I0421 18:19:49.346162 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0421 18:19:49.346385 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0421 18:19:49.346495 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0421 18:19:49.355981 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0421 18:19:49.356979 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0421 18:19:49.357079 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0421 18:19:49.357163 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0421 18:19:49.360129 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0421 18:19:49.374488 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0421 18:19:49.374683 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0421 18:19:49.379893 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0421 18:19:49.382851 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0421 18:19:49.383128 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0421 18:19:49.387273 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0421 18:19:49.389697 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0421 18:19:49.391525 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0421 18:19:49.393333 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0421 18:19:49.395161 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0421 18:19:49.396966 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0421 18:19:49.398930 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0421 18:19:49.400576 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0421 18:19:49.400611 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0421 18:19:49.400767 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0421 18:19:49.408600 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0421 18:19:49.411991 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0421 18:19:49.412073 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0421 18:19:49.414242 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0421 18:19:49.416048 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0421 18:19:49.418064 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0421 18:19:49.420016 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0421 18:19:49.421839 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0421 18:19:49.421879 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0421 18:19:49.423878 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0421 18:19:49.431250 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.431612 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.431972 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.454254 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.471081 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.489577 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.506792 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.528065 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.530833 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:19:49.547892 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 18:20:03.275665 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-21 18:20:03.275643954 +0000 UTC m=+13.975239232 I0421 18:20:04.098605 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:20:04.098630 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 18:20:04.098618309 +0000 UTC m=+14.798213547 I0421 18:20:04.098683 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-21 18:20:04.09867461 +0000 UTC m=+14.798269888 I0421 18:20:04.113675 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:04.113755 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 18:20:04.113747632 +0000 UTC m=+14.813342880 E0421 18:20:04.119371 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 18:20:04.119434 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-21 18:20:04.119424159 +0000 UTC m=+14.819019397 E0421 18:20:04.119485 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 18:20:04.132523 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0421 18:20:04.132746 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 18:20:04.132840 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 18:20:04.132919 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0421 18:20:04.135571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:04.158898 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-gbfq2" condition "Approved" to 2026-04-21 18:20:04.158873372 +0000 UTC m=+14.858468640 I0421 18:20:04.174059 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-gbfq2" condition "Ready" to 2026-04-21 18:20:04.174042746 +0000 UTC m=+14.873637984 I0421 18:20:04.208744 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:20:04.208726916 +0000 UTC m=+14.908322164 I0421 18:20:04.230326 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:04.230862 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:20:04.23085414 +0000 UTC m=+14.930449378 I0421 18:20:04.233058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:04.247063 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:04.247463 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:04.247857 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:20:04.247845211 +0000 UTC m=+14.947440459 I0421 18:20:09.133191 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:20:09.133170597 +0000 UTC m=+19.832765866 I0421 18:20:32.419749 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-21 18:20:32.419681565 +0000 UTC m=+43.119276843 I0421 18:20:32.420194 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:20:32.420230 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-21 18:20:32.420222919 +0000 UTC m=+43.119818197 I0421 18:20:32.452753 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-21 18:20:32.452741183 +0000 UTC m=+43.152336421 I0421 18:20:32.472977 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:32.473063 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:20:32.473101 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-21 18:20:32.473083811 +0000 UTC m=+43.172679049 I0421 18:20:32.928677 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jlwbg" condition "Approved" to 2026-04-21 18:20:32.928661922 +0000 UTC m=+43.628257170 I0421 18:20:32.960629 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jlwbg" condition "Ready" to 2026-04-21 18:20:32.960610031 +0000 UTC m=+43.660205309 I0421 18:20:32.997241 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:20:32.997227011 +0000 UTC m=+43.696822259 I0421 18:20:33.025707 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:33.026153 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:20:33.026142272 +0000 UTC m=+43.725737550 I0421 18:20:33.030786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:33.047556 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:33.048919 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:20:33.049229 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:20:33.049220021 +0000 UTC m=+43.748815269 I0421 18:22:47.111795 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-21 18:22:47.111778225 +0000 UTC m=+177.811373483 I0421 18:22:47.111931 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:22:47.112045 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-21 18:22:47.112032281 +0000 UTC m=+177.811627559 I0421 18:22:47.132805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:47.132885 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-21 18:22:47.132879081 +0000 UTC m=+177.832474319 E0421 18:22:47.132950 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0421 18:22:47.133019 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-21 18:22:47.133010724 +0000 UTC m=+177.832605962 I0421 18:22:47.133072 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0421 18:22:47.143232 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:22:47.143248 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-21 18:22:47.143223804 +0000 UTC m=+177.842819042 I0421 18:22:47.143300 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-21 18:22:47.143291526 +0000 UTC m=+177.842886754 E0421 18:22:47.147320 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0421 18:22:47.147409 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0421 18:22:47.147441 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0421 18:22:47.147477 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0421 18:22:47.161832 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:47.161939 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:22:47.161985 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-21 18:22:47.161976268 +0000 UTC m=+177.861571516 I0421 18:22:47.280356 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:47.318712 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-xc6xv" condition "Approved" to 2026-04-21 18:22:47.318697899 +0000 UTC m=+178.018293167 I0421 18:22:47.333018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:47.345474 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-zq8ks" condition "Approved" to 2026-04-21 18:22:47.345457285 +0000 UTC m=+178.045052533 I0421 18:22:47.352067 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-xc6xv" condition "Ready" to 2026-04-21 18:22:47.352050369 +0000 UTC m=+178.051645627 I0421 18:22:47.362167 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-zq8ks" condition "Ready" to 2026-04-21 18:22:47.362151455 +0000 UTC m=+178.061746693 I0421 18:22:47.382776 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:47.382761669 +0000 UTC m=+178.082356917 I0421 18:22:47.410962 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:47.411490 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:47.411481936 +0000 UTC m=+178.111077174 I0421 18:22:47.428831 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:47.429314 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:47.429301565 +0000 UTC m=+178.128896813 I0421 18:22:47.435003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:52.148903 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:52.148885933 +0000 UTC m=+182.848481211 I0421 18:22:52.167818 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-zq8ks" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:52.167802009 +0000 UTC m=+182.867397257 I0421 18:22:52.206132 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:52.206111064 +0000 UTC m=+182.905706292 I0421 18:22:52.230053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:52.230456 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:52.230435092 +0000 UTC m=+182.930030330 I0421 18:22:52.241428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:52.250448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:22:52.250969 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:22:52.25095972 +0000 UTC m=+182.950554968 I0421 18:26:30.799753 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-246.nip.io-tls" condition "Ready" to 2026-04-21 18:26:30.79974364 +0000 UTC m=+401.499338878 I0421 18:26:30.799938 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-246.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:26:30.799982 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-246.nip.io-tls" condition "Issuing" to 2026-04-21 18:26:30.799970255 +0000 UTC m=+401.499565523 I0421 18:26:31.081127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-246.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-246.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:26:31.081220 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-246.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:26:31.081242 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-246.nip.io-tls" condition "Issuing" to 2026-04-21 18:26:31.081235276 +0000 UTC m=+401.780830524 I0421 18:26:32.304847 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-246.nip.io-tls-8w95g" condition "Approved" to 2026-04-21 18:26:32.304832497 +0000 UTC m=+403.004427775 I0421 18:26:32.343670 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-246.nip.io-tls-8w95g" condition "Ready" to 2026-04-21 18:26:32.343657237 +0000 UTC m=+403.043252465 I0421 18:26:32.409905 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-246.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:26:32.409894317 +0000 UTC m=+403.109489565 I0421 18:26:32.509276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-246.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-246.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:26:32.509844 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-246.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:26:32.509832993 +0000 UTC m=+403.209428271 I0421 18:26:32.846136 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-246.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-246.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:27:53.517503 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:27:53.517709 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-21 18:27:53.51769816 +0000 UTC m=+484.217293408 I0421 18:27:53.517402 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-21 18:27:53.517351761 +0000 UTC m=+484.216947039 E0421 18:27:53.628309 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 18:27:53.628427 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-21 18:27:53.628414089 +0000 UTC m=+484.328009357 E0421 18:27:53.628502 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 18:27:53.632479 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:27:53.632632 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-21 18:27:53.632621609 +0000 UTC m=+484.332216857 E0421 18:27:53.647780 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0421 18:27:53.647870 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 18:27:53.647895 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 18:27:53.647926 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0421 18:27:53.650646 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:27:53.650771 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-21 18:27:53.650761154 +0000 UTC m=+484.350356402 I0421 18:27:53.655651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-db9d7" condition "Approved" to 2026-04-21 18:27:53.655627971 +0000 UTC m=+484.355223249 I0421 18:27:53.675377 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-db9d7" condition "Ready" to 2026-04-21 18:27:53.675358729 +0000 UTC m=+484.374953977 I0421 18:27:53.704777 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:27:53.704755998 +0000 UTC m=+484.404351266 I0421 18:27:53.761910 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:27:58.648840 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:27:58.648816401 +0000 UTC m=+489.348411679 I0421 18:28:41.387222 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-21 18:28:41.387201855 +0000 UTC m=+532.086797133 I0421 18:28:41.387718 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:41.388132 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-21 18:28:41.388118048 +0000 UTC m=+532.087713406 I0421 18:28:41.393325 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:41.393362 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-21 18:28:41.393354386 +0000 UTC m=+532.092949634 I0421 18:28:41.393750 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-21 18:28:41.393745236 +0000 UTC m=+532.093340474 I0421 18:28:41.402081 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-21 18:28:41.402066694 +0000 UTC m=+532.101661942 I0421 18:28:41.402244 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:41.402288 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-21 18:28:41.40228122 +0000 UTC m=+532.101876448 I0421 18:28:41.419398 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.419461 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:41.419477 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-21 18:28:41.419472569 +0000 UTC m=+532.119067807 I0421 18:28:41.419959 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.420027 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:41.420054 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-21 18:28:41.420048445 +0000 UTC m=+532.119643673 I0421 18:28:41.438015 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.438088 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:41.438109 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-21 18:28:41.438102818 +0000 UTC m=+532.137698076 I0421 18:28:41.641747 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.642330 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.650498 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8z5px" condition "Approved" to 2026-04-21 18:28:41.650480319 +0000 UTC m=+532.350075567 I0421 18:28:41.662534 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-xpjhp" condition "Approved" to 2026-04-21 18:28:41.662510224 +0000 UTC m=+532.362105472 I0421 18:28:41.674508 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8z5px" condition "Ready" to 2026-04-21 18:28:41.674494817 +0000 UTC m=+532.374090045 I0421 18:28:41.678855 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-xpjhp" condition "Ready" to 2026-04-21 18:28:41.678843612 +0000 UTC m=+532.378438850 I0421 18:28:41.721670 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:28:41.721646763 +0000 UTC m=+532.421242021 I0421 18:28:41.722271 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:28:41.722256289 +0000 UTC m=+532.421851537 I0421 18:28:41.763231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.763585 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:28:41.763575821 +0000 UTC m=+532.463171059 I0421 18:28:41.764413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.779898 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:41.882750 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:42.339444 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-22cdw" condition "Approved" to 2026-04-21 18:28:42.339428879 +0000 UTC m=+533.039024137 I0421 18:28:42.537911 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-22cdw" condition "Ready" to 2026-04-21 18:28:42.537895127 +0000 UTC m=+533.237490405 I0421 18:28:42.779885 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:42.983904 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:28:42.983890275 +0000 UTC m=+533.683485523 I0421 18:28:43.081403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:43.081897 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:28:43.081887312 +0000 UTC m=+533.781482580 I0421 18:28:43.280809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:50.558672 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" condition "Ready" to 2026-04-21 18:28:50.558653816 +0000 UTC m=+541.258249064 I0421 18:28:50.559167 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:50.559195 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" condition "Issuing" to 2026-04-21 18:28:50.5591887 +0000 UTC m=+541.258783958 I0421 18:28:50.572786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lpmft-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:50.572849 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:28:50.572864 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" condition "Issuing" to 2026-04-21 18:28:50.572858648 +0000 UTC m=+541.272453886 I0421 18:28:50.854207 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lpmft-v6c54" condition "Approved" to 2026-04-21 18:28:50.854192555 +0000 UTC m=+541.553787833 I0421 18:28:50.876465 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lpmft-v6c54" condition "Ready" to 2026-04-21 18:28:50.876454697 +0000 UTC m=+541.576049935 I0421 18:28:50.905691 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:28:50.905671293 +0000 UTC m=+541.605266571 I0421 18:28:50.924787 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lpmft-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:28:50.988818 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lpmft-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lpmft-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:29:18.801388 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-21 18:29:18.801373147 +0000 UTC m=+569.500968395 I0421 18:29:18.801494 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:29:18.801527 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-21 18:29:18.801520291 +0000 UTC m=+569.501115529 I0421 18:29:18.819588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:29:18.819656 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:29:18.819673 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-21 18:29:18.819667788 +0000 UTC m=+569.519263026 I0421 18:29:19.166345 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-clqcl" condition "Approved" to 2026-04-21 18:29:19.166326455 +0000 UTC m=+569.865921733 I0421 18:29:19.186543 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-clqcl" condition "Ready" to 2026-04-21 18:29:19.186532236 +0000 UTC m=+569.886127474 I0421 18:29:19.219503 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:29:19.219487832 +0000 UTC m=+569.919083080 I0421 18:29:19.355531 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:32:49.230981 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-21 18:32:49.23096103 +0000 UTC m=+779.930556278 I0421 18:32:49.231152 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:32:49.231203 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-21 18:32:49.231192216 +0000 UTC m=+779.930787464 I0421 18:32:49.249897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:32:49.250016 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-21 18:32:49.250005711 +0000 UTC m=+779.949600989 I0421 18:32:49.545201 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:32:49.582902 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-jps29" condition "Approved" to 2026-04-21 18:32:49.582887167 +0000 UTC m=+780.282482415 I0421 18:32:49.605058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-jps29" condition "Ready" to 2026-04-21 18:32:49.60504659 +0000 UTC m=+780.304641848 I0421 18:32:49.634326 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:32:49.63431337 +0000 UTC m=+780.333908598 I0421 18:32:49.660823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:32:49.661134 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:32:49.661126515 +0000 UTC m=+780.360721753 I0421 18:32:49.689747 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:35:22.563886 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-21 18:35:22.563870932 +0000 UTC m=+933.263466180 I0421 18:35:22.564315 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:35:22.564351 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-21 18:35:22.564343214 +0000 UTC m=+933.263938462 I0421 18:35:22.587866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:35:22.587923 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-21 18:35:22.587915319 +0000 UTC m=+933.287510567 I0421 18:35:22.769722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:35:22.799081 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-lkhkr" condition "Approved" to 2026-04-21 18:35:22.799064585 +0000 UTC m=+933.498659833 I0421 18:35:22.824513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-lkhkr" condition "Ready" to 2026-04-21 18:35:22.824499199 +0000 UTC m=+933.524094467 I0421 18:35:22.857350 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:35:22.857339805 +0000 UTC m=+933.556935043 I0421 18:35:22.882494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:36:37.022569 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-21 18:36:37.022557869 +0000 UTC m=+1007.722153107 I0421 18:36:37.022607 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:36:37.022654 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-21 18:36:37.022643152 +0000 UTC m=+1007.722238720 I0421 18:36:37.038743 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:36:37.038801 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-21 18:36:37.038795213 +0000 UTC m=+1007.738390461 I0421 18:36:37.324428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:36:37.369326 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-xb7gk" condition "Approved" to 2026-04-21 18:36:37.369306143 +0000 UTC m=+1008.068901391 I0421 18:36:37.391902 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-xb7gk" condition "Ready" to 2026-04-21 18:36:37.391892362 +0000 UTC m=+1008.091487600 I0421 18:36:37.440236 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:36:37.440220773 +0000 UTC m=+1008.139816011 I0421 18:36:37.459600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:36:37.460020 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:36:37.460013298 +0000 UTC m=+1008.159608556 I0421 18:36:37.473076 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:36:37.488770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:36:37.489071 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:36:37.489062816 +0000 UTC m=+1008.188658064 I0421 18:39:51.124193 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-21 18:39:51.124178754 +0000 UTC m=+1201.823774002 I0421 18:39:51.124345 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:39:51.124414 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-21 18:39:51.12439081 +0000 UTC m=+1201.823986088 I0421 18:39:51.143258 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:39:51.143351 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 18:39:51.143369 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-21 18:39:51.143363644 +0000 UTC m=+1201.842958882 I0421 18:39:51.396025 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-54xlv" condition "Approved" to 2026-04-21 18:39:51.396011058 +0000 UTC m=+1202.095606306 I0421 18:39:51.413522 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-54xlv" condition "Ready" to 2026-04-21 18:39:51.413512594 +0000 UTC m=+1202.113107842 I0421 18:39:51.439953 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:39:51.439938203 +0000 UTC m=+1202.139533461 I0421 18:39:51.459863 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:39:51.460276 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:39:51.460268773 +0000 UTC m=+1202.159864021 I0421 18:39:51.480797 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:39:51.481429 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 18:39:51.481776 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 18:39:51.481766664 +0000 UTC m=+1202.181361922