I0512 16:30:07.907974 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0512 16:30:07.908092 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0512 16:30:07.908186 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0512 16:30:07.916350 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0512 16:30:07.916809 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0512 16:30:07.916856 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0512 16:30:07.916912 1 controller.go:156] "cert-manager/controller: starting leader election" I0512 16:30:07.920183 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0512 16:30:07.935574 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0512 16:30:07.939888 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0512 16:30:07.942817 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0512 16:30:07.944975 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0512 16:30:07.945349 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0512 16:30:07.953004 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0512 16:30:07.956392 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0512 16:30:07.958744 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0512 16:30:07.958772 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0512 16:30:07.958784 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0512 16:30:07.958832 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0512 16:30:07.961339 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0512 16:30:07.963578 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0512 16:30:07.965497 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0512 16:30:07.967466 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0512 16:30:07.973091 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0512 16:30:07.976210 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0512 16:30:07.978761 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0512 16:30:07.978834 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0512 16:30:07.980801 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0512 16:30:07.981150 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0512 16:30:07.983441 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0512 16:30:07.985256 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0512 16:30:07.987182 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0512 16:30:07.989487 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0512 16:30:20.483098 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-12 16:30:20.483077982 +0000 UTC m=+12.615566428 I0512 16:30:21.290690 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-12 16:30:21.290670936 +0000 UTC m=+13.423159412 I0512 16:30:21.291585 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:30:21.291656 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-12 16:30:21.29164838 +0000 UTC m=+13.424136856 I0512 16:30:21.305581 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:30:21.306687 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:30:21.306723 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-12 16:30:21.306713273 +0000 UTC m=+13.439201719 E0512 16:30:21.306872 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 16:30:21.307019 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-12 16:30:21.307009013 +0000 UTC m=+13.439497489 E0512 16:30:21.307087 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 16:30:21.322389 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0512 16:30:21.322622 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 16:30:21.322756 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 16:30:21.323206 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0512 16:30:21.351882 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:30:21.356780 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-v5cc5" condition "Approved" to 2026-05-12 16:30:21.356769216 +0000 UTC m=+13.489257642 I0512 16:30:21.369984 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-v5cc5" condition "Ready" to 2026-05-12 16:30:21.369971234 +0000 UTC m=+13.502459680 I0512 16:30:21.394971 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:30:21.39495708 +0000 UTC m=+13.527445526 I0512 16:30:21.416989 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:30:21.464089 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:30:26.323959 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:30:26.323910641 +0000 UTC m=+18.456399107 I0512 16:30:48.796546 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-12 16:30:48.796530603 +0000 UTC m=+40.929019059 I0512 16:30:48.796865 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:30:48.796885 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-12 16:30:48.796881392 +0000 UTC m=+40.929369838 I0512 16:30:48.817869 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:30:48.817984 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:30:48.818045 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-12 16:30:48.818036255 +0000 UTC m=+40.950524711 I0512 16:30:48.821624 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-12 16:30:48.821600009 +0000 UTC m=+40.954088455 I0512 16:30:48.987902 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ctb6s" condition "Approved" to 2026-05-12 16:30:48.987886815 +0000 UTC m=+41.120375261 I0512 16:30:49.017219 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ctb6s" condition "Ready" to 2026-05-12 16:30:49.017205269 +0000 UTC m=+41.149693715 I0512 16:30:49.054821 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:30:49.054804225 +0000 UTC m=+41.187292671 I0512 16:30:49.074547 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:30:49.075020 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:30:49.075014479 +0000 UTC m=+41.207502925 I0512 16:30:49.100270 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:33:23.425815 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-9.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:33:23.425851 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Issuing" to 2026-05-12 16:33:23.425841786 +0000 UTC m=+195.558330252 I0512 16:33:23.426440 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Ready" to 2026-05-12 16:33:23.426432723 +0000 UTC m=+195.558921189 I0512 16:33:23.453936 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:33:23.453987 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Ready" to 2026-05-12 16:33:23.453980623 +0000 UTC m=+195.586469069 I0512 16:33:23.559470 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:33:23.597143 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-9.nip.io-tls-bxs4v" condition "Approved" to 2026-05-12 16:33:23.597127537 +0000 UTC m=+195.729615983 I0512 16:33:23.622420 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-9.nip.io-tls-bxs4v" condition "Ready" to 2026-05-12 16:33:23.622401621 +0000 UTC m=+195.754890067 I0512 16:33:23.651527 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-9.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:33:23.651507649 +0000 UTC m=+195.783996095 I0512 16:33:23.670341 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:33:23.718058 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-9.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-9.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:34:20.640483 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-12 16:34:20.640461708 +0000 UTC m=+252.772950154 I0512 16:34:20.640618 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:34:20.640661 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-12 16:34:20.640654836 +0000 UTC m=+252.773143282 E0512 16:34:20.658469 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 16:34:20.658648 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-12 16:34:20.658639019 +0000 UTC m=+252.791127475 E0512 16:34:20.658717 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 16:34:20.659469 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:34:20.659667 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:34:20.659766 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-12 16:34:20.659758605 +0000 UTC m=+252.792247061 E0512 16:34:20.670683 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0512 16:34:20.670877 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 16:34:20.670922 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 16:34:20.670971 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0512 16:34:20.698114 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hpxl5" condition "Approved" to 2026-05-12 16:34:20.698092138 +0000 UTC m=+252.830580584 I0512 16:34:20.710404 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hpxl5" condition "Ready" to 2026-05-12 16:34:20.710384295 +0000 UTC m=+252.842872761 I0512 16:34:20.731219 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:34:20.731202446 +0000 UTC m=+252.863690892 I0512 16:34:20.756196 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:34:20.756904 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:34:20.756893677 +0000 UTC m=+252.889382123 I0512 16:34:20.758839 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:34:20.769694 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:34:25.671368 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:34:25.671345934 +0000 UTC m=+257.803834400 I0512 16:35:07.002269 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-12 16:35:07.002240751 +0000 UTC m=+299.134729217 I0512 16:35:07.002749 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:07.002773 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-12 16:35:07.002769248 +0000 UTC m=+299.135257694 I0512 16:35:07.013697 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:07.013724 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-12 16:35:07.013718517 +0000 UTC m=+299.146206953 I0512 16:35:07.021209 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-12 16:35:07.021196254 +0000 UTC m=+299.153684680 I0512 16:35:07.021801 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:07.021818 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-12 16:35:07.021815114 +0000 UTC m=+299.154303550 I0512 16:35:07.022005 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-12 16:35:07.02200205 +0000 UTC m=+299.154490486 I0512 16:35:07.041509 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:07.041570 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:07.041585 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-12 16:35:07.041581103 +0000 UTC m=+299.174069529 I0512 16:35:07.072482 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:07.072559 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-12 16:35:07.072550431 +0000 UTC m=+299.205038867 I0512 16:35:07.073608 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:07.073672 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-12 16:35:07.073666958 +0000 UTC m=+299.206155414 I0512 16:35:07.204984 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:07.243425 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-56pmf" condition "Approved" to 2026-05-12 16:35:07.243410789 +0000 UTC m=+299.375899225 I0512 16:35:07.245916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n9wg8" condition "Approved" to 2026-05-12 16:35:07.245894431 +0000 UTC m=+299.378382877 I0512 16:35:07.263436 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-56pmf" condition "Ready" to 2026-05-12 16:35:07.263423167 +0000 UTC m=+299.395911603 I0512 16:35:07.266829 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:07.266846 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n9wg8" condition "Ready" to 2026-05-12 16:35:07.266839459 +0000 UTC m=+299.399327895 I0512 16:35:07.318929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-kr2bb" condition "Approved" to 2026-05-12 16:35:07.318914372 +0000 UTC m=+299.451402798 I0512 16:35:07.347797 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:07.347830 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-12 16:35:07.347821552 +0000 UTC m=+299.480309998 I0512 16:35:07.361248 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:07.361235443 +0000 UTC m=+299.493723879 I0512 16:35:07.362060 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:07.36205693 +0000 UTC m=+299.494545366 I0512 16:35:07.492130 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-kr2bb" condition "Ready" to 2026-05-12 16:35:07.492108946 +0000 UTC m=+299.624597392 I0512 16:35:07.832117 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:07.832948 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:07.832915011 +0000 UTC m=+299.965403477 I0512 16:35:07.883662 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:07.884379 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:07.884370473 +0000 UTC m=+300.016858929 I0512 16:35:08.133693 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:08.392242 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:08.392218712 +0000 UTC m=+300.524707168 I0512 16:35:08.431509 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:08.635634 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:08.636610 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:08.636596281 +0000 UTC m=+300.769084757 E0512 16:35:08.783523 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"alertmanager-tls-flk6v\" already exists" key="monitoring/alertmanager-tls" I0512 16:35:08.841217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jjwgb" condition "Approved" to 2026-05-12 16:35:08.841203398 +0000 UTC m=+300.973691844 I0512 16:35:09.193488 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jjwgb" condition "Ready" to 2026-05-12 16:35:09.19347441 +0000 UTC m=+301.325962846 I0512 16:35:09.481887 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:09.532027 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:09.888780 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:10.138318 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:10.183478 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:15.667611 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" condition "Ready" to 2026-05-12 16:35:15.667587678 +0000 UTC m=+307.800076114 I0512 16:35:15.668583 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:15.669103 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" condition "Issuing" to 2026-05-12 16:35:15.669095576 +0000 UTC m=+307.801584012 I0512 16:35:15.690264 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:15.690388 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:15.690428 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" condition "Issuing" to 2026-05-12 16:35:15.690415802 +0000 UTC m=+307.822904248 I0512 16:35:15.895020 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lxlx6-kzj8b" condition "Approved" to 2026-05-12 16:35:15.894995553 +0000 UTC m=+308.027483989 I0512 16:35:15.912764 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lxlx6-kzj8b" condition "Ready" to 2026-05-12 16:35:15.912749627 +0000 UTC m=+308.045238063 I0512 16:35:15.949056 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:15.949039139 +0000 UTC m=+308.081527575 I0512 16:35:16.071071 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lxlx6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:30.309217 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-12 16:35:30.308690423 +0000 UTC m=+322.441178869 I0512 16:35:30.309722 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:30.309773 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-12 16:35:30.309768456 +0000 UTC m=+322.442256902 I0512 16:35:30.329380 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:30.329469 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:35:30.329493 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-12 16:35:30.329485973 +0000 UTC m=+322.461974419 I0512 16:35:30.462135 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:30.471470 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-t5z9l" condition "Approved" to 2026-05-12 16:35:30.471453098 +0000 UTC m=+322.603941544 I0512 16:35:30.499254 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-t5z9l" condition "Ready" to 2026-05-12 16:35:30.499228084 +0000 UTC m=+322.631716530 I0512 16:35:30.537790 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:35:30.537778251 +0000 UTC m=+322.670266687 I0512 16:35:30.562278 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:35:30.628664 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:38:40.038428 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-12 16:38:40.038395311 +0000 UTC m=+512.170883737 I0512 16:38:40.038534 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:38:40.038817 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-12 16:38:40.038800678 +0000 UTC m=+512.171289124 I0512 16:38:40.059285 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:38:40.059423 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:38:40.059459 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-12 16:38:40.05945224 +0000 UTC m=+512.191940696 I0512 16:38:40.178605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vzrsl" condition "Approved" to 2026-05-12 16:38:40.17858503 +0000 UTC m=+512.311073466 I0512 16:38:40.200587 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vzrsl" condition "Ready" to 2026-05-12 16:38:40.200573766 +0000 UTC m=+512.333062202 I0512 16:38:40.229803 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:38:40.229781357 +0000 UTC m=+512.362269803 I0512 16:38:40.257148 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:38:40.257606 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:38:40.257600345 +0000 UTC m=+512.390088781 I0512 16:38:40.278848 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:39:19.370514 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-12 16:39:19.370491641 +0000 UTC m=+551.502980077 I0512 16:39:19.371036 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:39:19.371095 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 16:39:19.371090691 +0000 UTC m=+551.503579137 I0512 16:39:19.398650 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 16:39:19.398730 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 16:39:19.398908 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 16:39:19.398898053 +0000 UTC m=+551.531386499 I0512 16:39:19.640355 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xgggr" condition "Approved" to 2026-05-12 16:39:19.640343292 +0000 UTC m=+551.772831728 I0512 16:39:19.664010 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xgggr" condition "Ready" to 2026-05-12 16:39:19.663995495 +0000 UTC m=+551.796483941 I0512 16:39:19.694659 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 16:39:19.694641063 +0000 UTC m=+551.827129509 I0512 16:39:19.717609 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"