I0529 13:57:14.670174 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0529 13:57:14.670482 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0529 13:57:14.670619 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0529 13:57:14.678993 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0529 13:57:14.679566 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0529 13:57:14.679711 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0529 13:57:14.679842 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0529 13:57:14.682865 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0529 13:57:14.695971 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0529 13:57:14.701319 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0529 13:57:14.703494 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0529 13:57:14.712536 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0529 13:57:14.720143 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0529 13:57:14.723303 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0529 13:57:14.725954 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0529 13:57:14.726011 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0529 13:57:14.726048 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0529 13:57:14.726110 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0529 13:57:14.728828 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0529 13:57:14.731117 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0529 13:57:14.731207 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0529 13:57:14.733870 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0529 13:57:14.746661 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0529 13:57:14.751583 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0529 13:57:14.754506 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0529 13:57:14.757021 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0529 13:57:14.757178 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0529 13:57:14.759735 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0529 13:57:14.762412 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0529 13:57:14.764833 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0529 13:57:14.764877 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0529 13:57:14.767953 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0529 13:57:14.773409 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0529 13:57:14.776623 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.776782 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.777016 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.789124 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.807942 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.821345 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.846724 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.859557 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.874589 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:14.884167 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 13:57:33.538304 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-29 13:57:33.538288565 +0000 UTC m=+18.908013387 I0529 13:57:34.266541 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 13:57:34.266723 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-29 13:57:34.266712063 +0000 UTC m=+19.636436855 I0529 13:57:34.266564 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 13:57:34.26654181 +0000 UTC m=+19.636266622 E0529 13:57:34.285631 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 13:57:34.285688 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-29 13:57:34.285681414 +0000 UTC m=+19.655406186 E0529 13:57:34.285708 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 13:57:34.288860 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:57:34.288985 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 13:57:34.288975593 +0000 UTC m=+19.658700385 E0529 13:57:34.299959 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0529 13:57:34.300073 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 13:57:34.300170 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 13:57:34.300232 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0529 13:57:34.302804 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:57:34.302888 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 13:57:34.302879593 +0000 UTC m=+19.672604385 I0529 13:57:34.314156 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6qgcb" condition "Approved" to 2026-05-29 13:57:34.314149015 +0000 UTC m=+19.683873807 I0529 13:57:34.315884 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-29 13:57:34.315878426 +0000 UTC m=+19.685603218 I0529 13:57:34.324507 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:57:34.327692 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6qgcb" condition "Ready" to 2026-05-29 13:57:34.327680379 +0000 UTC m=+19.697405201 I0529 13:57:34.353487 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 13:57:34.353469002 +0000 UTC m=+19.723193824 I0529 13:57:34.370365 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:57:34.371157 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 13:57:34.371148949 +0000 UTC m=+19.740873731 I0529 13:57:34.382672 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:57:34.384813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:57:34.385165 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 13:57:34.385155211 +0000 UTC m=+19.754880003 I0529 13:57:34.392376 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:57:39.300552 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 13:57:39.300538282 +0000 UTC m=+24.670263094 I0529 13:58:03.123193 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 13:58:03.124045 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-29 13:58:03.124034366 +0000 UTC m=+48.493759158 I0529 13:58:03.123646 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-29 13:58:03.123628447 +0000 UTC m=+48.493353239 I0529 13:58:03.135388 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-29 13:58:03.135378303 +0000 UTC m=+48.505103095 I0529 13:58:03.157608 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:58:03.157691 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-29 13:58:03.157683591 +0000 UTC m=+48.527408383 I0529 13:58:03.352680 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:58:03.400139 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6fld7" condition "Approved" to 2026-05-29 13:58:03.400124498 +0000 UTC m=+48.769849310 I0529 13:58:03.463039 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6fld7" condition "Ready" to 2026-05-29 13:58:03.463026369 +0000 UTC m=+48.832751161 I0529 13:58:03.506553 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 13:58:03.50653906 +0000 UTC m=+48.876263842 I0529 13:58:03.548028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 13:58:03.648648 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:02:54.947172 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready" to 2026-05-29 14:02:54.947114773 +0000 UTC m=+340.316839585 I0529 14:02:54.947210 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-3.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:02:54.948115 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Issuing" to 2026-05-29 14:02:54.948100825 +0000 UTC m=+340.317825677 I0529 14:02:54.965741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:02:54.965883 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-3.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:02:54.965926 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Issuing" to 2026-05-29 14:02:54.965909907 +0000 UTC m=+340.335634719 I0529 14:02:55.166336 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-9dxp5" condition "Approved" to 2026-05-29 14:02:55.166314383 +0000 UTC m=+340.536039205 I0529 14:02:55.189898 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-9dxp5" condition "Ready" to 2026-05-29 14:02:55.189886803 +0000 UTC m=+340.559611625 I0529 14:02:55.220103 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:02:55.220092631 +0000 UTC m=+340.589817423 I0529 14:02:55.244122 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:02:55.244668 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:02:55.244659024 +0000 UTC m=+340.614383816 I0529 14:02:55.268745 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:01.096617 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:04:01.096655 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-29 14:04:01.096633432 +0000 UTC m=+406.466358224 I0529 14:04:01.096672 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-29 14:04:01.096658443 +0000 UTC m=+406.466383255 E0529 14:04:01.113198 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 14:04:01.113312 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-29 14:04:01.113300095 +0000 UTC m=+406.483024887 E0529 14:04:01.113451 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0529 14:04:01.114864 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:01.114950 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-29 14:04:01.114940605 +0000 UTC m=+406.484665397 E0529 14:04:01.127739 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0529 14:04:01.127860 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 14:04:01.127891 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0529 14:04:01.127940 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0529 14:04:01.133611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:01.133704 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-29 14:04:01.133694041 +0000 UTC m=+406.503418833 I0529 14:04:01.135051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:01.137343 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-m8l92" condition "Approved" to 2026-05-29 14:04:01.137331831 +0000 UTC m=+406.507056613 I0529 14:04:01.150565 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-m8l92" condition "Ready" to 2026-05-29 14:04:01.150552569 +0000 UTC m=+406.520277351 I0529 14:04:01.168664 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:01.168648477 +0000 UTC m=+406.538373269 I0529 14:04:01.183927 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:06.128847 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:06.128835352 +0000 UTC m=+411.498560164 I0529 14:04:49.869200 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-29 14:04:49.869182422 +0000 UTC m=+455.238907204 I0529 14:04:49.869544 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-29 14:04:49.869527391 +0000 UTC m=+455.239252183 I0529 14:04:49.869734 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:04:49.869761 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-29 14:04:49.869757947 +0000 UTC m=+455.239482739 I0529 14:04:49.869940 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:04:49.869960 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-29 14:04:49.869957472 +0000 UTC m=+455.239682264 I0529 14:04:49.870226 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:04:49.870246 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-29 14:04:49.870243289 +0000 UTC m=+455.239968081 I0529 14:04:49.870411 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-29 14:04:49.870407294 +0000 UTC m=+455.240132086 I0529 14:04:49.945900 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:49.946019 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:04:49.946053 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-29 14:04:49.946043295 +0000 UTC m=+455.315768087 I0529 14:04:49.946446 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:49.946541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:49.948038 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-29 14:04:49.948013126 +0000 UTC m=+455.317737918 I0529 14:04:49.951259 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-29 14:04:49.95124984 +0000 UTC m=+455.320974632 I0529 14:04:50.073412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:50.104527 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-mhfx4" condition "Approved" to 2026-05-29 14:04:50.104519217 +0000 UTC m=+455.474243999 I0529 14:04:50.122226 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-mhfx4" condition "Ready" to 2026-05-29 14:04:50.122221748 +0000 UTC m=+455.491946530 I0529 14:04:50.214368 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:50.219175 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:04:50.219267 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-29 14:04:50.2192576 +0000 UTC m=+455.588982382 I0529 14:04:50.228285 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:50.228273115 +0000 UTC m=+455.597997897 I0529 14:04:50.244818 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:50.253261 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:50.253591 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:50.253581045 +0000 UTC m=+455.623305847 I0529 14:04:50.291603 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-pggxd" condition "Approved" to 2026-05-29 14:04:50.291594247 +0000 UTC m=+455.661319029 I0529 14:04:50.292198 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:50.292194562 +0000 UTC m=+455.661919344 I0529 14:04:50.316288 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:50.324854 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-pggxd" condition "Ready" to 2026-05-29 14:04:50.324845403 +0000 UTC m=+455.694570185 I0529 14:04:50.487018 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-klcq2" condition "Approved" to 2026-05-29 14:04:50.487009653 +0000 UTC m=+455.856734435 I0529 14:04:50.698717 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-klcq2" condition "Ready" to 2026-05-29 14:04:50.698707625 +0000 UTC m=+456.068432417 I0529 14:04:51.491538 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jvmz5" condition "Approved" to 2026-05-29 14:04:51.491516504 +0000 UTC m=+456.861241316 I0529 14:04:51.534649 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:51.534629389 +0000 UTC m=+456.904354211 I0529 14:04:51.585263 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:51.998578 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jvmz5" condition "Ready" to 2026-05-29 14:04:51.998562859 +0000 UTC m=+457.368287651 I0529 14:04:52.133361 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:52.133801 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:52.133791782 +0000 UTC m=+457.503516574 I0529 14:04:52.642341 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" resource_name="alertmanager-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="alertmanager-tls-jvmz5" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="alertmanager-tls-j699z" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0529 14:04:52.660493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:52.692493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-p6v9x" condition "Approved" to 2026-05-29 14:04:52.692477289 +0000 UTC m=+458.062202111 I0529 14:04:52.800052 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-p6v9x" condition "Ready" to 2026-05-29 14:04:52.800041099 +0000 UTC m=+458.169765891 I0529 14:04:53.288678 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:53.288664469 +0000 UTC m=+458.658389261 I0529 14:04:53.384622 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:53.385161 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:04:53.385153702 +0000 UTC m=+458.754878494 I0529 14:04:53.635187 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:04:53.684191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:00.319919 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:05:00.319969 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" condition "Issuing" to 2026-05-29 14:05:00.319957825 +0000 UTC m=+465.689682637 I0529 14:05:00.320219 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" condition "Ready" to 2026-05-29 14:05:00.320193011 +0000 UTC m=+465.689917803 I0529 14:05:00.338416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:00.338561 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:05:00.338591 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" condition "Issuing" to 2026-05-29 14:05:00.338583205 +0000 UTC m=+465.708307997 I0529 14:05:00.614098 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:00.628797 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4wfbh-sb567" condition "Approved" to 2026-05-29 14:05:00.628786374 +0000 UTC m=+465.998511156 I0529 14:05:00.645547 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4wfbh-sb567" condition "Ready" to 2026-05-29 14:05:00.645536485 +0000 UTC m=+466.015261267 I0529 14:05:00.676377 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:05:00.676363515 +0000 UTC m=+466.046088317 I0529 14:05:00.703107 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4wfbh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:19.385627 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:05:19.389206 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-29 14:05:19.389194491 +0000 UTC m=+484.758919304 I0529 14:05:19.385697 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-29 14:05:19.385656838 +0000 UTC m=+484.755381660 I0529 14:05:19.406592 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:19.406643 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:05:19.406656 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-29 14:05:19.406650327 +0000 UTC m=+484.776375109 I0529 14:05:19.635229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:19.649400 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-8w7wh" condition "Approved" to 2026-05-29 14:05:19.649389573 +0000 UTC m=+485.019114355 I0529 14:05:19.667381 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-8w7wh" condition "Ready" to 2026-05-29 14:05:19.667371502 +0000 UTC m=+485.037096274 I0529 14:05:19.701677 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:05:19.701649655 +0000 UTC m=+485.071374467 I0529 14:05:19.727881 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:19.728259 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:05:19.728251043 +0000 UTC m=+485.097975835 I0529 14:05:19.748960 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:05:19.749248 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:05:19.749239543 +0000 UTC m=+485.118964325 I0529 14:05:19.751461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:08:41.001390 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:08:41.001502 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-29 14:08:41.001488365 +0000 UTC m=+686.371213217 I0529 14:08:41.001670 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-29 14:08:41.001648669 +0000 UTC m=+686.371373521 I0529 14:08:41.018725 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:08:41.018813 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:08:41.018832 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-29 14:08:41.018827706 +0000 UTC m=+686.388552498 I0529 14:08:41.168343 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-h7h5g" condition "Approved" to 2026-05-29 14:08:41.168328307 +0000 UTC m=+686.538053099 I0529 14:08:41.192115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-h7h5g" condition "Ready" to 2026-05-29 14:08:41.192098711 +0000 UTC m=+686.561823503 I0529 14:08:41.224767 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:08:41.224751298 +0000 UTC m=+686.594476080 I0529 14:08:41.252430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:08:41.252689 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:08:41.25268359 +0000 UTC m=+686.622408372 I0529 14:08:41.268569 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:08:41.268590 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:08:41.268793 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:08:41.268789207 +0000 UTC m=+686.638513989 I0529 14:09:26.385058 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:09:26.385120 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-29 14:09:26.385112707 +0000 UTC m=+731.754837499 I0529 14:09:26.385967 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 14:09:26.385953097 +0000 UTC m=+731.755677889 I0529 14:09:26.407870 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 14:09:26.408033 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 14:09:26.408073 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-29 14:09:26.408059588 +0000 UTC m=+731.777784400 I0529 14:09:26.745682 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-n78cb" condition "Approved" to 2026-05-29 14:09:26.745670294 +0000 UTC m=+732.115395086 I0529 14:09:26.763187 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-n78cb" condition "Ready" to 2026-05-29 14:09:26.76318069 +0000 UTC m=+732.132905472 I0529 14:09:26.795249 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 14:09:26.795227553 +0000 UTC m=+732.164952345 I0529 14:09:26.813214 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"