I0501 14:06:13.753142 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0501 14:06:13.753218 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0501 14:06:13.753285 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0501 14:06:13.756291 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0501 14:06:13.756607 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0501 14:06:13.756808 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0501 14:06:13.756800 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0501 14:06:13.759305 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0501 14:06:13.775713 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0501 14:06:13.779901 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0501 14:06:13.784317 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0501 14:06:13.788438 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0501 14:06:13.788725 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0501 14:06:13.790227 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0501 14:06:13.790242 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0501 14:06:13.791353 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0501 14:06:13.791996 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0501 14:06:13.793722 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0501 14:06:13.795536 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0501 14:06:13.799694 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0501 14:06:13.803022 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0501 14:06:13.805635 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0501 14:06:13.808723 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0501 14:06:13.811717 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0501 14:06:13.814188 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0501 14:06:13.814308 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0501 14:06:13.816719 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0501 14:06:13.816779 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0501 14:06:13.820065 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0501 14:06:13.820116 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0501 14:06:13.823676 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0501 14:06:13.826979 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0501 14:06:13.830814 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0501 14:06:13.833968 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.833996 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.834316 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.834751 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.862914 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.879779 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.888038 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.903422 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.921590 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:13.930233 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:06:25.381365 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-01 14:06:25.381343074 +0000 UTC m=+11.654376076 I0501 14:06:26.166498 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-01 14:06:26.166477777 +0000 UTC m=+12.439510779 I0501 14:06:26.166535 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:06:26.166588 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-01 14:06:26.166580682 +0000 UTC m=+12.439613684 E0501 14:06:26.187021 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:06:26.189133 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-01 14:06:26.189120203 +0000 UTC m=+12.462153215 E0501 14:06:26.189211 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:06:26.187985 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:06:26.189367 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-01 14:06:26.189359764 +0000 UTC m=+12.462392766 E0501 14:06:26.201448 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0501 14:06:26.202339 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:06:26.202390 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:06:26.202421 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0501 14:06:26.204425 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:06:26.204483 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-01 14:06:26.204477454 +0000 UTC m=+12.477510436 I0501 14:06:26.208917 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-znv2w" condition "Approved" to 2026-05-01 14:06:26.208909598 +0000 UTC m=+12.481942590 I0501 14:06:26.216975 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-01 14:06:26.21696739 +0000 UTC m=+12.490000372 I0501 14:06:26.221074 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-znv2w" condition "Ready" to 2026-05-01 14:06:26.22106544 +0000 UTC m=+12.494098432 I0501 14:06:26.223172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:06:26.240985 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:06:26.24097784 +0000 UTC m=+12.514010842 I0501 14:06:26.255406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:06:31.203135 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:06:31.20309864 +0000 UTC m=+17.476131662 I0501 14:06:53.320002 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:06:53.320073 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-01 14:06:53.320041292 +0000 UTC m=+39.593074314 I0501 14:06:53.321041 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-01 14:06:53.321030568 +0000 UTC m=+39.594063590 I0501 14:06:53.350035 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-01 14:06:53.350026131 +0000 UTC m=+39.623059123 I0501 14:06:53.398653 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:06:53.398780 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-01 14:06:53.398767386 +0000 UTC m=+39.671800408 I0501 14:06:53.692374 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:06:53.721005 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lzmqb" condition "Approved" to 2026-05-01 14:06:53.720986996 +0000 UTC m=+39.994020028 I0501 14:06:53.760248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lzmqb" condition "Ready" to 2026-05-01 14:06:53.760238464 +0000 UTC m=+40.033271476 I0501 14:06:53.802593 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:06:53.802576754 +0000 UTC m=+40.075609776 I0501 14:06:53.828008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:12.436586 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-115.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:11:12.436667 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-115.nip.io-tls" condition "Issuing" to 2026-05-01 14:11:12.43663899 +0000 UTC m=+298.709671992 I0501 14:11:12.437172 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-115.nip.io-tls" condition "Ready" to 2026-05-01 14:11:12.437156227 +0000 UTC m=+298.710189229 I0501 14:11:12.451160 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:12.451232 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-115.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:11:12.451252 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-115.nip.io-tls" condition "Issuing" to 2026-05-01 14:11:12.451244414 +0000 UTC m=+298.724277426 I0501 14:11:12.599757 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-115.nip.io-tls-xqdk6" condition "Approved" to 2026-05-01 14:11:12.599745115 +0000 UTC m=+298.872778137 I0501 14:11:12.628226 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-115.nip.io-tls-xqdk6" condition "Ready" to 2026-05-01 14:11:12.628215579 +0000 UTC m=+298.901248571 I0501 14:11:12.651695 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:11:12.651683081 +0000 UTC m=+298.924716083 I0501 14:11:12.672369 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:12.672654 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:11:12.672647985 +0000 UTC m=+298.945680987 I0501 14:11:12.687274 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:12.687758 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:11:12.687747516 +0000 UTC m=+298.960780538 I0501 14:12:19.037400 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:12:19.037952 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-01 14:12:19.037869533 +0000 UTC m=+365.310902555 I0501 14:12:19.037651 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-01 14:12:19.037626846 +0000 UTC m=+365.310659838 E0501 14:12:19.053455 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:12:19.053490 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-01 14:12:19.053482356 +0000 UTC m=+365.326515358 E0501 14:12:19.053538 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:12:19.056815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:19.056871 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-01 14:12:19.056864984 +0000 UTC m=+365.329897976 E0501 14:12:19.063715 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0501 14:12:19.063811 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:12:19.063867 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:12:19.063896 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0501 14:12:19.073075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:19.090439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-drdst" condition "Approved" to 2026-05-01 14:12:19.090424588 +0000 UTC m=+365.363457610 I0501 14:12:19.103625 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-drdst" condition "Ready" to 2026-05-01 14:12:19.103613641 +0000 UTC m=+365.376646633 I0501 14:12:19.134445 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:12:19.134428245 +0000 UTC m=+365.407461267 I0501 14:12:19.149880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:19.150176 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:12:19.150169001 +0000 UTC m=+365.423202003 I0501 14:12:19.166598 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:19.167088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:24.065073 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:12:24.065059674 +0000 UTC m=+370.338092706 I0501 14:13:03.544456 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:13:03.545273 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-01 14:13:03.54523755 +0000 UTC m=+409.818270552 I0501 14:13:03.551606 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-01 14:13:03.5482286 +0000 UTC m=+409.821261602 I0501 14:13:03.552549 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:13:03.552580 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-01 14:13:03.552574305 +0000 UTC m=+409.825607287 I0501 14:13:03.552682 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:13:03.552975 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-01 14:13:03.552970156 +0000 UTC m=+409.826003148 I0501 14:13:03.552797 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-01 14:13:03.552792241 +0000 UTC m=+409.825825233 I0501 14:13:03.552830 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-01 14:13:03.552827912 +0000 UTC m=+409.825860904 I0501 14:13:03.597427 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:03.597764 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-01 14:13:03.59775753 +0000 UTC m=+409.870790522 I0501 14:13:03.609702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:03.609828 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-01 14:13:03.609821123 +0000 UTC m=+409.882854115 I0501 14:13:03.610149 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:03.610251 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-01 14:13:03.610247564 +0000 UTC m=+409.883280546 I0501 14:13:03.787171 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:03.810006 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:03.823813 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-f2vkx" condition "Approved" to 2026-05-01 14:13:03.823806819 +0000 UTC m=+410.096839811 I0501 14:13:03.858844 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-f2vkx" condition "Ready" to 2026-05-01 14:13:03.858836074 +0000 UTC m=+410.131869076 I0501 14:13:03.866272 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-49fh9" condition "Approved" to 2026-05-01 14:13:03.866263721 +0000 UTC m=+410.139296713 I0501 14:13:03.883530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-49fh9" condition "Ready" to 2026-05-01 14:13:03.883515901 +0000 UTC m=+410.156548903 I0501 14:13:03.889154 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:13:03.889144611 +0000 UTC m=+410.162177613 I0501 14:13:03.915856 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:03.916996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:03.920874 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:13:03.920869648 +0000 UTC m=+410.193902640 I0501 14:13:04.017598 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:04.018382 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:13:04.018374528 +0000 UTC m=+410.291407510 I0501 14:13:04.077596 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5xqxr" condition "Approved" to 2026-05-01 14:13:04.077584725 +0000 UTC m=+410.350617707 I0501 14:13:04.428687 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5xqxr" condition "Ready" to 2026-05-01 14:13:04.428675092 +0000 UTC m=+410.701708094 I0501 14:13:04.718612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:04.821049 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:05.119128 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:13:05.11911418 +0000 UTC m=+411.392147182 I0501 14:13:05.223597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:05.514834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:11.012156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:13:11.012211 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" condition "Issuing" to 2026-05-01 14:13:11.012200244 +0000 UTC m=+417.285233266 I0501 14:13:11.012254 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" condition "Ready" to 2026-05-01 14:13:11.012233525 +0000 UTC m=+417.285266557 I0501 14:13:11.028411 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:11.028471 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" condition "Ready" to 2026-05-01 14:13:11.028464612 +0000 UTC m=+417.301497614 I0501 14:13:11.229549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:11.396087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-x5z5s-24jw4" condition "Approved" to 2026-05-01 14:13:11.396078279 +0000 UTC m=+417.669111271 I0501 14:13:11.520559 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-x5z5s-24jw4" condition "Ready" to 2026-05-01 14:13:11.520545907 +0000 UTC m=+417.793578919 I0501 14:13:11.550380 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:13:11.550362971 +0000 UTC m=+417.823395973 I0501 14:13:11.569915 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:11.618535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x5z5s-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:23.678789 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:13:23.678834 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-01 14:13:23.678816768 +0000 UTC m=+429.951849770 I0501 14:13:23.678960 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-01 14:13:23.678952752 +0000 UTC m=+429.951985754 I0501 14:13:23.696083 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:23.696149 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-01 14:13:23.696141656 +0000 UTC m=+429.969174658 I0501 14:13:24.061001 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:13:24.089959 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-x9blt" condition "Approved" to 2026-05-01 14:13:24.08995081 +0000 UTC m=+430.362983792 I0501 14:13:24.110179 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-x9blt" condition "Ready" to 2026-05-01 14:13:24.110168223 +0000 UTC m=+430.383201225 I0501 14:13:24.140767 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:13:24.140752742 +0000 UTC m=+430.413785744 I0501 14:13:24.154500 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:30.958315 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:16:30.958432 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-01 14:16:30.958411407 +0000 UTC m=+617.231444399 I0501 14:16:30.958757 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-01 14:16:30.958752975 +0000 UTC m=+617.231785957 I0501 14:16:30.979741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:30.979957 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:16:30.980007 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-01 14:16:30.979997544 +0000 UTC m=+617.253030566 I0501 14:16:31.116083 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:31.129323 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-d4zkt" condition "Approved" to 2026-05-01 14:16:31.129308304 +0000 UTC m=+617.402341306 I0501 14:16:31.152777 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-d4zkt" condition "Ready" to 2026-05-01 14:16:31.152767113 +0000 UTC m=+617.425800115 I0501 14:16:31.182732 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:16:31.182703895 +0000 UTC m=+617.455736897 I0501 14:16:31.200699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:31.200993 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:16:31.200979709 +0000 UTC m=+617.474012701 I0501 14:16:31.212575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:31.213880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:31.214097 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:16:31.214090069 +0000 UTC m=+617.487123071 I0501 14:17:09.170030 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:17:09.170089 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-01 14:17:09.170060713 +0000 UTC m=+655.443093695 I0501 14:17:09.170536 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-01 14:17:09.170523383 +0000 UTC m=+655.443556415 I0501 14:17:09.191031 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:17:09.191076 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:17:09.191089 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-01 14:17:09.191084641 +0000 UTC m=+655.464117633 I0501 14:17:09.428799 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:17:09.432972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-krw46" condition "Approved" to 2026-05-01 14:17:09.432957319 +0000 UTC m=+655.705990321 I0501 14:17:09.450262 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-krw46" condition "Ready" to 2026-05-01 14:17:09.450254276 +0000 UTC m=+655.723287268 I0501 14:17:09.478903 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:17:09.47888874 +0000 UTC m=+655.751921752 I0501 14:17:09.507210 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:17:09.556129 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"