I0329 01:55:38.370058 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0329 01:55:38.370219 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0329 01:55:38.370352 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0329 01:55:38.375343 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0329 01:55:38.375781 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0329 01:55:38.375787 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0329 01:55:38.375869 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0329 01:55:38.379840 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0329 01:55:38.393453 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0329 01:55:38.397992 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0329 01:55:38.398026 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0329 01:55:38.398118 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0329 01:55:38.401867 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0329 01:55:38.404393 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0329 01:55:38.406024 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0329 01:55:38.411301 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0329 01:55:38.415223 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0329 01:55:38.418761 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0329 01:55:38.420795 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0329 01:55:38.422465 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0329 01:55:38.424293 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0329 01:55:38.426110 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0329 01:55:38.431684 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0329 01:55:38.431739 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0329 01:55:38.431748 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0329 01:55:38.435795 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0329 01:55:38.439874 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0329 01:55:38.443591 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0329 01:55:38.447285 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0329 01:55:38.449033 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0329 01:55:38.449062 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0329 01:55:38.449077 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0329 01:55:38.451388 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0329 01:55:38.454657 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.455023 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.457107 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.457463 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.457940 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.457958 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.458438 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.458679 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.460787 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:38.538005 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0329 01:55:48.108629 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-29 01:55:48.10861623 +0000 UTC m=+9.768476238 I0329 01:55:48.761984 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-29 01:55:48.761971465 +0000 UTC m=+10.421831473 I0329 01:55:48.762650 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 01:55:48.762745 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-29 01:55:48.76273501 +0000 UTC m=+10.422595048 E0329 01:55:48.776401 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0329 01:55:48.776523 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-29 01:55:48.776490266 +0000 UTC m=+10.436350284 E0329 01:55:48.776566 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0329 01:55:48.779150 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:55:48.779263 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-29 01:55:48.779253141 +0000 UTC m=+10.439113189 E0329 01:55:48.788384 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0329 01:55:48.788894 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0329 01:55:48.788954 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0329 01:55:48.789014 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0329 01:55:48.808763 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:55:48.808827 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-29 01:55:48.808819752 +0000 UTC m=+10.468679760 I0329 01:55:48.829647 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-v24rt" condition "Approved" to 2026-03-29 01:55:48.829631729 +0000 UTC m=+10.489491727 I0329 01:55:48.843331 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-v24rt" condition "Ready" to 2026-03-29 01:55:48.843320403 +0000 UTC m=+10.503180411 I0329 01:55:48.868360 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:55:48.868346324 +0000 UTC m=+10.528206342 I0329 01:55:48.885081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:55:48.885290 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:55:48.885283843 +0000 UTC m=+10.545143851 I0329 01:55:48.903074 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:55:53.789476 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:55:53.789463735 +0000 UTC m=+15.449323763 I0329 01:56:14.487378 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-29 01:56:14.48734683 +0000 UTC m=+36.147206828 I0329 01:56:14.487524 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 01:56:14.487610 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-29 01:56:14.487601155 +0000 UTC m=+36.147461163 I0329 01:56:14.498261 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-29 01:56:14.498251038 +0000 UTC m=+36.158111046 I0329 01:56:14.507179 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:56:14.507273 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 01:56:14.507309 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-29 01:56:14.507300739 +0000 UTC m=+36.167160777 I0329 01:56:14.664959 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-xwbhh" condition "Approved" to 2026-03-29 01:56:14.664947472 +0000 UTC m=+36.324807480 I0329 01:56:14.692655 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-xwbhh" condition "Ready" to 2026-03-29 01:56:14.692639768 +0000 UTC m=+36.352499796 I0329 01:56:14.720936 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:56:14.720925535 +0000 UTC m=+36.380785543 I0329 01:56:14.749737 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:56:14.750294 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:56:14.750285334 +0000 UTC m=+36.410145362 I0329 01:56:14.768238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:56:14.768523 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:56:14.768517019 +0000 UTC m=+36.428377027 I0329 01:58:06.749408 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 01:58:06.749529 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-29 01:58:06.749479303 +0000 UTC m=+148.409339331 I0329 01:58:06.749575 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-29 01:58:06.749558005 +0000 UTC m=+148.409418013 E0329 01:58:06.765335 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0329 01:58:06.765401 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-29 01:58:06.765394887 +0000 UTC m=+148.425254895 I0329 01:58:06.765443 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0329 01:58:06.768011 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:06.768087 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-29 01:58:06.768078981 +0000 UTC m=+148.427938989 E0329 01:58:06.780110 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0329 01:58:06.780205 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0329 01:58:06.780233 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0329 01:58:06.780266 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0329 01:58:06.784641 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 01:58:06.784672 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-29 01:58:06.784665049 +0000 UTC m=+148.444525057 I0329 01:58:06.784825 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-29 01:58:06.784814552 +0000 UTC m=+148.444674570 I0329 01:58:06.800893 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:06.801032 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-29 01:58:06.800977482 +0000 UTC m=+148.460837490 I0329 01:58:06.933032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:06.960795 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-dw5bm" condition "Approved" to 2026-03-29 01:58:06.960771754 +0000 UTC m=+148.620631782 I0329 01:58:06.977408 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:06.978814 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-dw5bm" condition "Ready" to 2026-03-29 01:58:06.978798691 +0000 UTC m=+148.638658699 I0329 01:58:07.006290 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bvq6g" condition "Approved" to 2026-03-29 01:58:07.006275954 +0000 UTC m=+148.666135952 I0329 01:58:07.032304 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bvq6g" condition "Ready" to 2026-03-29 01:58:07.032289029 +0000 UTC m=+148.692149037 I0329 01:58:07.060500 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:58:07.060487107 +0000 UTC m=+148.720347125 I0329 01:58:07.078788 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:07.079311 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:58:07.07929586 +0000 UTC m=+148.739155898 I0329 01:58:07.098367 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:07.098905 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:58:07.098890027 +0000 UTC m=+148.758750065 I0329 01:58:07.101234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:11.781665 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:58:11.781649513 +0000 UTC m=+153.441509521 I0329 01:58:11.799578 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-dw5bm" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:58:11.799567468 +0000 UTC m=+153.459427476 I0329 01:58:11.847000 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:58:11.846979175 +0000 UTC m=+153.506839203 I0329 01:58:11.870504 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0329 01:58:11.870787 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 01:58:11.870782077 +0000 UTC m=+153.530642075 I0329 01:58:11.899694 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:01:04.101162 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Ready" to 2026-03-29 02:01:04.101107272 +0000 UTC m=+325.760967300 I0329 02:01:04.101350 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-221.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:01:04.101409 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Issuing" to 2026-03-29 02:01:04.101396987 +0000 UTC m=+325.761256995 I0329 02:01:04.120706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:01:04.120795 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-221.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:01:04.120814 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Issuing" to 2026-03-29 02:01:04.120806815 +0000 UTC m=+325.780666823 I0329 02:01:04.487147 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-221.nip.io-tls-5z2vk" condition "Approved" to 2026-03-29 02:01:04.487132261 +0000 UTC m=+326.146992289 I0329 02:01:04.505441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-221.nip.io-tls-5z2vk" condition "Ready" to 2026-03-29 02:01:04.505424645 +0000 UTC m=+326.165284653 I0329 02:01:04.532755 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:01:04.532735931 +0000 UTC m=+326.192595949 I0329 02:01:04.555936 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:01:04.556551 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-221.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:01:04.556537446 +0000 UTC m=+326.216397484 I0329 02:01:04.576766 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-221.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-221.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:14.917704 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-29 02:02:14.917644297 +0000 UTC m=+396.577504325 I0329 02:02:14.917780 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:02:14.917929 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-29 02:02:14.917917982 +0000 UTC m=+396.577777990 I0329 02:02:14.928959 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:14.929040 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:02:14.929067 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-29 02:02:14.929060085 +0000 UTC m=+396.588920113 E0329 02:02:14.931012 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0329 02:02:14.931086 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-29 02:02:14.931074645 +0000 UTC m=+396.590934653 E0329 02:02:14.931161 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0329 02:02:14.940461 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0329 02:02:14.940547 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0329 02:02:14.940575 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0329 02:02:14.940611 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0329 02:02:14.967280 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:14.970044 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-r2gtm" condition "Approved" to 2026-03-29 02:02:14.970026164 +0000 UTC m=+396.629886172 I0329 02:02:14.982467 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-r2gtm" condition "Ready" to 2026-03-29 02:02:14.982452152 +0000 UTC m=+396.642312160 I0329 02:02:15.005399 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:15.00538084 +0000 UTC m=+396.665240868 I0329 02:02:15.022363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:19.941901 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:19.941885947 +0000 UTC m=+401.601745985 I0329 02:02:57.371086 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-29 02:02:57.371070025 +0000 UTC m=+439.030930033 I0329 02:02:57.371430 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:02:57.371451 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-29 02:02:57.371447942 +0000 UTC m=+439.031307950 I0329 02:02:57.374261 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:02:57.374271 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-29 02:02:57.374254399 +0000 UTC m=+439.034114397 I0329 02:02:57.374287 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-29 02:02:57.374283449 +0000 UTC m=+439.034143457 I0329 02:02:57.375619 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:02:57.375650 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-29 02:02:57.375643646 +0000 UTC m=+439.035503634 I0329 02:02:57.376125 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-29 02:02:57.376120305 +0000 UTC m=+439.035980303 I0329 02:02:57.400899 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.400976 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:02:57.400995 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.401010 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-29 02:02:57.401001073 +0000 UTC m=+439.060861081 I0329 02:02:57.401064 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:02:57.402526 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-29 02:02:57.402517754 +0000 UTC m=+439.062377762 I0329 02:02:57.404474 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.404852 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-29 02:02:57.40484077 +0000 UTC m=+439.064700778 I0329 02:02:57.516632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.529721 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-bgksv" condition "Approved" to 2026-03-29 02:02:57.529700107 +0000 UTC m=+439.189560135 I0329 02:02:57.547375 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-bgksv" condition "Ready" to 2026-03-29 02:02:57.547360701 +0000 UTC m=+439.207220729 I0329 02:02:57.571969 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:57.571959432 +0000 UTC m=+439.231819440 I0329 02:02:57.589749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.590012 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:57.590005003 +0000 UTC m=+439.249865011 I0329 02:02:57.600760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.619143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.749420 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rtppk" condition "Approved" to 2026-03-29 02:02:57.749398491 +0000 UTC m=+439.409258519 I0329 02:02:57.750120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.770115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rtppk" condition "Ready" to 2026-03-29 02:02:57.770105625 +0000 UTC m=+439.429965613 I0329 02:02:57.816260 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:57.974502 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:57.974482412 +0000 UTC m=+439.634342420 I0329 02:02:58.119122 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:58.119727 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:58.119715446 +0000 UTC m=+439.779575484 I0329 02:02:58.172998 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9294j" condition "Approved" to 2026-03-29 02:02:58.172979721 +0000 UTC m=+439.832839729 I0329 02:02:58.422642 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9294j" condition "Ready" to 2026-03-29 02:02:58.422623194 +0000 UTC m=+440.082483232 I0329 02:02:58.716565 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:58.967633 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:58.967613013 +0000 UTC m=+440.627473041 I0329 02:02:59.012952 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:59.118850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:02:59.119393 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:02:59.119385138 +0000 UTC m=+440.779245146 I0329 02:02:59.321345 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:07.356510 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:03:07.356557 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" condition "Issuing" to 2026-03-29 02:03:07.356544237 +0000 UTC m=+449.016404245 I0329 02:03:07.357069 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" condition "Ready" to 2026-03-29 02:03:07.357060537 +0000 UTC m=+449.016920545 I0329 02:03:07.380488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:07.380595 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:03:07.380611 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" condition "Issuing" to 2026-03-29 02:03:07.380605829 +0000 UTC m=+449.040465837 I0329 02:03:07.623603 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2q9tj-ffvp5" condition "Approved" to 2026-03-29 02:03:07.623584227 +0000 UTC m=+449.283444235 I0329 02:03:07.646664 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2q9tj-ffvp5" condition "Ready" to 2026-03-29 02:03:07.646651229 +0000 UTC m=+449.306511227 I0329 02:03:07.690501 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:03:07.690485845 +0000 UTC m=+449.350345843 I0329 02:03:07.720393 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:07.720703 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:03:07.720696049 +0000 UTC m=+449.380556057 I0329 02:03:07.748297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:07.748569 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2q9tj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:03:07.748563597 +0000 UTC m=+449.408423605 I0329 02:03:35.478892 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:03:35.478931 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-29 02:03:35.478922766 +0000 UTC m=+477.138782774 I0329 02:03:35.479110 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-29 02:03:35.47910432 +0000 UTC m=+477.138964328 I0329 02:03:35.495577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:35.495976 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:03:35.496014 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-29 02:03:35.496006377 +0000 UTC m=+477.155866385 I0329 02:03:35.687248 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:35.699626 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-75qwd" condition "Approved" to 2026-03-29 02:03:35.6996067 +0000 UTC m=+477.359466708 I0329 02:03:35.721957 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-75qwd" condition "Ready" to 2026-03-29 02:03:35.721940496 +0000 UTC m=+477.381800524 I0329 02:03:35.749817 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:03:35.749797893 +0000 UTC m=+477.409657901 I0329 02:03:35.768334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:35.769754 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:03:35.769743832 +0000 UTC m=+477.429603870 I0329 02:03:35.779238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:35.786571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:03:35.786958 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:03:35.786951156 +0000 UTC m=+477.446811164 I0329 02:06:56.592810 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:06:56.592842 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-29 02:06:56.592785196 +0000 UTC m=+678.252645234 I0329 02:06:56.592898 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-29 02:06:56.592890678 +0000 UTC m=+678.252750716 I0329 02:06:56.609219 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:06:56.609342 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:06:56.609371 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-29 02:06:56.609363517 +0000 UTC m=+678.269223525 I0329 02:06:57.072105 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wlc2b" condition "Approved" to 2026-03-29 02:06:57.07208766 +0000 UTC m=+678.731947668 I0329 02:06:57.092139 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wlc2b" condition "Ready" to 2026-03-29 02:06:57.092126971 +0000 UTC m=+678.751986979 I0329 02:06:57.124315 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:06:57.124303693 +0000 UTC m=+678.784163691 I0329 02:06:57.146316 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:09:19.815773 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:09:19.815759 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-29 02:09:19.815730692 +0000 UTC m=+821.475590730 I0329 02:09:19.815819 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-29 02:09:19.815808373 +0000 UTC m=+821.475668411 I0329 02:09:19.828850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:09:19.828908 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:09:19.828924 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-29 02:09:19.828919015 +0000 UTC m=+821.488779023 I0329 02:09:20.154876 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-7xbk6" condition "Approved" to 2026-03-29 02:09:20.15486136 +0000 UTC m=+821.814721378 I0329 02:09:20.173391 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-7xbk6" condition "Ready" to 2026-03-29 02:09:20.173380699 +0000 UTC m=+821.833240707 I0329 02:09:20.201055 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:09:20.201038901 +0000 UTC m=+821.860898939 I0329 02:09:20.217650 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:09:20.217874 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:09:20.217869786 +0000 UTC m=+821.877729774 I0329 02:09:20.235200 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:10:24.263391 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-29 02:10:24.263342217 +0000 UTC m=+885.923202235 I0329 02:10:24.263439 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:10:24.263476 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-29 02:10:24.263471769 +0000 UTC m=+885.923331767 I0329 02:10:24.282969 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:10:24.283029 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-29 02:10:24.28302342 +0000 UTC m=+885.942883418 I0329 02:10:24.352837 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:10:24.379890 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-cwttt" condition "Approved" to 2026-03-29 02:10:24.379875393 +0000 UTC m=+886.039735421 I0329 02:10:24.398386 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-cwttt" condition "Ready" to 2026-03-29 02:10:24.398373761 +0000 UTC m=+886.058233769 I0329 02:10:24.424822 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:10:24.424808079 +0000 UTC m=+886.084668087 I0329 02:10:24.448004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:10:24.505688 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:13:22.071272 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:13:22.071317 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-29 02:13:22.071279833 +0000 UTC m=+1063.731139861 I0329 02:13:22.071331 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-29 02:13:22.071322774 +0000 UTC m=+1063.731182782 I0329 02:13:22.087827 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:13:22.087886 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0329 02:13:22.087901 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-29 02:13:22.087895705 +0000 UTC m=+1063.747755703 I0329 02:13:22.274925 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5v2h4" condition "Approved" to 2026-03-29 02:13:22.274913783 +0000 UTC m=+1063.934773781 I0329 02:13:22.291748 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5v2h4" condition "Ready" to 2026-03-29 02:13:22.291733818 +0000 UTC m=+1063.951593826 I0329 02:13:22.315050 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:13:22.315039413 +0000 UTC m=+1063.974899411 I0329 02:13:22.331731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0329 02:13:22.332177 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-29 02:13:22.332169694 +0000 UTC m=+1063.992029692 I0329 02:13:22.350040 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"