I0506 09:21:02.672766 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0506 09:21:02.673108 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0506 09:21:02.673369 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0506 09:21:02.678578 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0506 09:21:02.679093 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0506 09:21:02.679190 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0506 09:21:02.679293 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0506 09:21:02.681188 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0506 09:21:02.693943 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0506 09:21:02.699063 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0506 09:21:02.699399 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0506 09:21:02.699510 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0506 09:21:02.704575 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0506 09:21:02.707848 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0506 09:21:02.709555 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0506 09:21:02.711263 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0506 09:21:02.712895 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0506 09:21:02.714872 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0506 09:21:02.719666 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0506 09:21:02.723511 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0506 09:21:02.727258 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0506 09:21:02.728954 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0506 09:21:02.728972 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0506 09:21:02.729054 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0506 09:21:02.731008 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0506 09:21:02.732743 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0506 09:21:02.734783 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0506 09:21:02.736816 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0506 09:21:02.738315 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0506 09:21:02.738471 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0506 09:21:02.744155 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0506 09:21:02.747564 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0506 09:21:02.748057 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0506 09:21:02.749478 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.749903 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.750499 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.750544 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.751031 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.751073 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.751363 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.751526 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.752057 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:02.837902 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 09:21:15.765505 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-06 09:21:15.765471174 +0000 UTC m=+13.127346036 I0506 09:21:16.485503 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-06 09:21:16.485487685 +0000 UTC m=+13.847362567 I0506 09:21:16.486812 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:21:16.486900 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-06 09:21:16.486889681 +0000 UTC m=+13.848764593 E0506 09:21:16.501972 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 09:21:16.502053 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-06 09:21:16.502046329 +0000 UTC m=+13.863921191 E0506 09:21:16.502080 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 09:21:16.505917 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:21:16.506031 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:21:16.506094 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-06 09:21:16.506078596 +0000 UTC m=+13.867953458 E0506 09:21:16.513570 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0506 09:21:16.513737 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 09:21:16.513789 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 09:21:16.513861 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0506 09:21:16.546903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nqpp5" condition "Approved" to 2026-05-06 09:21:16.546894982 +0000 UTC m=+13.908769834 I0506 09:21:16.560269 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nqpp5" condition "Ready" to 2026-05-06 09:21:16.560260675 +0000 UTC m=+13.922135527 I0506 09:21:16.586237 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:21:16.58622428 +0000 UTC m=+13.948099162 I0506 09:21:16.604159 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:21:16.604933 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:21:16.604922124 +0000 UTC m=+13.966797016 I0506 09:21:16.620333 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:21:21.514695 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:21:21.514657769 +0000 UTC m=+18.876532651 I0506 09:21:43.681404 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:21:43.681441 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-06 09:21:43.681433347 +0000 UTC m=+41.043308209 I0506 09:21:43.681774 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-06 09:21:43.681765171 +0000 UTC m=+41.043640033 I0506 09:21:43.703946 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-06 09:21:43.703935459 +0000 UTC m=+41.065810321 I0506 09:21:43.713221 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:21:43.713348 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-06 09:21:43.713341961 +0000 UTC m=+41.075216823 I0506 09:21:43.827509 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:21:43.863960 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-zfcgb" condition "Approved" to 2026-05-06 09:21:43.863951188 +0000 UTC m=+41.225826060 I0506 09:21:43.891832 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-zfcgb" condition "Ready" to 2026-05-06 09:21:43.891820259 +0000 UTC m=+41.253695121 I0506 09:21:43.920018 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:21:43.920003674 +0000 UTC m=+41.281878546 I0506 09:21:43.943780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:25:47.541053 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-116.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:25:47.541095 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Issuing" to 2026-05-06 09:25:47.541087934 +0000 UTC m=+284.902962796 I0506 09:25:47.541560 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Ready" to 2026-05-06 09:25:47.541553692 +0000 UTC m=+284.903428554 I0506 09:25:47.559994 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:25:47.560099 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Ready" to 2026-05-06 09:25:47.560089368 +0000 UTC m=+284.921964230 I0506 09:25:47.827949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:25:47.858827 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-116.nip.io-tls-mp2jh" condition "Approved" to 2026-05-06 09:25:47.858811363 +0000 UTC m=+285.220686245 I0506 09:25:47.887095 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-116.nip.io-tls-mp2jh" condition "Ready" to 2026-05-06 09:25:47.887083025 +0000 UTC m=+285.248957877 I0506 09:25:47.915531 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:25:47.91551892 +0000 UTC m=+285.277393782 I0506 09:25:47.932535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:50.934698 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:26:50.934697 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-06 09:26:50.934674776 +0000 UTC m=+348.296549638 I0506 09:26:50.934735 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-06 09:26:50.934729658 +0000 UTC m=+348.296604520 E0506 09:26:50.951664 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 09:26:50.951700 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-06 09:26:50.951692731 +0000 UTC m=+348.313567593 E0506 09:26:50.951757 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 09:26:50.953792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:50.953842 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-06 09:26:50.95383728 +0000 UTC m=+348.315712142 E0506 09:26:50.964708 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0506 09:26:50.964904 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 09:26:50.964977 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 09:26:50.965073 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0506 09:26:50.965543 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:50.965811 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-06 09:26:50.965595486 +0000 UTC m=+348.327470338 I0506 09:26:50.966976 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:50.970007 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-7p6ss" condition "Approved" to 2026-05-06 09:26:50.970000287 +0000 UTC m=+348.331875149 I0506 09:26:50.981708 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-06 09:26:50.981698332 +0000 UTC m=+348.343573204 I0506 09:26:50.983671 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-7p6ss" condition "Ready" to 2026-05-06 09:26:50.983663475 +0000 UTC m=+348.345538337 I0506 09:26:50.989350 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:51.000269 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:26:51.000259216 +0000 UTC m=+348.362134098 I0506 09:26:51.020572 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:51.020812 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:26:51.020804981 +0000 UTC m=+348.382679843 I0506 09:26:51.039726 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:51.039789 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:26:55.965109 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:26:55.965099578 +0000 UTC m=+353.326974440 I0506 09:27:35.712189 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:27:35.712240 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-06 09:27:35.712235212 +0000 UTC m=+393.074110064 I0506 09:27:35.713330 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-06 09:27:35.713316103 +0000 UTC m=+393.075190965 I0506 09:27:35.737358 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-06 09:27:35.737344485 +0000 UTC m=+393.099219337 I0506 09:27:35.737555 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:27:35.737594 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-06 09:27:35.737576201 +0000 UTC m=+393.099451043 I0506 09:27:35.744519 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:27:35.745988 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-06 09:27:35.74597943 +0000 UTC m=+393.107854282 I0506 09:27:35.744640 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-06 09:27:35.744632672 +0000 UTC m=+393.106507524 I0506 09:27:35.763213 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:35.763297 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-06 09:27:35.763289461 +0000 UTC m=+393.125164313 I0506 09:27:35.787941 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:35.788005 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:27:35.788025 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-06 09:27:35.788020704 +0000 UTC m=+393.149895556 I0506 09:27:35.788287 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:35.788330 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-06 09:27:35.788326702 +0000 UTC m=+393.150201554 I0506 09:27:36.023716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:36.069216 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-t8lkc" condition "Approved" to 2026-05-06 09:27:36.069207023 +0000 UTC m=+393.431081875 I0506 09:27:36.080410 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:36.084826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rj2rt" condition "Approved" to 2026-05-06 09:27:36.084820445 +0000 UTC m=+393.446695297 I0506 09:27:36.090947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-t8lkc" condition "Ready" to 2026-05-06 09:27:36.090943108 +0000 UTC m=+393.452817950 I0506 09:27:36.142247 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rj2rt" condition "Ready" to 2026-05-06 09:27:36.142238732 +0000 UTC m=+393.504113584 I0506 09:27:36.159022 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:36.158971496 +0000 UTC m=+393.520846358 I0506 09:27:36.186301 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:36.186288168 +0000 UTC m=+393.548163020 I0506 09:27:36.192067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:36.215024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:36.505315 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:36.666422 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dx92v" condition "Approved" to 2026-05-06 09:27:36.666406318 +0000 UTC m=+394.028281170 I0506 09:27:36.719598 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dx92v" condition "Ready" to 2026-05-06 09:27:36.719583504 +0000 UTC m=+394.081458366 I0506 09:27:37.209821 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:37.209798756 +0000 UTC m=+394.571673618 I0506 09:27:37.307989 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:37.308469 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:37.308456144 +0000 UTC m=+394.670331026 I0506 09:27:37.558697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:37.608697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:43.426547 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" condition "Ready" to 2026-05-06 09:27:43.426514688 +0000 UTC m=+400.788389560 I0506 09:27:43.426777 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:27:43.426860 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" condition "Issuing" to 2026-05-06 09:27:43.426808346 +0000 UTC m=+400.788683208 I0506 09:27:43.442988 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-chmkh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:43.443049 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:27:43.443071 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" condition "Issuing" to 2026-05-06 09:27:43.44306314 +0000 UTC m=+400.804938002 I0506 09:27:43.743695 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-chmkh-ggh5g" condition "Approved" to 2026-05-06 09:27:43.743684888 +0000 UTC m=+401.105559740 I0506 09:27:43.760276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-chmkh-ggh5g" condition "Ready" to 2026-05-06 09:27:43.76026558 +0000 UTC m=+401.122140442 I0506 09:27:43.788548 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:43.788535688 +0000 UTC m=+401.150410550 I0506 09:27:43.804971 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-chmkh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:43.805455 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:43.805446629 +0000 UTC m=+401.167321511 I0506 09:27:43.822806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-chmkh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-chmkh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:55.541349 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-06 09:27:55.541313968 +0000 UTC m=+412.903188810 I0506 09:27:55.541584 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:27:55.541649 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-06 09:27:55.541635218 +0000 UTC m=+412.903510110 I0506 09:27:55.566480 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:55.566782 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-06 09:27:55.566774511 +0000 UTC m=+412.928649363 I0506 09:27:55.723919 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:55.762346 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xjpk5" condition "Approved" to 2026-05-06 09:27:55.762329079 +0000 UTC m=+413.124203941 I0506 09:27:55.783107 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xjpk5" condition "Ready" to 2026-05-06 09:27:55.783097213 +0000 UTC m=+413.144972075 I0506 09:27:55.808123 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:55.808113203 +0000 UTC m=+413.169988055 I0506 09:27:55.828726 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:55.829612 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:55.829605366 +0000 UTC m=+413.191480228 I0506 09:27:55.849866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:27:55.850242 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:27:55.850233896 +0000 UTC m=+413.212108748 I0506 09:31:13.352591 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-06 09:31:13.352574028 +0000 UTC m=+610.714448910 I0506 09:31:13.353019 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:31:13.353040 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-06 09:31:13.353036788 +0000 UTC m=+610.714911640 I0506 09:31:13.374612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:13.374843 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-06 09:31:13.374833344 +0000 UTC m=+610.736708206 I0506 09:31:13.809325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:13.846439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9pkl7" condition "Approved" to 2026-05-06 09:31:13.846419839 +0000 UTC m=+611.208294701 I0506 09:31:13.865603 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9pkl7" condition "Ready" to 2026-05-06 09:31:13.86559315 +0000 UTC m=+611.227468002 I0506 09:31:13.892947 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:31:13.892937025 +0000 UTC m=+611.254811887 I0506 09:31:13.917804 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:13.965518 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:55.625413 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 09:31:55.625443 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-06 09:31:55.62543674 +0000 UTC m=+652.987311602 I0506 09:31:55.625748 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-06 09:31:55.625742546 +0000 UTC m=+652.987617408 I0506 09:31:55.642256 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:55.642469 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-06 09:31:55.642450367 +0000 UTC m=+653.004325259 I0506 09:31:55.768401 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:55.815394 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-hww5q" condition "Approved" to 2026-05-06 09:31:55.81537518 +0000 UTC m=+653.177250042 I0506 09:31:55.839472 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-hww5q" condition "Ready" to 2026-05-06 09:31:55.839460474 +0000 UTC m=+653.201335336 I0506 09:31:55.886930 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:31:55.886914858 +0000 UTC m=+653.248789720 I0506 09:31:55.905836 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:55.908509 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:31:55.908497451 +0000 UTC m=+653.270372333 I0506 09:31:55.931509 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 09:31:55.931824 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 09:31:55.931816679 +0000 UTC m=+653.293691541