I0325 21:09:08.640623 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0325 21:09:08.640746 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0325 21:09:08.640826 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0325 21:09:08.645599 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0325 21:09:08.646553 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0325 21:09:08.646642 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0325 21:09:08.646819 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0325 21:09:08.653137 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0325 21:09:08.666664 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0325 21:09:08.669996 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0325 21:09:08.672069 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0325 21:09:08.674809 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0325 21:09:08.674874 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0325 21:09:08.681794 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0325 21:09:08.685103 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0325 21:09:08.687599 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0325 21:09:08.690014 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0325 21:09:08.690050 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0325 21:09:08.690085 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0325 21:09:08.693085 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0325 21:09:08.697376 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0325 21:09:08.700507 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0325 21:09:08.703943 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0325 21:09:08.709659 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0325 21:09:08.709702 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0325 21:09:08.709745 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0325 21:09:08.712941 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0325 21:09:08.715418 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0325 21:09:08.718016 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0325 21:09:08.720227 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0325 21:09:08.722185 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0325 21:09:08.723910 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0325 21:09:08.724347 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0325 21:09:08.727593 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.728812 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.729858 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.729874 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.747977 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.770386 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.783851 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.803645 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.822097 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:08.824011 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:09:27.910797 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-25 21:09:27.910780216 +0000 UTC m=+19.306037640 I0325 21:09:28.675053 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 21:09:28.675037192 +0000 UTC m=+20.070294606 I0325 21:09:28.676150 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:28.676210 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-25 21:09:28.676201989 +0000 UTC m=+20.071459413 E0325 21:09:28.690053 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:09:28.690154 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-25 21:09:28.690146719 +0000 UTC m=+20.085404103 E0325 21:09:28.690222 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:09:28.693010 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:28.693082 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:28.693138 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-25 21:09:28.693133369 +0000 UTC m=+20.088390763 E0325 21:09:28.700006 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0325 21:09:28.700388 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:09:28.700492 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:09:28.700547 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0325 21:09:28.733389 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:28.739454 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-fdsz4" condition "Approved" to 2026-03-25 21:09:28.739439004 +0000 UTC m=+20.134696398 I0325 21:09:28.751504 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-fdsz4" condition "Ready" to 2026-03-25 21:09:28.751493279 +0000 UTC m=+20.146750673 I0325 21:09:28.774602 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:28.774566594 +0000 UTC m=+20.169823988 I0325 21:09:28.795238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:28.795683 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:28.795647333 +0000 UTC m=+20.190904757 I0325 21:09:28.801860 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:28.810327 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:33.700467 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:33.700452924 +0000 UTC m=+25.095710338 I0325 21:10:02.262296 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-25 21:10:02.262279588 +0000 UTC m=+53.657537002 I0325 21:10:02.262720 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:10:02.262750 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-25 21:10:02.262744709 +0000 UTC m=+53.658002103 I0325 21:10:02.287311 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-25 21:10:02.287295069 +0000 UTC m=+53.682552463 I0325 21:10:02.309252 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:10:02.309325 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:10:02.309349 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-25 21:10:02.30934303 +0000 UTC m=+53.704600414 I0325 21:10:02.537345 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-5b8zv" condition "Approved" to 2026-03-25 21:10:02.537323468 +0000 UTC m=+53.932580882 I0325 21:10:02.576340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-5b8zv" condition "Ready" to 2026-03-25 21:10:02.5763227 +0000 UTC m=+53.971580124 I0325 21:10:02.610973 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:10:02.610957319 +0000 UTC m=+54.006214713 I0325 21:10:02.632931 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:10:02.633234 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:10:02.633225105 +0000 UTC m=+54.028482499 I0325 21:10:02.655882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:31.014803 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-25 21:12:31.014630628 +0000 UTC m=+202.409888042 I0325 21:12:31.014865 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:12:31.014955 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-25 21:12:31.014944805 +0000 UTC m=+202.410202219 E0325 21:12:31.029162 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:12:31.029282 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-25 21:12:31.029269368 +0000 UTC m=+202.424526782 I0325 21:12:31.029318 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:12:31.030061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:31.030158 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:12:31.030187 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-25 21:12:31.030180909 +0000 UTC m=+202.425438323 E0325 21:12:31.038561 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0325 21:12:31.038859 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:12:31.038889 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0325 21:12:31.038920 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0325 21:12:31.043885 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:12:31.043915 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 21:12:31.043909828 +0000 UTC m=+202.439167222 I0325 21:12:31.043971 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-25 21:12:31.043954349 +0000 UTC m=+202.439211733 I0325 21:12:31.058897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:31.058979 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:12:31.059004 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 21:12:31.058995879 +0000 UTC m=+202.454253303 I0325 21:12:31.239765 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-n4dn9" condition "Approved" to 2026-03-25 21:12:31.239753521 +0000 UTC m=+202.635010915 I0325 21:12:31.261286 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-n4dn9" condition "Ready" to 2026-03-25 21:12:31.261270891 +0000 UTC m=+202.656528295 I0325 21:12:31.284666 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-qvksm" condition "Approved" to 2026-03-25 21:12:31.284648585 +0000 UTC m=+202.679905979 I0325 21:12:31.310925 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-qvksm" condition "Ready" to 2026-03-25 21:12:31.310911585 +0000 UTC m=+202.706168989 I0325 21:12:31.336306 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:31.336292845 +0000 UTC m=+202.731550239 I0325 21:12:31.360346 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:36.039730 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:36.039718307 +0000 UTC m=+207.434975721 I0325 21:12:36.060813 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-n4dn9" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:36.060783287 +0000 UTC m=+207.456040711 I0325 21:12:36.094154 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:36.094133702 +0000 UTC m=+207.489391086 I0325 21:12:36.116856 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:36.125191 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:36.125178764 +0000 UTC m=+207.520436158 I0325 21:12:36.127186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:36.139488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:36.139901 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:36.139891316 +0000 UTC m=+207.535148710 I0325 21:15:12.554369 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready" to 2026-03-25 21:15:12.554346321 +0000 UTC m=+363.949603695 I0325 21:15:12.554431 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-23.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:15:12.554457 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Issuing" to 2026-03-25 21:15:12.554450833 +0000 UTC m=+363.949708247 I0325 21:15:12.569126 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:12.569260 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-23.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:15:12.569298 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Issuing" to 2026-03-25 21:15:12.569285999 +0000 UTC m=+363.964543423 I0325 21:15:12.695758 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:12.702553 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-23.nip.io-tls-zk8qh" condition "Approved" to 2026-03-25 21:15:12.702531694 +0000 UTC m=+364.097789128 I0325 21:15:12.726091 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-23.nip.io-tls-zk8qh" condition "Ready" to 2026-03-25 21:15:12.726074133 +0000 UTC m=+364.121331547 I0325 21:15:12.752554 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:15:12.75253531 +0000 UTC m=+364.147792714 I0325 21:15:12.779430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:12.780037 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:15:12.78002419 +0000 UTC m=+364.175281614 I0325 21:15:12.784694 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:12.796599 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:12.797062 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:15:12.797051127 +0000 UTC m=+364.192308541 I0325 21:16:24.852881 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:16:24.853509 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-25 21:16:24.853351959 +0000 UTC m=+436.248609353 I0325 21:16:24.853977 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-25 21:16:24.853352299 +0000 UTC m=+436.248609693 E0325 21:16:24.865784 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:16:24.865967 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-25 21:16:24.865957764 +0000 UTC m=+436.261215168 E0325 21:16:24.866416 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:16:24.868842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:16:24.868970 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-25 21:16:24.868960814 +0000 UTC m=+436.264218208 E0325 21:16:24.877383 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0325 21:16:24.877478 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:16:24.877510 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:16:24.877545 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0325 21:16:24.883340 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:16:24.902723 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-6tg7m" condition "Approved" to 2026-03-25 21:16:24.902705953 +0000 UTC m=+436.297963347 I0325 21:16:24.920739 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-6tg7m" condition "Ready" to 2026-03-25 21:16:24.920723965 +0000 UTC m=+436.315981349 I0325 21:16:24.946926 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:16:24.946909237 +0000 UTC m=+436.342166631 I0325 21:16:24.963067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:16:24.963365 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:16:24.963358041 +0000 UTC m=+436.358615435 I0325 21:16:24.988424 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:16:29.878219 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:16:29.878200181 +0000 UTC m=+441.273457605 I0325 21:17:10.610521 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-25 21:17:10.610508816 +0000 UTC m=+482.005766200 I0325 21:17:10.611593 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:10.611613 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-25 21:17:10.611610252 +0000 UTC m=+482.006867636 I0325 21:17:10.611919 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:10.611972 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-25 21:17:10.61196897 +0000 UTC m=+482.007226354 I0325 21:17:10.612043 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-25 21:17:10.612029252 +0000 UTC m=+482.007286636 I0325 21:17:10.612311 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:10.612345 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-25 21:17:10.612336099 +0000 UTC m=+482.007593483 I0325 21:17:10.612469 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-25 21:17:10.612465122 +0000 UTC m=+482.007722496 I0325 21:17:10.635008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:10.635086 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-25 21:17:10.635076931 +0000 UTC m=+482.030334325 I0325 21:17:10.640995 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:10.641064 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-25 21:17:10.641055601 +0000 UTC m=+482.036312975 I0325 21:17:10.641800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:10.641880 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:10.641907 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-25 21:17:10.641900031 +0000 UTC m=+482.037157425 I0325 21:17:10.741566 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:10.778535 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-c4zwh" condition "Approved" to 2026-03-25 21:17:10.77851611 +0000 UTC m=+482.173773504 I0325 21:17:10.811639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-c4zwh" condition "Ready" to 2026-03-25 21:17:10.811625615 +0000 UTC m=+482.206882999 I0325 21:17:10.839339 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:17:10.839322064 +0000 UTC m=+482.234579478 I0325 21:17:10.860879 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:11.013911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:11.076039 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-5jqlw" condition "Approved" to 2026-03-25 21:17:11.076023816 +0000 UTC m=+482.471281210 I0325 21:17:11.095843 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-5jqlw" condition "Ready" to 2026-03-25 21:17:11.09582948 +0000 UTC m=+482.491086874 I0325 21:17:11.122490 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:17:11.122468943 +0000 UTC m=+482.517726337 I0325 21:17:11.197901 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:11.249456 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:11.306422 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jm7rf" condition "Approved" to 2026-03-25 21:17:11.3064046 +0000 UTC m=+482.701661994 I0325 21:17:11.510822 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jm7rf" condition "Ready" to 2026-03-25 21:17:11.510810866 +0000 UTC m=+482.906068250 I0325 21:17:12.048244 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:17:12.0482279 +0000 UTC m=+483.443485294 I0325 21:17:12.258019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:12.347282 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:20.460635 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:20.460711 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" condition "Issuing" to 2026-03-25 21:17:20.460703187 +0000 UTC m=+491.855960571 I0325 21:17:20.460741 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" condition "Ready" to 2026-03-25 21:17:20.460725928 +0000 UTC m=+491.855983352 I0325 21:17:20.479150 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:20.479270 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:20.479304 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" condition "Issuing" to 2026-03-25 21:17:20.479295833 +0000 UTC m=+491.874553227 I0325 21:17:20.646990 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kgfhv-8g6cs" condition "Approved" to 2026-03-25 21:17:20.646964018 +0000 UTC m=+492.042221442 I0325 21:17:20.667380 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kgfhv-8g6cs" condition "Ready" to 2026-03-25 21:17:20.667367457 +0000 UTC m=+492.062624851 I0325 21:17:20.705557 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:17:20.70554149 +0000 UTC m=+492.100798884 I0325 21:17:20.724858 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:20.790707 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kgfhv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:57.891731 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:57.891791 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 21:17:57.891646674 +0000 UTC m=+529.286904098 I0325 21:17:57.891803 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-25 21:17:57.891770927 +0000 UTC m=+529.287028331 I0325 21:17:57.911395 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:57.911471 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 21:17:57.911464001 +0000 UTC m=+529.306721395 I0325 21:17:58.157487 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:58.189666 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4m9rd" condition "Approved" to 2026-03-25 21:17:58.189645181 +0000 UTC m=+529.584902595 I0325 21:17:58.209494 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4m9rd" condition "Ready" to 2026-03-25 21:17:58.209479828 +0000 UTC m=+529.604737222 I0325 21:17:58.239418 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:17:58.239399782 +0000 UTC m=+529.634657176 I0325 21:17:58.261062 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:21:21.167865 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:21:21.168929 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-25 21:21:21.16792548 +0000 UTC m=+732.563182904 I0325 21:21:21.169990 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-25 21:21:21.16791409 +0000 UTC m=+732.563171484 I0325 21:21:21.185307 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:21:21.185421 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:21:21.185453 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-25 21:21:21.185446532 +0000 UTC m=+732.580703926 I0325 21:21:21.651533 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nggxt" condition "Approved" to 2026-03-25 21:21:21.651512028 +0000 UTC m=+733.046769442 I0325 21:21:21.670825 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nggxt" condition "Ready" to 2026-03-25 21:21:21.670811242 +0000 UTC m=+733.066068626 I0325 21:21:21.699693 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:21:21.699675022 +0000 UTC m=+733.094932416 I0325 21:21:21.719600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:48.478125 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:23:48.478232 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-25 21:23:48.478205947 +0000 UTC m=+879.873463341 I0325 21:23:48.478361 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-25 21:23:48.478169276 +0000 UTC m=+879.873426670 I0325 21:23:48.497978 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:48.498483 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-25 21:23:48.498466472 +0000 UTC m=+879.893723936 I0325 21:23:48.626559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:48.656736 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-v778j" condition "Approved" to 2026-03-25 21:23:48.6567115 +0000 UTC m=+880.051968894 I0325 21:23:48.673262 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-v778j" condition "Ready" to 2026-03-25 21:23:48.673247818 +0000 UTC m=+880.068505212 I0325 21:23:48.700999 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:23:48.700983468 +0000 UTC m=+880.096240862 I0325 21:23:48.724755 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:48.725045 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:23:48.725038191 +0000 UTC m=+880.120295585 I0325 21:23:48.729703 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:48.748574 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:09.412399 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:25:09.412456 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-25 21:25:09.412438619 +0000 UTC m=+960.807696043 I0325 21:25:09.412456 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-25 21:25:09.412438629 +0000 UTC m=+960.807696053 I0325 21:25:09.489370 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:09.489455 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-25 21:25:09.489446402 +0000 UTC m=+960.884703796 I0325 21:25:09.581439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:09.622966 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-vlw96" condition "Approved" to 2026-03-25 21:25:09.622947387 +0000 UTC m=+961.018204811 I0325 21:25:09.649396 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-vlw96" condition "Ready" to 2026-03-25 21:25:09.649381886 +0000 UTC m=+961.044639280 I0325 21:25:09.696080 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:25:09.696065889 +0000 UTC m=+961.091323273 I0325 21:25:09.721806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:09.722385 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:25:09.722366625 +0000 UTC m=+961.117624049 I0325 21:25:09.740412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:09.740786 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:25:09.740776426 +0000 UTC m=+961.136033830 I0325 21:25:09.747434 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:28:16.046985 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-25 21:28:16.046947625 +0000 UTC m=+1147.442205049 I0325 21:28:16.047193 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:28:16.047265 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 21:28:16.047257973 +0000 UTC m=+1147.442515367 I0325 21:28:16.065838 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:28:16.065947 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:28:16.065973 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 21:28:16.06596632 +0000 UTC m=+1147.461223714 I0325 21:28:16.316090 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-nn6f9" condition "Approved" to 2026-03-25 21:28:16.316071861 +0000 UTC m=+1147.711329255 I0325 21:28:16.336477 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-nn6f9" condition "Ready" to 2026-03-25 21:28:16.336465887 +0000 UTC m=+1147.731723261 I0325 21:28:16.363637 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:28:16.363620861 +0000 UTC m=+1147.758878255 I0325 21:28:16.390970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:28:16.391253 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:28:16.391245746 +0000 UTC m=+1147.786503140 I0325 21:28:16.408562 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:28:16.409217 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:28:16.409474 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:28:16.409465902 +0000 UTC m=+1147.804723306