I0414 10:41:20.920588 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0414 10:41:20.920667 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0414 10:41:20.920749 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0414 10:41:20.922979 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0414 10:41:20.923575 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0414 10:41:20.923665 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0414 10:41:20.923692 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0414 10:41:20.926721 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0414 10:41:20.943414 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0414 10:41:20.947921 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0414 10:41:20.955197 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0414 10:41:20.957826 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0414 10:41:20.960574 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0414 10:41:20.962910 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0414 10:41:20.962944 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0414 10:41:20.962975 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0414 10:41:20.965338 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0414 10:41:20.967148 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0414 10:41:20.969267 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0414 10:41:20.973993 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0414 10:41:20.977724 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0414 10:41:20.977754 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0414 10:41:20.977768 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0414 10:41:20.977795 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0414 10:41:20.980908 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0414 10:41:20.982618 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0414 10:41:20.984373 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0414 10:41:20.986176 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0414 10:41:20.987919 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0414 10:41:20.989617 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0414 10:41:20.991545 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0414 10:41:20.993945 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0414 10:41:20.999443 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0414 10:41:21.001950 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.002222 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.002340 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.015547 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.037263 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.049474 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.085089 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.088941 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.103792 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:21.114571 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 10:41:32.156798 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-14 10:41:32.156744095 +0000 UTC m=+11.266813159 I0414 10:41:32.898292 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-14 10:41:32.898282498 +0000 UTC m=+12.008351542 I0414 10:41:32.898768 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:41:32.898855 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-14 10:41:32.898844401 +0000 UTC m=+12.008913475 E0414 10:41:32.914996 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 10:41:32.915062 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-14 10:41:32.915056166 +0000 UTC m=+12.025125200 E0414 10:41:32.915085 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 10:41:32.919226 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:41:32.919293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:41:32.919317 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-14 10:41:32.919310671 +0000 UTC m=+12.029379715 E0414 10:41:32.927559 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0414 10:41:32.928153 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 10:41:32.928287 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 10:41:32.928358 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0414 10:41:32.960835 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m4rfz" condition "Approved" to 2026-04-14 10:41:32.960823417 +0000 UTC m=+12.070892461 I0414 10:41:32.973012 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m4rfz" condition "Ready" to 2026-04-14 10:41:32.973002681 +0000 UTC m=+12.083071725 I0414 10:41:32.994897 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:41:32.994880624 +0000 UTC m=+12.104949688 I0414 10:41:33.013997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:41:33.014356 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:41:33.014347261 +0000 UTC m=+12.124416325 I0414 10:41:33.030728 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:41:37.928574 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:41:37.928560735 +0000 UTC m=+17.038629779 I0414 10:42:01.186400 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:42:01.186400 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-14 10:42:01.186375388 +0000 UTC m=+40.296444432 I0414 10:42:01.186434 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-14 10:42:01.186429619 +0000 UTC m=+40.296498653 I0414 10:42:01.197004 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-14 10:42:01.196993815 +0000 UTC m=+40.307062839 I0414 10:42:01.222709 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:42:01.222787 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-14 10:42:01.222780114 +0000 UTC m=+40.332849168 I0414 10:42:01.559455 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:42:01.588459 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-k89dz" condition "Approved" to 2026-04-14 10:42:01.588449255 +0000 UTC m=+40.698518299 I0414 10:42:01.623470 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-k89dz" condition "Ready" to 2026-04-14 10:42:01.623453815 +0000 UTC m=+40.733522879 I0414 10:42:01.655955 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:42:01.655943938 +0000 UTC m=+40.766012972 I0414 10:42:01.673367 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:42:01.673745 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:42:01.673739039 +0000 UTC m=+40.783808073 I0414 10:42:01.691162 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:46:16.322282 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-65.nip.io-tls" condition "Ready" to 2026-04-14 10:46:16.322234555 +0000 UTC m=+295.432303619 I0414 10:46:16.322920 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-65.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:46:16.322952 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-65.nip.io-tls" condition "Issuing" to 2026-04-14 10:46:16.322944986 +0000 UTC m=+295.433014060 I0414 10:46:16.341266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-65.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-65.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:46:16.341513 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-65.nip.io-tls" condition "Ready" to 2026-04-14 10:46:16.34150405 +0000 UTC m=+295.451573124 I0414 10:46:16.654173 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-65.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-65.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:46:16.688708 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-65.nip.io-tls-5z2ns" condition "Approved" to 2026-04-14 10:46:16.688694423 +0000 UTC m=+295.798763497 I0414 10:46:16.719006 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-65.nip.io-tls-5z2ns" condition "Ready" to 2026-04-14 10:46:16.718994773 +0000 UTC m=+295.829063817 I0414 10:46:16.746887 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-65.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:46:16.746876319 +0000 UTC m=+295.856945343 I0414 10:46:16.765176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-65.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-65.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:46:16.765681 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-65.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:46:16.76567368 +0000 UTC m=+295.875742724 I0414 10:46:16.786679 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-65.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-65.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:46:16.787135 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-65.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:46:16.787124792 +0000 UTC m=+295.897193836 I0414 10:47:20.781803 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:47:20.781815 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-14 10:47:20.781803261 +0000 UTC m=+359.891872305 I0414 10:47:20.781836 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-14 10:47:20.781831301 +0000 UTC m=+359.891900345 E0414 10:47:20.791759 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 10:47:20.791788 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-14 10:47:20.791783298 +0000 UTC m=+359.901852342 E0414 10:47:20.791825 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 10:47:20.793587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:47:20.793770 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:47:20.793791 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-14 10:47:20.793786457 +0000 UTC m=+359.903855501 E0414 10:47:20.800077 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0414 10:47:20.800240 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 10:47:20.800325 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 10:47:20.800412 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0414 10:47:20.827160 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-g2j5z" condition "Approved" to 2026-04-14 10:47:20.827146223 +0000 UTC m=+359.937215267 I0414 10:47:20.838610 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-g2j5z" condition "Ready" to 2026-04-14 10:47:20.838597796 +0000 UTC m=+359.948666830 I0414 10:47:20.860402 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:47:20.860385115 +0000 UTC m=+359.970454189 I0414 10:47:20.879126 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:47:20.917681 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:47:25.800987 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:47:25.800965982 +0000 UTC m=+364.911035046 I0414 10:48:06.222422 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-14 10:48:06.222402882 +0000 UTC m=+405.332471916 I0414 10:48:06.222686 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:06.222699 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-14 10:48:06.222696718 +0000 UTC m=+405.332765752 I0414 10:48:06.247312 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-14 10:48:06.247299902 +0000 UTC m=+405.357368936 I0414 10:48:06.247374 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-14 10:48:06.247354044 +0000 UTC m=+405.357423088 I0414 10:48:06.247801 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:06.247862 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-14 10:48:06.247857175 +0000 UTC m=+405.357926219 I0414 10:48:06.256773 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:06.256828 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-14 10:48:06.256816533 +0000 UTC m=+405.366885567 I0414 10:48:06.262383 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:06.267023 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:06.267065 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-14 10:48:06.26705681 +0000 UTC m=+405.377125854 I0414 10:48:06.288186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:06.288323 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:06.288409 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-14 10:48:06.288396731 +0000 UTC m=+405.398465795 I0414 10:48:06.293292 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:06.293402 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:06.293453 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-14 10:48:06.293420122 +0000 UTC m=+405.403489156 I0414 10:48:06.471528 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-z69t6" condition "Approved" to 2026-04-14 10:48:06.471514914 +0000 UTC m=+405.581583968 I0414 10:48:06.476798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:06.483551 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hlb7m" condition "Approved" to 2026-04-14 10:48:06.483544271 +0000 UTC m=+405.593613305 I0414 10:48:06.504019 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-z69t6" condition "Ready" to 2026-04-14 10:48:06.504006064 +0000 UTC m=+405.614075108 I0414 10:48:06.514467 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hlb7m" condition "Ready" to 2026-04-14 10:48:06.514453445 +0000 UTC m=+405.624522479 I0414 10:48:06.570983 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:06.570974556 +0000 UTC m=+405.681043590 I0414 10:48:06.574368 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:06.574356341 +0000 UTC m=+405.684425385 I0414 10:48:06.610212 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-d8p6q" condition "Approved" to 2026-04-14 10:48:06.610200324 +0000 UTC m=+405.720269358 I0414 10:48:06.636735 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:06.636735 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:06.636991 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:06.636985737 +0000 UTC m=+405.747054761 I0414 10:48:06.637296 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:06.637282604 +0000 UTC m=+405.747351658 I0414 10:48:06.722523 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-d8p6q" condition "Ready" to 2026-04-14 10:48:06.722514901 +0000 UTC m=+405.832583935 I0414 10:48:07.282758 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:07.282996 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:07.282990284 +0000 UTC m=+406.393059318 E0414 10:48:07.314341 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-5hpwl\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0414 10:48:07.616873 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:07.666495 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:07.713466 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:07.815470 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:07.815452485 +0000 UTC m=+406.925521559 I0414 10:48:08.016793 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:08.017195 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:08.01718785 +0000 UTC m=+407.127256904 I0414 10:48:08.214747 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:16.454590 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" condition "Ready" to 2026-04-14 10:48:16.454568208 +0000 UTC m=+415.564637242 I0414 10:48:16.455147 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:16.455167 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" condition "Issuing" to 2026-04-14 10:48:16.455162451 +0000 UTC m=+415.565231485 I0414 10:48:16.468493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2trpw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:16.468664 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" condition "Ready" to 2026-04-14 10:48:16.468654723 +0000 UTC m=+415.578723767 I0414 10:48:16.601993 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2trpw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:16.629594 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2trpw-h624c" condition "Approved" to 2026-04-14 10:48:16.629583713 +0000 UTC m=+415.739652757 I0414 10:48:16.646462 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2trpw-h624c" condition "Ready" to 2026-04-14 10:48:16.646449418 +0000 UTC m=+415.756518442 I0414 10:48:16.691814 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:16.691795622 +0000 UTC m=+415.801864686 I0414 10:48:16.730667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2trpw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:16.731016 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:16.731010582 +0000 UTC m=+415.841079626 I0414 10:48:16.808129 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2trpw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2trpw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:29.073199 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-14 10:48:29.073184595 +0000 UTC m=+428.183253639 I0414 10:48:29.074869 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:48:29.074963 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-14 10:48:29.074900752 +0000 UTC m=+428.184969826 I0414 10:48:29.100808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:29.100872 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-14 10:48:29.100865881 +0000 UTC m=+428.210934905 I0414 10:48:29.322713 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:48:29.358515 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-8kz58" condition "Approved" to 2026-04-14 10:48:29.358501908 +0000 UTC m=+428.468570942 I0414 10:48:29.379657 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-8kz58" condition "Ready" to 2026-04-14 10:48:29.379646675 +0000 UTC m=+428.489715719 I0414 10:48:29.406832 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:48:29.40682087 +0000 UTC m=+428.516889894 I0414 10:48:29.426419 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:51:52.810036 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-14 10:51:52.810002681 +0000 UTC m=+631.920071735 I0414 10:51:52.810302 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:51:52.810361 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-14 10:51:52.810354837 +0000 UTC m=+631.920423861 I0414 10:51:52.827955 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:51:52.828057 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-14 10:51:52.828047771 +0000 UTC m=+631.938116825 I0414 10:51:52.961669 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:51:53.001346 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7pphr" condition "Approved" to 2026-04-14 10:51:53.001333442 +0000 UTC m=+632.111402506 I0414 10:51:53.022851 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7pphr" condition "Ready" to 2026-04-14 10:51:53.02283655 +0000 UTC m=+632.132905594 I0414 10:51:53.055871 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:51:53.055853567 +0000 UTC m=+632.165922591 I0414 10:51:53.088630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:51:53.089137 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:51:53.089130087 +0000 UTC m=+632.199199141 I0414 10:51:53.092865 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:51:53.109862 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:51:53.110154 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:51:53.110147457 +0000 UTC m=+632.220216501 I0414 10:52:35.091943 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-14 10:52:35.09192803 +0000 UTC m=+674.201997064 I0414 10:52:35.091956 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:52:35.092007 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-14 10:52:35.092000061 +0000 UTC m=+674.202069125 I0414 10:52:35.126108 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:52:35.126268 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-14 10:52:35.126240908 +0000 UTC m=+674.236309952 I0414 10:52:35.267790 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:52:35.299514 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-bjl82" condition "Approved" to 2026-04-14 10:52:35.299502929 +0000 UTC m=+674.409571973 I0414 10:52:35.322929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-bjl82" condition "Ready" to 2026-04-14 10:52:35.322911173 +0000 UTC m=+674.432980217 I0414 10:52:35.360364 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:52:35.360348044 +0000 UTC m=+674.470417098 I0414 10:52:35.381369 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"