I0324 14:53:38.088853 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0324 14:53:38.088999 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0324 14:53:38.089120 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0324 14:53:38.094043 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0324 14:53:38.094585 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0324 14:53:38.094705 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0324 14:53:38.094744 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0324 14:53:38.098291 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0324 14:53:38.113183 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0324 14:53:38.113519 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0324 14:53:38.117737 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0324 14:53:38.121872 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0324 14:53:38.124678 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0324 14:53:38.127263 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0324 14:53:38.127289 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0324 14:53:38.127321 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0324 14:53:38.129946 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0324 14:53:38.132314 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0324 14:53:38.134691 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0324 14:53:38.136504 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0324 14:53:38.140172 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0324 14:53:38.144233 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0324 14:53:38.144269 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0324 14:53:38.144282 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0324 14:53:38.147073 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0324 14:53:38.149659 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0324 14:53:38.152472 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0324 14:53:38.155016 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0324 14:53:38.155103 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0324 14:53:38.157913 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0324 14:53:38.159796 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0324 14:53:38.161682 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0324 14:53:38.163494 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0324 14:53:38.168457 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.169007 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.169111 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.169132 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.169759 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.169923 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.170052 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.170568 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.170569 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:38.199687 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0324 14:53:51.015622 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-24 14:53:51.015590441 +0000 UTC m=+12.959228035 I0324 14:53:51.738993 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-24 14:53:51.738977816 +0000 UTC m=+13.682615410 I0324 14:53:51.740142 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:53:51.740199 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-24 14:53:51.740185951 +0000 UTC m=+13.683823615 I0324 14:53:51.753609 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:53:51.753665 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:53:51.753683 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-24 14:53:51.753677409 +0000 UTC m=+13.697314983 E0324 14:53:51.756446 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0324 14:53:51.756528 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-24 14:53:51.75652308 +0000 UTC m=+13.700160654 E0324 14:53:51.756550 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0324 14:53:51.771593 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0324 14:53:51.771686 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0324 14:53:51.771717 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0324 14:53:51.771779 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0324 14:53:51.814552 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b2rtv" condition "Approved" to 2026-03-24 14:53:51.814534057 +0000 UTC m=+13.758171671 I0324 14:53:51.828853 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b2rtv" condition "Ready" to 2026-03-24 14:53:51.828844582 +0000 UTC m=+13.772482156 I0324 14:53:51.859689 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:53:51.859672419 +0000 UTC m=+13.803309993 I0324 14:53:51.878700 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:53:51.879599 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:53:51.879590414 +0000 UTC m=+13.823227988 I0324 14:53:51.901604 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:53:51.905105 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:53:56.772283 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:53:56.772274604 +0000 UTC m=+18.715912168 I0324 14:54:16.229143 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:54:16.229192 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-24 14:54:16.229175891 +0000 UTC m=+38.172813465 I0324 14:54:16.229661 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-24 14:54:16.22964088 +0000 UTC m=+38.173278484 I0324 14:54:16.244748 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-24 14:54:16.244734692 +0000 UTC m=+38.188372276 I0324 14:54:16.255414 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:54:16.255486 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:54:16.255505 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-24 14:54:16.255499911 +0000 UTC m=+38.199137475 I0324 14:54:16.474124 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:54:16.481878 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-w84mg" condition "Approved" to 2026-03-24 14:54:16.481842638 +0000 UTC m=+38.425480242 I0324 14:54:16.518151 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-w84mg" condition "Ready" to 2026-03-24 14:54:16.518129251 +0000 UTC m=+38.461766815 I0324 14:54:16.553012 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:54:16.552991254 +0000 UTC m=+38.496628848 I0324 14:54:16.594949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:54:16.595561 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:54:16.595548673 +0000 UTC m=+38.539186277 I0324 14:54:16.636522 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:55:58.328292 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:55:58.328336 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-24 14:55:58.328325792 +0000 UTC m=+140.271963386 I0324 14:55:58.328415 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-24 14:55:58.328395083 +0000 UTC m=+140.272032677 E0324 14:55:58.344169 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0324 14:55:58.344269 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-24 14:55:58.34426031 +0000 UTC m=+140.287897884 I0324 14:55:58.344322 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0324 14:55:58.346687 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:55:58.346771 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:55:58.346796 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-24 14:55:58.346789754 +0000 UTC m=+140.290427328 E0324 14:55:58.353402 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0324 14:55:58.353590 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0324 14:55:58.353633 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0324 14:55:58.353680 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0324 14:55:58.358167 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:55:58.358204 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-24 14:55:58.358195077 +0000 UTC m=+140.301832651 I0324 14:55:58.358211 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-24 14:55:58.358191437 +0000 UTC m=+140.301829041 I0324 14:55:58.372782 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:55:58.372882 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:55:58.372920 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-24 14:55:58.372909159 +0000 UTC m=+140.316546763 I0324 14:55:58.627356 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zrbxk" condition "Approved" to 2026-03-24 14:55:58.627336013 +0000 UTC m=+140.570973617 I0324 14:55:58.656874 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zrbxk" condition "Ready" to 2026-03-24 14:55:58.65685616 +0000 UTC m=+140.600493734 I0324 14:55:58.685097 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:55:58.68508616 +0000 UTC m=+140.628723754 I0324 14:55:58.702033 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:55:58.702487 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:55:58.702477789 +0000 UTC m=+140.646115393 I0324 14:55:58.727570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:55:58.802842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:55:58.809898 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-4bjz9" condition "Approved" to 2026-03-24 14:55:58.809881641 +0000 UTC m=+140.753519215 I0324 14:55:58.824239 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-4bjz9" condition "Ready" to 2026-03-24 14:55:58.824222245 +0000 UTC m=+140.767859849 I0324 14:56:03.354321 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:56:03.354300599 +0000 UTC m=+145.297938173 I0324 14:56:03.370904 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-4bjz9" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:56:03.370883341 +0000 UTC m=+145.314520945 I0324 14:56:03.399422 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:56:03.399402287 +0000 UTC m=+145.343039891 I0324 14:56:03.420584 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:56:03.421662 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:56:03.421647189 +0000 UTC m=+145.365284793 I0324 14:56:03.430188 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:56:03.440139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:58:33.914947 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-132.nip.io-tls" condition "Ready" to 2026-03-24 14:58:33.914915937 +0000 UTC m=+295.858553501 I0324 14:58:33.915352 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-132.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:58:33.915438 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-132.nip.io-tls" condition "Issuing" to 2026-03-24 14:58:33.915430949 +0000 UTC m=+295.859068513 I0324 14:58:33.938778 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:58:33.938887 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-132.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:58:33.938923 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-132.nip.io-tls" condition "Issuing" to 2026-03-24 14:58:33.938912278 +0000 UTC m=+295.882549952 I0324 14:58:34.213073 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-132.nip.io-tls-5sgr6" condition "Approved" to 2026-03-24 14:58:34.213053445 +0000 UTC m=+296.156691049 I0324 14:58:34.230945 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-132.nip.io-tls-5sgr6" condition "Ready" to 2026-03-24 14:58:34.230933886 +0000 UTC m=+296.174571470 I0324 14:58:34.263832 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-132.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:58:34.263812236 +0000 UTC m=+296.207449840 I0324 14:58:34.288046 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:59:44.515912 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:59:44.515959 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-24 14:59:44.515936937 +0000 UTC m=+366.459574541 I0324 14:59:44.515969 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-24 14:59:44.515955808 +0000 UTC m=+366.459593412 E0324 14:59:44.527566 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0324 14:59:44.527615 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-24 14:59:44.527606835 +0000 UTC m=+366.471244429 E0324 14:59:44.527955 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0324 14:59:44.532356 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:59:44.532545 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 14:59:44.532608 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-24 14:59:44.532598401 +0000 UTC m=+366.476235975 E0324 14:59:44.539673 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0324 14:59:44.539750 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0324 14:59:44.539772 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0324 14:59:44.539805 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0324 14:59:44.565639 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:59:44.567731 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-s5x8v" condition "Approved" to 2026-03-24 14:59:44.567717886 +0000 UTC m=+366.511355460 I0324 14:59:44.578675 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-s5x8v" condition "Ready" to 2026-03-24 14:59:44.578662449 +0000 UTC m=+366.522300053 I0324 14:59:44.601144 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:59:44.601128066 +0000 UTC m=+366.544765640 I0324 14:59:44.615507 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0324 14:59:49.545896 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 14:59:49.545885462 +0000 UTC m=+371.489523026 I0324 15:00:28.119943 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-24 15:00:28.119411707 +0000 UTC m=+410.063049281 I0324 15:00:28.120317 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:00:28.120380 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-24 15:00:28.120369877 +0000 UTC m=+410.064007441 I0324 15:00:28.134362 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:00:28.134417 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-24 15:00:28.134403625 +0000 UTC m=+410.078041219 I0324 15:00:28.134425 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-24 15:00:28.134418335 +0000 UTC m=+410.078055909 I0324 15:00:28.139360 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:28.140051 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:00:28.140101 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-24 15:00:28.140090396 +0000 UTC m=+410.083727970 I0324 15:00:28.140507 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:00:28.140528 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-24 15:00:28.140524155 +0000 UTC m=+410.084161729 I0324 15:00:28.140540 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-24 15:00:28.140532585 +0000 UTC m=+410.084170159 I0324 15:00:28.206152 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:28.206235 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-24 15:00:28.20622726 +0000 UTC m=+410.149864814 I0324 15:00:28.219021 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:28.219080 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:00:28.219101 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-24 15:00:28.219093453 +0000 UTC m=+410.162731017 I0324 15:00:28.277296 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:28.317678 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9qxw2" condition "Approved" to 2026-03-24 15:00:28.317603746 +0000 UTC m=+410.261241340 I0324 15:00:28.338299 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9qxw2" condition "Ready" to 2026-03-24 15:00:28.338283135 +0000 UTC m=+410.281920729 I0324 15:00:28.371530 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:28.371516401 +0000 UTC m=+410.315153995 I0324 15:00:28.402084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:28.402311 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:28.402304544 +0000 UTC m=+410.345942108 I0324 15:00:28.428213 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:28.431357 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:28.431936 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:28.431926893 +0000 UTC m=+410.375564457 I0324 15:00:28.469751 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9jtk9" condition "Approved" to 2026-03-24 15:00:28.469736017 +0000 UTC m=+410.413373581 I0324 15:00:28.471776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-vhljw" condition "Approved" to 2026-03-24 15:00:28.47176213 +0000 UTC m=+410.415399724 I0324 15:00:28.485717 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9jtk9" condition "Ready" to 2026-03-24 15:00:28.485706336 +0000 UTC m=+410.429343910 I0324 15:00:28.567973 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-vhljw" condition "Ready" to 2026-03-24 15:00:28.567953142 +0000 UTC m=+410.511590736 E0324 15:00:29.059733 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-kq6c8\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" E0324 15:00:29.107187 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-rdf9r\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0324 15:00:29.259644 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:29.259627892 +0000 UTC m=+411.203265496 I0324 15:00:29.309046 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:29.309028641 +0000 UTC m=+411.252666215 I0324 15:00:29.464797 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:29.465176 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:29.465168577 +0000 UTC m=+411.408806151 I0324 15:00:29.560113 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:29.560686 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:29.560675175 +0000 UTC m=+411.504312779 I0324 15:00:29.912552 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:30.010806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:30.059103 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:30.211893 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:45.747781 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:00:45.747827 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" condition "Issuing" to 2026-03-24 15:00:45.747813734 +0000 UTC m=+427.691451328 I0324 15:00:45.748044 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" condition "Ready" to 2026-03-24 15:00:45.748014038 +0000 UTC m=+427.691651642 I0324 15:00:45.764103 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:45.764219 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:00:45.764267 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" condition "Issuing" to 2026-03-24 15:00:45.764259072 +0000 UTC m=+427.707896636 I0324 15:00:45.927550 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:45.940262 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-sz5ck-rzkfn" condition "Approved" to 2026-03-24 15:00:45.94025053 +0000 UTC m=+427.883888114 I0324 15:00:45.967777 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-sz5ck-rzkfn" condition "Ready" to 2026-03-24 15:00:45.967764364 +0000 UTC m=+427.911401938 I0324 15:00:46.010224 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:46.010208335 +0000 UTC m=+427.953845909 I0324 15:00:46.034595 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:46.034877 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:46.034865889 +0000 UTC m=+427.978503463 I0324 15:00:46.057022 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:46.062233 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:00:46.062631 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-sz5ck-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:00:46.062617289 +0000 UTC m=+428.006254863 I0324 15:01:07.325222 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-24 15:01:07.325204051 +0000 UTC m=+449.268841625 I0324 15:01:07.325664 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:01:07.325685 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-24 15:01:07.325681431 +0000 UTC m=+449.269319005 I0324 15:01:07.369834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:01:07.369908 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:01:07.369926 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-24 15:01:07.369918863 +0000 UTC m=+449.313556447 I0324 15:01:07.489137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:01:07.500916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-49d7l" condition "Approved" to 2026-03-24 15:01:07.500898531 +0000 UTC m=+449.444536105 I0324 15:01:07.520587 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-49d7l" condition "Ready" to 2026-03-24 15:01:07.52056969 +0000 UTC m=+449.464207274 I0324 15:01:07.552532 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:01:07.552513149 +0000 UTC m=+449.496150723 I0324 15:01:07.573427 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:04:30.589871 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-24 15:04:30.589825654 +0000 UTC m=+652.533463259 I0324 15:04:30.590291 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:04:30.590406 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-24 15:04:30.590394056 +0000 UTC m=+652.534031660 I0324 15:04:30.607815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:04:30.607927 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:04:30.607959 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-24 15:04:30.607952089 +0000 UTC m=+652.551589663 I0324 15:04:31.023612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:04:31.036969 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-4glqk" condition "Approved" to 2026-03-24 15:04:31.036955327 +0000 UTC m=+652.980592891 I0324 15:04:31.063632 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-4glqk" condition "Ready" to 2026-03-24 15:04:31.063618292 +0000 UTC m=+653.007255896 I0324 15:04:31.124473 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:04:31.124452681 +0000 UTC m=+653.068090275 I0324 15:04:31.148016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:04:31.148516 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:04:31.148505571 +0000 UTC m=+653.092143145 I0324 15:04:31.167741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:04:31.168306 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:04:31.16829301 +0000 UTC m=+653.111930584 I0324 15:06:58.825254 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-24 15:06:58.825180119 +0000 UTC m=+800.768817713 I0324 15:06:58.825259 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:06:58.825471 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-24 15:06:58.825453426 +0000 UTC m=+800.769091020 I0324 15:06:58.841847 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:06:58.841932 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:06:58.841959 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-24 15:06:58.841952035 +0000 UTC m=+800.785589629 I0324 15:06:59.042025 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:06:59.052015 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-7zqrt" condition "Approved" to 2026-03-24 15:06:59.051997808 +0000 UTC m=+800.995635382 I0324 15:06:59.074513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-7zqrt" condition "Ready" to 2026-03-24 15:06:59.074498885 +0000 UTC m=+801.018136449 I0324 15:06:59.112958 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:06:59.11294112 +0000 UTC m=+801.056578684 I0324 15:06:59.136620 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:06:59.136912 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:06:59.136904429 +0000 UTC m=+801.080541993 I0324 15:06:59.155385 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:06:59.155757 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:06:59.155744338 +0000 UTC m=+801.099381932 I0324 15:08:04.199107 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-24 15:08:04.199084766 +0000 UTC m=+866.142722360 I0324 15:08:04.199192 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:08:04.199246 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-24 15:08:04.199238059 +0000 UTC m=+866.142875623 I0324 15:08:04.222738 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:08:04.222808 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-24 15:08:04.222800228 +0000 UTC m=+866.166437802 I0324 15:08:04.394349 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:08:04.426217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-wkdbc" condition "Approved" to 2026-03-24 15:08:04.425540407 +0000 UTC m=+866.369177971 I0324 15:08:04.443069 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-wkdbc" condition "Ready" to 2026-03-24 15:08:04.443054928 +0000 UTC m=+866.386692502 I0324 15:08:04.471723 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:08:04.471705545 +0000 UTC m=+866.415343119 I0324 15:08:04.499369 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:10:59.322521 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:10:59.322613 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-24 15:10:59.322601963 +0000 UTC m=+1041.266239557 I0324 15:10:59.323216 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-24 15:10:59.323207077 +0000 UTC m=+1041.266844681 I0324 15:10:59.340207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:10:59.340264 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0324 15:10:59.340426 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-24 15:10:59.340273869 +0000 UTC m=+1041.283911433 I0324 15:10:59.606909 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-qkk9h" condition "Approved" to 2026-03-24 15:10:59.606896252 +0000 UTC m=+1041.550533816 I0324 15:10:59.630452 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-qkk9h" condition "Ready" to 2026-03-24 15:10:59.630437271 +0000 UTC m=+1041.574074835 I0324 15:10:59.663350 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:10:59.663332429 +0000 UTC m=+1041.606970033 I0324 15:10:59.688282 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:10:59.688727 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:10:59.688718657 +0000 UTC m=+1041.632356221 I0324 15:10:59.705308 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0324 15:10:59.705746 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-24 15:10:59.705737008 +0000 UTC m=+1041.649374582