I0529 21:53:10.965130 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0529 21:53:10.965303 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0529 21:53:10.965459 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0529 21:53:10.970431 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0529 21:53:10.970941 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0529 21:53:10.971046 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0529 21:53:10.971129 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0529 21:53:10.973836 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0529 21:53:10.988439 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0529 21:53:10.993641 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0529 21:53:10.996587 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0529 21:53:11.001468 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0529 21:53:11.004244 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0529 21:53:11.006102 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0529 21:53:11.007839 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0529 21:53:11.009684 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0529 21:53:11.009708 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0529 21:53:11.009790 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0529 21:53:11.011638 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0529 21:53:11.013594 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0529 21:53:11.015588 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0529 21:53:11.017997 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0529 21:53:11.021105 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0529 21:53:11.021182 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0529 21:53:11.025543 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0529 21:53:11.025718 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0529 21:53:11.028993 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0529 21:53:11.032032 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0529 21:53:11.034105 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0529 21:53:11.036030 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0529 21:53:11.036054 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0529 21:53:11.036159 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0529 21:53:11.038906 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0529 21:53:11.042458 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.043559 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.042988 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.064214 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.075745 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.095359 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.113657 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.131467 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.142039 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:11.152155 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 21:53:28.610011 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-29 21:53:28.60999421 +0000 UTC m=+17.687217307 I0529 21:53:29.320300 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 21:53:29.320281981 +0000 UTC m=+18.397505088 I0529 21:53:29.320967 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:53:29.321022 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-29 21:53:29.321011858 +0000 UTC m=+18.398234965 I0529 21:53:29.334863 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:29.334994 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:53:29.335047 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-29 21:53:29.335038905 +0000 UTC m=+18.412261982 E0529 21:53:29.341351 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 21:53:29.341484 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-29 21:53:29.341471627 +0000 UTC m=+18.418694724 E0529 21:53:29.341524 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 21:53:29.357279 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0529 21:53:29.357852 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 21:53:29.357964 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 21:53:29.358160 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0529 21:53:29.399428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:29.400041 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-2nlhr" condition "Approved" to 2026-05-29 21:53:29.400033098 +0000 UTC m=+18.477256175 I0529 21:53:29.418699 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-2nlhr" condition "Ready" to 2026-05-29 21:53:29.41868416 +0000 UTC m=+18.495907257 I0529 21:53:29.452151 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:53:29.452138977 +0000 UTC m=+18.529362054 I0529 21:53:29.466874 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:29.467270 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:53:29.467261875 +0000 UTC m=+18.544484952 I0529 21:53:29.478088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:29.483477 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:34.358652 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:53:34.358636295 +0000 UTC m=+23.435859392 I0529 21:53:54.920234 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:53:54.923619 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-29 21:53:54.923603851 +0000 UTC m=+44.000826958 I0529 21:53:54.920760 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-29 21:53:54.92072377 +0000 UTC m=+43.997946847 I0529 21:53:54.937139 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-29 21:53:54.937116953 +0000 UTC m=+44.014340030 I0529 21:53:54.948953 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:54.949038 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:53:54.949068 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-29 21:53:54.949058724 +0000 UTC m=+44.026281821 I0529 21:53:55.252198 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:55.264712 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jhw2b" condition "Approved" to 2026-05-29 21:53:55.26469715 +0000 UTC m=+44.341920227 I0529 21:53:55.302538 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jhw2b" condition "Ready" to 2026-05-29 21:53:55.302526534 +0000 UTC m=+44.379749611 I0529 21:53:55.342458 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:53:55.342440282 +0000 UTC m=+44.419663359 I0529 21:53:55.366109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:53:55.417850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:58:05.255477 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-144.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:58:05.255545 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-144.nip.io-tls" condition "Issuing" to 2026-05-29 21:58:05.255508413 +0000 UTC m=+294.332731520 I0529 21:58:05.256482 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-144.nip.io-tls" condition "Ready" to 2026-05-29 21:58:05.256440091 +0000 UTC m=+294.333663188 I0529 21:58:05.274618 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-144.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-144.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:58:05.274732 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-144.nip.io-tls" condition "Ready" to 2026-05-29 21:58:05.274721573 +0000 UTC m=+294.351944670 I0529 21:58:05.396302 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-144.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-144.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:58:05.422717 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-144.nip.io-tls-f5vmj" condition "Approved" to 2026-05-29 21:58:05.422703218 +0000 UTC m=+294.499926315 I0529 21:58:05.450453 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-144.nip.io-tls-f5vmj" condition "Ready" to 2026-05-29 21:58:05.450442366 +0000 UTC m=+294.527665443 I0529 21:58:05.473159 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-144.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:58:05.473151815 +0000 UTC m=+294.550374882 I0529 21:58:05.494786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-144.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-144.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:58:05.495181 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-144.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:58:05.49517489 +0000 UTC m=+294.572397957 I0529 21:58:05.509539 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-144.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-144.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:11.009115 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-29 21:59:11.009074717 +0000 UTC m=+360.086297824 I0529 21:59:11.010117 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:59:11.010149 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-29 21:59:11.010141501 +0000 UTC m=+360.087364608 I0529 21:59:11.024208 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:11.024264 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:59:11.024282 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-29 21:59:11.024274942 +0000 UTC m=+360.101498019 E0529 21:59:11.025831 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 21:59:11.025915 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-29 21:59:11.025877705 +0000 UTC m=+360.103100782 E0529 21:59:11.026027 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 21:59:11.037716 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0529 21:59:11.037827 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 21:59:11.037899 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 21:59:11.037933 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0529 21:59:11.057893 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-n95h2" condition "Approved" to 2026-05-29 21:59:11.057874869 +0000 UTC m=+360.135097966 I0529 21:59:11.071367 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-n95h2" condition "Ready" to 2026-05-29 21:59:11.071357669 +0000 UTC m=+360.148580746 I0529 21:59:11.091237 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:11.091226588 +0000 UTC m=+360.168449665 I0529 21:59:11.110383 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:11.110644 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:11.110636532 +0000 UTC m=+360.187859609 I0529 21:59:11.125296 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:11.127947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:11.128483 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:11.128470234 +0000 UTC m=+360.205693331 I0529 21:59:16.038958 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:16.038943733 +0000 UTC m=+365.116166830 I0529 21:59:56.513328 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:59:56.517297 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:59:56.517375 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-29 21:59:56.51734458 +0000 UTC m=+405.594567637 I0529 21:59:56.513431 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-29 21:59:56.513376707 +0000 UTC m=+405.590599784 I0529 21:59:56.517700 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-29 21:59:56.517690633 +0000 UTC m=+405.594913700 I0529 21:59:56.517906 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-29 21:59:56.517901601 +0000 UTC m=+405.595124668 I0529 21:59:56.533651 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-29 21:59:56.533641183 +0000 UTC m=+405.610864250 I0529 21:59:56.533719 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 21:59:56.533749 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-29 21:59:56.533746498 +0000 UTC m=+405.610969565 I0529 21:59:56.649764 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:56.649837 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-29 21:59:56.649830083 +0000 UTC m=+405.727053160 I0529 21:59:56.650148 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:56.650181 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-29 21:59:56.650177596 +0000 UTC m=+405.727400673 I0529 21:59:56.654563 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:56.654664 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-29 21:59:56.654656218 +0000 UTC m=+405.731879295 I0529 21:59:56.803121 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:56.820439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:56.836204 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fqpgr" condition "Approved" to 2026-05-29 21:59:56.836195748 +0000 UTC m=+405.913418825 I0529 21:59:56.853559 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-csbmh" condition "Approved" to 2026-05-29 21:59:56.853550604 +0000 UTC m=+405.930773671 I0529 21:59:56.867493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fqpgr" condition "Ready" to 2026-05-29 21:59:56.867482487 +0000 UTC m=+405.944705554 I0529 21:59:56.872863 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-csbmh" condition "Ready" to 2026-05-29 21:59:56.872841613 +0000 UTC m=+405.950064680 I0529 21:59:56.907491 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:56.907478158 +0000 UTC m=+405.984701236 I0529 21:59:56.907927 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:56.907922935 +0000 UTC m=+405.985146012 I0529 21:59:56.927954 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:56.934008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:56.934597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:57.082965 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bc4s7" condition "Approved" to 2026-05-29 21:59:57.082953487 +0000 UTC m=+406.160176564 I0529 21:59:57.288429 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bc4s7" condition "Ready" to 2026-05-29 21:59:57.288419886 +0000 UTC m=+406.365642953 I0529 21:59:57.981191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:58.071888 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:58.071878725 +0000 UTC m=+407.149101802 I0529 21:59:58.143773 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 21:59:58.144215 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 21:59:58.144204249 +0000 UTC m=+407.221427346 I0529 21:59:58.328154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:18.671094 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" condition "Ready" to 2026-05-29 22:00:18.671051046 +0000 UTC m=+427.748274143 I0529 22:00:18.671601 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:00:18.671621 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" condition "Issuing" to 2026-05-29 22:00:18.671614688 +0000 UTC m=+427.748837795 I0529 22:00:18.693715 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5znnw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:18.693952 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:00:18.693989 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" condition "Issuing" to 2026-05-29 22:00:18.693978692 +0000 UTC m=+427.771201799 I0529 22:00:18.876109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5znnw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:18.885462 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-5znnw-5bp57" condition "Approved" to 2026-05-29 22:00:18.885443908 +0000 UTC m=+427.962667015 I0529 22:00:18.907202 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-5znnw-5bp57" condition "Ready" to 2026-05-29 22:00:18.907192047 +0000 UTC m=+427.984415114 I0529 22:00:18.939777 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:00:18.939760423 +0000 UTC m=+428.016983520 I0529 22:00:18.958675 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5znnw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5znnw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:40.136479 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-29 22:00:40.136463167 +0000 UTC m=+449.213686244 I0529 22:00:40.136650 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:00:40.136672 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-29 22:00:40.136668066 +0000 UTC m=+449.213891133 I0529 22:00:40.153092 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:40.153159 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:00:40.153177 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-29 22:00:40.153170642 +0000 UTC m=+449.230393719 I0529 22:00:40.350127 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hnr6v" condition "Approved" to 2026-05-29 22:00:40.35011638 +0000 UTC m=+449.427339457 I0529 22:00:40.372189 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hnr6v" condition "Ready" to 2026-05-29 22:00:40.372180471 +0000 UTC m=+449.449403538 I0529 22:00:40.415987 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:00:40.415975479 +0000 UTC m=+449.493198546 I0529 22:00:40.429247 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:40.431712 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:00:40.431706512 +0000 UTC m=+449.508929579 I0529 22:00:40.447613 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:40.449960 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:00:40.450526 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:00:40.450514786 +0000 UTC m=+449.527737883 I0529 22:03:44.240839 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-29 22:03:44.240819213 +0000 UTC m=+633.318042320 I0529 22:03:44.241125 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:03:44.241181 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-29 22:03:44.24117406 +0000 UTC m=+633.318397147 I0529 22:03:44.257063 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:03:44.257124 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:03:44.257284 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-29 22:03:44.257135889 +0000 UTC m=+633.334358976 I0529 22:03:44.726430 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-s25tk" condition "Approved" to 2026-05-29 22:03:44.726419184 +0000 UTC m=+633.803642251 I0529 22:03:44.741353 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-s25tk" condition "Ready" to 2026-05-29 22:03:44.741343822 +0000 UTC m=+633.818566899 I0529 22:03:44.767369 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:03:44.767350867 +0000 UTC m=+633.844573964 I0529 22:03:44.787552 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:03:44.787839 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:03:44.787832629 +0000 UTC m=+633.865055706 I0529 22:03:44.806707 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:03:44.812304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:04:23.443538 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:04:23.443599 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 22:04:23.443557708 +0000 UTC m=+672.520780785 I0529 22:04:23.443636 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-29 22:04:23.443571369 +0000 UTC m=+672.520794476 I0529 22:04:23.460611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:04:23.460805 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 22:04:23.460863 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-29 22:04:23.460855453 +0000 UTC m=+672.538078540 I0529 22:04:23.784794 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-zs4v4" condition "Approved" to 2026-05-29 22:04:23.784785327 +0000 UTC m=+672.862008394 I0529 22:04:23.804059 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-zs4v4" condition "Ready" to 2026-05-29 22:04:23.80404673 +0000 UTC m=+672.881269807 I0529 22:04:23.837828 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:04:23.837813858 +0000 UTC m=+672.915036935 I0529 22:04:23.859718 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 22:04:23.859988 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 22:04:23.859980766 +0000 UTC m=+672.937203833 I0529 22:04:23.880875 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"