I0427 19:42:18.164731 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0427 19:42:18.164825 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0427 19:42:18.164947 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0427 19:42:18.169168 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0427 19:42:18.169816 1 controller.go:156] "cert-manager/controller: starting leader election" I0427 19:42:18.169930 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0427 19:42:18.170421 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0427 19:42:18.172827 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0427 19:42:18.196532 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0427 19:42:18.202887 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0427 19:42:18.207484 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0427 19:42:18.209997 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0427 19:42:18.212344 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0427 19:42:18.213959 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0427 19:42:18.215649 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0427 19:42:18.217280 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0427 19:42:18.217424 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0427 19:42:18.219279 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0427 19:42:18.223496 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0427 19:42:18.223519 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0427 19:42:18.223571 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0427 19:42:18.225350 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0427 19:42:18.227143 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0427 19:42:18.228954 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0427 19:42:18.230552 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0427 19:42:18.232267 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0427 19:42:18.233959 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0427 19:42:18.233982 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0427 19:42:18.235727 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0427 19:42:18.237387 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0427 19:42:18.238876 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0427 19:42:18.238891 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0427 19:42:18.238933 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0427 19:42:33.585862 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-27 19:42:33.585819728 +0000 UTC m=+15.462010477 I0427 19:42:34.295133 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-27 19:42:34.295117332 +0000 UTC m=+16.171308111 I0427 19:42:34.296343 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:42:34.297198 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-27 19:42:34.297182762 +0000 UTC m=+16.173373561 E0427 19:42:34.309748 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 19:42:34.309795 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-27 19:42:34.309788534 +0000 UTC m=+16.185979293 E0427 19:42:34.309818 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 19:42:34.312887 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:42:34.312958 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-27 19:42:34.31295043 +0000 UTC m=+16.189141169 E0427 19:42:34.321102 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0427 19:42:34.321181 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 19:42:34.321215 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 19:42:34.321269 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0427 19:42:34.334666 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:42:34.357797 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-95fmb" condition "Approved" to 2026-04-27 19:42:34.357777367 +0000 UTC m=+16.233968136 I0427 19:42:34.371184 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-95fmb" condition "Ready" to 2026-04-27 19:42:34.371174009 +0000 UTC m=+16.247364768 I0427 19:42:34.399146 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:42:34.399132031 +0000 UTC m=+16.275322800 I0427 19:42:34.415256 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:42:34.415562 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:42:34.415555936 +0000 UTC m=+16.291746675 I0427 19:42:34.435969 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:42:39.322421 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:42:39.322399459 +0000 UTC m=+21.198590238 I0427 19:43:11.990473 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-27 19:43:11.990429958 +0000 UTC m=+53.866620737 I0427 19:43:11.991006 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:43:11.991533 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-27 19:43:11.991519577 +0000 UTC m=+53.867710356 I0427 19:43:12.003624 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-27 19:43:12.003603984 +0000 UTC m=+53.879794733 I0427 19:43:12.020689 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:43:12.020785 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:43:12.020820 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-27 19:43:12.020812519 +0000 UTC m=+53.897003268 I0427 19:43:12.374968 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-v8cj8" condition "Approved" to 2026-04-27 19:43:12.374952312 +0000 UTC m=+54.251143061 I0427 19:43:12.524758 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-v8cj8" condition "Ready" to 2026-04-27 19:43:12.52474629 +0000 UTC m=+54.400937029 I0427 19:43:12.617626 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:43:12.617602937 +0000 UTC m=+54.493793686 I0427 19:43:12.683602 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:43:12.684358 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:43:12.684342192 +0000 UTC m=+54.560532951 I0427 19:43:12.771399 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:46:20.332593 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-151.nip.io-tls" condition "Ready" to 2026-04-27 19:46:20.332571195 +0000 UTC m=+242.208761984 I0427 19:46:20.332890 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-151.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:46:20.332982 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-151.nip.io-tls" condition "Issuing" to 2026-04-27 19:46:20.332971996 +0000 UTC m=+242.209162815 I0427 19:46:20.374193 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-151.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-151.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:46:20.374413 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-151.nip.io-tls" condition "Ready" to 2026-04-27 19:46:20.374396937 +0000 UTC m=+242.250587716 I0427 19:46:20.575014 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-151.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-151.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:46:20.607409 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-151.nip.io-tls-flcpx" condition "Approved" to 2026-04-27 19:46:20.607366812 +0000 UTC m=+242.483557591 I0427 19:46:20.637304 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-151.nip.io-tls-flcpx" condition "Ready" to 2026-04-27 19:46:20.637290243 +0000 UTC m=+242.513480972 I0427 19:46:20.666158 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-151.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:46:20.666140232 +0000 UTC m=+242.542330961 I0427 19:46:20.691028 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-151.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-151.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:47:17.151450 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:47:17.151514 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-27 19:47:17.151507468 +0000 UTC m=+299.027698207 I0427 19:47:17.151603 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-27 19:47:17.151458717 +0000 UTC m=+299.027649486 E0427 19:47:17.161227 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 19:47:17.161287 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-27 19:47:17.161279912 +0000 UTC m=+299.037470661 E0427 19:47:17.161311 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0427 19:47:17.165424 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:47:17.165534 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-27 19:47:17.16552503 +0000 UTC m=+299.041715799 E0427 19:47:17.172776 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0427 19:47:17.172969 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 19:47:17.173061 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0427 19:47:17.173627 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0427 19:47:17.180660 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:47:17.200744 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kdffd" condition "Approved" to 2026-04-27 19:47:17.200729621 +0000 UTC m=+299.076920370 I0427 19:47:17.211491 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kdffd" condition "Ready" to 2026-04-27 19:47:17.211483189 +0000 UTC m=+299.087673928 I0427 19:47:17.232539 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:47:17.232529854 +0000 UTC m=+299.108720593 I0427 19:47:17.256949 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:47:17.257250 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:47:17.257244584 +0000 UTC m=+299.133435323 I0427 19:47:17.267416 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:47:22.173449 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:47:22.173439017 +0000 UTC m=+304.049629756 I0427 19:48:08.431962 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-27 19:48:08.431937278 +0000 UTC m=+350.308128017 I0427 19:48:08.432238 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:08.432289 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-27 19:48:08.432283215 +0000 UTC m=+350.308473954 I0427 19:48:08.439559 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-27 19:48:08.439546898 +0000 UTC m=+350.315737637 I0427 19:48:08.440392 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:08.449942 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-27 19:48:08.449929013 +0000 UTC m=+350.326119752 I0427 19:48:08.455443 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-27 19:48:08.455430611 +0000 UTC m=+350.331621350 I0427 19:48:08.455563 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:08.455587 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-27 19:48:08.455582504 +0000 UTC m=+350.331773253 I0427 19:48:08.475095 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:08.475120 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:08.475406 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:08.475442 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-27 19:48:08.475436695 +0000 UTC m=+350.351627434 I0427 19:48:08.475411 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:08.475528 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-27 19:48:08.475510576 +0000 UTC m=+350.351701345 I0427 19:48:08.492174 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:08.492231 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-27 19:48:08.492224536 +0000 UTC m=+350.368415275 I0427 19:48:08.716481 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:08.750459 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-grckm" condition "Approved" to 2026-04-27 19:48:08.750442471 +0000 UTC m=+350.626633220 I0427 19:48:08.790960 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-grckm" condition "Ready" to 2026-04-27 19:48:08.790950419 +0000 UTC m=+350.667141158 I0427 19:48:08.848601 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:08.849744 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:08.849732786 +0000 UTC m=+350.725923525 I0427 19:48:08.850438 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gkv9q" condition "Approved" to 2026-04-27 19:48:08.850425411 +0000 UTC m=+350.726616150 I0427 19:48:08.874601 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gkv9q" condition "Ready" to 2026-04-27 19:48:08.874593286 +0000 UTC m=+350.750784015 I0427 19:48:08.876938 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:08.901391 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9p2hc" condition "Approved" to 2026-04-27 19:48:08.901377834 +0000 UTC m=+350.777568573 I0427 19:48:08.933258 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9p2hc" condition "Ready" to 2026-04-27 19:48:08.933244571 +0000 UTC m=+350.809435310 I0427 19:48:09.196230 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:09.196218501 +0000 UTC m=+351.072409230 I0427 19:48:10.269148 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:10.270499 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:10.270485568 +0000 UTC m=+352.146676357 I0427 19:48:10.483813 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:10.492028 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:10.492058 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-27 19:48:10.492051409 +0000 UTC m=+352.368242158 E0427 19:48:10.492431 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"alertmanager-tls-ckvzp\" not found" key="monitoring/alertmanager-tls" I0427 19:48:10.501075 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:10.501064765 +0000 UTC m=+352.377255504 I0427 19:48:10.525484 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:10.533444 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:10.533516 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:10.534149 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:10.534140183 +0000 UTC m=+352.410330942 I0427 19:48:10.589907 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lfqfz" condition "Approved" to 2026-04-27 19:48:10.589892585 +0000 UTC m=+352.466083334 I0427 19:48:10.636874 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lfqfz" condition "Ready" to 2026-04-27 19:48:10.636861995 +0000 UTC m=+352.513052754 I0427 19:48:11.293207 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:11.372959 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:22.625885 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:22.625892 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" condition "Ready" to 2026-04-27 19:48:22.625871296 +0000 UTC m=+364.502062065 I0427 19:48:22.625911 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" condition "Issuing" to 2026-04-27 19:48:22.625906527 +0000 UTC m=+364.502097276 I0427 19:48:22.639167 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-khq8j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:22.639239 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" condition "Ready" to 2026-04-27 19:48:22.63923093 +0000 UTC m=+364.515421679 I0427 19:48:23.028553 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-khq8j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:23.062188 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-khq8j-zv45n" condition "Approved" to 2026-04-27 19:48:23.062173179 +0000 UTC m=+364.938363918 I0427 19:48:23.081271 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-khq8j-zv45n" condition "Ready" to 2026-04-27 19:48:23.08126385 +0000 UTC m=+364.957454589 I0427 19:48:23.127602 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:23.127589417 +0000 UTC m=+365.003780156 I0427 19:48:23.153154 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-khq8j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:23.154276 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:23.154269494 +0000 UTC m=+365.030460233 I0427 19:48:23.175102 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-khq8j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:23.180738 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-khq8j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:23.181261 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-khq8j-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:23.181253374 +0000 UTC m=+365.057444113 I0427 19:48:42.090125 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-27 19:48:42.090107318 +0000 UTC m=+383.966298067 I0427 19:48:42.090417 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:48:42.090448 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-27 19:48:42.090438554 +0000 UTC m=+383.966629303 I0427 19:48:42.121280 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:42.121476 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-27 19:48:42.121339034 +0000 UTC m=+383.997529783 I0427 19:48:42.249028 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:42.277716 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ddd6j" condition "Approved" to 2026-04-27 19:48:42.277701815 +0000 UTC m=+384.153892554 I0427 19:48:42.295358 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ddd6j" condition "Ready" to 2026-04-27 19:48:42.295347764 +0000 UTC m=+384.171538503 I0427 19:48:42.331810 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:42.331795314 +0000 UTC m=+384.207986083 I0427 19:48:42.357578 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:42.358233 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:42.358222223 +0000 UTC m=+384.234412972 I0427 19:48:42.378118 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:48:42.378624 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:48:42.378616982 +0000 UTC m=+384.254807731 I0427 19:48:42.382292 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:51:53.141207 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-27 19:51:53.14118257 +0000 UTC m=+575.017373309 I0427 19:51:53.141629 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:51:53.141689 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-27 19:51:53.141682137 +0000 UTC m=+575.017872906 I0427 19:51:53.156148 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:51:53.156214 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:51:53.156233 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-27 19:51:53.156227302 +0000 UTC m=+575.032418161 I0427 19:51:53.383618 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-bzhsn" condition "Approved" to 2026-04-27 19:51:53.383605261 +0000 UTC m=+575.259796000 I0427 19:51:53.401144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-bzhsn" condition "Ready" to 2026-04-27 19:51:53.401135288 +0000 UTC m=+575.277326027 I0427 19:51:53.427875 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:51:53.427845714 +0000 UTC m=+575.304036493 I0427 19:51:53.450522 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:51:53.451044 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:51:53.45103754 +0000 UTC m=+575.327228279 I0427 19:51:53.465934 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:51:53.467953 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:51:53.472705 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:51:53.473067 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:51:53.473059929 +0000 UTC m=+575.349250668 I0427 19:52:33.442337 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-27 19:52:33.44231946 +0000 UTC m=+615.318510199 I0427 19:52:33.444663 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:52:33.444688 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-27 19:52:33.444684203 +0000 UTC m=+615.320874942 I0427 19:52:33.468068 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:52:33.468184 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0427 19:52:33.468292 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-27 19:52:33.468287048 +0000 UTC m=+615.344477787 I0427 19:52:33.689189 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xlz75" condition "Approved" to 2026-04-27 19:52:33.689174507 +0000 UTC m=+615.565365256 I0427 19:52:33.706867 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xlz75" condition "Ready" to 2026-04-27 19:52:33.7068527 +0000 UTC m=+615.583043449 I0427 19:52:33.733870 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:52:33.733854271 +0000 UTC m=+615.610045010 I0427 19:52:33.750255 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0427 19:52:33.750714 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-27 19:52:33.750708053 +0000 UTC m=+615.626898792 I0427 19:52:33.781566 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"