I0313 09:52:50.823969 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0313 09:52:50.824084 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0313 09:52:50.824172 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0313 09:52:50.829147 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0313 09:52:50.829685 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0313 09:52:50.829771 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0313 09:52:50.829795 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0313 09:52:50.832314 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0313 09:52:50.848290 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0313 09:52:50.858616 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0313 09:52:50.858668 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0313 09:52:50.863218 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0313 09:52:50.866399 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0313 09:52:50.868210 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0313 09:52:50.870373 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0313 09:52:50.872598 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0313 09:52:50.875300 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0313 09:52:50.876585 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0313 09:52:50.880458 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0313 09:52:50.884047 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0313 09:52:50.887135 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0313 09:52:50.889800 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0313 09:52:50.892169 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0313 09:52:50.894638 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0313 09:52:50.896517 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0313 09:52:50.898496 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0313 09:52:50.900116 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0313 09:52:50.900144 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0313 09:52:50.900151 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0313 09:52:50.900157 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0313 09:52:50.900186 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0313 09:52:50.904367 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0313 09:52:50.908197 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0313 09:52:50.910075 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.910075 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.910330 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.911590 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.923199 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.939993 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.943028 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.959148 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:50.980036 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:52:51.001394 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:01.980491 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-13 09:53:01.980478678 +0000 UTC m=+11.188837904 I0313 09:53:02.667901 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:53:02.667949 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-13 09:53:02.667939364 +0000 UTC m=+11.876298620 I0313 09:53:02.668562 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-13 09:53:02.668535737 +0000 UTC m=+11.876894993 E0313 09:53:02.688472 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:53:02.688553 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-13 09:53:02.688545224 +0000 UTC m=+11.896904460 E0313 09:53:02.688580 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:53:02.691350 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:53:02.691423 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:53:02.691448 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-13 09:53:02.691442956 +0000 UTC m=+11.899802182 E0313 09:53:02.701619 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0313 09:53:02.701751 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:53:02.701792 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:53:02.701830 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0313 09:53:02.739881 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-w9cqn" condition "Approved" to 2026-03-13 09:53:02.739866519 +0000 UTC m=+11.948225775 I0313 09:53:02.756019 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-w9cqn" condition "Ready" to 2026-03-13 09:53:02.756004284 +0000 UTC m=+11.964363540 I0313 09:53:02.790064 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:53:02.790052741 +0000 UTC m=+11.998411977 I0313 09:53:02.809833 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:53:02.810258 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:53:02.810248672 +0000 UTC m=+12.018607928 I0313 09:53:02.821467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:53:02.825117 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:53:02.825285 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:53:02.825278763 +0000 UTC m=+12.033637999 I0313 09:53:07.702456 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:53:07.702438243 +0000 UTC m=+16.910797479 I0313 09:53:25.073563 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:53:25.073599 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-13 09:53:25.073591679 +0000 UTC m=+34.281950915 I0313 09:53:25.073834 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-13 09:53:25.073812023 +0000 UTC m=+34.282171289 I0313 09:53:25.085331 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-13 09:53:25.085319849 +0000 UTC m=+34.293679085 I0313 09:53:25.100175 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:53:25.100277 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-13 09:53:25.100268267 +0000 UTC m=+34.308627513 I0313 09:53:25.362671 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:53:25.395408 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-4njjn" condition "Approved" to 2026-03-13 09:53:25.395391567 +0000 UTC m=+34.603750803 I0313 09:53:25.430783 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-4njjn" condition "Ready" to 2026-03-13 09:53:25.430769773 +0000 UTC m=+34.639129009 I0313 09:53:25.461475 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:53:25.461460759 +0000 UTC m=+34.669820005 I0313 09:53:25.483176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:53:25.483490 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:53:25.483469328 +0000 UTC m=+34.691828554 I0313 09:53:25.508573 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:57:54.897404 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Ready" to 2026-03-13 09:57:54.897375387 +0000 UTC m=+304.105734623 I0313 09:57:54.897487 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-153.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:57:54.897571 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Issuing" to 2026-03-13 09:57:54.897560901 +0000 UTC m=+304.105920167 I0313 09:57:54.922207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:57:54.922348 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-153.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:57:54.922431 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Issuing" to 2026-03-13 09:57:54.922400994 +0000 UTC m=+304.130760230 I0313 09:57:55.291392 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:57:55.301072 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-153.nip.io-tls-k544d" condition "Approved" to 2026-03-13 09:57:55.301055292 +0000 UTC m=+304.509414528 I0313 09:57:55.331021 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-153.nip.io-tls-k544d" condition "Ready" to 2026-03-13 09:57:55.331009844 +0000 UTC m=+304.539369090 I0313 09:57:55.355953 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:57:55.355940919 +0000 UTC m=+304.564300165 I0313 09:57:55.376511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:57:55.376972 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:57:55.376965549 +0000 UTC m=+304.585324785 I0313 09:57:55.391941 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:57:55.392349 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:57:55.392341539 +0000 UTC m=+304.600700775 I0313 09:59:00.452004 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:00.452051 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-13 09:59:00.452040832 +0000 UTC m=+369.660400088 I0313 09:59:00.452144 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-13 09:59:00.451887319 +0000 UTC m=+369.660246575 E0313 09:59:00.467474 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:59:00.467597 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-13 09:59:00.467540774 +0000 UTC m=+369.675900010 E0313 09:59:00.467696 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:59:00.469282 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:00.469394 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:00.469428 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-13 09:59:00.469417553 +0000 UTC m=+369.677776829 E0313 09:59:00.476792 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0313 09:59:00.476938 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:59:00.476981 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:59:00.477025 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0313 09:59:00.513139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:00.513270 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-5s8fn" condition "Approved" to 2026-03-13 09:59:00.513256099 +0000 UTC m=+369.721615355 I0313 09:59:00.525123 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-5s8fn" condition "Ready" to 2026-03-13 09:59:00.525112742 +0000 UTC m=+369.733471978 I0313 09:59:00.547226 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:00.547212614 +0000 UTC m=+369.755571860 I0313 09:59:00.561740 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:00.562110 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:00.562101731 +0000 UTC m=+369.770460977 I0313 09:59:00.574553 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:00.576929 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:05.477450 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:05.477436849 +0000 UTC m=+374.685796115 I0313 09:59:41.967859 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:41.967889 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-13 09:59:41.967883467 +0000 UTC m=+411.176242693 I0313 09:59:41.968379 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-13 09:59:41.968374867 +0000 UTC m=+411.176734083 I0313 09:59:41.968569 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:41.968584 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-13 09:59:41.968581591 +0000 UTC m=+411.176940817 I0313 09:59:41.968722 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-13 09:59:41.968719744 +0000 UTC m=+411.177078970 I0313 09:59:41.971956 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:41.972003 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-13 09:59:41.971984634 +0000 UTC m=+411.180343860 I0313 09:59:41.972061 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-13 09:59:41.972044685 +0000 UTC m=+411.180403921 I0313 09:59:42.005888 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:42.005966 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:42.006080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:42.006166 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-13 09:59:42.006157844 +0000 UTC m=+411.214517070 I0313 09:59:42.006603 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:42.006639 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-13 09:59:42.006632564 +0000 UTC m=+411.214991800 I0313 09:59:42.007112 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:42.007133 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-13 09:59:42.007129235 +0000 UTC m=+411.215488461 I0313 09:59:42.208544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-p9sdp" condition "Approved" to 2026-03-13 09:59:42.208534404 +0000 UTC m=+411.416893630 I0313 09:59:42.228173 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-p9sdp" condition "Ready" to 2026-03-13 09:59:42.228157263 +0000 UTC m=+411.436516489 I0313 09:59:42.254949 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:42.254932704 +0000 UTC m=+411.463291940 I0313 09:59:42.278630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:42.278961 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:42.278949757 +0000 UTC m=+411.487309003 I0313 09:59:42.311476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" E0313 09:59:42.318614 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-n65zq\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0313 09:59:42.415318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:42.433382 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:42.437777 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rk7bf" condition "Approved" to 2026-03-13 09:59:42.437766167 +0000 UTC m=+411.646125413 I0313 09:59:42.444066 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rwj5k" condition "Approved" to 2026-03-13 09:59:42.444051801 +0000 UTC m=+411.652411057 I0313 09:59:42.454138 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rk7bf" condition "Ready" to 2026-03-13 09:59:42.454128246 +0000 UTC m=+411.662487492 I0313 09:59:42.462479 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rwj5k" condition "Ready" to 2026-03-13 09:59:42.462468084 +0000 UTC m=+411.670827310 I0313 09:59:43.007270 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:43.007252644 +0000 UTC m=+412.215611910 I0313 09:59:43.055122 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:43.055084915 +0000 UTC m=+412.263444151 I0313 09:59:43.206574 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:43.207093 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:43.20708577 +0000 UTC m=+412.415444996 I0313 09:59:43.318087 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:43.556333 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:43.854755 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:49.761729 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:49.761795 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" condition "Issuing" to 2026-03-13 09:59:49.761760672 +0000 UTC m=+418.970119938 I0313 09:59:49.761855 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" condition "Ready" to 2026-03-13 09:59:49.761839614 +0000 UTC m=+418.970198850 I0313 09:59:49.780916 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-plvsh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:49.781024 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" condition "Ready" to 2026-03-13 09:59:49.781015383 +0000 UTC m=+418.989374619 I0313 09:59:50.093378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-plvsh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:50.122540 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-plvsh-459qx" condition "Approved" to 2026-03-13 09:59:50.122489182 +0000 UTC m=+419.330848398 I0313 09:59:50.138578 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-plvsh-459qx" condition "Ready" to 2026-03-13 09:59:50.138567166 +0000 UTC m=+419.346926392 I0313 09:59:50.168038 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:50.168023284 +0000 UTC m=+419.376382510 I0313 09:59:50.194456 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-plvsh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:50.194742 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:50.194733855 +0000 UTC m=+419.403093091 I0313 09:59:50.215667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-plvsh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:50.216104 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:50.2160937 +0000 UTC m=+419.424452936 I0313 09:59:50.226184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-plvsh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-plvsh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:23.805370 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:00:23.805380 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-13 10:00:23.80535561 +0000 UTC m=+453.013714876 I0313 10:00:23.805420 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-13 10:00:23.805409211 +0000 UTC m=+453.013768477 I0313 10:00:23.823011 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:23.823090 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-13 10:00:23.823081937 +0000 UTC m=+453.031441173 I0313 10:00:24.026703 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:24.081764 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-t9c42" condition "Approved" to 2026-03-13 10:00:24.081748135 +0000 UTC m=+453.290107391 I0313 10:00:24.099874 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-t9c42" condition "Ready" to 2026-03-13 10:00:24.099860641 +0000 UTC m=+453.308219877 I0313 10:00:24.130695 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:24.130670897 +0000 UTC m=+453.339030133 I0313 10:00:24.150323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:24.150662 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:24.150654982 +0000 UTC m=+453.359014218 I0313 10:00:24.169351 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:03:48.139514 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-13 10:03:48.139466938 +0000 UTC m=+657.347826204 I0313 10:03:48.139644 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:03:48.139727 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-13 10:03:48.139717744 +0000 UTC m=+657.348077000 I0313 10:03:48.161473 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:03:48.161553 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:03:48.161567 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-13 10:03:48.161563185 +0000 UTC m=+657.369922411 I0313 10:03:48.683814 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pgmpn" condition "Approved" to 2026-03-13 10:03:48.683799989 +0000 UTC m=+657.892159215 I0313 10:03:48.743207 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pgmpn" condition "Ready" to 2026-03-13 10:03:48.743194952 +0000 UTC m=+657.951554178 I0313 10:03:48.794168 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:03:48.794152918 +0000 UTC m=+658.002512154 I0313 10:03:48.821808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:03:48.822199 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:03:48.822192249 +0000 UTC m=+658.030551485 I0313 10:03:48.862845 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:06:07.334374 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-13 10:06:07.334349974 +0000 UTC m=+796.542709240 I0313 10:06:07.334834 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:06:07.334923 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-13 10:06:07.334914496 +0000 UTC m=+796.543273752 I0313 10:06:07.374637 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:06:07.374757 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:06:07.374792 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-13 10:06:07.374784645 +0000 UTC m=+796.583143881 I0313 10:06:07.610560 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-q4tpk" condition "Approved" to 2026-03-13 10:06:07.610549401 +0000 UTC m=+796.818908627 I0313 10:06:07.640354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-q4tpk" condition "Ready" to 2026-03-13 10:06:07.640335797 +0000 UTC m=+796.848695063 I0313 10:06:07.689083 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:06:07.689067245 +0000 UTC m=+796.897426501 I0313 10:06:07.723884 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:06:07.724499 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:06:07.724478841 +0000 UTC m=+796.932838107 I0313 10:06:07.752613 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:07:04.950827 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:07:04.950897 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-13 10:07:04.950887531 +0000 UTC m=+854.159246787 I0313 10:07:04.951461 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-13 10:07:04.951441633 +0000 UTC m=+854.159800879 I0313 10:07:04.968551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:07:04.968655 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-13 10:07:04.968646921 +0000 UTC m=+854.177006157 I0313 10:07:05.188916 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:07:05.225247 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-hcd6l" condition "Approved" to 2026-03-13 10:07:05.225229303 +0000 UTC m=+854.433588539 I0313 10:07:05.246774 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-hcd6l" condition "Ready" to 2026-03-13 10:07:05.246747603 +0000 UTC m=+854.455106839 I0313 10:07:05.280402 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:07:05.280389663 +0000 UTC m=+854.488748889 I0313 10:07:05.311615 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:09:59.338776 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-13 10:09:59.33874309 +0000 UTC m=+1028.547102316 I0313 10:09:59.339243 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:09:59.339264 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-13 10:09:59.339259961 +0000 UTC m=+1028.547619187 I0313 10:09:59.355587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:09:59.355655 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:09:59.355701 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-13 10:09:59.35569615 +0000 UTC m=+1028.564055376 I0313 10:09:59.646475 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:09:59.653634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-n5z8p" condition "Approved" to 2026-03-13 10:09:59.653619931 +0000 UTC m=+1028.861979157 I0313 10:09:59.671199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-n5z8p" condition "Ready" to 2026-03-13 10:09:59.671181424 +0000 UTC m=+1028.879540680 I0313 10:09:59.711634 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:09:59.711621754 +0000 UTC m=+1028.919980990 I0313 10:09:59.745814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:09:59.791127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"