I0505 09:42:42.788429 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 09:42:42.788659 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 09:42:42.788785 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 09:42:42.794988 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 09:42:42.795452 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 09:42:42.795493 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 09:42:42.795559 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 09:42:42.797427 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 09:42:42.811680 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 09:42:42.814801 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 09:42:42.817317 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 09:42:42.824377 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 09:42:42.824413 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 09:42:42.824423 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 09:42:42.824911 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 09:42:42.828004 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 09:42:42.830686 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 09:42:42.833101 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 09:42:42.835527 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 09:42:42.835559 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 09:42:42.835563 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 09:42:42.838172 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 09:42:42.838344 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 09:42:42.840668 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 09:42:42.842528 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 09:42:42.846756 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 09:42:42.850158 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 09:42:42.853622 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 09:42:42.856515 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 09:42:42.858192 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 09:42:42.859882 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 09:42:42.862520 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 09:42:42.866137 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 09:42:42.870772 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.871368 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.871933 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.875971 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.902437 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.922316 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.940139 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.956291 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.969198 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:42.973113 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:42:53.204244 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 09:42:53.204228752 +0000 UTC m=+10.444688056 I0505 09:42:53.937269 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 09:42:53.937247168 +0000 UTC m=+11.177706462 I0505 09:42:53.937348 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:42:53.937401 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 09:42:53.937391179 +0000 UTC m=+11.177850453 E0505 09:42:53.954188 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:42:53.954260 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 09:42:53.954246989 +0000 UTC m=+11.194706313 E0505 09:42:53.954332 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:42:53.956582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:42:53.956693 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 09:42:53.956681448 +0000 UTC m=+11.197140732 E0505 09:42:53.971468 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 09:42:53.971580 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:42:53.971655 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:42:53.971715 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 09:42:53.986842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:42:54.008583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5qzb9" condition "Approved" to 2026-05-05 09:42:54.008567367 +0000 UTC m=+11.249026681 I0505 09:42:54.023665 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5qzb9" condition "Ready" to 2026-05-05 09:42:54.023650854 +0000 UTC m=+11.264110138 I0505 09:42:54.056383 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:42:54.056367458 +0000 UTC m=+11.296826742 I0505 09:42:54.076181 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:42:54.093558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:42:54.142654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:42:58.972179 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:42:58.972161505 +0000 UTC m=+16.212620809 I0505 09:43:19.383059 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:43:19.383072 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 09:43:19.383035185 +0000 UTC m=+36.623494469 I0505 09:43:19.383598 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 09:43:19.383085436 +0000 UTC m=+36.623544730 I0505 09:43:19.412101 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 09:43:19.412089832 +0000 UTC m=+36.652549116 I0505 09:43:19.417690 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:43:19.417892 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:43:19.417934 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 09:43:19.417925648 +0000 UTC m=+36.658384962 I0505 09:43:19.605316 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vr94x" condition "Approved" to 2026-05-05 09:43:19.605304443 +0000 UTC m=+36.845763717 I0505 09:43:19.636303 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vr94x" condition "Ready" to 2026-05-05 09:43:19.636291358 +0000 UTC m=+36.876750642 I0505 09:43:19.667084 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:43:19.667068662 +0000 UTC m=+36.907527966 I0505 09:43:19.690792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:43:19.691105 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:43:19.69109746 +0000 UTC m=+36.931556744 I0505 09:43:19.712104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:43:19.712329 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:43:19.712322833 +0000 UTC m=+36.952782107 I0505 09:43:19.716106 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:38.320526 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-229.nip.io-tls" condition "Ready" to 2026-05-05 09:47:38.320470612 +0000 UTC m=+295.560929916 I0505 09:47:38.321051 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-229.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:47:38.321939 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-229.nip.io-tls" condition "Issuing" to 2026-05-05 09:47:38.321774953 +0000 UTC m=+295.562234267 I0505 09:47:38.342593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:38.342693 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-229.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:47:38.342825 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-229.nip.io-tls" condition "Issuing" to 2026-05-05 09:47:38.342815682 +0000 UTC m=+295.583275016 I0505 09:47:38.452049 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:38.463023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-229.nip.io-tls-s6hrj" condition "Approved" to 2026-05-05 09:47:38.463012546 +0000 UTC m=+295.703471830 I0505 09:47:38.487165 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-229.nip.io-tls-s6hrj" condition "Ready" to 2026-05-05 09:47:38.487151846 +0000 UTC m=+295.727611160 I0505 09:47:38.513982 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-229.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:47:38.513971371 +0000 UTC m=+295.754430655 I0505 09:47:38.531727 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:38.574586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:43.475043 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 09:48:43.474976252 +0000 UTC m=+360.715435596 I0505 09:48:43.475093 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:43.475128 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 09:48:43.475118304 +0000 UTC m=+360.715577618 E0505 09:48:43.488606 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:48:43.488683 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 09:48:43.488669615 +0000 UTC m=+360.729128929 E0505 09:48:43.488848 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:48:43.493017 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:43.493109 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:43.493137 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 09:48:43.493131621 +0000 UTC m=+360.733590915 E0505 09:48:43.501380 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 09:48:43.501699 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:48:43.501736 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:48:43.501827 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 09:48:43.534429 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:43.539635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-dhph6" condition "Approved" to 2026-05-05 09:48:43.539619332 +0000 UTC m=+360.780078616 I0505 09:48:43.556737 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-dhph6" condition "Ready" to 2026-05-05 09:48:43.556722303 +0000 UTC m=+360.797181607 I0505 09:48:43.583829 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:43.583787023 +0000 UTC m=+360.824246307 I0505 09:48:43.602309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:48.503008 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:48.502978038 +0000 UTC m=+365.743437352 I0505 09:49:29.076033 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 09:49:29.075989714 +0000 UTC m=+406.316448988 I0505 09:49:29.077229 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:49:29.077300 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 09:49:29.077275237 +0000 UTC m=+406.317734531 I0505 09:49:29.081342 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:49:29.081365 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 09:49:29.081361437 +0000 UTC m=+406.321820701 I0505 09:49:29.081589 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 09:49:29.081585481 +0000 UTC m=+406.322044755 I0505 09:49:29.082088 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:49:29.088344 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 09:49:29.088330987 +0000 UTC m=+406.328790261 I0505 09:49:29.082438 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 09:49:29.082424595 +0000 UTC m=+406.322883869 I0505 09:49:29.147469 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.147528 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 09:49:29.147522105 +0000 UTC m=+406.387981379 I0505 09:49:29.148075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.148303 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 09:49:29.148295229 +0000 UTC m=+406.388754503 I0505 09:49:29.149098 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.149164 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:49:29.149187 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 09:49:29.149183544 +0000 UTC m=+406.389642818 I0505 09:49:29.304165 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.342185 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-dgp72" condition "Approved" to 2026-05-05 09:49:29.342175825 +0000 UTC m=+406.582635089 I0505 09:49:29.366730 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-dgp72" condition "Ready" to 2026-05-05 09:49:29.366720617 +0000 UTC m=+406.607179891 I0505 09:49:29.421852 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:29.421841675 +0000 UTC m=+406.662300949 I0505 09:49:29.462405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.495625 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.505865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-522r9" condition "Approved" to 2026-05-05 09:49:29.505856001 +0000 UTC m=+406.746315265 I0505 09:49:29.534884 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-522r9" condition "Ready" to 2026-05-05 09:49:29.53487448 +0000 UTC m=+406.775333764 I0505 09:49:29.554180 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.617849 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:29.617841477 +0000 UTC m=+406.858300751 I0505 09:49:29.666274 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-qjgjx" condition "Approved" to 2026-05-05 09:49:29.666254471 +0000 UTC m=+406.906713745 I0505 09:49:29.769866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:29.770160 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:29.770154578 +0000 UTC m=+407.010613852 I0505 09:49:29.813854 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-qjgjx" condition "Ready" to 2026-05-05 09:49:29.81384403 +0000 UTC m=+407.054303314 I0505 09:49:30.452627 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:30.601649 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:30.601635917 +0000 UTC m=+407.842095201 I0505 09:49:30.655714 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:30.656147 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:30.656136954 +0000 UTC m=+407.896596238 I0505 09:49:30.854373 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:38.463480 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9p842-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:49:38.463582 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-9p842-tls" condition "Issuing" to 2026-05-05 09:49:38.46354627 +0000 UTC m=+415.704005584 I0505 09:49:38.464160 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-9p842-tls" condition "Ready" to 2026-05-05 09:49:38.464143061 +0000 UTC m=+415.704602345 I0505 09:49:38.481442 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9p842-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-9p842-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:38.481542 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9p842-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:49:38.481579 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-9p842-tls" condition "Issuing" to 2026-05-05 09:49:38.481573291 +0000 UTC m=+415.722032565 I0505 09:49:38.646200 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-9p842-68spg" condition "Approved" to 2026-05-05 09:49:38.646185538 +0000 UTC m=+415.886644812 I0505 09:49:38.664750 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-9p842-68spg" condition "Ready" to 2026-05-05 09:49:38.664737908 +0000 UTC m=+415.905197192 I0505 09:49:38.694274 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-9p842-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:38.694264697 +0000 UTC m=+415.934723981 I0505 09:49:38.711474 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9p842-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-9p842-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:38.711768 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-9p842-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:38.711761618 +0000 UTC m=+415.952220892 I0505 09:49:38.730344 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-9p842-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-9p842-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:38.730808 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-9p842-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:49:38.730799577 +0000 UTC m=+415.971258861 I0505 09:49:59.936662 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:49:59.936779 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 09:49:59.93676807 +0000 UTC m=+437.177227374 I0505 09:49:59.937218 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 09:49:59.937202567 +0000 UTC m=+437.177661851 I0505 09:49:59.953426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:49:59.953495 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 09:49:59.953487949 +0000 UTC m=+437.193947233 I0505 09:50:00.412729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:50:00.442661 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-64prc" condition "Approved" to 2026-05-05 09:50:00.442649641 +0000 UTC m=+437.683108905 I0505 09:50:00.462276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-64prc" condition "Ready" to 2026-05-05 09:50:00.462256861 +0000 UTC m=+437.702716165 I0505 09:50:00.490760 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:50:00.490749154 +0000 UTC m=+437.731208438 I0505 09:50:00.510591 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:50:00.510954 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:50:00.510946783 +0000 UTC m=+437.751406067 I0505 09:50:00.532102 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:50:00.537423 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:01.769326 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:53:01.769369 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 09:53:01.769364161 +0000 UTC m=+619.009823435 I0505 09:53:01.770677 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 09:53:01.770664093 +0000 UTC m=+619.011123517 I0505 09:53:01.785731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:01.785801 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 09:53:01.785794073 +0000 UTC m=+619.026253357 I0505 09:53:02.001006 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:02.032597 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-6fxrs" condition "Approved" to 2026-05-05 09:53:02.03258772 +0000 UTC m=+619.273046994 I0505 09:53:02.051628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-6fxrs" condition "Ready" to 2026-05-05 09:53:02.051618508 +0000 UTC m=+619.292077782 I0505 09:53:02.087468 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:53:02.087458747 +0000 UTC m=+619.327918011 I0505 09:53:02.109658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:02.110021 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:53:02.110015683 +0000 UTC m=+619.350474947 I0505 09:53:02.125042 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:02.127477 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:39.017313 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 09:53:39.016947386 +0000 UTC m=+656.257406700 I0505 09:53:39.017340 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:53:39.017362 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 09:53:39.017358526 +0000 UTC m=+656.257817790 I0505 09:53:39.066620 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:39.066696 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:53:39.066711 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 09:53:39.066706974 +0000 UTC m=+656.307166248 I0505 09:53:39.296704 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-jqtrj" condition "Approved" to 2026-05-05 09:53:39.296689589 +0000 UTC m=+656.537148863 I0505 09:53:39.333632 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-jqtrj" condition "Ready" to 2026-05-05 09:53:39.333619005 +0000 UTC m=+656.574078319 I0505 09:53:39.401771 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:53:39.40175857 +0000 UTC m=+656.642217844 I0505 09:53:39.431148 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:53:39.431355 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:53:39.431348059 +0000 UTC m=+656.671807343 I0505 09:53:39.474566 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"