I0331 20:26:20.896853 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 20:26:20.897018 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 20:26:20.897125 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 20:26:20.901925 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 20:26:20.902308 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 20:26:20.902444 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 20:26:20.902518 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 20:26:20.904842 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 20:26:20.922230 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 20:26:20.922569 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 20:26:20.922640 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 20:26:20.927866 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 20:26:20.933668 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 20:26:20.935954 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 20:26:20.938249 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 20:26:20.938380 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 20:26:20.940219 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 20:26:20.942181 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 20:26:20.944162 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 20:26:20.950051 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 20:26:20.953023 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 20:26:20.955840 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 20:26:20.958331 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 20:26:20.960295 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 20:26:20.962145 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 20:26:20.964280 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 20:26:20.966070 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 20:26:20.966094 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 20:26:20.966107 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 20:26:20.966175 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 20:26:20.968663 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 20:26:20.974325 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 20:26:20.978685 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 20:26:20.981637 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:20.981919 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:20.982331 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:21.013849 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:21.034624 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:21.057573 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:21.079139 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:21.085213 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:21.099062 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:21.115183 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:26:31.945922 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 20:26:31.945910108 +0000 UTC m=+11.086388648 I0331 20:26:32.669134 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 20:26:32.669120813 +0000 UTC m=+11.809599373 I0331 20:26:32.669572 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:26:32.669675 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 20:26:32.669664377 +0000 UTC m=+11.810142947 E0331 20:26:32.685434 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:26:32.685497 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 20:26:32.68549002 +0000 UTC m=+11.825968570 E0331 20:26:32.685520 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:26:32.688932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:26:32.689053 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:26:32.689121 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 20:26:32.68911328 +0000 UTC m=+11.829591820 E0331 20:26:32.695514 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0331 20:26:32.695824 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:26:32.695876 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:26:32.696052 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 20:26:32.731767 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-p74gj" condition "Approved" to 2026-03-31 20:26:32.731752699 +0000 UTC m=+11.872231269 I0331 20:26:32.743564 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-p74gj" condition "Ready" to 2026-03-31 20:26:32.743554553 +0000 UTC m=+11.884033103 I0331 20:26:32.762192 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:26:32.762182485 +0000 UTC m=+11.902661035 I0331 20:26:32.783085 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:26:32.783406 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:26:32.783398983 +0000 UTC m=+11.923877533 I0331 20:26:32.792137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:26:32.803024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:26:37.696858 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:26:37.696844124 +0000 UTC m=+16.837322694 I0331 20:26:59.835331 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:26:59.835367 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 20:26:59.835357927 +0000 UTC m=+38.975836477 I0331 20:26:59.836070 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 20:26:59.836062415 +0000 UTC m=+38.976540975 I0331 20:26:59.848871 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 20:26:59.848855433 +0000 UTC m=+38.989334013 I0331 20:26:59.860745 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:26:59.860841 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:26:59.860891 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 20:26:59.860883481 +0000 UTC m=+39.001362051 I0331 20:27:00.038586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:00.043813 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-p7tvc" condition "Approved" to 2026-03-31 20:27:00.043801595 +0000 UTC m=+39.184280145 I0331 20:27:00.071496 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-p7tvc" condition "Ready" to 2026-03-31 20:27:00.071485093 +0000 UTC m=+39.211963643 I0331 20:27:00.099960 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:27:00.09994496 +0000 UTC m=+39.240423500 I0331 20:27:00.120882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:43.443351 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:28:43.443405 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 20:28:43.443391972 +0000 UTC m=+142.583870542 I0331 20:28:43.443418 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 20:28:43.443402612 +0000 UTC m=+142.583881192 I0331 20:28:43.457554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" E0331 20:28:43.457696 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 20:28:43.457733 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 20:28:43.457722128 +0000 UTC m=+142.598200678 I0331 20:28:43.457812 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-31 20:28:43.45779833 +0000 UTC m=+142.598276910 I0331 20:28:43.457856 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 20:28:43.466114 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0331 20:28:43.466208 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 20:28:43.466252 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 20:28:43.466285 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0331 20:28:43.472590 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:28:43.472633 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 20:28:43.472624719 +0000 UTC m=+142.613103269 I0331 20:28:43.473001 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 20:28:43.472983527 +0000 UTC m=+142.613462087 I0331 20:28:43.489907 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:43.489969 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 20:28:43.489962548 +0000 UTC m=+142.630441098 I0331 20:28:43.568426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:43.599042 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-6r5mv" condition "Approved" to 2026-03-31 20:28:43.599011642 +0000 UTC m=+142.739490202 I0331 20:28:43.620088 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-6r5mv" condition "Ready" to 2026-03-31 20:28:43.620071771 +0000 UTC m=+142.760550341 I0331 20:28:43.877047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:43.906108 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-hxlzb" condition "Approved" to 2026-03-31 20:28:43.906089562 +0000 UTC m=+143.046568102 I0331 20:28:43.940005 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-hxlzb" condition "Ready" to 2026-03-31 20:28:43.939991411 +0000 UTC m=+143.080469961 I0331 20:28:43.972319 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:43.972307172 +0000 UTC m=+143.112785712 I0331 20:28:43.991471 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:43.991995 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:43.991981587 +0000 UTC m=+143.132460167 I0331 20:28:44.005924 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:44.006188 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:44.00618103 +0000 UTC m=+143.146659570 I0331 20:28:48.467247 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:48.467231589 +0000 UTC m=+147.607710159 I0331 20:28:48.482812 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-6r5mv" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:48.482799595 +0000 UTC m=+147.623278145 I0331 20:28:48.516808 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:28:48.516792847 +0000 UTC m=+147.657271397 I0331 20:28:48.538438 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:28:48.588270 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:31:25.276078 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-116.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:31:25.276130 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Issuing" to 2026-03-31 20:31:25.276123395 +0000 UTC m=+304.416601945 I0331 20:31:25.276368 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Ready" to 2026-03-31 20:31:25.276360321 +0000 UTC m=+304.416838881 I0331 20:31:25.293004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:31:25.293098 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-116.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:31:25.293120 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Issuing" to 2026-03-31 20:31:25.293112883 +0000 UTC m=+304.433591433 I0331 20:31:25.603583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-116.nip.io-tls-jlvgh" condition "Approved" to 2026-03-31 20:31:25.603570695 +0000 UTC m=+304.744049245 I0331 20:31:25.650402 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-116.nip.io-tls-jlvgh" condition "Ready" to 2026-03-31 20:31:25.650394047 +0000 UTC m=+304.790872577 I0331 20:31:25.672547 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:31:25.672534698 +0000 UTC m=+304.813013238 I0331 20:31:25.691112 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:31:25.691633 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:31:25.691625355 +0000 UTC m=+304.832103915 I0331 20:31:25.705604 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:31:25.709360 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:31:25.709570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-116.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-116.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:31:25.709818 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-116.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:31:25.709810841 +0000 UTC m=+304.850289391 I0331 20:32:35.417124 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:32:35.417085698 +0000 UTC m=+374.557564258 I0331 20:32:35.417239 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:32:35.417281 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 20:32:35.417269713 +0000 UTC m=+374.557748293 E0331 20:32:35.430717 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:32:35.430799 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 20:32:35.430784123 +0000 UTC m=+374.571262673 I0331 20:32:35.432487 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:32:35.432581 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:32:35.432568637 +0000 UTC m=+374.573047187 E0331 20:32:35.432621 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:32:35.446810 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 20:32:35.446905 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:32:35.446937 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:32:35.446974 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 20:32:35.448954 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:32:35.469121 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wwf2s" condition "Approved" to 2026-03-31 20:32:35.469106882 +0000 UTC m=+374.609585452 I0331 20:32:35.481236 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-wwf2s" condition "Ready" to 2026-03-31 20:32:35.481221519 +0000 UTC m=+374.621700079 I0331 20:32:35.501841 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:32:35.501820853 +0000 UTC m=+374.642299433 I0331 20:32:35.517550 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:32:35.517993 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:32:35.517983209 +0000 UTC m=+374.658461759 I0331 20:32:35.528980 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:32:35.529300 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:32:35.529289376 +0000 UTC m=+374.669767936 I0331 20:32:40.447928 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:32:40.447913096 +0000 UTC m=+379.588391676 I0331 20:33:18.036914 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 20:33:18.036884389 +0000 UTC m=+417.177362929 I0331 20:33:18.037089 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:18.045654 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 20:33:18.045641792 +0000 UTC m=+417.186120332 I0331 20:33:18.037181 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:18.045892 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 20:33:18.045888027 +0000 UTC m=+417.186366567 I0331 20:33:18.037264 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 20:33:18.037253868 +0000 UTC m=+417.177732408 I0331 20:33:18.046282 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:18.046324 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 20:33:18.046320588 +0000 UTC m=+417.186799118 I0331 20:33:18.046668 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 20:33:18.046662486 +0000 UTC m=+417.187141016 I0331 20:33:18.086369 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:18.086433 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:18.087642 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 20:33:18.086451191 +0000 UTC m=+417.226929741 I0331 20:33:18.099275 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:18.099400 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:18.099456 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 20:33:18.099420565 +0000 UTC m=+417.239899105 I0331 20:33:18.104403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:18.104443 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:18.104457 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 20:33:18.104453457 +0000 UTC m=+417.244931997 I0331 20:33:18.268043 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jzll5" condition "Approved" to 2026-03-31 20:33:18.268019202 +0000 UTC m=+417.408497782 I0331 20:33:18.288046 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jzll5" condition "Ready" to 2026-03-31 20:33:18.288034537 +0000 UTC m=+417.428513087 I0331 20:33:18.313344 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:18.31333188 +0000 UTC m=+417.453810410 I0331 20:33:18.337139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:18.396684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hjmf5" condition "Approved" to 2026-03-31 20:33:18.39667404 +0000 UTC m=+417.537152580 I0331 20:33:18.410628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hjmf5" condition "Ready" to 2026-03-31 20:33:18.410617058 +0000 UTC m=+417.551095618 I0331 20:33:18.444772 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:18.444703935 +0000 UTC m=+417.585182485 I0331 20:33:18.463077 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:18.629821 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-twrlb" condition "Approved" to 2026-03-31 20:33:18.629804291 +0000 UTC m=+417.770282831 I0331 20:33:18.831947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-twrlb" condition "Ready" to 2026-03-31 20:33:18.83193221 +0000 UTC m=+417.972410780 E0331 20:33:19.073110 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-chzq2\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0331 20:33:19.375420 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:19.375409944 +0000 UTC m=+418.515888494 I0331 20:33:19.526162 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:19.526583 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:19.526574028 +0000 UTC m=+418.667052588 I0331 20:33:19.573413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:19.774403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:25.931229 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:25.931366 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" condition "Issuing" to 2026-03-31 20:33:25.931354202 +0000 UTC m=+425.071832782 I0331 20:33:25.931237 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" condition "Ready" to 2026-03-31 20:33:25.931227659 +0000 UTC m=+425.071706199 I0331 20:33:25.946847 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:25.946928 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:25.946950 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" condition "Issuing" to 2026-03-31 20:33:25.946942879 +0000 UTC m=+425.087421439 I0331 20:33:26.265903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-z8dj9-pkp8k" condition "Approved" to 2026-03-31 20:33:26.26588934 +0000 UTC m=+425.406367880 I0331 20:33:26.283995 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-z8dj9-pkp8k" condition "Ready" to 2026-03-31 20:33:26.283981909 +0000 UTC m=+425.424460459 I0331 20:33:26.306897 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:26.306876924 +0000 UTC m=+425.447355474 I0331 20:33:26.332160 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:26.385316 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-z8dj9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:53.619641 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:53.619683 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 20:33:53.619672542 +0000 UTC m=+452.760151112 I0331 20:33:53.619813 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 20:33:53.619796695 +0000 UTC m=+452.760275245 I0331 20:33:53.633843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:53.634015 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:53.634046 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 20:33:53.63403691 +0000 UTC m=+452.774515490 I0331 20:33:54.094444 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-qw2hw" condition "Approved" to 2026-03-31 20:33:54.094426609 +0000 UTC m=+453.234905179 I0331 20:33:54.115521 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-qw2hw" condition "Ready" to 2026-03-31 20:33:54.11550818 +0000 UTC m=+453.255986730 I0331 20:33:54.146401 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:54.146387889 +0000 UTC m=+453.286866429 I0331 20:33:54.449860 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:54.450533 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:54.450523981 +0000 UTC m=+453.591002561 I0331 20:33:54.455341 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:54.472038 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:37:04.139803 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:37:04.139840 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 20:37:04.139834263 +0000 UTC m=+643.280312813 I0331 20:37:04.140119 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 20:37:04.140058288 +0000 UTC m=+643.280536868 I0331 20:37:04.161325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:37:04.161410 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:37:04.161431 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 20:37:04.161423927 +0000 UTC m=+643.301902467 I0331 20:37:04.464920 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:37:04.473058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nl8hh" condition "Approved" to 2026-03-31 20:37:04.473041351 +0000 UTC m=+643.613519901 I0331 20:37:04.486881 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nl8hh" condition "Ready" to 2026-03-31 20:37:04.48687093 +0000 UTC m=+643.627349480 I0331 20:37:04.514427 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:37:04.514414665 +0000 UTC m=+643.654893215 I0331 20:37:04.535919 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:28.320691 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 20:39:28.320650549 +0000 UTC m=+787.461129099 I0331 20:39:28.320697 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:39:28.320880 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 20:39:28.320864584 +0000 UTC m=+787.461343154 I0331 20:39:28.336570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:28.336647 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:39:28.336671 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 20:39:28.336662319 +0000 UTC m=+787.477140899 I0331 20:39:28.489970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-hnktf" condition "Approved" to 2026-03-31 20:39:28.489956452 +0000 UTC m=+787.630435002 I0331 20:39:28.505754 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-hnktf" condition "Ready" to 2026-03-31 20:39:28.505742417 +0000 UTC m=+787.646220967 I0331 20:39:28.532225 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:39:28.532215057 +0000 UTC m=+787.672693597 I0331 20:39:28.552755 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:28.553187 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:39:28.553180785 +0000 UTC m=+787.693659315 I0331 20:39:28.574772 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:39:28.575287 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:39:28.57527702 +0000 UTC m=+787.715755590 I0331 20:40:37.359887 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:40:37.359948 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 20:40:37.359941772 +0000 UTC m=+856.500420322 I0331 20:40:37.359896 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 20:40:37.35984342 +0000 UTC m=+856.500321980 I0331 20:40:37.378222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:37.378334 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 20:40:37.378322949 +0000 UTC m=+856.518801519 I0331 20:40:37.492448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:37.524590 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-b74wr" condition "Approved" to 2026-03-31 20:40:37.524581175 +0000 UTC m=+856.665059715 I0331 20:40:37.544087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-b74wr" condition "Ready" to 2026-03-31 20:40:37.544074158 +0000 UTC m=+856.684552708 I0331 20:40:37.574995 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:40:37.574970052 +0000 UTC m=+856.715448602 I0331 20:40:37.598986 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:37.674829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:43:40.732350 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:43:40.732410 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 20:43:40.732402403 +0000 UTC m=+1039.872880953 I0331 20:43:40.732428 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 20:43:40.732407533 +0000 UTC m=+1039.872886113 I0331 20:43:40.749625 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:43:40.749760 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 20:43:40.749748365 +0000 UTC m=+1039.890226935 I0331 20:43:40.986800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:43:41.014689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-6mkps" condition "Approved" to 2026-03-31 20:43:41.014670321 +0000 UTC m=+1040.155148891 I0331 20:43:41.033519 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-6mkps" condition "Ready" to 2026-03-31 20:43:41.033508999 +0000 UTC m=+1040.173987529 I0331 20:43:41.064053 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:43:41.064038854 +0000 UTC m=+1040.204517414 I0331 20:43:41.090265 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:43:41.090590 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:43:41.090584295 +0000 UTC m=+1040.231062845 I0331 20:43:41.101359 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:43:41.106015 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:43:41.108397 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:43:41.108742 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:43:41.108733596 +0000 UTC m=+1040.249212146