I0422 13:13:30.439084 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0422 13:13:30.439192 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0422 13:13:30.439257 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0422 13:13:30.441917 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0422 13:13:30.442230 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0422 13:13:30.442409 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0422 13:13:30.442424 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0422 13:13:30.444213 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0422 13:13:30.724142 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0422 13:13:30.724631 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0422 13:13:30.731041 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0422 13:13:30.736942 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0422 13:13:30.739944 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0422 13:13:30.742632 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0422 13:13:30.745153 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0422 13:13:30.745220 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0422 13:13:30.747731 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0422 13:13:30.749922 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0422 13:13:30.751401 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0422 13:13:30.757422 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0422 13:13:30.761349 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0422 13:13:30.764275 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0422 13:13:30.766617 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0422 13:13:30.768808 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0422 13:13:30.771655 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0422 13:13:30.774225 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0422 13:13:30.776141 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0422 13:13:30.776173 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0422 13:13:30.776181 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0422 13:13:30.776186 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0422 13:13:30.776262 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0422 13:13:30.778036 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0422 13:13:30.781615 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0422 13:13:30.785492 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.786095 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.786118 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.786569 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.786767 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.786953 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.787160 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.787264 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.787386 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:30.880961 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0422 13:13:48.030267 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-22 13:13:48.030253438 +0000 UTC m=+17.624420543 I0422 13:13:48.848822 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:13:48.848896 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-22 13:13:48.848884928 +0000 UTC m=+18.443052063 I0422 13:13:48.848909 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-22 13:13:48.848886818 +0000 UTC m=+18.443053973 I0422 13:13:48.873360 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:13:48.873468 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-22 13:13:48.873457401 +0000 UTC m=+18.467624536 E0422 13:13:48.878485 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 13:13:48.878596 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-22 13:13:48.878584748 +0000 UTC m=+18.472751893 E0422 13:13:48.878639 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 13:13:48.920663 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0422 13:13:48.920767 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 13:13:48.920790 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 13:13:48.920816 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0422 13:13:48.925310 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:13:49.004139 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5wb6p" condition "Approved" to 2026-04-22 13:13:49.004090709 +0000 UTC m=+18.598257874 I0422 13:13:49.026011 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5wb6p" condition "Ready" to 2026-04-22 13:13:49.025989635 +0000 UTC m=+18.620156780 I0422 13:13:49.055784 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:13:49.055774337 +0000 UTC m=+18.649941452 I0422 13:13:49.103028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:13:49.103309 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:13:49.103303407 +0000 UTC m=+18.697470522 I0422 13:13:49.110434 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:13:49.127090 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:13:49.127429 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:13:49.127418287 +0000 UTC m=+18.721585432 I0422 13:13:49.128196 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:13:53.921683 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:13:53.921670547 +0000 UTC m=+23.515837672 I0422 13:14:29.855823 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-22 13:14:29.855805248 +0000 UTC m=+59.449972363 I0422 13:14:29.855868 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:14:29.855903 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-22 13:14:29.85589431 +0000 UTC m=+59.450061425 I0422 13:14:29.869074 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-22 13:14:29.869064037 +0000 UTC m=+59.463231142 I0422 13:14:29.881445 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:14:29.881540 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:14:29.881793 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-22 13:14:29.881781751 +0000 UTC m=+59.475948946 I0422 13:14:30.215962 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:14:30.224698 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vjjq5" condition "Approved" to 2026-04-22 13:14:30.224687821 +0000 UTC m=+59.818854956 I0422 13:14:30.262609 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vjjq5" condition "Ready" to 2026-04-22 13:14:30.262592336 +0000 UTC m=+59.856759481 I0422 13:14:30.298220 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:14:30.298205955 +0000 UTC m=+59.892373060 I0422 13:14:30.326748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:14:30.327155 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:14:30.327147773 +0000 UTC m=+59.921314888 I0422 13:14:30.354143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:14:30.355616 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:14:30.356045 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:14:30.356032969 +0000 UTC m=+59.950200104 I0422 13:16:23.782565 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-22 13:16:23.782531741 +0000 UTC m=+173.376698876 I0422 13:16:23.782732 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:16:23.782809 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-22 13:16:23.78279705 +0000 UTC m=+173.376964185 E0422 13:16:23.797951 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0422 13:16:23.798028 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-22 13:16:23.7980214 +0000 UTC m=+173.392188505 I0422 13:16:23.798049 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0422 13:16:23.798463 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:23.798523 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:16:23.798538 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-22 13:16:23.798533636 +0000 UTC m=+173.392700751 E0422 13:16:23.812687 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0422 13:16:23.812892 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0422 13:16:23.812958 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0422 13:16:23.813064 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0422 13:16:23.814523 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-22 13:16:23.81451288 +0000 UTC m=+173.408679995 I0422 13:16:23.814554 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:16:23.814573 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-22 13:16:23.814567682 +0000 UTC m=+173.408734797 I0422 13:16:23.831224 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:23.831327 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:16:23.831350 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-22 13:16:23.831341911 +0000 UTC m=+173.425509046 I0422 13:16:24.110532 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-v5nfm" condition "Approved" to 2026-04-22 13:16:24.11051657 +0000 UTC m=+173.704683705 I0422 13:16:24.127801 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-v5nfm" condition "Ready" to 2026-04-22 13:16:24.127790415 +0000 UTC m=+173.721957530 I0422 13:16:24.145055 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:24.149540 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-9c7xv" condition "Approved" to 2026-04-22 13:16:24.149527251 +0000 UTC m=+173.743694366 I0422 13:16:24.180856 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-9c7xv" condition "Ready" to 2026-04-22 13:16:24.180842839 +0000 UTC m=+173.775009944 I0422 13:16:24.208143 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:16:24.20812946 +0000 UTC m=+173.802296575 I0422 13:16:24.226888 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:24.227276 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:16:24.227270163 +0000 UTC m=+173.821437258 I0422 13:16:24.236634 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:24.245657 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:28.813687 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:16:28.81367498 +0000 UTC m=+178.407842115 I0422 13:16:28.828168 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-v5nfm" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:16:28.828151337 +0000 UTC m=+178.422318462 I0422 13:16:28.856952 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:16:28.856936955 +0000 UTC m=+178.451104060 I0422 13:16:28.873875 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:28.874278 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:16:28.874270302 +0000 UTC m=+178.468437417 I0422 13:16:28.894345 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:16:28.894830 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:16:28.89481812 +0000 UTC m=+178.488985245 I0422 13:19:31.829157 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-70.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:19:31.829206 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Issuing" to 2026-04-22 13:19:31.829195375 +0000 UTC m=+361.423362510 I0422 13:19:31.829222 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Ready" to 2026-04-22 13:19:31.829205266 +0000 UTC m=+361.423372401 I0422 13:19:31.851962 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-70.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-70.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:19:31.852047 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-70.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:19:31.852072 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Issuing" to 2026-04-22 13:19:31.852063066 +0000 UTC m=+361.446230211 I0422 13:19:32.153297 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-70.nip.io-tls-h2s7x" condition "Approved" to 2026-04-22 13:19:32.153278935 +0000 UTC m=+361.747446070 I0422 13:19:32.172979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-70.nip.io-tls-h2s7x" condition "Ready" to 2026-04-22 13:19:32.172963295 +0000 UTC m=+361.767130440 I0422 13:19:32.199387 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:19:32.199377187 +0000 UTC m=+361.793544302 I0422 13:19:32.222784 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-70.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-70.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:19:32.223099 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:19:32.223092234 +0000 UTC m=+361.817259339 I0422 13:19:32.238680 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-70.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-70.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:19:32.238972 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:19:32.238964434 +0000 UTC m=+361.833131549 I0422 13:20:50.288539 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-22 13:20:50.288512976 +0000 UTC m=+439.882680091 I0422 13:20:50.288863 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:20:50.288958 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-22 13:20:50.288947009 +0000 UTC m=+439.883114154 E0422 13:20:50.515461 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 13:20:50.515519 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-22 13:20:50.515509355 +0000 UTC m=+440.109676470 E0422 13:20:50.515583 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0422 13:20:50.520034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:20:50.520162 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:20:50.520217 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-22 13:20:50.520208941 +0000 UTC m=+440.114376056 E0422 13:20:50.666469 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0422 13:20:50.666592 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 13:20:50.666622 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0422 13:20:50.666654 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0422 13:20:51.832008 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wjr2r" condition "Approved" to 2026-04-22 13:20:51.831996746 +0000 UTC m=+441.426163861 I0422 13:20:52.583696 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wjr2r" condition "Ready" to 2026-04-22 13:20:52.583684794 +0000 UTC m=+442.177851899 I0422 13:20:53.275330 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:20:53.2753132 +0000 UTC m=+442.869480335 I0422 13:20:53.519032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:20:55.667080 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:20:55.667072104 +0000 UTC m=+445.261239209 I0422 13:22:20.791508 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-22 13:22:20.791467578 +0000 UTC m=+530.385634673 I0422 13:22:20.791829 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:22:20.791887 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-22 13:22:20.791879271 +0000 UTC m=+530.386046386 I0422 13:22:20.796883 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-22 13:22:20.796869488 +0000 UTC m=+530.391036623 I0422 13:22:20.796928 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-22 13:22:20.79692108 +0000 UTC m=+530.391088185 I0422 13:22:20.796989 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:22:20.797022 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-22 13:22:20.797016093 +0000 UTC m=+530.391183218 I0422 13:22:20.797041 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:22:20.797080 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-22 13:22:20.797073135 +0000 UTC m=+530.391240250 I0422 13:22:20.836484 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:22:20.836566 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:22:20.836588 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-22 13:22:20.83658227 +0000 UTC m=+530.430749365 I0422 13:22:20.846234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:22:20.846317 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:22:20.846343 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-22 13:22:20.846336728 +0000 UTC m=+530.440503843 I0422 13:22:20.863655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:22:20.863759 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:22:20.863784 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-22 13:22:20.863776767 +0000 UTC m=+530.457943892 I0422 13:22:21.006726 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vm7g5" condition "Approved" to 2026-04-22 13:22:21.006717413 +0000 UTC m=+530.600884518 I0422 13:22:21.037741 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vm7g5" condition "Ready" to 2026-04-22 13:22:21.03773285 +0000 UTC m=+530.631899955 I0422 13:22:21.072509 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:22:21.072498736 +0000 UTC m=+530.666665851 I0422 13:22:21.085583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-9vsbt" condition "Approved" to 2026-04-22 13:22:21.085569058 +0000 UTC m=+530.679736163 I0422 13:22:21.095441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:22:21.103809 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-9vsbt" condition "Ready" to 2026-04-22 13:22:21.103794232 +0000 UTC m=+530.697961377 I0422 13:22:21.145332 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:22:21.145316252 +0000 UTC m=+530.739483377 I0422 13:22:21.164940 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:22:21.231494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" E0422 13:22:21.276562 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-czcmk\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0422 13:22:21.690117 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-g2qgw" condition "Approved" to 2026-04-22 13:22:21.690101503 +0000 UTC m=+531.284268628 I0422 13:22:22.096422 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-g2qgw" condition "Ready" to 2026-04-22 13:22:22.09640767 +0000 UTC m=+531.690574785 I0422 13:22:22.323808 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:22:22.323796037 +0000 UTC m=+531.917963572 I0422 13:22:22.389073 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:22:22.389655 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:22:22.389641613 +0000 UTC m=+531.983808818 I0422 13:22:22.734503 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:22:22.785395 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:23:44.347385 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:23:44.347419 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" condition "Issuing" to 2026-04-22 13:23:44.34741279 +0000 UTC m=+613.941579895 I0422 13:23:44.347559 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" condition "Ready" to 2026-04-22 13:23:44.347535284 +0000 UTC m=+613.941702459 I0422 13:23:44.493802 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:23:44.493955 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:23:44.494033 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" condition "Issuing" to 2026-04-22 13:23:44.494023478 +0000 UTC m=+614.088190603 I0422 13:23:44.999053 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j6bfc-jl75n" condition "Approved" to 2026-04-22 13:23:44.99903725 +0000 UTC m=+614.593204365 I0422 13:23:45.061280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j6bfc-jl75n" condition "Ready" to 2026-04-22 13:23:45.061268954 +0000 UTC m=+614.655436049 I0422 13:23:45.137324 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:23:45.13731108 +0000 UTC m=+614.731478195 I0422 13:23:45.176360 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:23:46.081036 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j6bfc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:27:38.080206 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-22 13:27:38.080176656 +0000 UTC m=+847.674343761 I0422 13:27:38.080207 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:27:38.080262 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-22 13:27:38.080254398 +0000 UTC m=+847.674421523 I0422 13:27:38.095661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:27:38.095745 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:27:38.095774 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-22 13:27:38.095767091 +0000 UTC m=+847.689934196 I0422 13:27:38.210921 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:27:38.361575 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ldpp4" condition "Approved" to 2026-04-22 13:27:38.3615572 +0000 UTC m=+847.955724325 I0422 13:27:38.382131 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ldpp4" condition "Ready" to 2026-04-22 13:27:38.382118294 +0000 UTC m=+847.976285449 I0422 13:27:38.456216 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:27:38.456200319 +0000 UTC m=+848.050367434 I0422 13:27:38.576378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:27:38.672207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" E0422 13:30:11.851372 1 leaderelection.go:369] Failed to update lock: etcdserver: request timed out I0422 13:33:29.853763 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:33:29.853808 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-22 13:33:29.853797883 +0000 UTC m=+1199.447965028 I0422 13:33:29.853956 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-22 13:33:29.853939628 +0000 UTC m=+1199.448106793 I0422 13:33:29.901212 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:33:29.901290 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-22 13:33:29.901284796 +0000 UTC m=+1199.495451901 I0422 13:33:30.134722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:33:30.214788 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-c2626" condition "Approved" to 2026-04-22 13:33:30.214778097 +0000 UTC m=+1199.808945202 I0422 13:33:30.249307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-c2626" condition "Ready" to 2026-04-22 13:33:30.249279448 +0000 UTC m=+1199.843446563 I0422 13:33:30.286625 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:33:30.28661171 +0000 UTC m=+1199.880778855 I0422 13:33:30.500444 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:33:30.500909 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:33:30.500901301 +0000 UTC m=+1200.095068446 I0422 13:33:30.606363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:33:30.610949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:35:57.062671 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:35:57.062655 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-22 13:35:57.062623324 +0000 UTC m=+1346.656790459 I0422 13:35:57.062774 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-22 13:35:57.062765758 +0000 UTC m=+1346.656932873 I0422 13:35:57.081767 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:35:57.081845 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-22 13:35:57.081838822 +0000 UTC m=+1346.676005927 I0422 13:35:57.185829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:35:57.219941 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9hvqh" condition "Approved" to 2026-04-22 13:35:57.219926472 +0000 UTC m=+1346.814093597 I0422 13:35:57.242351 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9hvqh" condition "Ready" to 2026-04-22 13:35:57.242337161 +0000 UTC m=+1346.836504276 I0422 13:35:57.273885 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:35:57.273867689 +0000 UTC m=+1346.868034804 I0422 13:35:57.297061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:35:57.297811 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:35:57.297796996 +0000 UTC m=+1346.891964151 I0422 13:35:57.313423 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:35:57.313706 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:35:57.313696199 +0000 UTC m=+1346.907863314 I0422 13:37:10.456651 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-22 13:37:10.456614871 +0000 UTC m=+1420.050782016 I0422 13:37:10.456733 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:37:10.456806 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-22 13:37:10.456799027 +0000 UTC m=+1420.050966142 I0422 13:37:10.478799 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:37:10.478883 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:37:10.478910 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-22 13:37:10.478902518 +0000 UTC m=+1420.073069663 I0422 13:37:10.980526 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:37:11.025821 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pdlsp" condition "Approved" to 2026-04-22 13:37:11.025810556 +0000 UTC m=+1420.619977671 I0422 13:37:11.085199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pdlsp" condition "Ready" to 2026-04-22 13:37:11.085185067 +0000 UTC m=+1420.679352202 I0422 13:37:11.277389 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:37:11.277372566 +0000 UTC m=+1420.871539721 I0422 13:37:11.399533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:37:11.399952 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:37:11.399945139 +0000 UTC m=+1420.994112254 I0422 13:37:11.537891 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:40:18.688437 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:40:18.688503 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-22 13:40:18.688495223 +0000 UTC m=+1608.282662338 I0422 13:40:18.688977 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-22 13:40:18.688961938 +0000 UTC m=+1608.283129053 I0422 13:40:18.709387 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0422 13:40:18.709490 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0422 13:40:18.709518 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-22 13:40:18.709509359 +0000 UTC m=+1608.303676504 I0422 13:40:18.882364 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-7jgf2" condition "Approved" to 2026-04-22 13:40:18.882353025 +0000 UTC m=+1608.476520130 I0422 13:40:18.902604 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-7jgf2" condition "Ready" to 2026-04-22 13:40:18.902593046 +0000 UTC m=+1608.496760161 I0422 13:40:18.934793 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-22 13:40:18.934779336 +0000 UTC m=+1608.528946471 I0422 13:40:18.963894 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"