I0408 00:35:33.411554 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0408 00:35:33.411650 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0408 00:35:33.411714 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0408 00:35:33.415649 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0408 00:35:33.416451 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0408 00:35:33.416708 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0408 00:35:33.416774 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0408 00:35:33.420593 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0408 00:35:33.436644 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0408 00:35:33.441289 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0408 00:35:33.441387 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0408 00:35:33.443998 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0408 00:35:33.446349 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0408 00:35:33.451624 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0408 00:35:33.454469 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0408 00:35:33.456943 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0408 00:35:33.459385 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0408 00:35:33.459448 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0408 00:35:33.459421 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0408 00:35:33.461896 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0408 00:35:33.463674 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0408 00:35:33.467722 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0408 00:35:33.472830 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0408 00:35:33.477170 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0408 00:35:33.479002 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0408 00:35:33.480951 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0408 00:35:33.481026 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0408 00:35:33.483007 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0408 00:35:33.483026 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0408 00:35:33.483104 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0408 00:35:33.485136 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0408 00:35:33.487152 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0408 00:35:33.490889 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0408 00:35:33.491908 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.494458 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.494576 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.534006 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.547372 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.565385 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.580084 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.596148 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.599269 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:33.612759 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 00:35:44.344686 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-08 00:35:44.344666075 +0000 UTC m=+10.964200270 I0408 00:35:45.061076 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-08 00:35:45.061058661 +0000 UTC m=+11.680592846 I0408 00:35:45.061284 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:35:45.061346 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 00:35:45.06133887 +0000 UTC m=+11.680873055 E0408 00:35:45.076229 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 00:35:45.076325 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-08 00:35:45.076314876 +0000 UTC m=+11.695849061 E0408 00:35:45.076361 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 00:35:45.078123 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:35:45.078195 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:35:45.078224 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 00:35:45.07821648 +0000 UTC m=+11.697750665 E0408 00:35:45.087087 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0408 00:35:45.087471 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 00:35:45.087549 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 00:35:45.087598 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0408 00:35:45.115626 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-h86hw" condition "Approved" to 2026-04-08 00:35:45.115614142 +0000 UTC m=+11.735148307 I0408 00:35:45.127760 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-h86hw" condition "Ready" to 2026-04-08 00:35:45.127751997 +0000 UTC m=+11.747286162 I0408 00:35:45.150230 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:35:45.150217335 +0000 UTC m=+11.769751530 I0408 00:35:45.168878 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:35:45.211154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:35:50.088268 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:35:50.088254594 +0000 UTC m=+16.707788789 I0408 00:36:09.772894 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:36:09.773092 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 00:36:09.773031495 +0000 UTC m=+36.392565660 I0408 00:36:09.772957 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-08 00:36:09.772941653 +0000 UTC m=+36.392475838 I0408 00:36:09.782176 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-08 00:36:09.782158104 +0000 UTC m=+36.401692269 I0408 00:36:09.791000 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:36:09.791079 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:36:09.791104 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-08 00:36:09.791099338 +0000 UTC m=+36.410633503 I0408 00:36:10.037314 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:36:10.045331 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9wsgv" condition "Approved" to 2026-04-08 00:36:10.045316012 +0000 UTC m=+36.664850207 I0408 00:36:10.077052 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9wsgv" condition "Ready" to 2026-04-08 00:36:10.077019423 +0000 UTC m=+36.696553618 I0408 00:36:10.112401 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:36:10.112383038 +0000 UTC m=+36.731917233 I0408 00:36:10.139824 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:36:10.197218 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:37:52.720209 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-08 00:37:52.720164704 +0000 UTC m=+139.339698899 I0408 00:37:52.720749 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:37:52.720786 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-08 00:37:52.72077803 +0000 UTC m=+139.340312215 E0408 00:37:52.734309 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 00:37:52.734361 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-08 00:37:52.734353774 +0000 UTC m=+139.353887939 I0408 00:37:52.734412 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 00:37:52.739270 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:37:52.739356 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:37:52.739375 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-08 00:37:52.739368419 +0000 UTC m=+139.358902584 E0408 00:37:52.745214 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0408 00:37:52.746701 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 00:37:52.746755 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0408 00:37:52.746833 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0408 00:37:52.749113 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-08 00:37:52.749091569 +0000 UTC m=+139.368625764 I0408 00:37:52.749244 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:37:52.749297 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-08 00:37:52.749284564 +0000 UTC m=+139.368818739 I0408 00:37:52.764446 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:37:52.764542 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:37:52.764571 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-08 00:37:52.764561944 +0000 UTC m=+139.384096119 I0408 00:37:52.966146 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-nv5jh" condition "Approved" to 2026-04-08 00:37:52.966135071 +0000 UTC m=+139.585669226 I0408 00:37:52.977365 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-rptm2" condition "Approved" to 2026-04-08 00:37:52.977355532 +0000 UTC m=+139.596889687 I0408 00:37:52.999743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-nv5jh" condition "Ready" to 2026-04-08 00:37:52.999727152 +0000 UTC m=+139.619261317 I0408 00:37:53.010791 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-rptm2" condition "Ready" to 2026-04-08 00:37:53.010769508 +0000 UTC m=+139.630303693 I0408 00:37:53.026446 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:37:53.026417158 +0000 UTC m=+139.645951353 I0408 00:37:53.041363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:37:53.041616 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:37:53.041604606 +0000 UTC m=+139.661138771 I0408 00:37:53.061829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:37:57.746532 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:37:57.746518652 +0000 UTC m=+144.366052837 I0408 00:37:57.764317 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-rptm2" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:37:57.764304118 +0000 UTC m=+144.383838283 I0408 00:37:57.794463 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:37:57.794446757 +0000 UTC m=+144.413980942 I0408 00:37:57.836976 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:40:24.520468 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-157.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:40:24.520511 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-157.nip.io-tls" condition "Ready" to 2026-04-08 00:40:24.520460786 +0000 UTC m=+291.139994971 I0408 00:40:24.523142 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-157.nip.io-tls" condition "Issuing" to 2026-04-08 00:40:24.520517508 +0000 UTC m=+291.140051673 I0408 00:40:24.539258 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-157.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-157.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:40:24.539358 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-157.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:40:24.539394 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-157.nip.io-tls" condition "Issuing" to 2026-04-08 00:40:24.539381489 +0000 UTC m=+291.158915684 I0408 00:40:24.788945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-157.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-157.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:40:24.798794 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-157.nip.io-tls-x782h" condition "Approved" to 2026-04-08 00:40:24.79877876 +0000 UTC m=+291.418312945 I0408 00:40:24.815632 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-157.nip.io-tls-x782h" condition "Ready" to 2026-04-08 00:40:24.815621508 +0000 UTC m=+291.435155673 I0408 00:40:24.843404 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-157.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:40:24.843388651 +0000 UTC m=+291.462922816 I0408 00:40:24.874506 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-157.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-157.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:40:24.926403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-157.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-157.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:41:34.461216 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:41:34.461239 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-08 00:41:34.461197095 +0000 UTC m=+361.080731260 I0408 00:41:34.461256 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-08 00:41:34.461252136 +0000 UTC m=+361.080786291 E0408 00:41:34.473532 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 00:41:34.473572 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-08 00:41:34.473564232 +0000 UTC m=+361.093098397 E0408 00:41:34.473625 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 00:41:34.476293 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:41:34.476357 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:41:34.476380 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-08 00:41:34.476373316 +0000 UTC m=+361.095907481 E0408 00:41:34.486113 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0408 00:41:34.486206 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 00:41:34.486295 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 00:41:34.486430 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0408 00:41:34.509795 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:41:34.510217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-624hf" condition "Approved" to 2026-04-08 00:41:34.510201882 +0000 UTC m=+361.129736077 I0408 00:41:34.522653 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-624hf" condition "Ready" to 2026-04-08 00:41:34.522637552 +0000 UTC m=+361.142171747 I0408 00:41:34.540680 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:41:34.540669509 +0000 UTC m=+361.160203674 I0408 00:41:34.558170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:41:34.558537 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:41:34.55851027 +0000 UTC m=+361.178044435 I0408 00:41:34.571289 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:41:34.571453 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:41:34.571448673 +0000 UTC m=+361.190982838 I0408 00:41:34.571726 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:41:39.486849 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:41:39.486834202 +0000 UTC m=+366.106368387 I0408 00:42:17.524757 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:17.524903 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-08 00:42:17.524893947 +0000 UTC m=+404.144428102 I0408 00:42:17.524680 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-08 00:42:17.52464004 +0000 UTC m=+404.144174195 I0408 00:42:17.528160 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-08 00:42:17.528150308 +0000 UTC m=+404.147684473 I0408 00:42:17.528491 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:17.528554 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:17.528563 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-08 00:42:17.528554509 +0000 UTC m=+404.148088664 I0408 00:42:17.528702 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-08 00:42:17.528697883 +0000 UTC m=+404.148232038 I0408 00:42:17.528573 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-08 00:42:17.528569189 +0000 UTC m=+404.148103344 I0408 00:42:17.560120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:17.560206 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-08 00:42:17.560197272 +0000 UTC m=+404.179731457 I0408 00:42:17.561450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:17.561537 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:17.561571 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-08 00:42:17.561562479 +0000 UTC m=+404.181096674 I0408 00:42:17.562867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:17.562971 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:17.563004 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-08 00:42:17.56299737 +0000 UTC m=+404.182531555 I0408 00:42:17.727637 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:17.746946 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:17.758805 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hpzzl" condition "Approved" to 2026-04-08 00:42:17.758795859 +0000 UTC m=+404.378330024 I0408 00:42:17.761731 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-qmzdn" condition "Approved" to 2026-04-08 00:42:17.761710312 +0000 UTC m=+404.381244497 I0408 00:42:17.779050 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hpzzl" condition "Ready" to 2026-04-08 00:42:17.779035044 +0000 UTC m=+404.398569229 I0408 00:42:17.780417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-qmzdn" condition "Ready" to 2026-04-08 00:42:17.780405552 +0000 UTC m=+404.399939707 I0408 00:42:17.839275 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:17.839263004 +0000 UTC m=+404.458797159 I0408 00:42:17.839867 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:17.83986378 +0000 UTC m=+404.459397935 I0408 00:42:17.857857 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:17.858132 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:17.85812663 +0000 UTC m=+404.477660805 I0408 00:42:17.858962 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:17.859202 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:17.859197609 +0000 UTC m=+404.478731774 I0408 00:42:17.922935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:18.230255 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:18.320608 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:18.371002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:18.627199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-f2mfc" condition "Approved" to 2026-04-08 00:42:18.627172066 +0000 UTC m=+405.246706231 I0408 00:42:18.982790 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-f2mfc" condition "Ready" to 2026-04-08 00:42:18.982776253 +0000 UTC m=+405.602310438 I0408 00:42:19.270570 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:19.270548558 +0000 UTC m=+405.890082743 I0408 00:42:19.370624 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:19.371272 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:19.371259917 +0000 UTC m=+405.990794112 I0408 00:42:19.620220 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:19.669385 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:25.239998 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:25.240039 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" condition "Issuing" to 2026-04-08 00:42:25.240028539 +0000 UTC m=+411.859562724 I0408 00:42:25.240518 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" condition "Ready" to 2026-04-08 00:42:25.240491392 +0000 UTC m=+411.860025607 I0408 00:42:25.257137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-crpw9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:25.257226 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" condition "Ready" to 2026-04-08 00:42:25.257219418 +0000 UTC m=+411.876753603 I0408 00:42:25.726781 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-crpw9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:25.758290 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-crpw9-w46lr" condition "Approved" to 2026-04-08 00:42:25.758271081 +0000 UTC m=+412.377805276 I0408 00:42:25.781054 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-crpw9-w46lr" condition "Ready" to 2026-04-08 00:42:25.781043226 +0000 UTC m=+412.400577401 I0408 00:42:25.807876 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:25.807855545 +0000 UTC m=+412.427389690 I0408 00:42:25.828961 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-crpw9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:25.886882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-crpw9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-crpw9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:47.418379 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-08 00:42:47.418363145 +0000 UTC m=+434.037897310 I0408 00:42:47.418474 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:47.418525 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 00:42:47.41851146 +0000 UTC m=+434.038045645 I0408 00:42:47.438291 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:42:47.438368 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:42:47.438392 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 00:42:47.438386278 +0000 UTC m=+434.057920443 I0408 00:42:47.578419 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4gnpw" condition "Approved" to 2026-04-08 00:42:47.578403019 +0000 UTC m=+434.197937174 I0408 00:42:47.597056 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4gnpw" condition "Ready" to 2026-04-08 00:42:47.597047247 +0000 UTC m=+434.216581402 I0408 00:42:47.622427 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:42:47.622411108 +0000 UTC m=+434.241945273 I0408 00:42:47.641193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:46:02.734902 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:46:02.735021 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-08 00:46:02.73498276 +0000 UTC m=+629.354516955 I0408 00:46:02.735360 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-08 00:46:02.735341679 +0000 UTC m=+629.354875924 I0408 00:46:02.752329 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:46:02.752417 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:46:02.752441 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-08 00:46:02.752434109 +0000 UTC m=+629.371968274 I0408 00:46:02.911731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:46:02.919111 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-8f99w" condition "Approved" to 2026-04-08 00:46:02.919093096 +0000 UTC m=+629.538627271 I0408 00:46:02.938438 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-8f99w" condition "Ready" to 2026-04-08 00:46:02.938427164 +0000 UTC m=+629.557961329 I0408 00:46:02.964867 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:46:02.964846735 +0000 UTC m=+629.584380880 I0408 00:46:02.987021 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:46:02.987280 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:46:02.987273923 +0000 UTC m=+629.606808078 I0408 00:46:03.003809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:48:24.847308 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:48:24.847414 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-08 00:48:24.847400728 +0000 UTC m=+771.466934913 I0408 00:48:24.847306 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-08 00:48:24.847269455 +0000 UTC m=+771.466803640 I0408 00:48:24.871375 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:48:24.871595 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:48:24.871710 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-08 00:48:24.871618731 +0000 UTC m=+771.491152926 I0408 00:48:25.256291 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-mmddv" condition "Approved" to 2026-04-08 00:48:25.256280679 +0000 UTC m=+771.875814844 I0408 00:48:25.283728 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-mmddv" condition "Ready" to 2026-04-08 00:48:25.28371755 +0000 UTC m=+771.903251715 I0408 00:48:25.313747 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:48:25.313732813 +0000 UTC m=+771.933266978 I0408 00:48:25.333930 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:48:25.384804 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:49:26.466951 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-08 00:49:26.466933685 +0000 UTC m=+833.086467880 I0408 00:49:26.467489 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:49:26.467550 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-08 00:49:26.467543581 +0000 UTC m=+833.087077776 I0408 00:49:26.485625 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:49:26.485685 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:49:26.485704 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-08 00:49:26.485698141 +0000 UTC m=+833.105232306 I0408 00:49:26.820058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:49:26.827330 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-phxkz" condition "Approved" to 2026-04-08 00:49:26.827304504 +0000 UTC m=+833.446838699 I0408 00:49:26.858116 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-phxkz" condition "Ready" to 2026-04-08 00:49:26.858081908 +0000 UTC m=+833.477616093 I0408 00:49:26.894799 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:49:26.894785598 +0000 UTC m=+833.514319763 I0408 00:49:26.916771 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:49:26.917094 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:49:26.917086558 +0000 UTC m=+833.536620733 I0408 00:49:26.939619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:49:26.940044 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:49:26.940035006 +0000 UTC m=+833.559569181 I0408 00:52:18.199048 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-08 00:52:18.199012746 +0000 UTC m=+1004.818546931 I0408 00:52:18.199127 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:52:18.199163 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-08 00:52:18.19915474 +0000 UTC m=+1004.818688905 I0408 00:52:18.216640 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:52:18.216701 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 00:52:18.216713 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-08 00:52:18.21670853 +0000 UTC m=+1004.836242685 I0408 00:52:18.520577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:52:18.529730 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ssd5v" condition "Approved" to 2026-04-08 00:52:18.529710081 +0000 UTC m=+1005.149244246 I0408 00:52:18.547563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ssd5v" condition "Ready" to 2026-04-08 00:52:18.547554329 +0000 UTC m=+1005.167088484 I0408 00:52:18.572960 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:52:18.572944401 +0000 UTC m=+1005.192478566 I0408 00:52:18.594052 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 00:52:18.594372 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 00:52:18.594365266 +0000 UTC m=+1005.213899431 I0408 00:52:18.613459 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"