I0505 12:49:21.631427 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0505 12:49:21.631638 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0505 12:49:21.631756 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 12:49:21.636630 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0505 12:49:21.637077 1 controller.go:156] "cert-manager/controller: starting leader election" I0505 12:49:21.637133 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0505 12:49:21.637316 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0505 12:49:21.639632 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 12:49:21.655650 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0505 12:49:21.659332 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0505 12:49:21.663971 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0505 12:49:21.670663 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0505 12:49:21.678176 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0505 12:49:21.678250 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0505 12:49:21.678218 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0505 12:49:21.680656 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0505 12:49:21.682464 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0505 12:49:21.684205 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0505 12:49:21.685829 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0505 12:49:21.690592 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0505 12:49:21.690668 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0505 12:49:21.691139 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0505 12:49:21.695164 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0505 12:49:21.699231 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0505 12:49:21.701915 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0505 12:49:21.704544 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0505 12:49:21.706983 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0505 12:49:21.709439 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0505 12:49:21.709459 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0505 12:49:21.709536 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0505 12:49:21.711600 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0505 12:49:21.713756 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0505 12:49:21.715539 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0505 12:49:44.153641 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 12:49:44.153603446 +0000 UTC m=+22.555424405 I0505 12:49:44.953602 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 12:49:44.953572024 +0000 UTC m=+23.355393033 I0505 12:49:44.953742 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:49:44.954070 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 12:49:44.953995756 +0000 UTC m=+23.355816755 E0505 12:49:44.971250 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 12:49:44.971307 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 12:49:44.971295702 +0000 UTC m=+23.373116631 E0505 12:49:44.971540 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 12:49:44.972251 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:49:44.972503 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:49:44.972534 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 12:49:44.972526895 +0000 UTC m=+23.374347834 E0505 12:49:44.980838 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0505 12:49:44.981012 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 12:49:44.981086 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 12:49:44.981195 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0505 12:49:45.069277 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:49:45.086609 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qnn7s" condition "Approved" to 2026-05-05 12:49:45.08658308 +0000 UTC m=+23.488404019 I0505 12:49:45.101565 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qnn7s" condition "Ready" to 2026-05-05 12:49:45.101549994 +0000 UTC m=+23.503370923 I0505 12:49:45.125168 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:49:45.12514992 +0000 UTC m=+23.526970859 I0505 12:49:45.139400 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:49:45.139716 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:49:45.139700342 +0000 UTC m=+23.541521271 I0505 12:49:45.159498 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:49:49.981829 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:49:49.981807926 +0000 UTC m=+28.383628885 I0505 12:50:11.705912 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 12:50:11.705867294 +0000 UTC m=+50.107688223 I0505 12:50:11.706210 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:50:11.706230 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 12:50:11.706224214 +0000 UTC m=+50.108045143 I0505 12:50:11.725146 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 12:50:11.725134658 +0000 UTC m=+50.126955587 I0505 12:50:11.751198 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:50:11.751254 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:50:11.751267 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 12:50:11.751262715 +0000 UTC m=+50.153083654 I0505 12:50:11.969616 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:50:11.982168 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9zs87" condition "Approved" to 2026-05-05 12:50:11.98215698 +0000 UTC m=+50.383977899 I0505 12:50:12.010797 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9zs87" condition "Ready" to 2026-05-05 12:50:12.010782624 +0000 UTC m=+50.412603563 I0505 12:50:12.050335 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:50:12.050325178 +0000 UTC m=+50.452146107 I0505 12:50:12.079786 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:52:48.897652 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-137.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:52:48.897710 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-137.nip.io-tls" condition "Issuing" to 2026-05-05 12:52:48.897682973 +0000 UTC m=+207.299503942 I0505 12:52:48.898214 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-137.nip.io-tls" condition "Ready" to 2026-05-05 12:52:48.898205296 +0000 UTC m=+207.300026265 I0505 12:52:48.911803 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-137.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-137.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:52:48.912020 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-137.nip.io-tls" condition "Ready" to 2026-05-05 12:52:48.912001132 +0000 UTC m=+207.313822061 I0505 12:52:49.150344 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-137.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-137.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:52:49.173427 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-137.nip.io-tls-brq5z" condition "Approved" to 2026-05-05 12:52:49.173413311 +0000 UTC m=+207.575234270 I0505 12:52:49.220337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-137.nip.io-tls-brq5z" condition "Ready" to 2026-05-05 12:52:49.220320311 +0000 UTC m=+207.622141280 I0505 12:52:49.248507 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-137.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:52:49.248493336 +0000 UTC m=+207.650314295 I0505 12:52:49.274061 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-137.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-137.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:52:49.275151 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-137.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:52:49.27514233 +0000 UTC m=+207.676963269 I0505 12:52:49.288584 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-137.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-137.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:52:49.298112 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-137.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-137.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:53:44.497296 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:53:44.497327 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 12:53:44.4973178 +0000 UTC m=+262.899138729 I0505 12:53:44.497826 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 12:53:44.497804362 +0000 UTC m=+262.899625321 E0505 12:53:44.512047 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 12:53:44.512108 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 12:53:44.51209945 +0000 UTC m=+262.913920419 E0505 12:53:44.512158 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 12:53:44.513676 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:53:44.513990 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:53:44.514028 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 12:53:44.514017081 +0000 UTC m=+262.915838020 E0505 12:53:44.527186 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0505 12:53:44.527314 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 12:53:44.527727 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 12:53:44.527793 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0505 12:53:44.551003 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:53:44.554802 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k5f4h" condition "Approved" to 2026-05-05 12:53:44.554789099 +0000 UTC m=+262.956610038 I0505 12:53:44.565901 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k5f4h" condition "Ready" to 2026-05-05 12:53:44.565887142 +0000 UTC m=+262.967708071 I0505 12:53:44.587673 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:53:44.587662097 +0000 UTC m=+262.989483036 I0505 12:53:44.605806 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:53:44.606092 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:53:44.606081475 +0000 UTC m=+263.007902414 I0505 12:53:44.622122 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:53:44.622781 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:53:49.527560 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:53:49.52754901 +0000 UTC m=+267.929369939 I0505 12:54:30.767288 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:30.767380 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 12:54:30.76733448 +0000 UTC m=+309.169155409 I0505 12:54:30.776473 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 12:54:30.776454572 +0000 UTC m=+309.178275501 I0505 12:54:30.777134 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 12:54:30.776989782 +0000 UTC m=+309.178810711 I0505 12:54:30.777310 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:30.780238 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 12:54:30.780230377 +0000 UTC m=+309.182051296 I0505 12:54:30.778704 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:30.778858 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 12:54:30.778852239 +0000 UTC m=+309.180673168 I0505 12:54:30.781698 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 12:54:30.781665956 +0000 UTC m=+309.183486915 I0505 12:54:30.814786 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:30.814879 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 12:54:30.814871396 +0000 UTC m=+309.216692315 I0505 12:54:30.822671 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:30.822811 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:30.823001 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:30.823068 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 12:54:30.823061999 +0000 UTC m=+309.224882928 I0505 12:54:30.823801 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:30.823887 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 12:54:30.823876275 +0000 UTC m=+309.225697204 I0505 12:54:31.017363 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-v7kcw" condition "Approved" to 2026-05-05 12:54:31.017348688 +0000 UTC m=+309.419169607 I0505 12:54:31.034725 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-v7kcw" condition "Ready" to 2026-05-05 12:54:31.034714393 +0000 UTC m=+309.436535322 I0505 12:54:31.061371 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:31.061357115 +0000 UTC m=+309.463178054 I0505 12:54:31.087769 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:31.088371 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:31.088358814 +0000 UTC m=+309.490179753 I0505 12:54:31.112557 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:31.114814 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:31.121897 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:31.147006 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-ls6sh" condition "Approved" to 2026-05-05 12:54:31.146991994 +0000 UTC m=+309.548812943 I0505 12:54:31.163748 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-ls6sh" condition "Ready" to 2026-05-05 12:54:31.163724957 +0000 UTC m=+309.565545876 I0505 12:54:31.255458 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:31.255442097 +0000 UTC m=+309.657263026 I0505 12:54:31.293511 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:31.350067 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-d4q84" condition "Approved" to 2026-05-05 12:54:31.350041335 +0000 UTC m=+309.751862264 I0505 12:54:31.444157 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:31.444899 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:31.444890177 +0000 UTC m=+309.846711116 I0505 12:54:31.508505 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-d4q84" condition "Ready" to 2026-05-05 12:54:31.508491116 +0000 UTC m=+309.910312055 I0505 12:54:32.220143 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:32.249141 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:32.328793 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:32.328779655 +0000 UTC m=+310.730600624 I0505 12:54:32.447553 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:32.448235 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:32.448228764 +0000 UTC m=+310.850049703 I0505 12:54:32.695771 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:32.748793 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:39.055906 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:39.055934 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" condition "Issuing" to 2026-05-05 12:54:39.055927504 +0000 UTC m=+317.457748443 I0505 12:54:39.055936 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" condition "Ready" to 2026-05-05 12:54:39.055903954 +0000 UTC m=+317.457724873 I0505 12:54:39.069525 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:39.069593 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" condition "Ready" to 2026-05-05 12:54:39.069586531 +0000 UTC m=+317.471407470 I0505 12:54:39.235336 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:39.287105 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-9xvk7-86g8b" condition "Approved" to 2026-05-05 12:54:39.287091456 +0000 UTC m=+317.688912375 I0505 12:54:39.327408 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-9xvk7-86g8b" condition "Ready" to 2026-05-05 12:54:39.327394333 +0000 UTC m=+317.729215272 I0505 12:54:39.360122 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:39.360107557 +0000 UTC m=+317.761928486 I0505 12:54:39.380194 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-9xvk7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:51.562253 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 12:54:51.56223722 +0000 UTC m=+329.964058149 I0505 12:54:51.562349 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:51.562390 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 12:54:51.562378202 +0000 UTC m=+329.964199141 I0505 12:54:51.577568 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:54:51.577617 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:54:51.577633 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 12:54:51.577628029 +0000 UTC m=+329.979448958 I0505 12:54:51.798329 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-k2qkr" condition "Approved" to 2026-05-05 12:54:51.798308863 +0000 UTC m=+330.200129822 I0505 12:54:51.822211 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-k2qkr" condition "Ready" to 2026-05-05 12:54:51.822192169 +0000 UTC m=+330.224013098 I0505 12:54:51.851140 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:54:51.851118909 +0000 UTC m=+330.252939838 I0505 12:54:51.880684 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:57:57.648113 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:57:57.648148 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 12:57:57.648138967 +0000 UTC m=+516.049959906 I0505 12:57:57.648365 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 12:57:57.648341061 +0000 UTC m=+516.050162000 I0505 12:57:57.664538 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:57:57.664613 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 12:57:57.66460303 +0000 UTC m=+516.066423969 I0505 12:57:58.047996 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:57:58.082919 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-zpzwr" condition "Approved" to 2026-05-05 12:57:58.082906579 +0000 UTC m=+516.484727518 I0505 12:57:58.106225 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-zpzwr" condition "Ready" to 2026-05-05 12:57:58.10620473 +0000 UTC m=+516.508025659 I0505 12:57:58.138425 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:57:58.138409388 +0000 UTC m=+516.540230327 I0505 12:57:58.158617 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:57:58.159193 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:57:58.159185547 +0000 UTC m=+516.561006486 I0505 12:57:58.188554 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:58:37.856480 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 12:58:37.856517 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 12:58:37.856501936 +0000 UTC m=+556.258322875 I0505 12:58:37.857031 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 12:58:37.857005629 +0000 UTC m=+556.258826558 I0505 12:58:37.876003 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:58:37.876144 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 12:58:37.876088821 +0000 UTC m=+556.277909780 I0505 12:58:38.035678 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:58:38.077718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-4r48q" condition "Approved" to 2026-05-05 12:58:38.077652646 +0000 UTC m=+556.479473585 I0505 12:58:38.109069 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-4r48q" condition "Ready" to 2026-05-05 12:58:38.109055455 +0000 UTC m=+556.510876394 I0505 12:58:38.142778 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:58:38.142765519 +0000 UTC m=+556.544586448 I0505 12:58:38.164224 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:58:38.164845 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 12:58:38.164831927 +0000 UTC m=+556.566652876 I0505 12:58:38.186417 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 12:58:38.188791 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"