I0421 10:06:06.351956 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0421 10:06:06.352055 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0421 10:06:06.352149 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0421 10:06:06.356006 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0421 10:06:06.356456 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0421 10:06:06.356551 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0421 10:06:06.356550 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0421 10:06:06.359545 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0421 10:06:06.393769 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0421 10:06:06.399426 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0421 10:06:06.406896 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0421 10:06:06.406930 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0421 10:06:06.411273 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0421 10:06:06.413469 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0421 10:06:06.415189 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0421 10:06:06.417034 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0421 10:06:06.420557 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0421 10:06:06.421511 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0421 10:06:06.420728 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0421 10:06:06.426088 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0421 10:06:06.426180 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0421 10:06:06.428834 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0421 10:06:06.431276 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0421 10:06:06.433619 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0421 10:06:06.433718 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0421 10:06:06.433724 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0421 10:06:06.436308 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0421 10:06:06.438128 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0421 10:06:06.439777 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0421 10:06:06.441565 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0421 10:06:06.445511 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0421 10:06:06.450048 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0421 10:06:06.453048 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0421 10:06:06.455030 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.455881 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.456589 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.476195 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.496168 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.510614 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.526554 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.543594 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.544155 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:06.557802 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0421 10:06:19.381565 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-21 10:06:19.381549287 +0000 UTC m=+13.062397268 I0421 10:06:20.085579 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 10:06:20.085561943 +0000 UTC m=+13.766409934 I0421 10:06:20.085778 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:06:20.085828 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-21 10:06:20.085818516 +0000 UTC m=+13.766666497 E0421 10:06:20.103825 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 10:06:20.103955 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-21 10:06:20.103944807 +0000 UTC m=+13.784792768 E0421 10:06:20.104104 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 10:06:20.105047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:06:20.105154 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-21 10:06:20.105141305 +0000 UTC m=+13.785989296 E0421 10:06:20.114005 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0421 10:06:20.114199 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 10:06:20.114277 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 10:06:20.114329 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0421 10:06:20.122910 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:06:20.145802 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-xfrz2" condition "Approved" to 2026-04-21 10:06:20.145790872 +0000 UTC m=+13.826638833 I0421 10:06:20.159976 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-xfrz2" condition "Ready" to 2026-04-21 10:06:20.159968034 +0000 UTC m=+13.840815995 I0421 10:06:20.182750 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:06:20.182735164 +0000 UTC m=+13.863583145 I0421 10:06:20.199476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:06:20.239697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:06:25.114920 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:06:25.114904988 +0000 UTC m=+18.795752949 I0421 10:06:46.417045 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-21 10:06:46.417013898 +0000 UTC m=+40.097861849 I0421 10:06:46.417319 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:06:46.417366 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-21 10:06:46.417357622 +0000 UTC m=+40.098205583 I0421 10:06:46.429006 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-21 10:06:46.428992498 +0000 UTC m=+40.109840459 I0421 10:06:46.446798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:06:46.446885 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-21 10:06:46.446874729 +0000 UTC m=+40.127722700 I0421 10:06:46.578469 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:06:46.614851 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6qhc8" condition "Approved" to 2026-04-21 10:06:46.614837375 +0000 UTC m=+40.295685356 I0421 10:06:46.644215 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6qhc8" condition "Ready" to 2026-04-21 10:06:46.64420506 +0000 UTC m=+40.325053021 I0421 10:06:46.681083 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:06:46.681069895 +0000 UTC m=+40.361917856 I0421 10:06:46.703098 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:06:46.703469 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:06:46.703461075 +0000 UTC m=+40.384309046 I0421 10:06:46.724562 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:11:32.030223 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-212.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:11:32.030260 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Issuing" to 2026-04-21 10:11:32.030253004 +0000 UTC m=+325.711100965 I0421 10:11:32.030637 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready" to 2026-04-21 10:11:32.030623671 +0000 UTC m=+325.711471662 I0421 10:11:32.051234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:11:32.051311 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready" to 2026-04-21 10:11:32.051302068 +0000 UTC m=+325.732150029 I0421 10:11:32.130271 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:11:32.156977 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-212.nip.io-tls-bdq8l" condition "Approved" to 2026-04-21 10:11:32.156965745 +0000 UTC m=+325.837813706 I0421 10:11:32.184279 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-212.nip.io-tls-bdq8l" condition "Ready" to 2026-04-21 10:11:32.184267897 +0000 UTC m=+325.865115858 I0421 10:11:32.208155 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:11:32.208132349 +0000 UTC m=+325.888980310 I0421 10:11:32.230154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:11:32.230492 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:11:32.230485701 +0000 UTC m=+325.911333662 I0421 10:11:32.236399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:11:32.249007 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:11:32.249415 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:11:32.249405894 +0000 UTC m=+325.930253865 I0421 10:12:36.543623 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:12:36.543919 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-21 10:12:36.543910054 +0000 UTC m=+390.224758015 I0421 10:12:36.543970 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-21 10:12:36.543949325 +0000 UTC m=+390.224797316 E0421 10:12:36.557336 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 10:12:36.557505 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-21 10:12:36.557497236 +0000 UTC m=+390.238345187 E0421 10:12:36.557622 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0421 10:12:36.561087 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:12:36.561242 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-21 10:12:36.561229373 +0000 UTC m=+390.242077364 E0421 10:12:36.573065 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0421 10:12:36.573141 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 10:12:36.573164 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0421 10:12:36.573186 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0421 10:12:36.574780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:12:36.594928 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-vgzb7" condition "Approved" to 2026-04-21 10:12:36.594907582 +0000 UTC m=+390.275755573 I0421 10:12:36.608175 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-vgzb7" condition "Ready" to 2026-04-21 10:12:36.608159458 +0000 UTC m=+390.289007419 I0421 10:12:36.626405 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:12:36.626392354 +0000 UTC m=+390.307240315 I0421 10:12:36.645283 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:12:41.573962 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:12:41.573946151 +0000 UTC m=+395.254794112 I0421 10:13:20.377026 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-21 10:13:20.376991979 +0000 UTC m=+434.057839940 I0421 10:13:20.377627 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:13:20.379159 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-21 10:13:20.379150935 +0000 UTC m=+434.059998876 I0421 10:13:20.385559 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:13:20.385588 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-21 10:13:20.385582083 +0000 UTC m=+434.066430024 I0421 10:13:20.385633 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-21 10:13:20.385621483 +0000 UTC m=+434.066469434 I0421 10:13:20.385867 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-21 10:13:20.385863067 +0000 UTC m=+434.066711018 I0421 10:13:20.385957 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:13:20.386025 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-21 10:13:20.386021631 +0000 UTC m=+434.066869572 I0421 10:13:20.431834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:20.431931 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:13:20.431965 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-21 10:13:20.431957399 +0000 UTC m=+434.112805360 I0421 10:13:20.432783 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:20.432866 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-21 10:13:20.432859584 +0000 UTC m=+434.113707535 I0421 10:13:20.437853 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:20.438013 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-21 10:13:20.43800697 +0000 UTC m=+434.118854911 I0421 10:13:20.614355 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:20.650220 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4pmn6" condition "Approved" to 2026-04-21 10:13:20.65020648 +0000 UTC m=+434.331054461 I0421 10:13:20.650865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9kn4c" condition "Approved" to 2026-04-21 10:13:20.650852861 +0000 UTC m=+434.331700822 I0421 10:13:20.673359 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4pmn6" condition "Ready" to 2026-04-21 10:13:20.673347327 +0000 UTC m=+434.354195288 I0421 10:13:20.678396 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9kn4c" condition "Ready" to 2026-04-21 10:13:20.678384631 +0000 UTC m=+434.359232602 I0421 10:13:20.723812 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:13:20.723800531 +0000 UTC m=+434.404648482 I0421 10:13:20.732466 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:13:20.732454836 +0000 UTC m=+434.413302777 I0421 10:13:20.745866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:20.749894 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:21.113790 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:21.160944 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:21.314803 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rvvsq" condition "Approved" to 2026-04-21 10:13:21.314786291 +0000 UTC m=+434.995634272 I0421 10:13:21.364972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rvvsq" condition "Ready" to 2026-04-21 10:13:21.36496122 +0000 UTC m=+435.045809181 I0421 10:13:21.860343 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:13:21.860330887 +0000 UTC m=+435.541178868 I0421 10:13:21.960056 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:21.960601 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:13:21.960590322 +0000 UTC m=+435.641438313 I0421 10:13:22.208839 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:22.262218 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:29.710788 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" condition "Ready" to 2026-04-21 10:13:29.710764856 +0000 UTC m=+443.391612817 I0421 10:13:29.711492 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:13:29.711524 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" condition "Issuing" to 2026-04-21 10:13:29.711516318 +0000 UTC m=+443.392364299 I0421 10:13:29.729915 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:29.730009 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" condition "Ready" to 2026-04-21 10:13:29.730000654 +0000 UTC m=+443.410848615 I0421 10:13:29.946713 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:29.994226 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nb2d8-z6rtv" condition "Approved" to 2026-04-21 10:13:29.994207757 +0000 UTC m=+443.675055748 I0421 10:13:30.015885 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nb2d8-z6rtv" condition "Ready" to 2026-04-21 10:13:30.015875235 +0000 UTC m=+443.696723196 I0421 10:13:30.040004 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:13:30.039992904 +0000 UTC m=+443.720840855 I0421 10:13:30.064036 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:30.112542 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nb2d8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:44.009096 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-21 10:13:44.009062088 +0000 UTC m=+457.689910049 I0421 10:13:44.009460 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:13:44.009497 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-21 10:13:44.009489474 +0000 UTC m=+457.690337445 I0421 10:13:44.023199 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:44.023257 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:13:44.023273 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-21 10:13:44.023267829 +0000 UTC m=+457.704115790 I0421 10:13:44.263110 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-nkxrc" condition "Approved" to 2026-04-21 10:13:44.263096963 +0000 UTC m=+457.943944954 I0421 10:13:44.299480 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-nkxrc" condition "Ready" to 2026-04-21 10:13:44.299468975 +0000 UTC m=+457.980316926 I0421 10:13:44.324486 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:13:44.324474513 +0000 UTC m=+458.005322464 I0421 10:13:44.355510 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:13:44.404105 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:08.054352 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-21 10:17:08.054331831 +0000 UTC m=+661.735179792 I0421 10:17:08.054779 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:17:08.054895 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-21 10:17:08.054853159 +0000 UTC m=+661.735701150 I0421 10:17:08.071580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:08.071650 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-21 10:17:08.071643617 +0000 UTC m=+661.752491568 I0421 10:17:08.273731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:08.304534 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-z7t6w" condition "Approved" to 2026-04-21 10:17:08.304523442 +0000 UTC m=+661.985371393 I0421 10:17:08.326052 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-z7t6w" condition "Ready" to 2026-04-21 10:17:08.326040498 +0000 UTC m=+662.006888459 I0421 10:17:08.361137 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:17:08.361127828 +0000 UTC m=+662.041975779 I0421 10:17:08.382846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:08.383188 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:17:08.383181684 +0000 UTC m=+662.064029655 I0421 10:17:08.405120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:08.410993 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:08.411478 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:17:08.41144116 +0000 UTC m=+662.092289121 I0421 10:17:52.470032 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-21 10:17:52.470019886 +0000 UTC m=+706.150867847 I0421 10:17:52.470076 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:17:52.470180 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-21 10:17:52.470173561 +0000 UTC m=+706.151021512 I0421 10:17:52.487594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:52.487708 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0421 10:17:52.487819 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-21 10:17:52.487805936 +0000 UTC m=+706.168653917 I0421 10:17:52.869527 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-sn4lw" condition "Approved" to 2026-04-21 10:17:52.869512549 +0000 UTC m=+706.550360510 I0421 10:17:52.894053 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-sn4lw" condition "Ready" to 2026-04-21 10:17:52.894042399 +0000 UTC m=+706.574890360 I0421 10:17:52.930553 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:17:52.93053702 +0000 UTC m=+706.611384971 I0421 10:17:52.955808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:52.956231 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:17:52.956223679 +0000 UTC m=+706.637071620 I0421 10:17:52.958931 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:52.970441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0421 10:17:52.970735 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-21 10:17:52.970725881 +0000 UTC m=+706.651573842