I0506 00:45:50.918193 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0506 00:45:50.918362 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0506 00:45:50.918461 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0506 00:45:50.923292 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0506 00:45:50.923774 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0506 00:45:50.923850 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0506 00:45:50.923957 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0506 00:45:50.928182 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0506 00:45:50.944214 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0506 00:45:50.947966 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0506 00:45:50.948005 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0506 00:45:50.951381 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0506 00:45:50.954175 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0506 00:45:50.956126 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0506 00:45:50.956233 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0506 00:45:50.956160 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0506 00:45:50.962095 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0506 00:45:50.965186 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0506 00:45:50.967815 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0506 00:45:50.970415 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0506 00:45:50.972514 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0506 00:45:50.974351 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0506 00:45:50.976076 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0506 00:45:50.982192 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0506 00:45:50.986082 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0506 00:45:50.986102 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0506 00:45:50.986245 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0506 00:45:50.988547 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0506 00:45:50.991393 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0506 00:45:50.993686 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0506 00:45:50.995759 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0506 00:45:50.997617 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0506 00:45:50.998459 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0506 00:45:51.000381 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.001167 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.002358 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.025320 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.040297 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.054069 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.073899 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.089652 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.104599 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:45:51.106290 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0506 00:46:05.140945 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-06 00:46:05.14092271 +0000 UTC m=+14.261965186 I0506 00:46:05.949345 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:46:05.949441 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-06 00:46:05.949432273 +0000 UTC m=+15.070474759 I0506 00:46:05.949306 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-06 00:46:05.94929044 +0000 UTC m=+15.070332896 E0506 00:46:05.967895 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 00:46:05.968296 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-06 00:46:05.968037272 +0000 UTC m=+15.089079749 I0506 00:46:05.968389 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:46:05.968459 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:46:05.968504 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-06 00:46:05.968496163 +0000 UTC m=+15.089538619 E0506 00:46:05.968472 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 00:46:05.987405 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0506 00:46:05.987750 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 00:46:05.987789 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 00:46:05.987843 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0506 00:46:06.015103 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-k4kwt" condition "Approved" to 2026-05-06 00:46:06.015081308 +0000 UTC m=+15.136123794 I0506 00:46:06.030494 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-k4kwt" condition "Ready" to 2026-05-06 00:46:06.030481942 +0000 UTC m=+15.151524388 I0506 00:46:06.054187 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:46:06.054170218 +0000 UTC m=+15.175212674 I0506 00:46:06.073739 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:46:06.074211 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:46:06.07420315 +0000 UTC m=+15.195245606 I0506 00:46:06.097821 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:46:10.988629 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:46:10.988616159 +0000 UTC m=+20.109658635 I0506 00:46:37.896728 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-06 00:46:37.896684462 +0000 UTC m=+47.017726918 I0506 00:46:37.897395 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:46:37.897561 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-06 00:46:37.897480937 +0000 UTC m=+47.018523413 I0506 00:46:37.926491 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-06 00:46:37.926478632 +0000 UTC m=+47.047521088 I0506 00:46:37.933182 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:46:37.933255 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:46:37.933648 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-06 00:46:37.933627639 +0000 UTC m=+47.054670115 I0506 00:46:38.141328 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:46:38.150283 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jqzvb" condition "Approved" to 2026-05-06 00:46:38.150269595 +0000 UTC m=+47.271312051 I0506 00:46:38.188682 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jqzvb" condition "Ready" to 2026-05-06 00:46:38.188666702 +0000 UTC m=+47.309709158 I0506 00:46:38.226531 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:46:38.226502208 +0000 UTC m=+47.347544664 I0506 00:46:38.266520 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:51:57.883736 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-63.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:51:57.883733 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-63.nip.io-tls" condition "Ready" to 2026-05-06 00:51:57.883705757 +0000 UTC m=+367.004748213 I0506 00:51:57.883782 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-63.nip.io-tls" condition "Issuing" to 2026-05-06 00:51:57.883771219 +0000 UTC m=+367.004813705 I0506 00:51:57.904975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-63.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-63.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:51:57.905125 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-63.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:51:57.905159 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-63.nip.io-tls" condition "Issuing" to 2026-05-06 00:51:57.90515206 +0000 UTC m=+367.026194516 I0506 00:51:58.003651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-63.nip.io-tls-gvlk7" condition "Approved" to 2026-05-06 00:51:58.003637604 +0000 UTC m=+367.124680090 I0506 00:51:58.009122 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-63.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-63.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:51:58.031305 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-63.nip.io-tls-gvlk7" condition "Ready" to 2026-05-06 00:51:58.031295463 +0000 UTC m=+367.152337909 I0506 00:51:58.069809 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-63.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:51:58.069788426 +0000 UTC m=+367.190830862 I0506 00:51:58.091815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-63.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-63.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:51:58.140830 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-63.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-63.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:53:07.223845 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:53:07.223887 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-06 00:53:07.22387785 +0000 UTC m=+436.344920316 I0506 00:53:07.223960 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-06 00:53:07.223939221 +0000 UTC m=+436.344981707 E0506 00:53:07.238013 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 00:53:07.238059 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-06 00:53:07.238048747 +0000 UTC m=+436.359091233 E0506 00:53:07.238190 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0506 00:53:07.240211 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:53:07.240339 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:53:07.240395 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-06 00:53:07.24038792 +0000 UTC m=+436.361430376 E0506 00:53:07.250631 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0506 00:53:07.250690 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 00:53:07.250711 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0506 00:53:07.250742 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0506 00:53:07.273267 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-nqqp7" condition "Approved" to 2026-05-06 00:53:07.27325709 +0000 UTC m=+436.394299546 I0506 00:53:07.287625 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-nqqp7" condition "Ready" to 2026-05-06 00:53:07.287615313 +0000 UTC m=+436.408657749 I0506 00:53:07.314123 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:53:07.314108708 +0000 UTC m=+436.435151164 I0506 00:53:07.331172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:53:07.331463 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:53:07.331456313 +0000 UTC m=+436.452498769 I0506 00:53:07.347153 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:53:12.251323 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:53:12.251302925 +0000 UTC m=+441.372345411 I0506 00:53:59.866680 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-06 00:53:59.866666441 +0000 UTC m=+488.987708887 I0506 00:53:59.866936 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:53:59.867025 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-06 00:53:59.86701761 +0000 UTC m=+488.988060066 I0506 00:53:59.867916 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:53:59.867988 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-06 00:53:59.867982916 +0000 UTC m=+488.989025372 I0506 00:53:59.869127 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-06 00:53:59.869119805 +0000 UTC m=+488.990162261 I0506 00:53:59.869318 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:53:59.870333 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-06 00:53:59.869349261 +0000 UTC m=+488.990391707 I0506 00:53:59.873461 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-06 00:53:59.873447149 +0000 UTC m=+488.994489615 I0506 00:53:59.910286 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:53:59.910351 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-06 00:53:59.910343064 +0000 UTC m=+489.031385510 I0506 00:53:59.911161 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:53:59.911901 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:53:59.911927 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-06 00:53:59.911921415 +0000 UTC m=+489.032963861 I0506 00:53:59.933993 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:53:59.935885 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:53:59.936655 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-06 00:53:59.935909753 +0000 UTC m=+489.056952209 I0506 00:54:00.131347 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:00.135704 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6624k" condition "Approved" to 2026-05-06 00:54:00.135692956 +0000 UTC m=+489.256735412 I0506 00:54:00.178146 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6624k" condition "Ready" to 2026-05-06 00:54:00.178137716 +0000 UTC m=+489.299180162 I0506 00:54:00.180352 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-pt6ww" condition "Approved" to 2026-05-06 00:54:00.180347484 +0000 UTC m=+489.301389930 I0506 00:54:00.210761 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-pt6ww" condition "Ready" to 2026-05-06 00:54:00.210750789 +0000 UTC m=+489.331793235 I0506 00:54:00.241348 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:00.241338578 +0000 UTC m=+489.362381024 I0506 00:54:00.249441 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:00.24942717 +0000 UTC m=+489.370469626 I0506 00:54:00.257086 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:00.257659 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:00.257641684 +0000 UTC m=+489.378684140 I0506 00:54:00.266055 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:00.266387 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:00.266379023 +0000 UTC m=+489.387421479 I0506 00:54:00.272610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:00.272926 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:00.272919644 +0000 UTC m=+489.393962100 I0506 00:54:00.405897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:00.459322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:00.759392 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:00.808217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-c6b9s" condition "Approved" to 2026-05-06 00:54:00.808200636 +0000 UTC m=+489.929243122 I0506 00:54:00.964420 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-c6b9s" condition "Ready" to 2026-05-06 00:54:00.964385859 +0000 UTC m=+490.085428335 I0506 00:54:01.362142 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:01.3621227 +0000 UTC m=+490.483165186 I0506 00:54:01.510381 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:01.510733 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:01.510726032 +0000 UTC m=+490.631768468 I0506 00:54:01.655284 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:11.789189 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" condition "Ready" to 2026-05-06 00:54:11.789173979 +0000 UTC m=+500.910216445 I0506 00:54:11.789389 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:54:11.789410 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" condition "Issuing" to 2026-05-06 00:54:11.789405335 +0000 UTC m=+500.910447771 I0506 00:54:11.809170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:11.809454 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:54:11.809476 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" condition "Issuing" to 2026-05-06 00:54:11.809469826 +0000 UTC m=+500.930512262 I0506 00:54:12.033604 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:12.039056 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bf9pr-6l99h" condition "Approved" to 2026-05-06 00:54:12.039041591 +0000 UTC m=+501.160084057 I0506 00:54:12.063232 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bf9pr-6l99h" condition "Ready" to 2026-05-06 00:54:12.063221199 +0000 UTC m=+501.184263645 I0506 00:54:12.096002 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:12.095987519 +0000 UTC m=+501.217029975 I0506 00:54:12.115960 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:12.116404 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:12.116383837 +0000 UTC m=+501.237426293 I0506 00:54:12.132908 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:12.144096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bf9pr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:32.342625 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-06 00:54:32.342601955 +0000 UTC m=+521.463644411 I0506 00:54:32.342668 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:54:32.342714 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-06 00:54:32.342706628 +0000 UTC m=+521.463749084 I0506 00:54:32.408095 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:32.408189 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-06 00:54:32.408181836 +0000 UTC m=+521.529224292 I0506 00:54:32.556377 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:32.660512 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-nwvsz" condition "Approved" to 2026-05-06 00:54:32.660491568 +0000 UTC m=+521.781534054 I0506 00:54:32.706279 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-nwvsz" condition "Ready" to 2026-05-06 00:54:32.70626237 +0000 UTC m=+521.827304826 I0506 00:54:32.761437 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:54:32.761424353 +0000 UTC m=+521.882466799 I0506 00:54:32.783478 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:54:34.387299 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:58:18.303016 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-06 00:58:18.30299583 +0000 UTC m=+747.424038306 I0506 00:58:18.303612 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:58:18.303665 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-06 00:58:18.303660836 +0000 UTC m=+747.424703292 I0506 00:58:18.322799 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:58:18.323224 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-06 00:58:18.323215077 +0000 UTC m=+747.444257583 I0506 00:58:18.518146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:58:18.554690 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hkfmj" condition "Approved" to 2026-05-06 00:58:18.554675949 +0000 UTC m=+747.675718435 I0506 00:58:18.580344 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hkfmj" condition "Ready" to 2026-05-06 00:58:18.580329418 +0000 UTC m=+747.701371894 I0506 00:58:18.612964 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:58:18.612739038 +0000 UTC m=+747.733781514 I0506 00:58:18.634132 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:58:18.634551 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:58:18.634543903 +0000 UTC m=+747.755586359 I0506 00:58:18.658594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:59:12.120748 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-06 00:59:12.12073858 +0000 UTC m=+801.241781026 I0506 00:59:12.121266 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:59:12.122768 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-06 00:59:12.122761348 +0000 UTC m=+801.243803824 I0506 00:59:12.135088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:59:12.135154 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0506 00:59:12.135175 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-06 00:59:12.135168705 +0000 UTC m=+801.256211161 I0506 00:59:12.334526 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-qr6rr" condition "Approved" to 2026-05-06 00:59:12.334516763 +0000 UTC m=+801.455559209 I0506 00:59:12.352747 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-qr6rr" condition "Ready" to 2026-05-06 00:59:12.352736621 +0000 UTC m=+801.473779077 I0506 00:59:12.385733 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:59:12.385716121 +0000 UTC m=+801.506758577 I0506 00:59:12.412616 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:59:12.413051 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-06 00:59:12.413044896 +0000 UTC m=+801.534087352 I0506 00:59:12.420339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0506 00:59:12.433600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"