I0519 02:55:15.487216 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0519 02:55:15.487398 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0519 02:55:15.487530 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0519 02:55:15.493876 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0519 02:55:15.494286 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0519 02:55:15.494376 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0519 02:55:15.494384 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0519 02:55:15.497158 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0519 02:55:15.513375 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0519 02:55:15.517030 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0519 02:55:15.519584 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0519 02:55:15.523947 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0519 02:55:15.527229 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0519 02:55:15.527359 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0519 02:55:15.529758 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0519 02:55:15.532255 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0519 02:55:15.534440 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0519 02:55:15.536375 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0519 02:55:15.536427 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0519 02:55:15.536453 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0519 02:55:15.536515 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0519 02:55:15.538772 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0519 02:55:15.542397 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0519 02:55:15.546577 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0519 02:55:15.550362 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0519 02:55:15.552941 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0519 02:55:15.555228 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0519 02:55:15.557924 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0519 02:55:15.562777 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0519 02:55:15.567516 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0519 02:55:15.570601 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0519 02:55:15.570628 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0519 02:55:15.571801 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0519 02:55:15.589418 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.591900 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.601147 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.614013 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.623985 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.636831 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.653159 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.667707 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.678630 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:15.695301 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:55:36.120472 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-19 02:55:36.120451136 +0000 UTC m=+20.664351412 I0519 02:55:36.866757 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:55:36.866814 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-19 02:55:36.86680609 +0000 UTC m=+21.410706376 I0519 02:55:36.866895 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-19 02:55:36.866877551 +0000 UTC m=+21.410777877 E0519 02:55:36.879418 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 02:55:36.879510 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-19 02:55:36.879502575 +0000 UTC m=+21.423402881 E0519 02:55:36.879541 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 02:55:36.881805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:55:36.881921 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:55:36.881975 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-19 02:55:36.881969179 +0000 UTC m=+21.425869485 E0519 02:55:36.893491 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0519 02:55:36.893825 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 02:55:36.893897 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 02:55:36.894158 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0519 02:55:36.920382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b8gbx" condition "Approved" to 2026-05-19 02:55:36.920371754 +0000 UTC m=+21.464272040 I0519 02:55:36.937263 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b8gbx" condition "Ready" to 2026-05-19 02:55:36.937250696 +0000 UTC m=+21.481150982 I0519 02:55:36.963838 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:55:36.963825488 +0000 UTC m=+21.507725774 I0519 02:55:36.980938 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:55:41.894323 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:55:41.894309388 +0000 UTC m=+26.438209674 I0519 02:56:02.956250 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:56:02.956357 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-19 02:56:02.956336006 +0000 UTC m=+47.500236292 I0519 02:56:02.956338 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-19 02:56:02.956321976 +0000 UTC m=+47.500222292 I0519 02:56:02.967381 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-19 02:56:02.967368203 +0000 UTC m=+47.511268479 I0519 02:56:02.976072 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:56:02.977870 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:56:02.977926 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-19 02:56:02.977896292 +0000 UTC m=+47.521796578 I0519 02:56:03.153796 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:56:03.186441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fpstz" condition "Approved" to 2026-05-19 02:56:03.186431844 +0000 UTC m=+47.730332160 I0519 02:56:03.232865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fpstz" condition "Ready" to 2026-05-19 02:56:03.232853008 +0000 UTC m=+47.776753294 I0519 02:56:03.268468 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:56:03.268447052 +0000 UTC m=+47.812347368 I0519 02:56:03.284042 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:56:03.284322 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:56:03.284316694 +0000 UTC m=+47.828216980 I0519 02:56:03.305246 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:56:03.305720 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:56:03.305713828 +0000 UTC m=+47.849614114 I0519 03:00:18.486665 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-100.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:00:18.486762 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-100.nip.io-tls" condition "Issuing" to 2026-05-19 03:00:18.486721945 +0000 UTC m=+303.030622241 I0519 03:00:18.487391 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-100.nip.io-tls" condition "Ready" to 2026-05-19 03:00:18.487382889 +0000 UTC m=+303.031283195 I0519 03:00:18.510090 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-100.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-100.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:00:18.510175 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-100.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:00:18.510199 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-100.nip.io-tls" condition "Issuing" to 2026-05-19 03:00:18.510192829 +0000 UTC m=+303.054093115 I0519 03:00:18.731206 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-100.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-100.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:00:18.739993 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-100.nip.io-tls-qlqz8" condition "Approved" to 2026-05-19 03:00:18.739981573 +0000 UTC m=+303.283881849 I0519 03:00:18.767109 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-100.nip.io-tls-qlqz8" condition "Ready" to 2026-05-19 03:00:18.767100414 +0000 UTC m=+303.311000690 I0519 03:00:18.798186 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-100.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:00:18.798173366 +0000 UTC m=+303.342073652 I0519 03:00:18.822900 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-100.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-100.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:01:23.139692 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-19 03:01:23.139666307 +0000 UTC m=+367.683566593 I0519 03:01:23.139829 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:01:23.139882 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-19 03:01:23.139869911 +0000 UTC m=+367.683770227 E0519 03:01:23.154740 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 03:01:23.154788 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-19 03:01:23.154779477 +0000 UTC m=+367.698679773 E0519 03:01:23.154860 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 03:01:23.161134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:01:23.161209 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:01:23.161230 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-19 03:01:23.161223405 +0000 UTC m=+367.705123691 E0519 03:01:23.165145 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0519 03:01:23.165370 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 03:01:23.165393 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 03:01:23.165432 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0519 03:01:23.195906 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:01:23.200963 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-ngg4s" condition "Approved" to 2026-05-19 03:01:23.200950033 +0000 UTC m=+367.744850319 I0519 03:01:23.211761 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-ngg4s" condition "Ready" to 2026-05-19 03:01:23.211750487 +0000 UTC m=+367.755650773 I0519 03:01:23.235120 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:01:23.235101841 +0000 UTC m=+367.779002157 I0519 03:01:23.249030 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:01:23.249403 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:01:23.249395315 +0000 UTC m=+367.793295601 I0519 03:01:23.263090 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:01:28.166549 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:01:28.166531942 +0000 UTC m=+372.710432248 I0519 03:02:07.098595 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:07.098625 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-19 03:02:07.098618652 +0000 UTC m=+411.642518928 I0519 03:02:07.098329 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-19 03:02:07.098304343 +0000 UTC m=+411.642204619 I0519 03:02:07.099099 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:07.099117 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-19 03:02:07.099113735 +0000 UTC m=+411.643014001 I0519 03:02:07.098442 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-19 03:02:07.098439867 +0000 UTC m=+411.642340143 I0519 03:02:07.115261 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:07.115301 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-19 03:02:07.115293082 +0000 UTC m=+411.659193368 I0519 03:02:07.121110 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-19 03:02:07.121094836 +0000 UTC m=+411.664995112 I0519 03:02:07.140536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:07.144586 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:07.144690 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-19 03:02:07.144681799 +0000 UTC m=+411.688582075 I0519 03:02:07.148284 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:07.148361 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-19 03:02:07.148357156 +0000 UTC m=+411.692257422 I0519 03:02:07.149597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:07.149649 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:07.150106 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-19 03:02:07.149668931 +0000 UTC m=+411.693569207 I0519 03:02:07.357165 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-4f2zr" condition "Approved" to 2026-05-19 03:02:07.357152234 +0000 UTC m=+411.901052520 I0519 03:02:07.376056 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:07.391729 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-4f2zr" condition "Ready" to 2026-05-19 03:02:07.391720437 +0000 UTC m=+411.935620713 I0519 03:02:07.445559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:07.448129 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-568k6" condition "Approved" to 2026-05-19 03:02:07.448111857 +0000 UTC m=+411.992012143 I0519 03:02:07.453680 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:02:07.453671084 +0000 UTC m=+411.997571350 I0519 03:02:07.462157 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-568k6" condition "Ready" to 2026-05-19 03:02:07.462148198 +0000 UTC m=+412.006048494 I0519 03:02:07.483549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:07.497295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4wb7w" condition "Approved" to 2026-05-19 03:02:07.497280937 +0000 UTC m=+412.041181213 I0519 03:02:07.558509 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:02:07.558495755 +0000 UTC m=+412.102396041 I0519 03:02:07.716381 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4wb7w" condition "Ready" to 2026-05-19 03:02:07.716369746 +0000 UTC m=+412.260270022 I0519 03:02:08.127482 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:08.135326 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:02:08.135318064 +0000 UTC m=+412.679218340 E0519 03:02:08.152146 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-2sh8l\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0519 03:02:08.707585 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:08.754573 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-4wb7w" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-gdvrl" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0519 03:02:08.807356 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:09.013154 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-wdtnl" condition "Approved" to 2026-05-19 03:02:09.013134731 +0000 UTC m=+413.557035037 I0519 03:02:09.319426 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-wdtnl" condition "Ready" to 2026-05-19 03:02:09.31941444 +0000 UTC m=+413.863314726 I0519 03:02:09.559724 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:02:09.55970959 +0000 UTC m=+414.103609876 I0519 03:02:09.655050 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:09.655362 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:02:09.655354461 +0000 UTC m=+414.199254747 I0519 03:02:09.858493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:14.948720 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:14.948816 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" condition "Issuing" to 2026-05-19 03:02:14.948806118 +0000 UTC m=+419.492706394 I0519 03:02:14.948828 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" condition "Ready" to 2026-05-19 03:02:14.948795168 +0000 UTC m=+419.492695454 I0519 03:02:14.959768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8chl9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:14.959828 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" condition "Ready" to 2026-05-19 03:02:14.959820049 +0000 UTC m=+419.503720345 I0519 03:02:15.104786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8chl9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:15.130569 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-8chl9-q74dm" condition "Approved" to 2026-05-19 03:02:15.130555501 +0000 UTC m=+419.674455787 I0519 03:02:15.149650 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-8chl9-q74dm" condition "Ready" to 2026-05-19 03:02:15.149637823 +0000 UTC m=+419.693538109 I0519 03:02:15.183935 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:02:15.183924014 +0000 UTC m=+419.727824310 I0519 03:02:15.202358 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8chl9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8chl9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:27.723948 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-19 03:02:27.723896972 +0000 UTC m=+432.267797258 I0519 03:02:27.723951 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:27.724269 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-19 03:02:27.724216981 +0000 UTC m=+432.268117287 I0519 03:02:27.743588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:27.743630 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:02:27.743640 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-19 03:02:27.743636309 +0000 UTC m=+432.287536585 I0519 03:02:28.103534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:02:28.112771 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mbtn6" condition "Approved" to 2026-05-19 03:02:28.112759471 +0000 UTC m=+432.656659747 I0519 03:02:28.136455 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mbtn6" condition "Ready" to 2026-05-19 03:02:28.136446554 +0000 UTC m=+432.680346830 I0519 03:02:28.178636 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:02:28.178625081 +0000 UTC m=+432.722525357 I0519 03:02:28.202554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:05:41.794146 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:05:41.794245 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-19 03:05:41.794237532 +0000 UTC m=+626.338137818 I0519 03:05:41.793972 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-19 03:05:41.793941191 +0000 UTC m=+626.337841477 I0519 03:05:41.812544 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:05:41.812645 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:05:41.812691 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-19 03:05:41.812682249 +0000 UTC m=+626.356582545 I0519 03:05:42.042308 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-dg7h2" condition "Approved" to 2026-05-19 03:05:42.04228927 +0000 UTC m=+626.586189536 I0519 03:05:42.072207 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-dg7h2" condition "Ready" to 2026-05-19 03:05:42.072194829 +0000 UTC m=+626.616095115 I0519 03:05:42.099323 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:05:42.099307718 +0000 UTC m=+626.643208024 I0519 03:05:42.128754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:05:42.130324 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:05:42.130310891 +0000 UTC m=+626.674211177 I0519 03:05:42.167136 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:05:42.168124 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:05:42.168109541 +0000 UTC m=+626.712009827 I0519 03:06:20.875760 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 03:06:20.875798 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-19 03:06:20.875789581 +0000 UTC m=+665.419689867 I0519 03:06:20.876163 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-19 03:06:20.876158366 +0000 UTC m=+665.420058652 I0519 03:06:20.902336 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:06:20.902592 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-19 03:06:20.902583908 +0000 UTC m=+665.446484194 I0519 03:06:21.158811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:06:21.198616 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-vqnq6" condition "Approved" to 2026-05-19 03:06:21.198600901 +0000 UTC m=+665.742501207 I0519 03:06:21.215709 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-vqnq6" condition "Ready" to 2026-05-19 03:06:21.215698078 +0000 UTC m=+665.759598364 I0519 03:06:21.255409 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:06:21.255397555 +0000 UTC m=+665.799297831 I0519 03:06:21.289354 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:06:21.290094 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 03:06:21.29008489 +0000 UTC m=+665.833985176 I0519 03:06:21.303781 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 03:06:21.315911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"