I0519 16:59:58.999357 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0519 16:59:58.999518 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0519 16:59:58.999628 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0519 16:59:59.003874 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0519 16:59:59.004296 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0519 16:59:59.004422 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0519 16:59:59.004486 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0519 16:59:59.006853 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0519 16:59:59.796750 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0519 16:59:59.801154 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0519 16:59:59.801359 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0519 16:59:59.813010 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0519 16:59:59.817783 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0519 16:59:59.817880 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0519 16:59:59.818817 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0519 16:59:59.823766 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0519 16:59:59.825486 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0519 16:59:59.827511 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0519 16:59:59.833755 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0519 16:59:59.837888 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0519 16:59:59.837956 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0519 16:59:59.839885 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0519 16:59:59.843175 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0519 16:59:59.847041 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0519 16:59:59.848870 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0519 16:59:59.850698 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0519 16:59:59.852552 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0519 16:59:59.852576 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0519 16:59:59.852685 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0519 16:59:59.854868 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0519 16:59:59.866187 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0519 16:59:59.866214 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0519 16:59:59.866660 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0519 16:59:59.871295 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.877233 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.883748 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.884168 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.884294 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.884920 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.886698 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.888097 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 16:59:59.896077 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:00:00.159521 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:02:34.149738 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-05-19 17:02:34.14968199 +0000 UTC m=+155.191837631 I0519 17:02:34.150285 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:02:34.150338 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-05-19 17:02:34.150326865 +0000 UTC m=+155.192482486 E0519 17:02:34.165791 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0519 17:02:34.165868 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-05-19 17:02:34.16585465 +0000 UTC m=+155.208010271 I0519 17:02:34.165903 1 sync.go:62] "Error initializing issuer: secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0519 17:02:34.170244 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:34.170646 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-05-19 17:02:34.170631288 +0000 UTC m=+155.212786949 E0519 17:02:34.183537 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-client" E0519 17:02:34.183801 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0519 17:02:34.183859 1 sync.go:62] "Error initializing issuer: secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0519 17:02:34.183905 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-client" I0519 17:02:34.202296 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:34.238916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-kr6w7" condition "Approved" to 2026-05-19 17:02:34.238883596 +0000 UTC m=+155.281039217 I0519 17:02:34.271829 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-kr6w7" condition "Ready" to 2026-05-19 17:02:34.271814227 +0000 UTC m=+155.313969848 I0519 17:02:34.304657 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:34.304635656 +0000 UTC m=+155.346791297 I0519 17:02:34.330192 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:34.331634 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:34.331619622 +0000 UTC m=+155.373775283 I0519 17:02:34.351301 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:34.364312 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:34.880667 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:02:34.882598 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-05-19 17:02:34.882574344 +0000 UTC m=+155.924730005 I0519 17:02:34.881480 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-19 17:02:34.881463389 +0000 UTC m=+155.923619000 E0519 17:02:34.903292 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0519 17:02:34.903582 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-05-19 17:02:34.903571183 +0000 UTC m=+155.945726804 I0519 17:02:34.905422 1 sync.go:62] "Error initializing issuer: secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0519 17:02:34.905326 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:34.905711 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-19 17:02:34.905700432 +0000 UTC m=+155.947856043 E0519 17:02:34.923783 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-server" E0519 17:02:34.923926 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0519 17:02:34.923960 1 sync.go:62] "Error initializing issuer: secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0519 17:02:34.923995 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-server" I0519 17:02:34.927138 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:34.958647 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-v4dlw" condition "Approved" to 2026-05-19 17:02:34.95862402 +0000 UTC m=+156.000779641 I0519 17:02:34.978223 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-v4dlw" condition "Ready" to 2026-05-19 17:02:34.978212777 +0000 UTC m=+156.020368388 I0519 17:02:35.045129 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:35.045104153 +0000 UTC m=+156.087259814 I0519 17:02:35.071012 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:35.071439 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:35.071426404 +0000 UTC m=+156.113582025 I0519 17:02:35.097268 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:35.683318 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:02:35.683362 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-05-19 17:02:35.683351577 +0000 UTC m=+156.725507198 I0519 17:02:35.683781 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-05-19 17:02:35.683775437 +0000 UTC m=+156.725931058 I0519 17:02:35.706431 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:35.706515 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:02:35.706539 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-05-19 17:02:35.706530817 +0000 UTC m=+156.748686458 I0519 17:02:35.771395 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-jnn42" condition "Approved" to 2026-05-19 17:02:35.771378826 +0000 UTC m=+156.813534467 I0519 17:02:35.795914 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-jnn42" condition "Ready" to 2026-05-19 17:02:35.795895245 +0000 UTC m=+156.838050896 I0519 17:02:39.187169 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:39.187154771 +0000 UTC m=+160.229310382 I0519 17:02:39.242156 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-jnn42" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:39.242135996 +0000 UTC m=+160.284291637 I0519 17:02:39.357045 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:39.357026148 +0000 UTC m=+160.399181769 I0519 17:02:39.395745 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:02:39.926666 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:02:39.926653706 +0000 UTC m=+160.968809317 I0519 17:05:15.371928 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-05-19 17:05:15.371910355 +0000 UTC m=+316.414065966 I0519 17:05:15.377018 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:05:15.377098 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-19 17:05:15.377082603 +0000 UTC m=+316.419238254 I0519 17:05:15.395878 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:05:15.395990 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:05:15.396018 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-19 17:05:15.396008826 +0000 UTC m=+316.438164457 I0519 17:05:15.548607 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-78fbs" condition "Approved" to 2026-05-19 17:05:15.548588547 +0000 UTC m=+316.590744198 I0519 17:05:15.572951 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-78fbs" condition "Ready" to 2026-05-19 17:05:15.572935533 +0000 UTC m=+316.615091154 I0519 17:05:15.614295 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:05:15.614275507 +0000 UTC m=+316.656431128 I0519 17:05:15.642676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:05:15.642953 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:05:15.642946751 +0000 UTC m=+316.685102372 I0519 17:05:15.665657 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:08.832608 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-05-19 17:06:08.832579757 +0000 UTC m=+369.874735408 I0519 17:06:08.865350 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-19 17:06:08.865322774 +0000 UTC m=+369.907478425 I0519 17:06:08.865486 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:08.865602 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-19 17:06:08.865588101 +0000 UTC m=+369.907743742 I0519 17:06:08.892558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:08.892645 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-19 17:06:08.892637867 +0000 UTC m=+369.934793508 E0519 17:06:08.926210 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.issuers" I0519 17:06:09.019059 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-19 17:06:09.019034512 +0000 UTC m=+370.061190153 E0519 17:06:09.041002 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.certificates-key-manager" key="cert-manager-test/selfsigned-cert" I0519 17:06:09.049593 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-19 17:06:09.049561218 +0000 UTC m=+370.091716839 I0519 17:06:09.049620 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:09.049661 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-19 17:06:09.04964938 +0000 UTC m=+370.091805031 I0519 17:06:09.074369 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:09.074500 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-19 17:06:09.074488277 +0000 UTC m=+370.116643898 I0519 17:06:09.266783 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:09.372139 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-7fjz8" condition "Approved" to 2026-05-19 17:06:09.372127249 +0000 UTC m=+370.414282870 I0519 17:06:09.815871 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-7fjz8" condition "Ready" to 2026-05-19 17:06:09.815855946 +0000 UTC m=+370.858011577 I0519 17:06:09.969839 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:09.969787429 +0000 UTC m=+371.011943090 I0519 17:06:10.024037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:10.024544 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:10.024531788 +0000 UTC m=+371.066687409 I0519 17:06:10.222855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:11.664217 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-19 17:06:11.664191327 +0000 UTC m=+372.706346988 I0519 17:06:11.693027 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-19 17:06:11.693011194 +0000 UTC m=+372.735166815 I0519 17:06:11.693020 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:11.693097 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-19 17:06:11.693083456 +0000 UTC m=+372.735239107 I0519 17:06:11.768228 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:11.768355 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:11.768402 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-19 17:06:11.768384595 +0000 UTC m=+372.810540246 I0519 17:06:12.287960 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:12.391893 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-9fnl4" condition "Approved" to 2026-05-19 17:06:12.391870483 +0000 UTC m=+373.434026094 I0519 17:06:12.444774 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-9fnl4" condition "Ready" to 2026-05-19 17:06:12.44475939 +0000 UTC m=+373.486915031 I0519 17:06:12.583739 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:12.583691081 +0000 UTC m=+373.625846702 I0519 17:06:12.626873 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:12.627314 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:12.627306615 +0000 UTC m=+373.669462216 I0519 17:06:12.686375 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:12.690008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:12.954456 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-19 17:06:12.954438931 +0000 UTC m=+373.996594552 I0519 17:06:12.986475 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-19 17:06:12.986460202 +0000 UTC m=+374.028615803 I0519 17:06:12.986795 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:12.986822 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-19 17:06:12.9868193 +0000 UTC m=+374.028974901 I0519 17:06:13.015161 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:13.015256 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:13.015285 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-19 17:06:13.01527855 +0000 UTC m=+374.057434161 I0519 17:06:13.402391 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-b6v4z" condition "Approved" to 2026-05-19 17:06:13.402369753 +0000 UTC m=+374.444525394 I0519 17:06:13.443681 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-b6v4z" condition "Ready" to 2026-05-19 17:06:13.443664696 +0000 UTC m=+374.485820317 I0519 17:06:13.779938 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:13.779919399 +0000 UTC m=+374.822075080 I0519 17:06:13.842413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:13.843006 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:13.842996808 +0000 UTC m=+374.885152429 I0519 17:06:13.906869 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:13.914629 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:14.761887 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-19 17:06:14.761856988 +0000 UTC m=+375.804012659 I0519 17:06:14.887669 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-19 17:06:14.887623468 +0000 UTC m=+375.929779129 I0519 17:06:14.888198 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:14.889515 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-19 17:06:14.889476281 +0000 UTC m=+375.931631932 I0519 17:06:15.079244 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:15.079410 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:06:15.079452 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-19 17:06:15.079444166 +0000 UTC m=+376.121599797 I0519 17:06:15.602287 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-4kk4k" condition "Approved" to 2026-05-19 17:06:15.602263056 +0000 UTC m=+376.644418677 I0519 17:06:15.812458 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-4kk4k" condition "Ready" to 2026-05-19 17:06:15.812444163 +0000 UTC m=+376.854599784 I0519 17:06:16.261854 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:16.261842229 +0000 UTC m=+377.303997850 I0519 17:06:16.357186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:16.357528 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:06:16.357520012 +0000 UTC m=+377.399675623 I0519 17:06:16.540517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:06:16.609549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:10:11.461931 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-05-19 17:10:11.461737952 +0000 UTC m=+612.503893593 I0519 17:10:11.463327 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:10:11.463376 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-19 17:10:11.463366429 +0000 UTC m=+612.505522060 I0519 17:10:11.732028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:10:11.732194 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:10:11.732223 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-19 17:10:11.732215392 +0000 UTC m=+612.774371023 I0519 17:10:16.035480 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-ffp27" condition "Approved" to 2026-05-19 17:10:16.035463947 +0000 UTC m=+617.077619568 I0519 17:10:17.119248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-ffp27" condition "Ready" to 2026-05-19 17:10:17.119232453 +0000 UTC m=+618.161388104 I0519 17:10:18.850336 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:10:18.85032601 +0000 UTC m=+619.892481631 I0519 17:10:19.556967 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:10:25.197283 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-05-19 17:10:25.197268997 +0000 UTC m=+626.239424608 I0519 17:10:25.197517 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:10:25.197531 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-05-19 17:10:25.197527743 +0000 UTC m=+626.239683354 I0519 17:10:25.861544 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:10:25.861676 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-05-19 17:10:25.861662899 +0000 UTC m=+626.903818550 I0519 17:10:25.959328 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:10:36.522822 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:10:38.644454 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-f78zn" condition "Approved" to 2026-05-19 17:10:38.644439672 +0000 UTC m=+639.686595283 I0519 17:10:39.324028 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-f78zn" condition "Ready" to 2026-05-19 17:10:39.32401091 +0000 UTC m=+640.366166551 I0519 17:10:40.150641 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:10:40.15061901 +0000 UTC m=+641.192774651 I0519 17:10:45.391062 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" E0519 17:11:30.840026 1 leaderelection.go:369] Failed to update lock: etcdserver: request timed out E0519 17:11:51.553472 1 leaderelection.go:332] error retrieving resource lock cert-manager/cert-manager-controller: Get "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": context deadline exceeded I0519 17:11:51.553533 1 leaderelection.go:285] failed to renew lease cert-manager/cert-manager-controller: timed out waiting for the condition E0519 17:12:01.810420 1 leaderelection.go:308] Failed to release lock: Operation cannot be fulfilled on leases.coordination.k8s.io "cert-manager-controller": the object has been modified; please apply your changes to the latest version and try again I0519 17:12:01.811169 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-venafi" I0519 17:12:01.811220 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-vault" I0519 17:12:01.811240 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-acme" I0519 17:12:01.811258 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.orders" I0519 17:12:01.811279 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-issuing" I0519 17:12:01.811294 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.challenges" I0519 17:12:01.811316 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-ca" I0519 17:12:01.811332 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-trigger" I0519 17:12:01.811353 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-readiness" I0519 17:12:01.811370 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.clusterissuers" I0519 17:12:01.811391 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-selfsigned" I0519 17:12:01.811409 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-request-manager" I0519 17:12:01.811424 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-key-manager" I0519 17:12:01.811442 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.issuers" I0519 17:12:01.811633 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-approver" I0519 17:12:01.811654 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.ingress-shim" I0519 17:12:01.811668 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-revision-manager" I0519 17:12:01.811682 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-metrics" E0519 17:12:01.812054 1 main.go:35] "error executing command" err="error starting controller: leader election lost" logger="cert-manager"