I0331 01:19:26.498986 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 01:19:26.499115 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 01:19:26.499206 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 01:19:26.504074 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 01:19:26.504645 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 01:19:26.504663 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 01:19:26.504693 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 01:19:26.507271 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 01:19:26.519520 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 01:19:26.522307 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 01:19:26.525347 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 01:19:26.530560 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 01:19:26.533495 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 01:19:26.535227 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 01:19:26.536864 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 01:19:26.538685 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 01:19:26.542271 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 01:19:26.543506 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 01:19:26.545990 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 01:19:26.546047 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 01:19:26.546132 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 01:19:26.551684 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 01:19:26.554736 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 01:19:26.557801 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 01:19:26.560879 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 01:19:26.560958 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 01:19:26.562954 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 01:19:26.563009 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 01:19:26.567201 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 01:19:26.570853 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 01:19:26.570897 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 01:19:26.570916 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 01:19:26.574645 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 01:19:26.579961 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.580622 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.581979 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.582168 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.582199 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.582366 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.582448 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.582679 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.583750 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:26.682644 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 01:19:43.709930 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 01:19:43.709899327 +0000 UTC m=+17.241968480 I0331 01:19:44.537563 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:19:44.537812 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 01:19:44.537763222 +0000 UTC m=+18.069832385 I0331 01:19:44.537628 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 01:19:44.537608688 +0000 UTC m=+18.069677841 E0331 01:19:44.563661 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 01:19:44.563818 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 01:19:44.563805696 +0000 UTC m=+18.095874859 E0331 01:19:44.563883 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 01:19:44.566904 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:19:44.567014 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:19:44.567105 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 01:19:44.567094615 +0000 UTC m=+18.099163778 E0331 01:19:44.606457 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0331 01:19:44.606539 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 01:19:44.606566 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 01:19:44.606604 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 01:19:44.926631 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hf9sf" condition "Approved" to 2026-03-31 01:19:44.926611438 +0000 UTC m=+18.458680601 I0331 01:19:44.962547 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hf9sf" condition "Ready" to 2026-03-31 01:19:44.962529159 +0000 UTC m=+18.494598312 I0331 01:19:44.992566 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:19:44.992553768 +0000 UTC m=+18.524622921 I0331 01:19:45.156861 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:19:49.607261 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:19:49.607236766 +0000 UTC m=+23.139305929 I0331 01:20:12.854215 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 01:20:12.8541787 +0000 UTC m=+46.386247833 I0331 01:20:12.854253 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:20:12.854364 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 01:20:12.854354284 +0000 UTC m=+46.386423437 I0331 01:20:12.865499 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 01:20:12.865481351 +0000 UTC m=+46.397550484 I0331 01:20:12.876173 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:20:12.876261 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 01:20:12.87625288 +0000 UTC m=+46.408322013 I0331 01:20:13.394702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:20:13.424588 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-2tq75" condition "Approved" to 2026-03-31 01:20:13.424577233 +0000 UTC m=+46.956646356 I0331 01:20:13.452056 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-2tq75" condition "Ready" to 2026-03-31 01:20:13.452041963 +0000 UTC m=+46.984111086 I0331 01:20:13.487074 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:20:13.487057404 +0000 UTC m=+47.019126557 I0331 01:20:13.517462 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:20:13.517709 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:20:13.51770218 +0000 UTC m=+47.049771313 I0331 01:20:13.533100 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:20:13.533360 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:20:13.533354956 +0000 UTC m=+47.065424089 I0331 01:21:59.744072 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:21:59.744519 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 01:21:59.744154373 +0000 UTC m=+153.276223526 I0331 01:21:59.744520 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 01:21:59.743845565 +0000 UTC m=+153.275914728 E0331 01:21:59.757769 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 01:21:59.757813 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-31 01:21:59.757806237 +0000 UTC m=+153.289875360 I0331 01:21:59.757851 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 01:21:59.760859 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:21:59.760942 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 01:21:59.760935342 +0000 UTC m=+153.293004475 E0331 01:21:59.766941 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0331 01:21:59.767223 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 01:21:59.767314 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 01:21:59.767415 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0331 01:21:59.769159 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:21:59.769247 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 01:21:59.769236729 +0000 UTC m=+153.301305882 I0331 01:21:59.769139 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 01:21:59.769129337 +0000 UTC m=+153.301198470 I0331 01:21:59.785363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:21:59.785533 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 01:21:59.785517057 +0000 UTC m=+153.317586210 I0331 01:21:59.989766 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:00.023402 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9bm5m" condition "Approved" to 2026-03-31 01:22:00.023387594 +0000 UTC m=+153.555456747 I0331 01:22:00.053073 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9bm5m" condition "Ready" to 2026-03-31 01:22:00.053056909 +0000 UTC m=+153.585126072 I0331 01:22:00.066931 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:00.092792 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2lsrc" condition "Approved" to 2026-03-31 01:22:00.092777554 +0000 UTC m=+153.624846667 I0331 01:22:00.122184 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2lsrc" condition "Ready" to 2026-03-31 01:22:00.122162163 +0000 UTC m=+153.654231296 I0331 01:22:00.151667 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:22:00.151648334 +0000 UTC m=+153.683717467 I0331 01:22:00.172612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:00.173300 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:22:00.173292569 +0000 UTC m=+153.705361692 I0331 01:22:00.182586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:00.194189 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:04.767627 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:22:04.767614686 +0000 UTC m=+158.299683839 I0331 01:22:04.783518 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-9bm5m" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:22:04.783501134 +0000 UTC m=+158.315570267 I0331 01:22:04.813074 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:22:04.813062267 +0000 UTC m=+158.345131410 I0331 01:22:04.842871 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:04.843239 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:22:04.843216854 +0000 UTC m=+158.375285987 I0331 01:22:04.845184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:04.857463 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:22:04.857864 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:22:04.857854262 +0000 UTC m=+158.389923415 I0331 01:22:04.859596 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:24:31.225858 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:24:31.225951 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Issuing" to 2026-03-31 01:24:31.225916989 +0000 UTC m=+304.757986142 I0331 01:24:31.226395 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready" to 2026-03-31 01:24:31.22638289 +0000 UTC m=+304.758452053 I0331 01:24:31.243565 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:24:31.243649 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready" to 2026-03-31 01:24:31.243638443 +0000 UTC m=+304.775707596 I0331 01:24:31.409883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:24:31.442714 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-s9w4k" condition "Approved" to 2026-03-31 01:24:31.442695937 +0000 UTC m=+304.974765100 I0331 01:24:31.469141 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-s9w4k" condition "Ready" to 2026-03-31 01:24:31.469125275 +0000 UTC m=+305.001194428 I0331 01:24:31.499023 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:24:31.499007644 +0000 UTC m=+305.031076767 I0331 01:24:31.533842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:24:31.534379 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:24:31.53437229 +0000 UTC m=+305.066441423 I0331 01:24:31.542078 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:24:31.555187 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:24:31.555529 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:24:31.555517944 +0000 UTC m=+305.087587067 I0331 01:24:31.557357 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:25:39.695528 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:25:39.695576 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 01:25:39.695555055 +0000 UTC m=+373.227624168 I0331 01:25:39.695663 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 01:25:39.695642857 +0000 UTC m=+373.227712010 E0331 01:25:39.707421 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 01:25:39.707466 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 01:25:39.707457473 +0000 UTC m=+373.239526606 E0331 01:25:39.707514 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 01:25:39.708005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:25:39.708136 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 01:25:39.708122128 +0000 UTC m=+373.240191291 E0331 01:25:39.722807 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 01:25:39.723266 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 01:25:39.723311 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 01:25:39.723362 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 01:25:39.724921 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:25:39.749421 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xj8n8" condition "Approved" to 2026-03-31 01:25:39.749401141 +0000 UTC m=+373.281470304 I0331 01:25:39.761292 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xj8n8" condition "Ready" to 2026-03-31 01:25:39.761281988 +0000 UTC m=+373.293351151 I0331 01:25:39.780647 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:25:39.780630659 +0000 UTC m=+373.312699802 I0331 01:25:39.799805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:25:39.800433 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:25:39.800419211 +0000 UTC m=+373.332488344 I0331 01:25:39.815426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:25:44.724160 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:25:44.724146127 +0000 UTC m=+378.256215290 I0331 01:26:20.777500 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 01:26:20.777483448 +0000 UTC m=+414.309552611 I0331 01:26:20.777604 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:20.777659 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 01:26:20.777652422 +0000 UTC m=+414.309721555 I0331 01:26:20.782722 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 01:26:20.78270483 +0000 UTC m=+414.314773973 I0331 01:26:20.783177 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:20.783211 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 01:26:20.783203752 +0000 UTC m=+414.315272875 I0331 01:26:20.799477 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:20.799508 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 01:26:20.799502066 +0000 UTC m=+414.331571179 I0331 01:26:20.799470 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 01:26:20.799456635 +0000 UTC m=+414.331525758 I0331 01:26:20.804220 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:20.804269 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:20.804285 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 01:26:20.804282028 +0000 UTC m=+414.336351151 I0331 01:26:20.806364 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:20.806402 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 01:26:20.806397808 +0000 UTC m=+414.338466931 I0331 01:26:20.826993 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:20.827060 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 01:26:20.827054484 +0000 UTC m=+414.359123607 I0331 01:26:20.968789 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:20.995056 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9r57x" condition "Approved" to 2026-03-31 01:26:20.995043598 +0000 UTC m=+414.527112731 I0331 01:26:21.020058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-9r57x" condition "Ready" to 2026-03-31 01:26:21.020048947 +0000 UTC m=+414.552118070 I0331 01:26:21.039283 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-76khd" condition "Approved" to 2026-03-31 01:26:21.039270709 +0000 UTC m=+414.571339832 I0331 01:26:21.052359 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:26:21.052351907 +0000 UTC m=+414.584421030 I0331 01:26:21.054614 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-76khd" condition "Ready" to 2026-03-31 01:26:21.05460879 +0000 UTC m=+414.586677913 I0331 01:26:21.072441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:21.081648 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:26:21.081633796 +0000 UTC m=+414.613702929 I0331 01:26:21.101589 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:21.520284 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:21.681688 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-dn2wd" condition "Approved" to 2026-03-31 01:26:21.681670249 +0000 UTC m=+415.213739412 I0331 01:26:21.936107 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-dn2wd" condition "Ready" to 2026-03-31 01:26:21.936092037 +0000 UTC m=+415.468161190 I0331 01:26:22.224736 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:26:22.22471759 +0000 UTC m=+415.756786743 I0331 01:26:22.322776 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:22.323120 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:26:22.323114186 +0000 UTC m=+415.855183319 I0331 01:26:22.573767 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:22.622549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:27.288357 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" condition "Ready" to 2026-03-31 01:26:27.288332079 +0000 UTC m=+420.820401232 I0331 01:26:27.288786 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:27.288838 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" condition "Issuing" to 2026-03-31 01:26:27.288826261 +0000 UTC m=+420.820895424 I0331 01:26:27.302170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:27.302268 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:27.302281 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" condition "Issuing" to 2026-03-31 01:26:27.302276617 +0000 UTC m=+420.834345750 I0331 01:26:27.475635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-n5vlp-6zl5d" condition "Approved" to 2026-03-31 01:26:27.475618947 +0000 UTC m=+421.007688110 I0331 01:26:27.492603 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-n5vlp-6zl5d" condition "Ready" to 2026-03-31 01:26:27.492591987 +0000 UTC m=+421.024661120 I0331 01:26:27.516628 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:26:27.516614872 +0000 UTC m=+421.048684025 I0331 01:26:27.535758 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-n5vlp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:58.712908 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 01:26:58.712884254 +0000 UTC m=+452.244953417 I0331 01:26:58.713330 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:58.713380 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 01:26:58.713368845 +0000 UTC m=+452.245438008 I0331 01:26:58.738137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:26:58.738992 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:26:58.739595 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 01:26:58.739567532 +0000 UTC m=+452.271636765 I0331 01:26:58.930292 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hpp2g" condition "Approved" to 2026-03-31 01:26:58.930271531 +0000 UTC m=+452.462340684 I0331 01:26:58.952448 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hpp2g" condition "Ready" to 2026-03-31 01:26:58.952432232 +0000 UTC m=+452.484501385 I0331 01:26:58.980860 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:26:58.980847911 +0000 UTC m=+452.512917054 I0331 01:26:58.998113 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:30:16.903761 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 01:30:16.903566802 +0000 UTC m=+650.435635935 I0331 01:30:16.903878 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:30:16.904061 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 01:30:16.904050113 +0000 UTC m=+650.436119266 I0331 01:30:16.927348 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:30:16.927606 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 01:30:16.927427245 +0000 UTC m=+650.459496368 I0331 01:30:17.165839 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:30:17.199648 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-2z65p" condition "Approved" to 2026-03-31 01:30:17.199635559 +0000 UTC m=+650.731704692 I0331 01:30:17.226657 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-2z65p" condition "Ready" to 2026-03-31 01:30:17.226645817 +0000 UTC m=+650.758714950 I0331 01:30:17.257746 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:30:17.25772597 +0000 UTC m=+650.789795133 I0331 01:30:17.278908 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:30:17.279381 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:30:17.279373131 +0000 UTC m=+650.811442274 I0331 01:30:17.304582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:32:42.046519 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:32:42.046607 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 01:32:42.04657776 +0000 UTC m=+795.578646903 I0331 01:32:42.046639 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 01:32:42.046624331 +0000 UTC m=+795.578693484 I0331 01:32:42.075128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:32:42.075202 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 01:32:42.075197146 +0000 UTC m=+795.607266269 I0331 01:32:42.245408 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:32:42.286493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-w7689" condition "Approved" to 2026-03-31 01:32:42.286480776 +0000 UTC m=+795.818549909 I0331 01:32:42.302574 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-w7689" condition "Ready" to 2026-03-31 01:32:42.302564095 +0000 UTC m=+795.834633228 I0331 01:32:42.331031 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:32:42.331020467 +0000 UTC m=+795.863089600 I0331 01:32:42.353608 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:32:42.353970 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:32:42.353962019 +0000 UTC m=+795.886031152 I0331 01:32:42.370290 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:32:42.377365 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:32:42.377691 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:32:42.377684179 +0000 UTC m=+795.909753312 I0331 01:33:52.625249 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:33:52.625329 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 01:33:52.625297484 +0000 UTC m=+866.157366617 I0331 01:33:52.625664 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 01:33:52.625648992 +0000 UTC m=+866.157718155 I0331 01:33:52.661468 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:33:52.661746 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:33:52.661865 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 01:33:52.661854487 +0000 UTC m=+866.193923640 I0331 01:33:52.789968 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:33:52.810274 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-hjmnf" condition "Approved" to 2026-03-31 01:33:52.810264642 +0000 UTC m=+866.342333765 I0331 01:33:52.837371 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-hjmnf" condition "Ready" to 2026-03-31 01:33:52.837361742 +0000 UTC m=+866.369430875 I0331 01:33:52.875861 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:33:52.875849141 +0000 UTC m=+866.407918254 I0331 01:33:52.908073 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:33:52.908432 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:33:52.90842456 +0000 UTC m=+866.440493693 I0331 01:33:52.913020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:33:52.928815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:33:52.929287 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:33:52.929274993 +0000 UTC m=+866.461344146 I0331 01:33:52.934848 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:36:58.513689 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 01:36:58.513738 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 01:36:58.513735321 +0000 UTC m=+1052.045804454 I0331 01:36:58.513665 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 01:36:58.513620438 +0000 UTC m=+1052.045689581 I0331 01:36:58.534435 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:36:58.534522 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 01:36:58.534512261 +0000 UTC m=+1052.066581424 I0331 01:36:58.738009 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 01:36:58.771827 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-rbzzs" condition "Approved" to 2026-03-31 01:36:58.771811205 +0000 UTC m=+1052.303880358 I0331 01:36:58.795151 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-rbzzs" condition "Ready" to 2026-03-31 01:36:58.795135136 +0000 UTC m=+1052.327204269 I0331 01:36:58.819818 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 01:36:58.819800768 +0000 UTC m=+1052.351869911 I0331 01:36:58.841210 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"