I0422 16:28:22.065606 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0422 16:28:22.065721 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0422 16:28:22.065801 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0422 16:28:22.070911 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0422 16:28:22.071373 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0422 16:28:22.071846 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0422 16:28:22.071938 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0422 16:28:22.075888 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0422 16:28:22.342470 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0422 16:28:22.347689 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0422 16:28:22.350124 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0422 16:28:22.352697 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0422 16:28:22.355166 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0422 16:28:22.357629 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0422 16:28:22.363521 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0422 16:28:22.363619 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0422 16:28:22.366304 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0422 16:28:22.368868 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0422 16:28:22.371233 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0422 16:28:22.376232 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0422 16:28:22.378437 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0422 16:28:22.381475 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0422 16:28:22.387151 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0422 16:28:22.389136 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0422 16:28:22.389198 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0422 16:28:22.391128 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0422 16:28:22.392908 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0422 16:28:22.392927 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0422 16:28:22.392937 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0422 16:28:22.392944 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0422 16:28:22.393043 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0422 16:28:22.394833 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0422 16:28:22.397101 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0422 16:28:22.398533 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.399669 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.399699 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.400433 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.401014 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.401039 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.401098 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.401591 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.401956 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:22.491042 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 16:28:49.878933 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-22 16:28:49.878918272 +0000 UTC m=+27.845911107 I0422 16:28:50.600735 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-22 16:28:50.600719528 +0000 UTC m=+28.567712373 I0422 16:28:50.600783 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:28:50.600826 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-22 16:28:50.600815679 +0000 UTC m=+28.567808524 E0422 16:28:50.639259 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:28:50.639342 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-22 16:28:50.639332481 +0000 UTC m=+28.606325296 E0422 16:28:50.639374 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:28:50.643079 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:28:50.643197 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:28:50.643218 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-22 16:28:50.643211079 +0000 UTC m=+28.610203894 E0422 16:28:50.673335 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0422 16:28:50.673579 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:28:50.673756 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:28:50.673838 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0422 16:28:50.755677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:28:50.760753 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-w6dkr" condition "Approved" to 2026-04-22 16:28:50.76066777 +0000 UTC m=+28.727660575 I0422 16:28:50.786843 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-w6dkr" condition "Ready" to 2026-04-22 16:28:50.78682577 +0000 UTC m=+28.753818615 I0422 16:28:50.822547 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:28:50.822525479 +0000 UTC m=+28.789518284 I0422 16:28:50.852443 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:28:55.674643 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:28:55.674634317 +0000 UTC m=+33.641627122 I0422 16:29:47.287704 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:29:47.287773 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-22 16:29:47.287765375 +0000 UTC m=+85.254758190 I0422 16:29:47.288051 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-22 16:29:47.288029891 +0000 UTC m=+85.255022726 I0422 16:29:47.322218 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-22 16:29:47.322203757 +0000 UTC m=+85.289196602 I0422 16:29:47.327068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:29:47.327140 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:29:47.327164 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-22 16:29:47.327159151 +0000 UTC m=+85.294151966 I0422 16:29:47.513087 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:29:47.522984 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pfz5g" condition "Approved" to 2026-04-22 16:29:47.522971616 +0000 UTC m=+85.489964441 I0422 16:29:47.552702 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pfz5g" condition "Ready" to 2026-04-22 16:29:47.55267681 +0000 UTC m=+85.519669615 I0422 16:29:47.583123 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:29:47.583108273 +0000 UTC m=+85.550101088 I0422 16:29:47.611131 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:29:47.611734 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:29:47.611726959 +0000 UTC m=+85.578719764 I0422 16:29:47.647602 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" E0422 16:36:51.054443 1 leaderelection.go:369] Failed to update lock: etcdserver: request timed out I0422 16:44:31.006047 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-107.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:44:31.006256 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-107.nip.io-tls" condition "Ready" to 2026-04-22 16:44:31.006245702 +0000 UTC m=+968.973238507 I0422 16:44:31.006080 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-107.nip.io-tls" condition "Issuing" to 2026-04-22 16:44:31.006073279 +0000 UTC m=+968.973066094 I0422 16:44:31.026558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-107.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-107.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:44:31.026676 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-107.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:44:31.026706 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-107.nip.io-tls" condition "Issuing" to 2026-04-22 16:44:31.026697252 +0000 UTC m=+968.993690087 I0422 16:44:31.469015 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-107.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-107.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:44:31.484905 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-107.nip.io-tls-xjzfw" condition "Approved" to 2026-04-22 16:44:31.484894136 +0000 UTC m=+969.451886941 I0422 16:44:31.506937 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-107.nip.io-tls-xjzfw" condition "Ready" to 2026-04-22 16:44:31.506925937 +0000 UTC m=+969.473918752 I0422 16:44:31.542443 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-107.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:44:31.542429485 +0000 UTC m=+969.509422280 I0422 16:44:31.569493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-107.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-107.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:39.007364 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-22 16:45:39.007343765 +0000 UTC m=+1036.974336610 I0422 16:45:39.007417 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:45:39.007527 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-22 16:45:39.007516158 +0000 UTC m=+1036.974508973 E0422 16:45:39.083345 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:45:39.083404 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-22 16:45:39.083391802 +0000 UTC m=+1037.050384637 E0422 16:45:39.083478 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 16:45:39.086792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:39.087626 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:45:39.087751 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-22 16:45:39.087665631 +0000 UTC m=+1037.054658476 E0422 16:45:39.141221 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0422 16:45:39.142900 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:45:39.142984 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 16:45:39.143092 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0422 16:45:39.209475 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:39.232034 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2fhnf" condition "Approved" to 2026-04-22 16:45:39.232006555 +0000 UTC m=+1037.198999400 I0422 16:45:39.271805 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2fhnf" condition "Ready" to 2026-04-22 16:45:39.271783581 +0000 UTC m=+1037.238776496 I0422 16:45:39.530573 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:39.530557784 +0000 UTC m=+1037.497550589 I0422 16:45:39.552970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:39.650915 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:45:44.142028 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:45:44.142011337 +0000 UTC m=+1042.109004192 I0422 16:46:37.996799 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-22 16:46:37.996788465 +0000 UTC m=+1095.963781270 I0422 16:46:37.997247 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:46:37.997276 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-22 16:46:37.997271034 +0000 UTC m=+1095.964263849 I0422 16:46:37.997434 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:46:37.997457 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-22 16:46:37.997453647 +0000 UTC m=+1095.964446442 I0422 16:46:37.997581 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-22 16:46:37.997577459 +0000 UTC m=+1095.964570264 I0422 16:46:38.005707 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-22 16:46:38.005694783 +0000 UTC m=+1095.972687598 I0422 16:46:38.006052 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:46:38.006883 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-22 16:46:38.006076949 +0000 UTC m=+1095.973069764 I0422 16:46:38.038554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:38.038681 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:46:38.038794 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-22 16:46:38.038786548 +0000 UTC m=+1096.005779373 I0422 16:46:38.039965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:38.040039 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:46:38.040062 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-22 16:46:38.04005745 +0000 UTC m=+1096.007050265 I0422 16:46:38.040477 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:38.040590 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:46:38.040638 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-22 16:46:38.040622419 +0000 UTC m=+1096.007615234 I0422 16:46:38.502107 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-prqlk" condition "Approved" to 2026-04-22 16:46:38.502095455 +0000 UTC m=+1096.469088260 I0422 16:46:38.529977 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-prqlk" condition "Ready" to 2026-04-22 16:46:38.529965988 +0000 UTC m=+1096.496958793 I0422 16:46:38.561717 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:38.570914 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tlh8j" condition "Approved" to 2026-04-22 16:46:38.570901872 +0000 UTC m=+1096.537894687 I0422 16:46:38.591802 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tlh8j" condition "Ready" to 2026-04-22 16:46:38.591787761 +0000 UTC m=+1096.558780566 I0422 16:46:38.615502 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:46:38.61548637 +0000 UTC m=+1096.582479185 I0422 16:46:38.732648 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:46:38.732633299 +0000 UTC m=+1096.699626104 I0422 16:46:38.866325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:39.087563 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:39.209232 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:39.225304 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-v2pxp" condition "Approved" to 2026-04-22 16:46:39.225289835 +0000 UTC m=+1097.192282670 I0422 16:46:39.245473 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-v2pxp" condition "Ready" to 2026-04-22 16:46:39.245464701 +0000 UTC m=+1097.212457506 I0422 16:46:39.373388 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:46:39.373375131 +0000 UTC m=+1097.340367936 I0422 16:46:39.455251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:46:39.455758 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:46:39.455750086 +0000 UTC m=+1097.422742891 I0422 16:46:39.654715 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:47:12.123095 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" condition "Ready" to 2026-04-22 16:47:12.123080196 +0000 UTC m=+1130.090073011 I0422 16:47:12.123277 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:47:12.123318 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" condition "Issuing" to 2026-04-22 16:47:12.12330906 +0000 UTC m=+1130.090301875 I0422 16:47:12.167808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65rqs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:47:12.167980 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" condition "Ready" to 2026-04-22 16:47:12.167972157 +0000 UTC m=+1130.134964972 I0422 16:47:12.324004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65rqs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:47:12.356064 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-65rqs-94hfv" condition "Approved" to 2026-04-22 16:47:12.356045108 +0000 UTC m=+1130.323037953 I0422 16:47:12.377861 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-65rqs-94hfv" condition "Ready" to 2026-04-22 16:47:12.377851608 +0000 UTC m=+1130.344844403 I0422 16:47:12.409845 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:47:12.409832634 +0000 UTC m=+1130.376825449 I0422 16:47:12.432801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65rqs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:47:12.433079 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:47:12.433074528 +0000 UTC m=+1130.400067333 I0422 16:47:12.457997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65rqs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65rqs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:48:20.838596 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-22 16:48:20.838581331 +0000 UTC m=+1198.805574136 I0422 16:48:20.839011 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:48:20.839027 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-22 16:48:20.839024578 +0000 UTC m=+1198.806017383 I0422 16:48:20.858078 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:48:20.858257 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:48:20.858332 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-22 16:48:20.858324466 +0000 UTC m=+1198.825317291 I0422 16:48:22.000837 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:48:22.001349 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-qtbbm" condition "Approved" to 2026-04-22 16:48:22.001342835 +0000 UTC m=+1199.968335650 I0422 16:48:22.278044 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-qtbbm" condition "Ready" to 2026-04-22 16:48:22.278034889 +0000 UTC m=+1200.245027694 I0422 16:48:22.689719 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:48:22.689698029 +0000 UTC m=+1200.656690834 I0422 16:48:23.030892 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:48:23.031210 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:48:23.031202991 +0000 UTC m=+1200.998195796 I0422 16:48:23.096129 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:51:33.277738 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-22 16:51:33.277725137 +0000 UTC m=+1391.244717942 I0422 16:51:33.278206 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:51:33.278221 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-22 16:51:33.278218405 +0000 UTC m=+1391.245211210 I0422 16:51:33.315348 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:51:33.315455 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:51:33.315483 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-22 16:51:33.315476017 +0000 UTC m=+1391.282468822 I0422 16:51:33.582346 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pr7fv" condition "Approved" to 2026-04-22 16:51:33.582336697 +0000 UTC m=+1391.549329492 I0422 16:51:33.602821 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pr7fv" condition "Ready" to 2026-04-22 16:51:33.602807648 +0000 UTC m=+1391.569800463 I0422 16:51:33.631651 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:51:33.631637534 +0000 UTC m=+1391.598630339 I0422 16:51:33.661364 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:51:33.661976 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:51:33.661965233 +0000 UTC m=+1391.628958038 I0422 16:51:33.686449 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:51:33.686911 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:51:33.686898816 +0000 UTC m=+1391.653891621 I0422 16:52:33.823422 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-22 16:52:33.823410448 +0000 UTC m=+1451.790403263 I0422 16:52:33.823674 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:52:33.823741 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-22 16:52:33.823733023 +0000 UTC m=+1451.790725838 I0422 16:52:33.841696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 16:52:33.841849 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 16:52:33.841903 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-22 16:52:33.841895234 +0000 UTC m=+1451.808888059 I0422 16:52:34.185335 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-zgtgr" condition "Approved" to 2026-04-22 16:52:34.18532196 +0000 UTC m=+1452.152314765 I0422 16:52:34.211277 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-zgtgr" condition "Ready" to 2026-04-22 16:52:34.211266646 +0000 UTC m=+1452.178259451 I0422 16:52:34.247527 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 16:52:34.247512596 +0000 UTC m=+1452.214505421 I0422 16:52:34.277082 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"