I0512 12:37:03.292838 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0512 12:37:03.293006 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0512 12:37:03.293099 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0512 12:37:03.299561 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0512 12:37:03.300171 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0512 12:37:03.300247 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0512 12:37:03.300294 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0512 12:37:03.302756 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0512 12:37:03.319818 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0512 12:37:03.324672 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0512 12:37:03.334716 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0512 12:37:03.337180 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0512 12:37:03.339634 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0512 12:37:03.339706 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0512 12:37:03.341753 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0512 12:37:03.344127 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0512 12:37:03.344151 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0512 12:37:03.344162 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0512 12:37:03.344236 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0512 12:37:03.346630 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0512 12:37:03.352826 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0512 12:37:03.356529 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0512 12:37:03.359507 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0512 12:37:03.362407 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0512 12:37:03.365024 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0512 12:37:03.365098 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0512 12:37:03.371249 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0512 12:37:03.376333 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0512 12:37:03.376413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0512 12:37:03.378822 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0512 12:37:03.381215 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0512 12:37:03.386442 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0512 12:37:03.390832 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0512 12:37:03.393215 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.395903 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.396080 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.396813 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.397209 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.397583 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.400116 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.405753 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.419551 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:37:03.654273 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:41:55.551031 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-05-12 12:41:55.551014594 +0000 UTC m=+292.308336166 I0512 12:41:55.552034 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 12:41:55.552085 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-12 12:41:55.552072438 +0000 UTC m=+292.309393980 I0512 12:41:55.581426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:41:55.581552 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-05-12 12:41:55.58154391 +0000 UTC m=+292.338865452 I0512 12:41:55.757873 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:41:55.818544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-l4klw" condition "Approved" to 2026-05-12 12:41:55.818519869 +0000 UTC m=+292.575841441 I0512 12:41:55.839042 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-l4klw" condition "Ready" to 2026-05-12 12:41:55.839029219 +0000 UTC m=+292.596350761 I0512 12:41:55.870456 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:41:55.870432543 +0000 UTC m=+292.627754105 I0512 12:41:55.896681 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:41:55.897311 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:41:55.897298847 +0000 UTC m=+292.654620419 I0512 12:41:55.920250 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:33.508839 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-12 12:42:33.508815928 +0000 UTC m=+330.266137470 I0512 12:42:33.508850 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 12:42:33.509021 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 12:42:33.508994942 +0000 UTC m=+330.266316474 I0512 12:42:33.533346 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:33.533478 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 12:42:33.533517 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 12:42:33.533506703 +0000 UTC m=+330.290828265 I0512 12:42:33.717287 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-tdgp9" condition "Approved" to 2026-05-12 12:42:33.717269463 +0000 UTC m=+330.474591035 I0512 12:42:33.745779 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-tdgp9" condition "Ready" to 2026-05-12 12:42:33.745767324 +0000 UTC m=+330.503088856 I0512 12:42:33.787115 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:42:33.787098163 +0000 UTC m=+330.544419695 I0512 12:42:33.808027 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:33.808580 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:42:33.808572526 +0000 UTC m=+330.565894078 I0512 12:42:33.833558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"