I0529 05:02:25.118678 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0529 05:02:25.118889 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0529 05:02:25.119145 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0529 05:02:25.124389 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0529 05:02:25.125189 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0529 05:02:25.125242 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0529 05:02:25.125264 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0529 05:02:25.127466 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0529 05:02:25.143682 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0529 05:02:25.159232 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0529 05:02:25.163885 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0529 05:02:25.173129 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0529 05:02:25.175080 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0529 05:02:25.176749 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0529 05:02:25.176962 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0529 05:02:25.178659 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0529 05:02:25.178735 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0529 05:02:25.180456 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0529 05:02:25.182256 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0529 05:02:25.189804 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0529 05:02:25.196989 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0529 05:02:25.200398 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0529 05:02:25.203109 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0529 05:02:25.206130 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0529 05:02:25.206170 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0529 05:02:25.208353 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0529 05:02:25.210358 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0529 05:02:25.212383 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0529 05:02:25.212494 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0529 05:02:25.214803 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0529 05:02:25.217140 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0529 05:02:25.217162 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0529 05:02:25.218700 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0529 05:02:25.221855 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.222316 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.224043 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.244326 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.261448 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.283626 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.303111 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.313462 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.320881 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:25.341800 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 05:02:39.079544 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-29 05:02:39.0795184 +0000 UTC m=+14.030422078 I0529 05:02:39.856191 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 05:02:39.856166234 +0000 UTC m=+14.807069922 I0529 05:02:39.856374 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:02:39.856434 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-29 05:02:39.856420307 +0000 UTC m=+14.807323985 E0529 05:02:39.873733 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:02:39.873830 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-29 05:02:39.873818749 +0000 UTC m=+14.824722407 E0529 05:02:39.873867 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:02:39.876982 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:02:39.877124 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 05:02:39.877110903 +0000 UTC m=+14.828014581 E0529 05:02:39.888101 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0529 05:02:39.888209 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:02:39.888289 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:02:39.888353 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0529 05:02:39.895836 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:02:39.917672 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-2mfnh" condition "Approved" to 2026-05-29 05:02:39.917654741 +0000 UTC m=+14.868558419 I0529 05:02:39.930696 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-2mfnh" condition "Ready" to 2026-05-29 05:02:39.930685435 +0000 UTC m=+14.881589093 I0529 05:02:39.955405 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:02:39.955385203 +0000 UTC m=+14.906288881 I0529 05:02:39.974815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:02:39.975302 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:02:39.975293698 +0000 UTC m=+14.926197346 I0529 05:02:39.995490 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:02:39.995868 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:02:39.995857001 +0000 UTC m=+14.946760649 I0529 05:02:39.996519 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:02:44.889219 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:02:44.889200956 +0000 UTC m=+19.840104634 I0529 05:03:09.653143 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:03:09.653244 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-29 05:03:09.653234142 +0000 UTC m=+44.604137790 I0529 05:03:09.653740 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-29 05:03:09.653734207 +0000 UTC m=+44.604637855 I0529 05:03:09.670195 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-29 05:03:09.670172614 +0000 UTC m=+44.621076262 I0529 05:03:09.699171 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:03:09.699300 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:03:09.699343 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-29 05:03:09.699336282 +0000 UTC m=+44.650239940 I0529 05:03:09.843307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-cn6t6" condition "Approved" to 2026-05-29 05:03:09.843296103 +0000 UTC m=+44.794199761 I0529 05:03:09.884010 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-cn6t6" condition "Ready" to 2026-05-29 05:03:09.883980159 +0000 UTC m=+44.834883837 I0529 05:03:09.919072 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:03:09.919050868 +0000 UTC m=+44.869954556 I0529 05:03:09.945419 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:03:09.945953 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:03:09.945944439 +0000 UTC m=+44.896848097 I0529 05:03:09.965476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:03:09.965830 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:03:09.965820027 +0000 UTC m=+44.916723685 I0529 05:07:29.631517 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Ready" to 2026-05-29 05:07:29.63148947 +0000 UTC m=+304.582393148 I0529 05:07:29.632235 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-132.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:07:29.632274 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Issuing" to 2026-05-29 05:07:29.632264104 +0000 UTC m=+304.583167772 I0529 05:07:29.648720 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:07:29.648789 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Ready" to 2026-05-29 05:07:29.648780332 +0000 UTC m=+304.599683990 I0529 05:07:29.882484 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:07:29.915106 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-132.nip.io-tls-mqx4v" condition "Approved" to 2026-05-29 05:07:29.915090956 +0000 UTC m=+304.865994614 I0529 05:07:29.953530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-132.nip.io-tls-mqx4v" condition "Ready" to 2026-05-29 05:07:29.953508631 +0000 UTC m=+304.904412309 I0529 05:07:29.983493 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:07:29.983477219 +0000 UTC m=+304.934380877 I0529 05:07:30.002109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:07:30.052524 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:08:35.402392 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-29 05:08:35.40236483 +0000 UTC m=+370.353268508 I0529 05:08:35.402889 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:08:35.402979 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-29 05:08:35.402961419 +0000 UTC m=+370.353865107 E0529 05:08:35.419420 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:08:35.419732 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-29 05:08:35.41970151 +0000 UTC m=+370.370605198 E0529 05:08:35.419986 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 05:08:35.421469 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:08:35.421547 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:08:35.421574 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-29 05:08:35.421566611 +0000 UTC m=+370.372470269 E0529 05:08:35.432187 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0529 05:08:35.432584 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:08:35.432615 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 05:08:35.432656 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0529 05:08:35.463047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:08:35.469129 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wtg5q" condition "Approved" to 2026-05-29 05:08:35.469115359 +0000 UTC m=+370.420019007 I0529 05:08:35.486400 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wtg5q" condition "Ready" to 2026-05-29 05:08:35.486388068 +0000 UTC m=+370.437291726 I0529 05:08:35.509266 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:08:35.509252968 +0000 UTC m=+370.460156626 I0529 05:08:35.527394 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:08:40.433298 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:08:40.433268722 +0000 UTC m=+375.384172400 I0529 05:09:27.202837 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:09:27.202870 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-29 05:09:27.20286391 +0000 UTC m=+422.153767548 I0529 05:09:27.203299 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-29 05:09:27.203272086 +0000 UTC m=+422.154175734 I0529 05:09:27.203539 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:09:27.209871 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-29 05:09:27.209842544 +0000 UTC m=+422.160746212 I0529 05:09:27.208862 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-29 05:09:27.20885121 +0000 UTC m=+422.159754858 I0529 05:09:27.206227 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:09:27.211034 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-29 05:09:27.211012291 +0000 UTC m=+422.161915929 I0529 05:09:27.213857 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-29 05:09:27.203250256 +0000 UTC m=+422.154153894 I0529 05:09:27.263729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:27.263785 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:09:27.263808 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-29 05:09:27.263801911 +0000 UTC m=+422.214705549 I0529 05:09:27.273605 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:27.274919 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-29 05:09:27.274903227 +0000 UTC m=+422.225806905 I0529 05:09:27.278403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:27.278455 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-29 05:09:27.27845114 +0000 UTC m=+422.229354788 I0529 05:09:27.364968 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:27.399590 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-f6rw2" condition "Approved" to 2026-05-29 05:09:27.399567553 +0000 UTC m=+422.350471231 I0529 05:09:27.421695 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-f6rw2" condition "Ready" to 2026-05-29 05:09:27.421679943 +0000 UTC m=+422.372583601 I0529 05:09:27.464640 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:27.464631855 +0000 UTC m=+422.415535503 I0529 05:09:27.522688 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:27.531816 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:27.538041 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5v94g" condition "Approved" to 2026-05-29 05:09:27.538031303 +0000 UTC m=+422.488934961 I0529 05:09:27.559337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5v94g" condition "Ready" to 2026-05-29 05:09:27.559318512 +0000 UTC m=+422.510222170 I0529 05:09:27.596380 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9n4gk" condition "Approved" to 2026-05-29 05:09:27.596363536 +0000 UTC m=+422.547267174 I0529 05:09:27.735672 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:27.73565276 +0000 UTC m=+422.686556418 I0529 05:09:27.829195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9n4gk" condition "Ready" to 2026-05-29 05:09:27.829179999 +0000 UTC m=+422.780083647 I0529 05:09:28.186588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:28.187068 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:28.18706044 +0000 UTC m=+423.137964098 I0529 05:09:28.623330 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:28.623313698 +0000 UTC m=+423.574217356 I0529 05:09:28.637544 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:28.686559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:28.784518 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:28.785035 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:28.785024613 +0000 UTC m=+423.735928271 I0529 05:09:29.034343 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:37.439306 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:09:37.439352 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" condition "Issuing" to 2026-05-29 05:09:37.439341467 +0000 UTC m=+432.390245115 I0529 05:09:37.439946 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" condition "Ready" to 2026-05-29 05:09:37.439940146 +0000 UTC m=+432.390843794 I0529 05:09:37.455665 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w7br4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:37.455716 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:09:37.455823 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" condition "Issuing" to 2026-05-29 05:09:37.455816861 +0000 UTC m=+432.406720519 I0529 05:09:37.735091 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w7br4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:37.745520 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-w7br4-ctngt" condition "Approved" to 2026-05-29 05:09:37.745477531 +0000 UTC m=+432.696381219 I0529 05:09:37.770605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-w7br4-ctngt" condition "Ready" to 2026-05-29 05:09:37.770587942 +0000 UTC m=+432.721491610 I0529 05:09:37.803197 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:37.803147354 +0000 UTC m=+432.754051032 I0529 05:09:37.841338 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w7br4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:37.919365 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w7br4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w7br4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:54.037812 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:09:54.037852 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-29 05:09:54.037842956 +0000 UTC m=+448.988746604 I0529 05:09:54.038185 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-29 05:09:54.038179701 +0000 UTC m=+448.989083349 I0529 05:09:54.092070 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:54.092247 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-29 05:09:54.092232444 +0000 UTC m=+449.043136102 I0529 05:09:54.269570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:54.303467 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xr666" condition "Approved" to 2026-05-29 05:09:54.303441358 +0000 UTC m=+449.254345006 I0529 05:09:54.321691 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xr666" condition "Ready" to 2026-05-29 05:09:54.321677432 +0000 UTC m=+449.272581080 I0529 05:09:54.362996 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:54.362970651 +0000 UTC m=+449.313874319 I0529 05:09:54.381043 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:09:54.381624 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:09:54.381610182 +0000 UTC m=+449.332513850 I0529 05:09:54.400751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:15.436272 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:13:15.436335 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-29 05:13:15.436327105 +0000 UTC m=+650.387230763 I0529 05:13:15.436785 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-29 05:13:15.436750909 +0000 UTC m=+650.387654587 I0529 05:13:15.461293 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:15.461462 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-29 05:13:15.461455011 +0000 UTC m=+650.412358669 I0529 05:13:15.866655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:15.898590 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wwt8h" condition "Approved" to 2026-05-29 05:13:15.898579055 +0000 UTC m=+650.849482703 I0529 05:13:15.920003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wwt8h" condition "Ready" to 2026-05-29 05:13:15.919991688 +0000 UTC m=+650.870895326 I0529 05:13:15.952234 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:13:15.95221547 +0000 UTC m=+650.903119118 I0529 05:13:15.987303 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:15.987921 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:13:15.987908599 +0000 UTC m=+650.938812257 I0529 05:13:15.997610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:16.009659 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:16.010198 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:13:16.01019098 +0000 UTC m=+650.961094628 I0529 05:13:58.718678 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 05:13:58.718645985 +0000 UTC m=+693.669549673 I0529 05:13:58.719419 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 05:13:58.719501 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-29 05:13:58.719493701 +0000 UTC m=+693.670397379 I0529 05:13:58.743241 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:58.743356 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 05:13:58.743346957 +0000 UTC m=+693.694250605 I0529 05:13:59.091729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:59.125033 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xmbxj" condition "Approved" to 2026-05-29 05:13:59.125014629 +0000 UTC m=+694.075918277 I0529 05:13:59.144344 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xmbxj" condition "Ready" to 2026-05-29 05:13:59.144327025 +0000 UTC m=+694.095230673 I0529 05:13:59.181531 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:13:59.181506256 +0000 UTC m=+694.132409924 I0529 05:13:59.205083 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 05:13:59.205327 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 05:13:59.205318059 +0000 UTC m=+694.156221707 I0529 05:13:59.232788 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"