 UTC m=+1099.870824357 I0225 22:25:27.172129 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:25:27.172223 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-02-25 22:25:27.172212691 +0000 UTC m=+1099.871075544 I0225 22:25:27.189186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:25:27.189262 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0225 22:25:27.189295 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-02-25 22:25:27.189290239 +0000 UTC m=+1099.888153072 I0225 22:25:27.343754 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-vqwd7" condition "Approved" to 2026-02-25 22:25:27.343729805 +0000 UTC m=+1100.042592638 I0225 22:25:27.361493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-vqwd7" condition "Ready" to 2026-02-25 22:25:27.361478071 +0000 UTC m=+1100.060340904 I0225 22:25:27.390685 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:25:27.390663571 +0000 UTC m=+1100.089526404 I0225 22:25:27.412023 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:25:27.413094 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-25 22:25:27.413085067 +0000 UTC m=+1100.111947900 I0225 22:25:27.424417 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0225 22:25:27.432575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"