I0411 17:49:00.890101 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0411 17:49:00.890247 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0411 17:49:00.890567 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0411 17:49:00.896728 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0411 17:49:00.897401 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0411 17:49:00.897458 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0411 17:49:00.897542 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0411 17:49:00.900090 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0411 17:49:00.918259 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0411 17:49:00.923373 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0411 17:49:00.926773 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0411 17:49:00.932547 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0411 17:49:00.935681 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0411 17:49:00.938280 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0411 17:49:00.938311 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0411 17:49:00.938321 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0411 17:49:00.941227 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0411 17:49:00.943885 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0411 17:49:00.944054 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0411 17:49:00.946322 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0411 17:49:00.949230 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0411 17:49:00.954503 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0411 17:49:00.957111 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0411 17:49:00.957147 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0411 17:49:00.957223 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0411 17:49:00.959846 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0411 17:49:00.962232 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0411 17:49:00.962350 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0411 17:49:00.965060 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0411 17:49:00.966974 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0411 17:49:00.969121 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0411 17:49:00.970973 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0411 17:49:00.974259 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0411 17:49:00.976467 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.978718 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.979099 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.979972 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.980775 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.981481 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.981577 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.982334 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:00.982474 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:01.072237 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 17:49:17.879963 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-11 17:49:17.87994387 +0000 UTC m=+17.025054926 I0411 17:49:18.577948 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-11 17:49:18.577936487 +0000 UTC m=+17.723047523 I0411 17:49:18.578236 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:49:18.578322 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-11 17:49:18.578311656 +0000 UTC m=+17.723422712 E0411 17:49:18.590770 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0411 17:49:18.590915 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-11 17:49:18.590871218 +0000 UTC m=+17.735982294 E0411 17:49:18.590957 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0411 17:49:18.592022 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:18.592134 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-11 17:49:18.59212459 +0000 UTC m=+17.737235626 E0411 17:49:18.601169 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0411 17:49:18.601317 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0411 17:49:18.601354 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0411 17:49:18.601417 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0411 17:49:18.604965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:18.623995 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-x5lft" condition "Approved" to 2026-04-11 17:49:18.623980284 +0000 UTC m=+17.769091350 I0411 17:49:18.638262 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-x5lft" condition "Ready" to 2026-04-11 17:49:18.638245079 +0000 UTC m=+17.783356145 I0411 17:49:18.657989 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:49:18.657978971 +0000 UTC m=+17.803090007 I0411 17:49:18.676803 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:18.677130 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:49:18.677123338 +0000 UTC m=+17.822234364 I0411 17:49:18.683419 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:18.695050 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:18.695367 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:49:18.695360083 +0000 UTC m=+17.840471119 I0411 17:49:18.697037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:23.601720 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:49:23.601707385 +0000 UTC m=+22.746818441 I0411 17:49:43.310871 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:49:43.310909 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-11 17:49:43.310901495 +0000 UTC m=+42.456012531 I0411 17:49:43.311241 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-11 17:49:43.311211133 +0000 UTC m=+42.456322179 I0411 17:49:43.321623 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-11 17:49:43.321610112 +0000 UTC m=+42.466721158 I0411 17:49:43.335641 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:43.335740 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-11 17:49:43.335727914 +0000 UTC m=+42.480838940 I0411 17:49:43.522376 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:43.562259 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-8jnj9" condition "Approved" to 2026-04-11 17:49:43.562242399 +0000 UTC m=+42.707353465 I0411 17:49:43.596896 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-8jnj9" condition "Ready" to 2026-04-11 17:49:43.596871943 +0000 UTC m=+42.741983009 I0411 17:49:43.626945 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:49:43.626926631 +0000 UTC m=+42.772037687 I0411 17:49:43.649674 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:43.650331 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:49:43.650321315 +0000 UTC m=+42.795432371 I0411 17:49:43.680840 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:49:43.680961 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:51:25.871342 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-11 17:51:25.871297032 +0000 UTC m=+145.016408088 I0411 17:51:25.872432 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:51:25.872549 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-11 17:51:25.872536844 +0000 UTC m=+145.017647880 E0411 17:51:25.891315 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0411 17:51:25.891360 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-11 17:51:25.891352447 +0000 UTC m=+145.036463483 I0411 17:51:25.891405 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0411 17:51:25.893114 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:51:25.893247 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:51:25.893293 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-11 17:51:25.893279715 +0000 UTC m=+145.038390771 E0411 17:51:25.901488 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0411 17:51:25.901619 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0411 17:51:25.901661 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0411 17:51:25.901709 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0411 17:51:25.907306 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-11 17:51:25.90728615 +0000 UTC m=+145.052397206 I0411 17:51:25.907484 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:51:25.907544 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-11 17:51:25.907521485 +0000 UTC m=+145.052632531 I0411 17:51:25.922928 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:51:25.923005 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:51:25.923026 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-11 17:51:25.923018338 +0000 UTC m=+145.068129394 I0411 17:51:26.096132 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-j6gkz" condition "Approved" to 2026-04-11 17:51:26.096109384 +0000 UTC m=+145.241220440 I0411 17:51:26.115313 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-j6gkz" condition "Ready" to 2026-04-11 17:51:26.115298837 +0000 UTC m=+145.260409883 I0411 17:51:26.307713 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-xv8vs" condition "Approved" to 2026-04-11 17:51:26.30769079 +0000 UTC m=+145.452801846 I0411 17:51:26.343632 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-xv8vs" condition "Ready" to 2026-04-11 17:51:26.343615215 +0000 UTC m=+145.488726281 I0411 17:51:26.370486 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:51:26.370470447 +0000 UTC m=+145.515581473 I0411 17:51:26.393248 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:51:26.393789 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:51:26.393777342 +0000 UTC m=+145.538888398 I0411 17:51:26.411494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:51:26.411740 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:51:26.411734545 +0000 UTC m=+145.556845581 I0411 17:51:30.902793 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:51:30.902780086 +0000 UTC m=+150.047891142 I0411 17:51:30.920048 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-j6gkz" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:51:30.920030119 +0000 UTC m=+150.065141155 I0411 17:51:30.949344 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:51:30.949321139 +0000 UTC m=+150.094432195 I0411 17:51:30.969296 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:51:31.019331 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:53:57.426491 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-62.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:53:57.426583 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-62.nip.io-tls" condition "Issuing" to 2026-04-11 17:53:57.426530525 +0000 UTC m=+296.571641601 I0411 17:53:57.427075 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-62.nip.io-tls" condition "Ready" to 2026-04-11 17:53:57.427066009 +0000 UTC m=+296.572177075 I0411 17:53:57.445090 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:53:57.445163 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-62.nip.io-tls" condition "Ready" to 2026-04-11 17:53:57.445155296 +0000 UTC m=+296.590266362 I0411 17:53:57.545020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:53:57.573652 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-62.nip.io-tls-xkc84" condition "Approved" to 2026-04-11 17:53:57.5736436 +0000 UTC m=+296.718754616 I0411 17:53:57.595481 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-62.nip.io-tls-xkc84" condition "Ready" to 2026-04-11 17:53:57.595470219 +0000 UTC m=+296.740581245 I0411 17:53:57.622359 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-62.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:53:57.62234556 +0000 UTC m=+296.767456596 I0411 17:53:57.645262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:53:57.645765 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-62.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:53:57.645755548 +0000 UTC m=+296.790866604 I0411 17:53:57.666650 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:07.643709 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-11 17:55:07.643678676 +0000 UTC m=+366.788789712 I0411 17:55:07.644279 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:07.644348 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-11 17:55:07.644332022 +0000 UTC m=+366.789443078 E0411 17:55:07.657193 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0411 17:55:07.657247 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-11 17:55:07.657237162 +0000 UTC m=+366.802348218 E0411 17:55:07.657312 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0411 17:55:07.661041 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:07.661121 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:07.661142 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-11 17:55:07.661135437 +0000 UTC m=+366.806246503 E0411 17:55:07.665721 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0411 17:55:07.665893 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0411 17:55:07.665952 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0411 17:55:07.665992 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0411 17:55:07.701710 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:07.707121 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2gjgt" condition "Approved" to 2026-04-11 17:55:07.707102774 +0000 UTC m=+366.852213810 I0411 17:55:07.722294 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2gjgt" condition "Ready" to 2026-04-11 17:55:07.72227308 +0000 UTC m=+366.867384146 I0411 17:55:07.747296 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:07.747273533 +0000 UTC m=+366.892384589 I0411 17:55:07.764643 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:07.764866 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:07.764856247 +0000 UTC m=+366.909967283 I0411 17:55:07.783513 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:07.783973 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:12.666195 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:12.666180394 +0000 UTC m=+371.811291460 I0411 17:55:49.013277 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:49.013330 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-11 17:55:49.013323647 +0000 UTC m=+408.158434683 I0411 17:55:49.013346 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-11 17:55:49.013333367 +0000 UTC m=+408.158444403 I0411 17:55:49.015706 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:49.015730 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-11 17:55:49.015712864 +0000 UTC m=+408.160823900 I0411 17:55:49.015757 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-11 17:55:49.015747075 +0000 UTC m=+408.160858111 I0411 17:55:49.037239 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:49.037301 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-11 17:55:49.037295392 +0000 UTC m=+408.182406408 I0411 17:55:49.037344 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-11 17:55:49.037326403 +0000 UTC m=+408.182437429 I0411 17:55:49.045682 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.045758 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-11 17:55:49.045749165 +0000 UTC m=+408.190860191 I0411 17:55:49.048266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.048331 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:49.048352 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-11 17:55:49.048346367 +0000 UTC m=+408.193457393 I0411 17:55:49.058579 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.058639 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-11 17:55:49.058633333 +0000 UTC m=+408.203744359 I0411 17:55:49.208269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.244545 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.248932 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8vmmd" condition "Approved" to 2026-04-11 17:55:49.248915956 +0000 UTC m=+408.394026972 I0411 17:55:49.250701 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-cbslw" condition "Approved" to 2026-04-11 17:55:49.250688389 +0000 UTC m=+408.395799425 I0411 17:55:49.265054 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8vmmd" condition "Ready" to 2026-04-11 17:55:49.265044853 +0000 UTC m=+408.410155869 I0411 17:55:49.271019 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-cbslw" condition "Ready" to 2026-04-11 17:55:49.271003315 +0000 UTC m=+408.416114351 I0411 17:55:49.313153 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:49.313203 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-11 17:55:49.313192347 +0000 UTC m=+408.458303403 I0411 17:55:49.326785 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:49.326768802 +0000 UTC m=+408.471879828 I0411 17:55:49.327137 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:49.327134281 +0000 UTC m=+408.472245307 I0411 17:55:49.336779 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.361682 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.362046 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:49.362034819 +0000 UTC m=+408.507145855 I0411 17:55:49.411460 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.412144 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:49.412122839 +0000 UTC m=+408.557233885 I0411 17:55:49.860024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:49.911631 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:50.031267 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ngtd2" condition "Approved" to 2026-04-11 17:55:50.031252064 +0000 UTC m=+409.176363130 I0411 17:55:50.062594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:50.274443 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ngtd2" condition "Ready" to 2026-04-11 17:55:50.274410164 +0000 UTC m=+409.419521200 I0411 17:55:50.769081 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hjv4p" condition "Approved" to 2026-04-11 17:55:50.769060374 +0000 UTC m=+409.914171410 I0411 17:55:51.083501 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hjv4p" condition "Ready" to 2026-04-11 17:55:51.083488933 +0000 UTC m=+410.228599969 I0411 17:55:51.262589 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:51.614256 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:51.614225819 +0000 UTC m=+410.759336885 I0411 17:55:51.663691 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:51.760339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:51.760683 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:51.76067394 +0000 UTC m=+410.905784976 I0411 17:55:52.010457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:57.033406 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:57.033477 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" condition "Ready" to 2026-04-11 17:55:57.033451295 +0000 UTC m=+416.178562351 I0411 17:55:57.033467 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" condition "Issuing" to 2026-04-11 17:55:57.033440765 +0000 UTC m=+416.178551811 I0411 17:55:57.048063 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-fczf2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:55:57.048141 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:55:57.048281 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" condition "Issuing" to 2026-04-11 17:55:57.048153017 +0000 UTC m=+416.193264063 I0411 17:55:57.538753 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-fczf2-v24b7" condition "Approved" to 2026-04-11 17:55:57.538741321 +0000 UTC m=+416.683852357 I0411 17:55:57.558959 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-fczf2-v24b7" condition "Ready" to 2026-04-11 17:55:57.558945895 +0000 UTC m=+416.704056931 I0411 17:55:57.590461 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:55:57.59044544 +0000 UTC m=+416.735556486 I0411 17:55:57.618613 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fczf2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-fczf2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:56:21.445456 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:56:21.445501 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-11 17:56:21.445490469 +0000 UTC m=+440.590601515 I0411 17:56:21.445851 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-11 17:56:21.445828938 +0000 UTC m=+440.590939994 I0411 17:56:21.461255 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:56:21.461319 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:56:21.461366 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-11 17:56:21.46136179 +0000 UTC m=+440.606472826 I0411 17:56:21.790588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:56:21.802602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-m9g4g" condition "Approved" to 2026-04-11 17:56:21.802584432 +0000 UTC m=+440.947695468 I0411 17:56:21.820853 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-m9g4g" condition "Ready" to 2026-04-11 17:56:21.820843209 +0000 UTC m=+440.965954245 I0411 17:56:21.850667 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:56:21.850649174 +0000 UTC m=+440.995760230 I0411 17:56:21.870935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:56:21.871781 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:56:21.871764111 +0000 UTC m=+441.016875187 I0411 17:56:21.889500 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:56:21.889856 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:56:21.889846634 +0000 UTC m=+441.034957670 I0411 17:56:21.893897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:59:33.165346 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:59:33.165364 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-11 17:59:33.16532786 +0000 UTC m=+632.310438906 I0411 17:59:33.165411 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-11 17:59:33.165395542 +0000 UTC m=+632.310506658 I0411 17:59:33.181744 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:59:33.181853 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 17:59:33.181886 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-11 17:59:33.181878228 +0000 UTC m=+632.326989294 I0411 17:59:33.451802 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 17:59:33.465390 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-blbzf" condition "Approved" to 2026-04-11 17:59:33.46537719 +0000 UTC m=+632.610488246 I0411 17:59:33.489785 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-blbzf" condition "Ready" to 2026-04-11 17:59:33.489774126 +0000 UTC m=+632.634885162 I0411 17:59:33.519037 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 17:59:33.519025077 +0000 UTC m=+632.664136113 I0411 17:59:33.546808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:01:55.374195 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 18:01:55.374209 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-11 18:01:55.374183237 +0000 UTC m=+774.519294273 I0411 18:01:55.374274 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-11 18:01:55.374266499 +0000 UTC m=+774.519377535 I0411 18:01:55.394469 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:01:55.394734 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 18:01:55.394777 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-11 18:01:55.394768139 +0000 UTC m=+774.539879185 I0411 18:01:55.602012 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-mzvnl" condition "Approved" to 2026-04-11 18:01:55.601996055 +0000 UTC m=+774.747107091 I0411 18:01:55.622228 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-mzvnl" condition "Ready" to 2026-04-11 18:01:55.622216591 +0000 UTC m=+774.767327627 I0411 18:01:55.649879 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:01:55.649870024 +0000 UTC m=+774.794981050 I0411 18:01:55.675085 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:01:55.675786 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:01:55.675778614 +0000 UTC m=+774.820889650 I0411 18:01:55.684184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:01:55.704176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:01:55.704880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:01:55.705299 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:01:55.705291841 +0000 UTC m=+774.850402877 I0411 18:03:01.831903 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-11 18:03:01.831888593 +0000 UTC m=+840.976999629 I0411 18:03:01.831950 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 18:03:01.832056 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-11 18:03:01.832047807 +0000 UTC m=+840.977158833 I0411 18:03:01.847596 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:03:01.847679 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-11 18:03:01.847670151 +0000 UTC m=+840.992781207 I0411 18:03:02.128858 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:03:02.160101 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-wwffr" condition "Approved" to 2026-04-11 18:03:02.160088122 +0000 UTC m=+841.305199158 I0411 18:03:02.185004 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-wwffr" condition "Ready" to 2026-04-11 18:03:02.184991967 +0000 UTC m=+841.330103013 I0411 18:03:02.232597 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:03:02.232581097 +0000 UTC m=+841.377692133 I0411 18:03:02.252272 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:03:02.252588 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:03:02.252581806 +0000 UTC m=+841.397692822 I0411 18:03:02.278437 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:05:55.728455 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 18:05:55.728545 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-11 18:05:55.728517096 +0000 UTC m=+1014.873628152 I0411 18:05:55.728670 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-11 18:05:55.728591487 +0000 UTC m=+1014.873702603 I0411 18:05:55.749444 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:05:55.749594 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-11 18:05:55.74958437 +0000 UTC m=+1014.894695406 I0411 18:05:56.022945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:05:56.061293 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5jllw" condition "Approved" to 2026-04-11 18:05:56.061274292 +0000 UTC m=+1015.206385358 I0411 18:05:56.085309 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5jllw" condition "Ready" to 2026-04-11 18:05:56.085296487 +0000 UTC m=+1015.230407523 I0411 18:05:56.116527 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:05:56.116518144 +0000 UTC m=+1015.261629170 I0411 18:05:56.134302 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:05:56.134658 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:05:56.134652559 +0000 UTC m=+1015.279763575 I0411 18:05:56.144500 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:05:56.159162 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0411 18:05:56.159498 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 18:05:56.159491003 +0000 UTC m=+1015.304602029