I0407 00:02:19.142803 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0407 00:02:19.143033 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0407 00:02:19.143146 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0407 00:02:19.147934 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0407 00:02:19.148609 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0407 00:02:19.148664 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0407 00:02:19.148724 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0407 00:02:19.151963 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0407 00:02:19.170568 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0407 00:02:19.174495 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0407 00:02:19.176776 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0407 00:02:19.183601 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0407 00:02:19.187447 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0407 00:02:19.187533 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0407 00:02:19.187545 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0407 00:02:19.190155 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0407 00:02:19.192726 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0407 00:02:19.192751 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0407 00:02:19.192805 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0407 00:02:19.195332 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0407 00:02:19.197644 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0407 00:02:19.200218 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0407 00:02:19.205041 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0407 00:02:19.208182 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0407 00:02:19.208209 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0407 00:02:19.208283 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0407 00:02:19.210496 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0407 00:02:19.212673 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0407 00:02:19.214950 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0407 00:02:19.217179 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0407 00:02:19.219524 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0407 00:02:19.221281 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0407 00:02:19.225737 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0407 00:02:19.228096 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.229536 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.230037 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.253255 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.273380 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.282939 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.297415 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.309178 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.313666 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:19.333063 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 00:02:32.511390 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-07 00:02:32.511377994 +0000 UTC m=+13.404348929 I0407 00:02:33.304866 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-07 00:02:33.304854468 +0000 UTC m=+14.197825413 I0407 00:02:33.305449 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:02:33.305493 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-07 00:02:33.305486651 +0000 UTC m=+14.198457606 E0407 00:02:33.319187 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 00:02:33.319293 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-07 00:02:33.319285091 +0000 UTC m=+14.212256036 E0407 00:02:33.319333 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 00:02:33.319922 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:02:33.320147 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:02:33.320182 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-07 00:02:33.320172079 +0000 UTC m=+14.213143034 E0407 00:02:33.331869 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0407 00:02:33.332134 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 00:02:33.332234 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 00:02:33.332356 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0407 00:02:33.370598 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-sj5g4" condition "Approved" to 2026-04-07 00:02:33.370586472 +0000 UTC m=+14.263557417 I0407 00:02:33.387216 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-sj5g4" condition "Ready" to 2026-04-07 00:02:33.387203039 +0000 UTC m=+14.280173964 I0407 00:02:33.419655 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:02:33.419613107 +0000 UTC m=+14.312584072 I0407 00:02:33.448232 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:02:33.513642 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:02:38.335506 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:02:38.335489908 +0000 UTC m=+19.228460873 I0407 00:03:01.239714 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-07 00:03:01.239615226 +0000 UTC m=+42.132586171 I0407 00:03:01.240388 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:03:01.240594 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-07 00:03:01.240580684 +0000 UTC m=+42.133551629 I0407 00:03:01.262965 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-07 00:03:01.26295269 +0000 UTC m=+42.155923635 I0407 00:03:01.276942 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:03:01.277183 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:03:01.277239 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-07 00:03:01.27722931 +0000 UTC m=+42.170200245 I0407 00:03:01.614617 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hggpr" condition "Approved" to 2026-04-07 00:03:01.614603236 +0000 UTC m=+42.507574181 I0407 00:03:01.676289 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hggpr" condition "Ready" to 2026-04-07 00:03:01.676268666 +0000 UTC m=+42.569239631 I0407 00:03:01.722363 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:03:01.722347103 +0000 UTC m=+42.615318048 I0407 00:03:01.819141 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:07:15.236583 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-44.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:07:15.236616 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-44.nip.io-tls" condition "Issuing" to 2026-04-07 00:07:15.236608033 +0000 UTC m=+296.129578968 I0407 00:07:15.237215 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-44.nip.io-tls" condition "Ready" to 2026-04-07 00:07:15.236475901 +0000 UTC m=+296.129446846 I0407 00:07:15.256050 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:07:15.256269 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-44.nip.io-tls" condition "Ready" to 2026-04-07 00:07:15.256258885 +0000 UTC m=+296.149229860 I0407 00:07:15.491672 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:07:15.526269 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-44.nip.io-tls-9x24f" condition "Approved" to 2026-04-07 00:07:15.526254945 +0000 UTC m=+296.419225920 I0407 00:07:15.554115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-44.nip.io-tls-9x24f" condition "Ready" to 2026-04-07 00:07:15.554100305 +0000 UTC m=+296.447071280 I0407 00:07:15.587466 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-44.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:07:15.587455947 +0000 UTC m=+296.480426892 I0407 00:07:15.621435 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:08:21.134457 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:08:21.134504 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-07 00:08:21.134492762 +0000 UTC m=+362.027463707 I0407 00:08:21.135053 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-07 00:08:21.135045402 +0000 UTC m=+362.028016347 E0407 00:08:21.147325 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 00:08:21.147403 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-07 00:08:21.147394091 +0000 UTC m=+362.040365036 E0407 00:08:21.147431 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 00:08:21.148594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:08:21.150418 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-07 00:08:21.150397417 +0000 UTC m=+362.043368362 I0407 00:08:21.164192 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:08:21.164256 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-07 00:08:21.164245814 +0000 UTC m=+362.057216759 E0407 00:08:21.165508 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0407 00:08:21.165636 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 00:08:21.165667 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 00:08:21.165714 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0407 00:08:21.174648 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-qstmh" condition "Approved" to 2026-04-07 00:08:21.174637266 +0000 UTC m=+362.067608201 I0407 00:08:21.187390 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-qstmh" condition "Ready" to 2026-04-07 00:08:21.187376363 +0000 UTC m=+362.080347298 I0407 00:08:21.213528 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:08:21.213511158 +0000 UTC m=+362.106482103 I0407 00:08:21.237135 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:08:21.237422 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:08:21.237412171 +0000 UTC m=+362.130383116 I0407 00:08:21.251677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:08:21.260199 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:08:21.262024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:08:21.262326 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:08:21.262316474 +0000 UTC m=+362.155287409 I0407 00:08:26.166172 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:08:26.166145991 +0000 UTC m=+367.059116956 I0407 00:09:08.392790 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:08.392835 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-07 00:09:08.392829906 +0000 UTC m=+409.285800841 I0407 00:09:08.393101 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-07 00:09:08.393098181 +0000 UTC m=+409.286069116 I0407 00:09:08.412805 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:08.412839 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 00:09:08.41283335 +0000 UTC m=+409.305804285 I0407 00:09:08.413142 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-07 00:09:08.413138786 +0000 UTC m=+409.306109721 I0407 00:09:08.413341 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:08.413359 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-07 00:09:08.4133562 +0000 UTC m=+409.306327135 I0407 00:09:08.413479 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 00:09:08.413476462 +0000 UTC m=+409.306447397 I0407 00:09:08.438944 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:08.439000 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:08.439021 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 00:09:08.439014514 +0000 UTC m=+409.331985469 I0407 00:09:08.441206 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:08.441247 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:08.441266 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-07 00:09:08.441261614 +0000 UTC m=+409.334232559 I0407 00:09:08.446130 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:08.446220 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 00:09:08.446212311 +0000 UTC m=+409.339183256 I0407 00:09:08.699481 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:08.761821 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9s8sr" condition "Approved" to 2026-04-07 00:09:08.761806106 +0000 UTC m=+409.654777041 I0407 00:09:08.783607 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9s8sr" condition "Ready" to 2026-04-07 00:09:08.783595732 +0000 UTC m=+409.676566667 I0407 00:09:08.825461 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:08.825451392 +0000 UTC m=+409.718422337 I0407 00:09:08.852033 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:08.945299 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:08.961028 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-m4twx" condition "Approved" to 2026-04-07 00:09:08.960994671 +0000 UTC m=+409.853965636 I0407 00:09:08.977038 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ks9rg" condition "Approved" to 2026-04-07 00:09:08.977027985 +0000 UTC m=+409.869998920 I0407 00:09:09.000195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-m4twx" condition "Ready" to 2026-04-07 00:09:09.000180385 +0000 UTC m=+409.893151320 I0407 00:09:09.015081 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ks9rg" condition "Ready" to 2026-04-07 00:09:09.015070418 +0000 UTC m=+409.908041373 I0407 00:09:09.387866 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:09.387852121 +0000 UTC m=+410.280823056 I0407 00:09:09.437465 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:09.437449277 +0000 UTC m=+410.330420252 I0407 00:09:09.659368 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:09.659713 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:09.659706058 +0000 UTC m=+410.552676993 I0407 00:09:09.695764 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:09.696304 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:09.696293145 +0000 UTC m=+410.589264110 I0407 00:09:10.084668 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:10.134823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:10.185706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:16.623483 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" condition "Ready" to 2026-04-07 00:09:16.623450768 +0000 UTC m=+417.516421743 I0407 00:09:16.623659 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:16.623743 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" condition "Issuing" to 2026-04-07 00:09:16.623725233 +0000 UTC m=+417.516696198 I0407 00:09:16.651952 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:16.652341 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" condition "Ready" to 2026-04-07 00:09:16.652334857 +0000 UTC m=+417.545305792 I0407 00:09:16.880871 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:16.910063 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-dkwtx-vk8rh" condition "Approved" to 2026-04-07 00:09:16.910047008 +0000 UTC m=+417.803017943 I0407 00:09:16.930808 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-dkwtx-vk8rh" condition "Ready" to 2026-04-07 00:09:16.930787132 +0000 UTC m=+417.823758117 I0407 00:09:16.968302 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:16.968282251 +0000 UTC m=+417.861253206 I0407 00:09:16.995215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:16.998490 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:16.996111651 +0000 UTC m=+417.889082596 I0407 00:09:17.014769 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:17.015022 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-dkwtx-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:17.015012513 +0000 UTC m=+417.907983458 I0407 00:09:30.100171 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-07 00:09:30.100152704 +0000 UTC m=+430.993123649 I0407 00:09:30.100206 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:30.100261 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-07 00:09:30.100242196 +0000 UTC m=+430.993213131 I0407 00:09:30.134965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:09:30.135453 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:09:30.135510 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-07 00:09:30.135500909 +0000 UTC m=+431.028471874 I0407 00:09:30.400293 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-98zfm" condition "Approved" to 2026-04-07 00:09:30.400281993 +0000 UTC m=+431.293252938 I0407 00:09:30.421199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-98zfm" condition "Ready" to 2026-04-07 00:09:30.421187407 +0000 UTC m=+431.314158342 I0407 00:09:30.451916 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:09:30.451904141 +0000 UTC m=+431.344875076 I0407 00:09:30.470467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:12:49.403235 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-07 00:12:49.403218913 +0000 UTC m=+630.296189878 I0407 00:12:49.403628 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:12:49.403667 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-07 00:12:49.40366065 +0000 UTC m=+630.296631615 I0407 00:12:49.419114 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:12:49.419195 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:12:49.419215 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-07 00:12:49.419209651 +0000 UTC m=+630.312180596 I0407 00:12:49.719636 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ls2dn" condition "Approved" to 2026-04-07 00:12:49.719621232 +0000 UTC m=+630.612592167 I0407 00:12:49.741572 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ls2dn" condition "Ready" to 2026-04-07 00:12:49.741561215 +0000 UTC m=+630.634532160 I0407 00:12:49.775603 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:12:49.775591473 +0000 UTC m=+630.668562438 I0407 00:12:49.794805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:12:49.797718 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:12:49.79770518 +0000 UTC m=+630.690676145 I0407 00:12:49.805939 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:12:49.822673 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:13:34.337191 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-07 00:13:34.337171597 +0000 UTC m=+675.230142562 I0407 00:13:34.337241 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:13:34.337323 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-07 00:13:34.337314579 +0000 UTC m=+675.230285534 I0407 00:13:34.355724 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 00:13:34.355909 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 00:13:34.355947 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-07 00:13:34.355939447 +0000 UTC m=+675.248910382 I0407 00:13:34.496993 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-6nnsp" condition "Approved" to 2026-04-07 00:13:34.496978116 +0000 UTC m=+675.389949061 I0407 00:13:34.531544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-6nnsp" condition "Ready" to 2026-04-07 00:13:34.531534679 +0000 UTC m=+675.424505624 I0407 00:13:34.601314 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 00:13:34.601304686 +0000 UTC m=+675.494275621 I0407 00:13:34.626206 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"