I0505 11:18:05.614048 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 11:18:05.614147 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 11:18:05.614225 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 11:18:05.617857 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 11:18:05.618284 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 11:18:05.618326 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 11:18:05.618340 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 11:18:05.621206 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 11:18:05.635998 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 11:18:05.639797 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 11:18:05.645725 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 11:18:05.648040 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 11:18:05.649850 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 11:18:05.651622 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 11:18:05.653620 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 11:18:05.655420 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 11:18:05.658474 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 11:18:05.658524 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 11:18:05.658630 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 11:18:05.662179 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 11:18:05.662234 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 11:18:05.664241 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 11:18:05.665992 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 11:18:05.666040 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 11:18:05.667980 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 11:18:05.669855 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 11:18:05.671810 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 11:18:05.671834 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 11:18:05.672037 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 11:18:05.674513 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 11:18:05.676621 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 11:18:05.682202 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 11:18:05.686811 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 11:18:05.689654 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.689660 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.690070 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.713112 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.725824 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.740685 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.755441 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.771489 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.786118 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:05.788431 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:18:17.077179 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 11:18:17.077162086 +0000 UTC m=+11.493871559 I0505 11:18:17.844032 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:18:17.844073 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 11:18:17.844064895 +0000 UTC m=+12.260774368 I0505 11:18:17.844002 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 11:18:17.843987094 +0000 UTC m=+12.260696587 E0505 11:18:17.860174 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 11:18:17.860234 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 11:18:17.860226789 +0000 UTC m=+12.276936262 E0505 11:18:17.860255 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 11:18:17.862723 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:18:17.862882 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:18:17.862936 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 11:18:17.862898621 +0000 UTC m=+12.279618784 E0505 11:18:17.868855 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 11:18:17.869171 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:18:17.869201 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:18:17.869288 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 11:18:17.903992 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b2vbl" condition "Approved" to 2026-05-05 11:18:17.903948932 +0000 UTC m=+12.320658435 I0505 11:18:17.923916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b2vbl" condition "Ready" to 2026-05-05 11:18:17.923903371 +0000 UTC m=+12.340612844 I0505 11:18:17.945108 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:18:17.945098995 +0000 UTC m=+12.361808478 I0505 11:18:17.961484 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:18:17.961875 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:18:17.961868517 +0000 UTC m=+12.378577990 I0505 11:18:17.975203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:18:17.976813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:18:22.869982 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:18:22.869972338 +0000 UTC m=+17.286681811 I0505 11:18:45.173766 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:18:45.173751 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 11:18:45.173717836 +0000 UTC m=+39.590427299 I0505 11:18:45.173807 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 11:18:45.173799899 +0000 UTC m=+39.590509362 I0505 11:18:45.189118 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 11:18:45.189107934 +0000 UTC m=+39.605817397 I0505 11:18:45.204233 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:18:45.204335 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 11:18:45.204326957 +0000 UTC m=+39.621036430 I0505 11:18:45.469388 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:18:45.506831 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pvdlx" condition "Approved" to 2026-05-05 11:18:45.506823013 +0000 UTC m=+39.923532476 I0505 11:18:45.540288 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pvdlx" condition "Ready" to 2026-05-05 11:18:45.540278315 +0000 UTC m=+39.956987788 I0505 11:18:45.579874 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:18:45.579859928 +0000 UTC m=+39.996569391 I0505 11:18:45.596770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:18:45.596950 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:18:45.596944981 +0000 UTC m=+40.013654434 I0505 11:18:45.614851 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:22:51.963801 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-185.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:22:51.963847 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-185.nip.io-tls" condition "Issuing" to 2026-05-05 11:22:51.96382835 +0000 UTC m=+286.380537823 I0505 11:22:51.963929 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-185.nip.io-tls" condition "Ready" to 2026-05-05 11:22:51.963916157 +0000 UTC m=+286.380625620 I0505 11:22:51.980194 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-185.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-185.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:22:51.980302 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-185.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:22:51.980336 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-185.nip.io-tls" condition "Issuing" to 2026-05-05 11:22:51.980327944 +0000 UTC m=+286.397037417 I0505 11:22:52.117930 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-185.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-185.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:22:52.128289 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-185.nip.io-tls-6mgjj" condition "Approved" to 2026-05-05 11:22:52.128277726 +0000 UTC m=+286.544987229 I0505 11:22:52.155235 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-185.nip.io-tls-6mgjj" condition "Ready" to 2026-05-05 11:22:52.15522442 +0000 UTC m=+286.571933923 I0505 11:22:52.179413 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-185.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:22:52.17940024 +0000 UTC m=+286.596109713 I0505 11:22:52.201166 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-185.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-185.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:22:52.201729 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-185.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:22:52.201723412 +0000 UTC m=+286.618432865 I0505 11:22:52.217287 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-185.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-185.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:22:52.217622 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-185.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:22:52.2176164 +0000 UTC m=+286.634325863 I0505 11:23:56.907075 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:23:56.907135 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 11:23:56.907107207 +0000 UTC m=+351.323816710 I0505 11:23:56.907554 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:23:56.907542016 +0000 UTC m=+351.324251509 E0505 11:23:56.920296 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 11:23:56.920430 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 11:23:56.920422325 +0000 UTC m=+351.337131808 E0505 11:23:56.920492 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 11:23:56.922991 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:56.923136 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:23:56.923129541 +0000 UTC m=+351.339839004 E0505 11:23:56.930583 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 11:23:56.931066 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:23:56.931179 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:23:56.931281 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 11:23:56.937204 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:56.937276 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:23:56.937263507 +0000 UTC m=+351.353972980 I0505 11:23:56.944636 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xcjv9" condition "Approved" to 2026-05-05 11:23:56.944627916 +0000 UTC m=+351.361337389 I0505 11:23:56.950561 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:23:56.950552796 +0000 UTC m=+351.367262299 I0505 11:23:56.959312 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:56.960277 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xcjv9" condition "Ready" to 2026-05-05 11:23:56.960269199 +0000 UTC m=+351.376978662 I0505 11:23:56.979007 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:23:56.978994218 +0000 UTC m=+351.395703691 I0505 11:23:56.994762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:01.931751 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:24:01.931736968 +0000 UTC m=+356.348446471 I0505 11:24:40.831478 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:24:40.831531 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 11:24:40.831510987 +0000 UTC m=+395.248220450 I0505 11:24:40.831685 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 11:24:40.83167341 +0000 UTC m=+395.248382883 I0505 11:24:40.835700 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 11:24:40.83569628 +0000 UTC m=+395.252405743 I0505 11:24:40.836045 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 11:24:40.836040425 +0000 UTC m=+395.252749888 I0505 11:24:40.836207 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:24:40.836259 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 11:24:40.836252468 +0000 UTC m=+395.252961931 I0505 11:24:40.836557 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:24:40.836574 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 11:24:40.836571332 +0000 UTC m=+395.253280795 I0505 11:24:40.883184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:40.889673 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 11:24:40.889657839 +0000 UTC m=+395.306367302 I0505 11:24:40.891227 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:40.891235 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:40.891278 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 11:24:40.891271663 +0000 UTC m=+395.307981126 I0505 11:24:40.891292 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 11:24:40.891285703 +0000 UTC m=+395.307995166 I0505 11:24:41.036325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:41.051841 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:41.076163 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xtczk" condition "Approved" to 2026-05-05 11:24:41.076149854 +0000 UTC m=+395.492859347 I0505 11:24:41.100890 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rthnw" condition "Approved" to 2026-05-05 11:24:41.100871928 +0000 UTC m=+395.517581381 I0505 11:24:41.129353 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xtczk" condition "Ready" to 2026-05-05 11:24:41.129341779 +0000 UTC m=+395.546051232 I0505 11:24:41.215987 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rthnw" condition "Ready" to 2026-05-05 11:24:41.21597984 +0000 UTC m=+395.632689293 I0505 11:24:41.237562 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:24:41.237547477 +0000 UTC m=+395.654256950 I0505 11:24:41.243226 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:24:41.243214423 +0000 UTC m=+395.659923896 I0505 11:24:41.266115 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:41.266289 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:24:41.266284581 +0000 UTC m=+395.682994044 I0505 11:24:41.273422 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:41.307167 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:41.594677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:41.755692 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hfgf8" condition "Approved" to 2026-05-05 11:24:41.755677766 +0000 UTC m=+396.172387229 I0505 11:24:41.811177 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hfgf8" condition "Ready" to 2026-05-05 11:24:41.811166146 +0000 UTC m=+396.227875629 I0505 11:24:42.330299 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:24:42.330280231 +0000 UTC m=+396.746989724 I0505 11:24:42.396519 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:42.397007 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:24:42.396999112 +0000 UTC m=+396.813708585 I0505 11:24:42.644725 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:42.696231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:49.330801 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:24:49.330849 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" condition "Issuing" to 2026-05-05 11:24:49.330839861 +0000 UTC m=+403.747549364 I0505 11:24:49.330972 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" condition "Ready" to 2026-05-05 11:24:49.330905533 +0000 UTC m=+403.747615026 I0505 11:24:49.345019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:49.345073 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" condition "Ready" to 2026-05-05 11:24:49.345066641 +0000 UTC m=+403.761776114 I0505 11:24:49.642120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:24:49.675846 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nmbfg-trqrk" condition "Approved" to 2026-05-05 11:24:49.675834744 +0000 UTC m=+404.092544217 I0505 11:24:49.705891 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nmbfg-trqrk" condition "Ready" to 2026-05-05 11:24:49.705880211 +0000 UTC m=+404.122589674 I0505 11:24:49.736830 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:24:49.736817483 +0000 UTC m=+404.153526946 I0505 11:24:49.762923 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nmbfg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:01.070648 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:25:01.070689 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 11:25:01.070678405 +0000 UTC m=+415.487387908 I0505 11:25:01.071127 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 11:25:01.071118904 +0000 UTC m=+415.487828407 I0505 11:25:01.088105 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:01.088195 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:25:01.088352 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 11:25:01.088257302 +0000 UTC m=+415.504966795 I0505 11:25:01.486949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:01.503179 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-p5xsr" condition "Approved" to 2026-05-05 11:25:01.503168728 +0000 UTC m=+415.919878191 I0505 11:25:01.534625 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-p5xsr" condition "Ready" to 2026-05-05 11:25:01.534615784 +0000 UTC m=+415.951325237 I0505 11:25:01.557242 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:25:01.557229768 +0000 UTC m=+415.973939241 I0505 11:25:01.574229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:01.574542 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:25:01.574534559 +0000 UTC m=+415.991244032 I0505 11:25:01.580357 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:01.589581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:28:28.496494 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 11:28:28.496460114 +0000 UTC m=+622.913169607 I0505 11:28:28.496532 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:28:28.497079 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 11:28:28.497030121 +0000 UTC m=+622.913739604 I0505 11:28:28.520317 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:28:28.520413 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 11:28:28.520405786 +0000 UTC m=+622.937115259 I0505 11:28:28.653611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:28:28.685113 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-f8zgk" condition "Approved" to 2026-05-05 11:28:28.685102348 +0000 UTC m=+623.101811811 I0505 11:28:28.708381 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-f8zgk" condition "Ready" to 2026-05-05 11:28:28.708361767 +0000 UTC m=+623.125071270 I0505 11:28:28.739542 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:28:28.739529276 +0000 UTC m=+623.156238769 I0505 11:28:28.755800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:28:28.756170 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:28:28.756164286 +0000 UTC m=+623.172873769 I0505 11:28:28.775822 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:28:28.776245 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:28:28.776236892 +0000 UTC m=+623.192946365 I0505 11:29:06.706533 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:29:06.706617 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 11:29:06.70659917 +0000 UTC m=+661.123308663 I0505 11:29:06.706893 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 11:29:06.706875004 +0000 UTC m=+661.123584497 I0505 11:29:06.742108 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:06.742227 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 11:29:06.742219514 +0000 UTC m=+661.158928987 I0505 11:29:07.205535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:07.237057 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9bzmk" condition "Approved" to 2026-05-05 11:29:07.237042099 +0000 UTC m=+661.653751572 I0505 11:29:07.256786 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9bzmk" condition "Ready" to 2026-05-05 11:29:07.256776573 +0000 UTC m=+661.673486046 I0505 11:29:07.287798 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:07.287785659 +0000 UTC m=+661.704495132 I0505 11:29:07.311997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"