I0421 17:07:40.765110 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0421 17:07:40.765260 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0421 17:07:40.765422 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0421 17:07:40.772071 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0421 17:07:40.772719 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0421 17:07:40.772937 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0421 17:07:40.773088 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0421 17:07:40.775847 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0421 17:07:40.792703 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0421 17:07:40.797699 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0421 17:07:40.800379 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0421 17:07:40.805194 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0421 17:07:40.808176 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0421 17:07:40.808204 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0421 17:07:40.808207 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0421 17:07:40.811006 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0421 17:07:40.813565 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0421 17:07:40.816232 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0421 17:07:40.818563 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0421 17:07:40.820996 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0421 17:07:40.826786 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0421 17:07:40.827140 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0421 17:07:40.830663 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0421 17:07:40.834181 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0421 17:07:40.836739 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0421 17:07:40.838449 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0421 17:07:40.840307 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0421 17:07:40.841861 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0421 17:07:40.841884 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0421 17:07:40.841892 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0421 17:07:40.841959 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0421 17:07:40.843971 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0421 17:07:40.847246 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0421 17:07:40.851347 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.852153 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.852239 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.852560 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.852814 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.852880 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.853049 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.853360 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.853570 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:40.930756 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 17:07:51.250282 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-21 17:07:51.250258977 +0000 UTC m=+10.522812063 I0421 17:07:51.994193 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 17:07:51.994178039 +0000 UTC m=+11.266731155 I0421 17:07:51.995353 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:07:51.995386 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-21 17:07:51.995378905 +0000 UTC m=+11.267932011 E0421 17:07:52.010505 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 17:07:52.010588 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-21 17:07:52.010577565 +0000 UTC m=+11.283130681 E0421 17:07:52.010838 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 17:07:52.026673 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:07:52.026749 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 17:07:52.026742708 +0000 UTC m=+11.299295774 E0421 17:07:52.033923 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0421 17:07:52.034018 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 17:07:52.034059 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 17:07:52.034106 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0421 17:07:52.047425 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:07:52.047604 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 17:07:52.047595632 +0000 UTC m=+11.320148718 I0421 17:07:52.048607 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:07:52.054186 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-kkfcm" condition "Approved" to 2026-04-21 17:07:52.054179859 +0000 UTC m=+11.326732935 I0421 17:07:52.061983 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 17:07:52.061971621 +0000 UTC m=+11.334524697 I0421 17:07:52.071267 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:07:52.072337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-kkfcm" condition "Ready" to 2026-04-21 17:07:52.072327737 +0000 UTC m=+11.344880823 I0421 17:07:52.093295 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:07:52.093283692 +0000 UTC m=+11.365836778 I0421 17:07:52.112191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:07:52.112553 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:07:52.112546415 +0000 UTC m=+11.385099501 I0421 17:07:52.119266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:07:52.126676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:07:57.034973 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:07:57.034955569 +0000 UTC m=+16.307508675 I0421 17:08:19.340163 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:08:19.340217 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-21 17:08:19.340211927 +0000 UTC m=+38.612765003 I0421 17:08:19.340227 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-21 17:08:19.340216857 +0000 UTC m=+38.612769933 I0421 17:08:19.359253 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-21 17:08:19.359239776 +0000 UTC m=+38.631792862 I0421 17:08:19.382309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:08:19.382365 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:08:19.382384 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-21 17:08:19.382378946 +0000 UTC m=+38.654932022 I0421 17:08:19.745067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:08:19.752563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-8wr55" condition "Approved" to 2026-04-21 17:08:19.75255042 +0000 UTC m=+39.025103526 I0421 17:08:19.790924 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-8wr55" condition "Ready" to 2026-04-21 17:08:19.790912611 +0000 UTC m=+39.063465687 I0421 17:08:19.820548 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:08:19.820532512 +0000 UTC m=+39.093085628 I0421 17:08:19.844583 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:08:19.844959 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:08:19.844953849 +0000 UTC m=+39.117506925 I0421 17:08:19.864311 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:08:19.864649 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:08:19.864640556 +0000 UTC m=+39.137193642 I0421 17:08:19.865271 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:12:33.989395 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-3.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:12:33.989517 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-3.nip.io-tls" condition "Issuing" to 2026-04-21 17:12:33.989507354 +0000 UTC m=+293.262060470 I0421 17:12:33.989941 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-3.nip.io-tls" condition "Ready" to 2026-04-21 17:12:33.989934251 +0000 UTC m=+293.262487347 I0421 17:12:34.010191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:12:34.010707 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-3.nip.io-tls" condition "Ready" to 2026-04-21 17:12:34.010699816 +0000 UTC m=+293.283252902 I0421 17:12:34.267273 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:12:34.316330 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-3.nip.io-tls-6fpnr" condition "Approved" to 2026-04-21 17:12:34.316315595 +0000 UTC m=+293.588868701 I0421 17:12:34.347699 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-3.nip.io-tls-6fpnr" condition "Ready" to 2026-04-21 17:12:34.347684701 +0000 UTC m=+293.620237787 I0421 17:12:34.379379 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:12:34.379367892 +0000 UTC m=+293.651920978 I0421 17:12:34.399461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:12:34.399738 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:12:34.399733039 +0000 UTC m=+293.672286105 I0421 17:12:34.418026 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:12:34.418463 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:12:34.418454179 +0000 UTC m=+293.691007275 I0421 17:13:37.801690 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:13:37.801726 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-21 17:13:37.801722124 +0000 UTC m=+357.074275200 I0421 17:13:37.801690 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-21 17:13:37.801677063 +0000 UTC m=+357.074230139 E0421 17:13:37.817088 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 17:13:37.817117 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-21 17:13:37.817112013 +0000 UTC m=+357.089665089 E0421 17:13:37.817149 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 17:13:37.820495 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:13:37.820843 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:13:37.820898 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-21 17:13:37.820881732 +0000 UTC m=+357.093434818 E0421 17:13:37.826883 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0421 17:13:37.826961 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 17:13:37.826988 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 17:13:37.827024 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0421 17:13:37.869321 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2sx9p" condition "Approved" to 2026-04-21 17:13:37.869312234 +0000 UTC m=+357.141865310 I0421 17:13:37.872408 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:13:37.917770 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2sx9p" condition "Ready" to 2026-04-21 17:13:37.917761906 +0000 UTC m=+357.190314982 I0421 17:13:37.940540 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:13:37.940529531 +0000 UTC m=+357.213082607 I0421 17:13:37.958123 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:13:37.986941 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:13:42.827610 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:13:42.827588255 +0000 UTC m=+362.100141371 I0421 17:14:22.172275 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:22.172317 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-21 17:14:22.172311069 +0000 UTC m=+401.444864145 I0421 17:14:22.173645 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-21 17:14:22.173633138 +0000 UTC m=+401.446186204 I0421 17:14:22.189046 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:22.189080 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-21 17:14:22.189075147 +0000 UTC m=+401.461628223 I0421 17:14:22.189325 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-21 17:14:22.1893215 +0000 UTC m=+401.461874576 I0421 17:14:22.189438 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-21 17:14:22.189435312 +0000 UTC m=+401.461988388 I0421 17:14:22.189573 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:22.189586 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-21 17:14:22.189584084 +0000 UTC m=+401.462137160 I0421 17:14:22.215312 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.215382 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:22.215398 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-21 17:14:22.215393576 +0000 UTC m=+401.487946652 I0421 17:14:22.233140 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.233200 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:22.233222 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-21 17:14:22.233214331 +0000 UTC m=+401.505767417 I0421 17:14:22.233808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.233849 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-21 17:14:22.23384472 +0000 UTC m=+401.506397806 I0421 17:14:22.387607 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.396340 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.409154 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-j9rjt" condition "Approved" to 2026-04-21 17:14:22.409143098 +0000 UTC m=+401.681696184 I0421 17:14:22.445019 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fgjs4" condition "Approved" to 2026-04-21 17:14:22.445007479 +0000 UTC m=+401.717560565 I0421 17:14:22.457831 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-j9rjt" condition "Ready" to 2026-04-21 17:14:22.457821879 +0000 UTC m=+401.730374965 I0421 17:14:22.471402 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fgjs4" condition "Ready" to 2026-04-21 17:14:22.47139125 +0000 UTC m=+401.743944336 I0421 17:14:22.500781 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:14:22.500767425 +0000 UTC m=+401.773320501 I0421 17:14:22.502408 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:14:22.50239366 +0000 UTC m=+401.774946736 I0421 17:14:22.524533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.525020 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:14:22.525010295 +0000 UTC m=+401.797563401 I0421 17:14:22.530254 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.548667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:22.548981 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:14:22.548972629 +0000 UTC m=+401.821525715 I0421 17:14:23.003340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-g74wg" condition "Approved" to 2026-04-21 17:14:23.003326342 +0000 UTC m=+402.275879438 I0421 17:14:23.103783 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-g74wg" condition "Ready" to 2026-04-21 17:14:23.103773649 +0000 UTC m=+402.376326725 I0421 17:14:23.598409 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:14:23.598398372 +0000 UTC m=+402.870951458 I0421 17:14:23.697900 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:30.140704 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:30.140841 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" condition "Ready" to 2026-04-21 17:14:30.140834723 +0000 UTC m=+409.413387799 I0421 17:14:30.140746 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" condition "Issuing" to 2026-04-21 17:14:30.140737941 +0000 UTC m=+409.413291017 I0421 17:14:30.155849 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xpntf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:30.155962 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:30.155995 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" condition "Issuing" to 2026-04-21 17:14:30.155985016 +0000 UTC m=+409.428538132 I0421 17:14:30.457919 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-xpntf-mq27s" condition "Approved" to 2026-04-21 17:14:30.457907759 +0000 UTC m=+409.730460835 I0421 17:14:30.480127 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-xpntf-mq27s" condition "Ready" to 2026-04-21 17:14:30.480115206 +0000 UTC m=+409.752668282 I0421 17:14:30.508625 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:14:30.508610725 +0000 UTC m=+409.781163811 I0421 17:14:30.533817 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xpntf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:30.602227 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xpntf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xpntf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:41.589538 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-21 17:14:41.589513389 +0000 UTC m=+420.862066465 I0421 17:14:41.589988 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:14:41.590015 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-21 17:14:41.590011367 +0000 UTC m=+420.862564443 I0421 17:14:41.623212 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:41.623274 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-21 17:14:41.623266701 +0000 UTC m=+420.895819777 I0421 17:14:42.130464 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:14:42.168947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-l5x9z" condition "Approved" to 2026-04-21 17:14:42.168931297 +0000 UTC m=+421.441484413 I0421 17:14:42.186778 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-l5x9z" condition "Ready" to 2026-04-21 17:14:42.186772558 +0000 UTC m=+421.459325634 I0421 17:14:42.221322 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:14:42.22130995 +0000 UTC m=+421.493863026 I0421 17:14:42.253439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:02.812122 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-21 17:18:02.812075149 +0000 UTC m=+622.084628235 I0421 17:18:02.812260 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:18:02.812581 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-21 17:18:02.812440913 +0000 UTC m=+622.084993999 I0421 17:18:02.827222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:02.827300 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:18:02.827319 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-21 17:18:02.827312583 +0000 UTC m=+622.099865669 I0421 17:18:03.059896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:03.067470 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-56g4d" condition "Approved" to 2026-04-21 17:18:03.067452477 +0000 UTC m=+622.340005543 I0421 17:18:03.085464 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-56g4d" condition "Ready" to 2026-04-21 17:18:03.085450119 +0000 UTC m=+622.358003205 I0421 17:18:03.118924 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:18:03.118907298 +0000 UTC m=+622.391460384 I0421 17:18:03.145849 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:03.146177 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:18:03.146172003 +0000 UTC m=+622.418725079 I0421 17:18:03.166322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:03.166688 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:18:03.166680309 +0000 UTC m=+622.439233395 I0421 17:18:03.167798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:43.030236 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:18:43.030298 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-21 17:18:43.030290033 +0000 UTC m=+662.302843119 I0421 17:18:43.030582 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-21 17:18:43.030575122 +0000 UTC m=+662.303128208 I0421 17:18:43.051697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:43.051996 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 17:18:43.052174 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-21 17:18:43.052028159 +0000 UTC m=+662.324581275 I0421 17:18:43.307327 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:43.309859 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-drdzp" condition "Approved" to 2026-04-21 17:18:43.309851484 +0000 UTC m=+662.582404550 I0421 17:18:43.335324 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-drdzp" condition "Ready" to 2026-04-21 17:18:43.335314071 +0000 UTC m=+662.607867147 I0421 17:18:43.354921 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:18:43.354912029 +0000 UTC m=+662.627465105 I0421 17:18:43.372863 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:43.373056 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 17:18:43.373051251 +0000 UTC m=+662.645604327 I0421 17:18:43.389745 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 17:18:43.394237 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"