I0407 15:22:35.557980 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0407 15:22:35.558226 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0407 15:22:35.558385 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0407 15:22:35.563371 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0407 15:22:35.563946 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0407 15:22:35.564040 1 controller.go:156] "cert-manager/controller: starting leader election" I0407 15:22:35.564134 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0407 15:22:35.567944 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0407 15:22:35.582644 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0407 15:22:35.586073 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0407 15:22:35.589285 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0407 15:22:35.593820 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0407 15:22:35.596068 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0407 15:22:35.596084 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0407 15:22:35.596093 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0407 15:22:35.596124 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0407 15:22:35.597918 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0407 15:22:35.599498 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0407 15:22:35.601288 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0407 15:22:35.602879 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0407 15:22:35.604964 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0407 15:22:35.609724 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0407 15:22:35.612751 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0407 15:22:35.612775 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0407 15:22:35.612968 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0407 15:22:35.615216 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0407 15:22:35.617447 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0407 15:22:35.619628 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0407 15:22:35.621383 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0407 15:22:35.622911 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0407 15:22:35.623089 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0407 15:22:35.624753 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0407 15:22:35.626418 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0407 15:22:50.366562 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-07 15:22:50.366528535 +0000 UTC m=+14.841567965 I0407 15:22:51.141990 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:22:51.142146 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-07 15:22:51.142136114 +0000 UTC m=+15.617175574 I0407 15:22:51.142159 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-07 15:22:51.142138294 +0000 UTC m=+15.617177724 E0407 15:22:51.159030 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:22:51.159085 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-07 15:22:51.159077334 +0000 UTC m=+15.634116764 E0407 15:22:51.159108 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:22:51.162592 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:22:51.162653 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-07 15:22:51.162642414 +0000 UTC m=+15.637681844 E0407 15:22:51.174941 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0407 15:22:51.176348 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:22:51.176381 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:22:51.176407 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0407 15:22:51.178176 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:22:51.178271 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-07 15:22:51.178261978 +0000 UTC m=+15.653301408 I0407 15:22:51.186916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-z5qfk" condition "Approved" to 2026-04-07 15:22:51.186897306 +0000 UTC m=+15.661936756 I0407 15:22:51.199979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-z5qfk" condition "Ready" to 2026-04-07 15:22:51.19996113 +0000 UTC m=+15.675000570 I0407 15:22:51.223795 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:22:51.223781083 +0000 UTC m=+15.698820523 I0407 15:22:51.238324 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:22:51.238818 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:22:51.238809976 +0000 UTC m=+15.713849416 I0407 15:22:51.256698 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:22:56.176234 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:22:56.176216595 +0000 UTC m=+20.651256055 I0407 15:23:17.937681 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:23:17.937714 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-07 15:23:17.937706608 +0000 UTC m=+42.412746038 I0407 15:23:17.938169 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-07 15:23:17.938153845 +0000 UTC m=+42.413193275 I0407 15:23:17.953329 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-07 15:23:17.953315879 +0000 UTC m=+42.428355299 I0407 15:23:17.960810 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:23:17.960866 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-07 15:23:17.960858661 +0000 UTC m=+42.435898091 I0407 15:23:18.040298 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:23:18.069950 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-m9vjx" condition "Approved" to 2026-04-07 15:23:18.069934236 +0000 UTC m=+42.544973696 I0407 15:23:18.097538 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-m9vjx" condition "Ready" to 2026-04-07 15:23:18.097526136 +0000 UTC m=+42.572565566 I0407 15:23:18.128647 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:23:18.128617542 +0000 UTC m=+42.603656982 I0407 15:23:18.149683 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:23:18.150266 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:23:18.150254937 +0000 UTC m=+42.625294407 I0407 15:23:18.171476 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:51.671902 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready" to 2026-04-07 15:25:51.671881451 +0000 UTC m=+196.146920901 I0407 15:25:51.671891 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-212.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:25:51.672250 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Issuing" to 2026-04-07 15:25:51.672213594 +0000 UTC m=+196.147253014 I0407 15:25:51.691134 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:51.691201 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready" to 2026-04-07 15:25:51.691193362 +0000 UTC m=+196.166232792 I0407 15:25:52.079700 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:52.117349 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-212.nip.io-tls-pbnzr" condition "Approved" to 2026-04-07 15:25:52.117309967 +0000 UTC m=+196.592349417 I0407 15:25:52.149827 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-212.nip.io-tls-pbnzr" condition "Ready" to 2026-04-07 15:25:52.149814059 +0000 UTC m=+196.624853489 I0407 15:25:52.181144 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:25:52.18111646 +0000 UTC m=+196.656155900 I0407 15:25:52.219801 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:52.220525 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:25:52.220516771 +0000 UTC m=+196.695556201 I0407 15:25:52.225829 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:52.247554 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:52.249927 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:52.250811 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:25:52.250796622 +0000 UTC m=+196.725836072 I0407 15:26:47.147392 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:47.147445 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-07 15:26:47.147437342 +0000 UTC m=+251.622476772 I0407 15:26:47.147884 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-07 15:26:47.147878094 +0000 UTC m=+251.622917524 E0407 15:26:47.160157 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:26:47.160186 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-07 15:26:47.160180207 +0000 UTC m=+251.635219637 E0407 15:26:47.160208 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:26:47.166928 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:47.166981 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:47.166995 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-07 15:26:47.166990532 +0000 UTC m=+251.642029962 E0407 15:26:47.178012 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0407 15:26:47.178533 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:26:47.178718 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:26:47.178902 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0407 15:26:47.213185 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:47.214524 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-24n28" condition "Approved" to 2026-04-07 15:26:47.214515895 +0000 UTC m=+251.689555325 I0407 15:26:47.229469 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-24n28" condition "Ready" to 2026-04-07 15:26:47.229462103 +0000 UTC m=+251.704501523 I0407 15:26:47.251905 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:47.251888206 +0000 UTC m=+251.726927636 I0407 15:26:47.268285 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:47.306392 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:52.178583 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:52.178566753 +0000 UTC m=+256.653606203 I0407 15:27:31.789988 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-07 15:27:31.789962968 +0000 UTC m=+296.265002388 I0407 15:27:31.791929 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:27:31.796930 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-07 15:27:31.796921294 +0000 UTC m=+296.271960714 I0407 15:27:31.791987 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 15:27:31.791981137 +0000 UTC m=+296.267020557 I0407 15:27:31.792080 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:27:31.799697 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-07 15:27:31.79969141 +0000 UTC m=+296.274730820 I0407 15:27:31.792124 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-07 15:27:31.79212188 +0000 UTC m=+296.267161300 I0407 15:27:31.793222 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:27:31.800576 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 15:27:31.800559481 +0000 UTC m=+296.275598891 I0407 15:27:31.884564 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:31.884626 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:27:31.884689 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 15:27:31.884683559 +0000 UTC m=+296.359722979 I0407 15:27:31.891652 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:31.891739 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-07 15:27:31.891732207 +0000 UTC m=+296.366771627 I0407 15:27:31.891915 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:31.891988 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 15:27:31.891980352 +0000 UTC m=+296.367019782 I0407 15:27:31.977851 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:32.013336 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-d6jlm" condition "Approved" to 2026-04-07 15:27:32.013317654 +0000 UTC m=+296.488357074 I0407 15:27:32.054947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-d6jlm" condition "Ready" to 2026-04-07 15:27:32.054934219 +0000 UTC m=+296.529973639 I0407 15:27:32.081112 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-69c5j" condition "Approved" to 2026-04-07 15:27:32.081097678 +0000 UTC m=+296.556137108 I0407 15:27:32.091740 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:32.09172057 +0000 UTC m=+296.566759980 I0407 15:27:32.108113 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-69c5j" condition "Ready" to 2026-04-07 15:27:32.108096037 +0000 UTC m=+296.583135467 I0407 15:27:32.116656 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:32.117167 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:32.117156461 +0000 UTC m=+296.592195891 I0407 15:27:32.140799 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:32.141254 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:32.141246771 +0000 UTC m=+296.616286191 I0407 15:27:32.145399 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:32.145381979 +0000 UTC m=+296.620421399 I0407 15:27:32.194396 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:32.472043 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:32.659626 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:32.720778 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zb7qp" condition "Approved" to 2026-04-07 15:27:32.720762745 +0000 UTC m=+297.195802175 I0407 15:27:32.977475 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zb7qp" condition "Ready" to 2026-04-07 15:27:32.97744965 +0000 UTC m=+297.452489070 I0407 15:27:33.265066 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:33.265006111 +0000 UTC m=+297.740045571 I0407 15:27:33.374923 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:33.376089 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:33.376081528 +0000 UTC m=+297.851120958 I0407 15:27:33.576482 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:45.032860 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22svb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:27:45.032889 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-22svb-tls" condition "Issuing" to 2026-04-07 15:27:45.0328817 +0000 UTC m=+309.507921130 I0407 15:27:45.032970 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-22svb-tls" condition "Ready" to 2026-04-07 15:27:45.032956072 +0000 UTC m=+309.507995512 I0407 15:27:45.047359 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22svb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22svb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:45.047404 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-22svb-tls" condition "Ready" to 2026-04-07 15:27:45.047399837 +0000 UTC m=+309.522439267 I0407 15:27:45.446227 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22svb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22svb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:45.483652 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-22svb-5qdlf" condition "Approved" to 2026-04-07 15:27:45.483641341 +0000 UTC m=+309.958680771 I0407 15:27:45.501775 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-22svb-5qdlf" condition "Ready" to 2026-04-07 15:27:45.50176138 +0000 UTC m=+309.976800820 I0407 15:27:45.550559 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-22svb-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:45.550543887 +0000 UTC m=+310.025583317 I0407 15:27:45.613710 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22svb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22svb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:45.614390 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-22svb-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:45.614378965 +0000 UTC m=+310.089418395 I0407 15:27:45.643904 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22svb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22svb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:45.651075 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22svb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22svb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:58.570694 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:27:58.570724 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-07 15:27:58.570716574 +0000 UTC m=+323.045756004 I0407 15:27:58.571093 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-07 15:27:58.571087352 +0000 UTC m=+323.046126782 I0407 15:27:58.588013 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:58.588141 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-07 15:27:58.588134298 +0000 UTC m=+323.063173718 I0407 15:27:58.870701 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:58.917882 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mmmwz" condition "Approved" to 2026-04-07 15:27:58.917862573 +0000 UTC m=+323.392901993 I0407 15:27:58.960425 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mmmwz" condition "Ready" to 2026-04-07 15:27:58.960409227 +0000 UTC m=+323.435448667 I0407 15:27:59.002123 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:59.002107313 +0000 UTC m=+323.477146733 I0407 15:27:59.032763 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:59.033312 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:59.033305481 +0000 UTC m=+323.508344911 I0407 15:27:59.067307 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:59.067919 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:59.067908442 +0000 UTC m=+323.542947872 I0407 15:31:16.543065 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:31:16.543216 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-07 15:31:16.543204898 +0000 UTC m=+521.018244358 I0407 15:31:16.543113 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-07 15:31:16.543092776 +0000 UTC m=+521.018132206 I0407 15:31:16.675240 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:31:16.675458 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:31:16.675491 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-07 15:31:16.675483366 +0000 UTC m=+521.150522816 I0407 15:31:17.209035 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-lz7mz" condition "Approved" to 2026-04-07 15:31:17.209015907 +0000 UTC m=+521.684055337 I0407 15:31:17.237676 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-lz7mz" condition "Ready" to 2026-04-07 15:31:17.237666725 +0000 UTC m=+521.712706145 I0407 15:31:17.274243 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:31:17.274220623 +0000 UTC m=+521.749260053 I0407 15:31:17.294485 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:32:00.631189 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-07 15:32:00.631157435 +0000 UTC m=+565.106196875 I0407 15:32:00.631843 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:32:00.631913 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-07 15:32:00.631903865 +0000 UTC m=+565.106943345 I0407 15:32:00.647865 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:32:00.647938 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:32:00.647960 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-07 15:32:00.647954939 +0000 UTC m=+565.122994359 I0407 15:32:01.373480 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:32:01.386217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-whrss" condition "Approved" to 2026-04-07 15:32:01.386203364 +0000 UTC m=+565.861242824 I0407 15:32:01.404880 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-whrss" condition "Ready" to 2026-04-07 15:32:01.404867443 +0000 UTC m=+565.879906863 I0407 15:32:01.431169 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:32:01.431151642 +0000 UTC m=+565.906191092 I0407 15:32:01.446708 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:32:01.447240 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:32:01.447233376 +0000 UTC m=+565.922272816 I0407 15:32:01.458619 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:32:01.472867 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"