I0519 17:58:44.207530 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0519 17:58:44.207658 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0519 17:58:44.207737 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0519 17:58:44.210908 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0519 17:58:44.211446 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0519 17:58:44.211605 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0519 17:58:44.211595 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0519 17:58:44.213953 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0519 17:58:44.226728 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0519 17:58:44.232676 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0519 17:58:44.235744 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0519 17:58:44.235817 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0519 17:58:44.240879 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0519 17:58:44.241184 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0519 17:58:44.243631 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0519 17:58:44.245810 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0519 17:58:44.247574 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0519 17:58:44.249400 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0519 17:58:44.251283 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0519 17:58:44.252892 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0519 17:58:44.253011 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0519 17:58:44.259528 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0519 17:58:44.264110 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0519 17:58:44.266903 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0519 17:58:44.269102 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0519 17:58:44.269249 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0519 17:58:44.271287 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0519 17:58:44.271403 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0519 17:58:44.273682 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0519 17:58:44.275671 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0519 17:58:44.277886 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0519 17:58:44.278142 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0519 17:58:44.284116 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0519 17:58:44.287144 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.287799 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.287833 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.309821 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.325620 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.341994 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.355569 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.368898 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.379182 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:44.384566 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 17:58:55.887701 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-19 17:58:55.887663014 +0000 UTC m=+11.718886960 I0519 17:58:56.623248 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:58:56.623334 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-19 17:58:56.623324162 +0000 UTC m=+12.454548108 I0519 17:58:56.623348 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-19 17:58:56.623330032 +0000 UTC m=+12.454553968 E0519 17:58:56.641167 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 17:58:56.641239 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-19 17:58:56.641216647 +0000 UTC m=+12.472440563 E0519 17:58:56.641260 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 17:58:56.641704 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:58:56.641784 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-19 17:58:56.641775163 +0000 UTC m=+12.472999069 E0519 17:58:56.656274 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0519 17:58:56.656407 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 17:58:56.656450 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 17:58:56.656507 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0519 17:58:56.661592 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:58:56.687951 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-svtjt" condition "Approved" to 2026-05-19 17:58:56.687938981 +0000 UTC m=+12.519162907 I0519 17:58:56.703763 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-svtjt" condition "Ready" to 2026-05-19 17:58:56.703756654 +0000 UTC m=+12.534980560 I0519 17:58:56.728604 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:58:56.728587845 +0000 UTC m=+12.559811761 I0519 17:58:56.746467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:58:56.747168 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:58:56.747161509 +0000 UTC m=+12.578385425 I0519 17:58:56.767359 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:58:56.767632 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:58:56.767624511 +0000 UTC m=+12.598848407 I0519 17:58:56.768657 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:59:01.656977 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:59:01.656953977 +0000 UTC m=+17.488177923 I0519 17:59:23.949789 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-19 17:59:23.949775153 +0000 UTC m=+39.780999069 I0519 17:59:23.950070 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:59:23.950118 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-19 17:59:23.950114271 +0000 UTC m=+39.781338167 I0519 17:59:23.970616 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-19 17:59:23.970604808 +0000 UTC m=+39.801828734 I0519 17:59:23.973496 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:59:23.973546 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 17:59:23.973561 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-19 17:59:23.973557107 +0000 UTC m=+39.804781013 I0519 17:59:24.664799 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vgdr5" condition "Approved" to 2026-05-19 17:59:24.664783377 +0000 UTC m=+40.496007293 I0519 17:59:24.696052 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vgdr5" condition "Ready" to 2026-05-19 17:59:24.696039599 +0000 UTC m=+40.527263505 I0519 17:59:24.725660 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 17:59:24.725646943 +0000 UTC m=+40.556870849 I0519 17:59:24.742843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 17:59:24.797237 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:03:42.596141 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-233.nip.io-tls" condition "Ready" to 2026-05-19 18:03:42.596120709 +0000 UTC m=+298.427344655 I0519 18:03:42.597180 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-233.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:03:42.597207 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-233.nip.io-tls" condition "Issuing" to 2026-05-19 18:03:42.597201054 +0000 UTC m=+298.428424990 I0519 18:03:42.615452 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:03:42.615554 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-233.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:03:42.615720 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-233.nip.io-tls" condition "Issuing" to 2026-05-19 18:03:42.615708091 +0000 UTC m=+298.446932027 I0519 18:03:42.862493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-233.nip.io-tls-vzxzm" condition "Approved" to 2026-05-19 18:03:42.862481185 +0000 UTC m=+298.693705101 I0519 18:03:42.892490 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-233.nip.io-tls-vzxzm" condition "Ready" to 2026-05-19 18:03:42.892476226 +0000 UTC m=+298.723700142 I0519 18:03:42.923909 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-233.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:03:42.923892992 +0000 UTC m=+298.755116908 I0519 18:03:42.943571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:04:47.387861 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:04:47.387904 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-19 18:04:47.387893216 +0000 UTC m=+363.219117162 I0519 18:04:47.388073 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-19 18:04:47.387876445 +0000 UTC m=+363.219100391 I0519 18:04:47.401446 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:04:47.401511 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-19 18:04:47.401504127 +0000 UTC m=+363.232728043 E0519 18:04:47.404268 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 18:04:47.404437 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-19 18:04:47.40429762 +0000 UTC m=+363.235521536 E0519 18:04:47.404584 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 18:04:47.416104 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0519 18:04:47.416762 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 18:04:47.416891 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 18:04:47.416978 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0519 18:04:47.418983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:04:47.439524 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-5v66f" condition "Approved" to 2026-05-19 18:04:47.439509395 +0000 UTC m=+363.270733331 I0519 18:04:47.463112 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-5v66f" condition "Ready" to 2026-05-19 18:04:47.463099036 +0000 UTC m=+363.294322952 I0519 18:04:47.483884 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:04:47.483873394 +0000 UTC m=+363.315097310 I0519 18:04:47.505399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:04:47.505719 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:04:47.505708992 +0000 UTC m=+363.336932908 I0519 18:04:47.521693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:04:52.416685 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:04:52.416667425 +0000 UTC m=+368.247891371 I0519 18:05:32.801555 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:05:32.804389 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-19 18:05:32.804380893 +0000 UTC m=+408.635604809 I0519 18:05:32.804056 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-19 18:05:32.804042867 +0000 UTC m=+408.635266763 I0519 18:05:32.804200 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:05:32.805280 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-19 18:05:32.805274469 +0000 UTC m=+408.636498385 I0519 18:05:32.804217 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-19 18:05:32.80421464 +0000 UTC m=+408.635438546 I0519 18:05:32.857235 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:32.857317 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:05:32.857333 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-19 18:05:32.857328234 +0000 UTC m=+408.688552140 I0519 18:05:32.871827 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:32.871895 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-19 18:05:32.871889208 +0000 UTC m=+408.703113114 I0519 18:05:32.872382 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:05:32.872415 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-19 18:05:32.872411597 +0000 UTC m=+408.703635503 I0519 18:05:32.872621 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-19 18:05:32.872616921 +0000 UTC m=+408.703840827 I0519 18:05:32.938922 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:32.938985 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-19 18:05:32.938979016 +0000 UTC m=+408.770202922 I0519 18:05:33.067945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:33.111310 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:33.123292 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-vhk4p" condition "Approved" to 2026-05-19 18:05:33.123283808 +0000 UTC m=+408.954507714 I0519 18:05:33.159234 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-c5jfd" condition "Approved" to 2026-05-19 18:05:33.159225542 +0000 UTC m=+408.990449438 I0519 18:05:33.177532 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-vhk4p" condition "Ready" to 2026-05-19 18:05:33.17752211 +0000 UTC m=+409.008746016 I0519 18:05:33.182988 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-c5jfd" condition "Ready" to 2026-05-19 18:05:33.182977965 +0000 UTC m=+409.014201871 I0519 18:05:33.197048 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:33.206068 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-tkv6x" condition "Approved" to 2026-05-19 18:05:33.206058416 +0000 UTC m=+409.037282322 I0519 18:05:33.209718 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:05:33.209707889 +0000 UTC m=+409.040931785 I0519 18:05:33.220580 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-tkv6x" condition "Ready" to 2026-05-19 18:05:33.220569427 +0000 UTC m=+409.051793343 I0519 18:05:33.441798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:33.489764 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:05:33.489750662 +0000 UTC m=+409.320974568 I0519 18:05:33.790305 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:33.840911 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:05:33.84089784 +0000 UTC m=+409.672121756 I0519 18:05:34.036574 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:34.036963 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:05:34.036956253 +0000 UTC m=+409.868180169 I0519 18:05:34.491270 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:34.540612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:34.739084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:45.015569 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:05:45.015597 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" condition "Issuing" to 2026-05-19 18:05:45.015590312 +0000 UTC m=+420.846814228 I0519 18:05:45.016024 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" condition "Ready" to 2026-05-19 18:05:45.016016919 +0000 UTC m=+420.847240835 I0519 18:05:45.028737 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:45.028953 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:05:45.028983 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" condition "Issuing" to 2026-05-19 18:05:45.028975269 +0000 UTC m=+420.860199185 I0519 18:05:45.333534 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-6l6lf-qxr7r" condition "Approved" to 2026-05-19 18:05:45.333523215 +0000 UTC m=+421.164747131 I0519 18:05:45.353904 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-6l6lf-qxr7r" condition "Ready" to 2026-05-19 18:05:45.353894361 +0000 UTC m=+421.185118267 I0519 18:05:45.387211 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:05:45.387199437 +0000 UTC m=+421.218423343 I0519 18:05:45.405592 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:45.453473 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-6l6lf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:59.612066 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-19 18:05:59.612035936 +0000 UTC m=+435.443259852 I0519 18:05:59.612489 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:05:59.612537 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-19 18:05:59.612529454 +0000 UTC m=+435.443753400 I0519 18:05:59.629113 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:05:59.629193 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-19 18:05:59.629187341 +0000 UTC m=+435.460411257 I0519 18:06:00.072286 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:06:00.099695 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-fkbfv" condition "Approved" to 2026-05-19 18:06:00.099685202 +0000 UTC m=+435.930909128 I0519 18:06:00.126916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-fkbfv" condition "Ready" to 2026-05-19 18:06:00.126902334 +0000 UTC m=+435.958126270 I0519 18:06:00.159523 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:06:00.159511364 +0000 UTC m=+435.990735270 I0519 18:06:00.179536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:09:20.555648 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-19 18:09:20.555633385 +0000 UTC m=+636.386857291 I0519 18:09:20.555919 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:09:20.555959 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-19 18:09:20.555950909 +0000 UTC m=+636.387174825 I0519 18:09:20.569165 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:09:20.569240 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:09:20.569256 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-19 18:09:20.569251405 +0000 UTC m=+636.400475321 I0519 18:09:20.728698 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:09:20.736836 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-n4mmr" condition "Approved" to 2026-05-19 18:09:20.736822862 +0000 UTC m=+636.568046778 I0519 18:09:20.756357 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-n4mmr" condition "Ready" to 2026-05-19 18:09:20.756346375 +0000 UTC m=+636.587570281 I0519 18:09:20.791723 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:09:20.791705607 +0000 UTC m=+636.622929543 I0519 18:09:20.818086 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:09:20.818492 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:09:20.818486101 +0000 UTC m=+636.649710017 I0519 18:09:20.840215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:09:20.840688 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:09:20.840680471 +0000 UTC m=+636.671904387 I0519 18:09:20.849614 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:10:04.712058 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 18:10:04.712122 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-19 18:10:04.712114205 +0000 UTC m=+680.543338121 I0519 18:10:04.712132 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-19 18:10:04.712114475 +0000 UTC m=+680.543338391 I0519 18:10:04.731080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:10:04.731145 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-19 18:10:04.731137176 +0000 UTC m=+680.562361092 I0519 18:10:05.050248 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 18:10:05.077561 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-mx8rl" condition "Approved" to 2026-05-19 18:10:05.077551807 +0000 UTC m=+680.908775713 I0519 18:10:05.094403 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-mx8rl" condition "Ready" to 2026-05-19 18:10:05.094392098 +0000 UTC m=+680.925616014 I0519 18:10:05.126051 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 18:10:05.126042683 +0000 UTC m=+680.957266589 I0519 18:10:05.147983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"