I0417 05:56:32.491750 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0417 05:56:32.491903 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0417 05:56:32.492020 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0417 05:56:32.499029 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0417 05:56:32.499634 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0417 05:56:32.499670 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0417 05:56:32.499794 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0417 05:56:32.504000 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0417 05:56:32.529587 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0417 05:56:32.534224 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0417 05:56:32.538266 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0417 05:56:32.542366 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0417 05:56:32.542618 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0417 05:56:32.546558 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0417 05:56:32.546743 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0417 05:56:32.549158 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0417 05:56:32.551715 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0417 05:56:32.554190 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0417 05:56:32.557223 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0417 05:56:32.559825 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0417 05:56:32.565296 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0417 05:56:32.568021 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0417 05:56:32.570084 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0417 05:56:32.570262 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0417 05:56:32.572686 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0417 05:56:32.575014 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0417 05:56:32.579635 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0417 05:56:32.583735 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0417 05:56:32.586722 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0417 05:56:32.586756 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0417 05:56:32.586766 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0417 05:56:32.586782 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0417 05:56:32.589740 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0417 05:56:32.592467 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.595244 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.595300 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.595870 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.614576 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.626965 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.645581 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.659091 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.677415 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:32.680323 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 05:56:46.325207 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-17 05:56:46.325194959 +0000 UTC m=+13.866057297 I0417 05:56:47.062463 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-17 05:56:47.062448026 +0000 UTC m=+14.603310394 I0417 05:56:47.063720 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:56:47.063750 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-17 05:56:47.063743378 +0000 UTC m=+14.604605756 E0417 05:56:47.077244 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 05:56:47.077344 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-17 05:56:47.07730256 +0000 UTC m=+14.618164918 E0417 05:56:47.077378 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 05:56:47.082266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:56:47.082395 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:56:47.082492 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-17 05:56:47.082483878 +0000 UTC m=+14.623346246 E0417 05:56:47.088813 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0417 05:56:47.089260 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 05:56:47.089363 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 05:56:47.089642 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0417 05:56:47.132636 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ftx9r" condition "Approved" to 2026-04-17 05:56:47.132614119 +0000 UTC m=+14.673476487 I0417 05:56:47.145224 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ftx9r" condition "Ready" to 2026-04-17 05:56:47.145216409 +0000 UTC m=+14.686078737 I0417 05:56:47.172567 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:56:47.172552769 +0000 UTC m=+14.713415107 I0417 05:56:47.189242 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:56:47.189586 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:56:47.189576307 +0000 UTC m=+14.730438685 I0417 05:56:47.209834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:56:47.211352 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:56:52.090363 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:56:52.090336017 +0000 UTC m=+19.631198395 I0417 05:57:18.201324 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:57:18.201373 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-17 05:57:18.201365436 +0000 UTC m=+45.742227774 I0417 05:57:18.201385 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-17 05:57:18.201368806 +0000 UTC m=+45.742231154 I0417 05:57:18.211262 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-17 05:57:18.211249248 +0000 UTC m=+45.752111596 I0417 05:57:18.223380 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:57:18.223534 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:57:18.223673 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-17 05:57:18.223664964 +0000 UTC m=+45.764527312 I0417 05:57:18.583104 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z9pfn" condition "Approved" to 2026-04-17 05:57:18.583089831 +0000 UTC m=+46.123952199 I0417 05:57:18.612051 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z9pfn" condition "Ready" to 2026-04-17 05:57:18.612039791 +0000 UTC m=+46.152902139 I0417 05:57:18.644843 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:57:18.644831787 +0000 UTC m=+46.185694135 I0417 05:57:18.668854 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:57:18.669180 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:57:18.669174535 +0000 UTC m=+46.210036873 I0417 05:57:18.674119 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:57:18.688734 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:57:18.689149 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:57:18.689139245 +0000 UTC m=+46.230001613 I0417 05:59:01.620754 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:59:01.620780 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-17 05:59:01.620734518 +0000 UTC m=+149.161596896 I0417 05:59:01.620796 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-17 05:59:01.620790749 +0000 UTC m=+149.161653097 I0417 05:59:01.635693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:59:01.635768 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:59:01.635786 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-17 05:59:01.635778885 +0000 UTC m=+149.176641233 E0417 05:59:01.635912 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 05:59:01.635987 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-17 05:59:01.63597415 +0000 UTC m=+149.176836528 I0417 05:59:01.636058 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0417 05:59:01.650369 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0417 05:59:01.650820 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 05:59:01.650880 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0417 05:59:01.650933 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0417 05:59:01.690769 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-17 05:59:01.69075306 +0000 UTC m=+149.231615438 I0417 05:59:01.690794 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:59:01.690836 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-17 05:59:01.690825732 +0000 UTC m=+149.231688100 I0417 05:59:01.760328 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:59:01.760427 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 05:59:01.760460 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-17 05:59:01.760450206 +0000 UTC m=+149.301312584 I0417 05:59:02.044615 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:59:02.188272 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-c8vsl" condition "Approved" to 2026-04-17 05:59:02.188258441 +0000 UTC m=+149.729120789 I0417 05:59:02.424854 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-c8vsl" condition "Ready" to 2026-04-17 05:59:02.424839268 +0000 UTC m=+149.965701646 I0417 05:59:02.434998 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-jkkc9" condition "Approved" to 2026-04-17 05:59:02.434987677 +0000 UTC m=+149.975850025 I0417 05:59:02.482973 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-jkkc9" condition "Ready" to 2026-04-17 05:59:02.48295962 +0000 UTC m=+150.023821978 I0417 05:59:02.524391 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:59:02.524378444 +0000 UTC m=+150.065240792 I0417 05:59:02.543686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:59:06.651664 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:59:06.651651875 +0000 UTC m=+154.192514253 I0417 05:59:06.665488 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-c8vsl" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:59:06.665478054 +0000 UTC m=+154.206340392 I0417 05:59:06.697689 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:59:06.697676331 +0000 UTC m=+154.238538679 I0417 05:59:06.718185 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:59:06.718685 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:59:06.718674225 +0000 UTC m=+154.259536603 I0417 05:59:06.740236 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 05:59:06.740516 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 05:59:06.74050869 +0000 UTC m=+154.281371038 I0417 05:59:06.742895 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:01:39.384010 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-222.nip.io-tls" condition "Ready" to 2026-04-17 06:01:39.383976938 +0000 UTC m=+306.924839286 I0417 06:01:39.384585 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-222.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:01:39.384608 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-222.nip.io-tls" condition "Issuing" to 2026-04-17 06:01:39.384603385 +0000 UTC m=+306.925465733 I0417 06:01:39.400034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-222.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-222.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:01:39.400127 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-222.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:01:39.400157 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-222.nip.io-tls" condition "Issuing" to 2026-04-17 06:01:39.4001506 +0000 UTC m=+306.941012948 I0417 06:01:39.740409 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-222.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-222.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:01:39.747109 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-222.nip.io-tls-9579h" condition "Approved" to 2026-04-17 06:01:39.74710169 +0000 UTC m=+307.287964018 I0417 06:01:39.764041 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-222.nip.io-tls-9579h" condition "Ready" to 2026-04-17 06:01:39.764030913 +0000 UTC m=+307.304893261 I0417 06:01:39.788545 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-222.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:01:39.788532273 +0000 UTC m=+307.329394621 I0417 06:01:39.806832 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-222.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-222.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:01:39.807288 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-222.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:01:39.807280645 +0000 UTC m=+307.348142993 I0417 06:01:39.816222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-222.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-222.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:01:39.824273 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-222.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-222.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:01:39.824603 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-222.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:01:39.824595309 +0000 UTC m=+307.365457657 I0417 06:02:49.590556 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:02:49.590638 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-17 06:02:49.590592674 +0000 UTC m=+377.131455052 I0417 06:02:49.590645 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-17 06:02:49.590609454 +0000 UTC m=+377.131471802 E0417 06:02:49.612614 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 06:02:49.612707 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-17 06:02:49.612694543 +0000 UTC m=+377.153556921 E0417 06:02:49.612778 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 06:02:49.617697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:02:49.617960 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-17 06:02:49.617777867 +0000 UTC m=+377.158640235 E0417 06:02:49.626738 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0417 06:02:49.626989 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 06:02:49.627040 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 06:02:49.627147 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0417 06:02:49.635965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:02:49.636235 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-17 06:02:49.636222977 +0000 UTC m=+377.177085345 I0417 06:02:49.643203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:02:49.643461 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-l285g" condition "Approved" to 2026-04-17 06:02:49.643440604 +0000 UTC m=+377.184302952 I0417 06:02:49.664972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-l285g" condition "Ready" to 2026-04-17 06:02:49.664940848 +0000 UTC m=+377.205803216 I0417 06:02:49.691033 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:02:49.691013546 +0000 UTC m=+377.231875894 I0417 06:02:49.708048 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:02:49.756531 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:02:54.627953 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:02:54.627940775 +0000 UTC m=+382.168803143 I0417 06:03:32.506705 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-17 06:03:32.506694792 +0000 UTC m=+420.047557140 I0417 06:03:32.507050 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:03:32.507125 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:03:32.507154 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-17 06:03:32.507115573 +0000 UTC m=+420.047977921 I0417 06:03:32.507165 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-17 06:03:32.507161214 +0000 UTC m=+420.048023562 I0417 06:03:32.507120 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 06:03:32.507107833 +0000 UTC m=+420.047970191 I0417 06:03:32.507894 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-17 06:03:32.507882121 +0000 UTC m=+420.048744469 I0417 06:03:32.508426 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:03:32.508497 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-17 06:03:32.508489676 +0000 UTC m=+420.049352014 I0417 06:03:32.541688 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:32.541775 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 06:03:32.541763824 +0000 UTC m=+420.082626222 I0417 06:03:32.543718 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:32.543852 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-17 06:03:32.543840315 +0000 UTC m=+420.084702663 I0417 06:03:32.544162 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:32.544236 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:03:32.544258 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-17 06:03:32.544251924 +0000 UTC m=+420.085114262 I0417 06:03:32.756865 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:32.806537 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-z8ng2" condition "Approved" to 2026-04-17 06:03:32.806526371 +0000 UTC m=+420.347388709 I0417 06:03:32.839606 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-z8ng2" condition "Ready" to 2026-04-17 06:03:32.839590345 +0000 UTC m=+420.380452723 I0417 06:03:32.871942 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:03:32.87193097 +0000 UTC m=+420.412793318 I0417 06:03:32.890212 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8fsls" condition "Approved" to 2026-04-17 06:03:32.890200223 +0000 UTC m=+420.431062571 I0417 06:03:32.896505 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:32.909248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8fsls" condition "Ready" to 2026-04-17 06:03:32.909237605 +0000 UTC m=+420.450099943 I0417 06:03:32.939571 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:03:32.939558102 +0000 UTC m=+420.480420440 I0417 06:03:32.969643 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:32.970999 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:03:32.970989625 +0000 UTC m=+420.511851963 E0417 06:03:32.987841 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-vjdjs\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0417 06:03:33.141023 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:33.290982 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:33.448146 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-g6zpl" condition "Approved" to 2026-04-17 06:03:33.448121019 +0000 UTC m=+420.988983417 I0417 06:03:33.697733 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-g6zpl" condition "Ready" to 2026-04-17 06:03:33.69772181 +0000 UTC m=+421.238584158 I0417 06:03:33.992152 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:03:33.992132218 +0000 UTC m=+421.532994586 I0417 06:03:34.091700 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:34.092170 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:03:34.092157295 +0000 UTC m=+421.633019673 I0417 06:03:34.341789 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:34.395121 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:41.716026 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" condition "Ready" to 2026-04-17 06:03:41.716014296 +0000 UTC m=+429.256876624 I0417 06:03:41.716341 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:03:41.716354 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" condition "Issuing" to 2026-04-17 06:03:41.716351354 +0000 UTC m=+429.257213692 I0417 06:03:41.732577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:41.732685 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:03:41.732720 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" condition "Issuing" to 2026-04-17 06:03:41.732711101 +0000 UTC m=+429.273573469 I0417 06:03:41.922342 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:41.935622 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-8hgg9-g5hm9" condition "Approved" to 2026-04-17 06:03:41.935607227 +0000 UTC m=+429.476469575 I0417 06:03:41.960000 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-8hgg9-g5hm9" condition "Ready" to 2026-04-17 06:03:41.959984839 +0000 UTC m=+429.500847217 I0417 06:03:41.989372 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:03:41.989360352 +0000 UTC m=+429.530222690 I0417 06:03:42.008957 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:03:42.053167 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8hgg9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:04:11.938187 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:04:11.938647 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 06:04:11.938227552 +0000 UTC m=+459.479089880 I0417 06:04:11.938653 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-17 06:04:11.938067108 +0000 UTC m=+459.478929456 I0417 06:04:11.977601 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:04:11.977725 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:04:11.977754 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 06:04:11.977743552 +0000 UTC m=+459.518605900 I0417 06:04:12.322559 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-fk7dp" condition "Approved" to 2026-04-17 06:04:12.322541933 +0000 UTC m=+459.863404311 I0417 06:04:12.348910 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-fk7dp" condition "Ready" to 2026-04-17 06:04:12.348891543 +0000 UTC m=+459.889753921 I0417 06:04:12.396061 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:04:12.396048988 +0000 UTC m=+459.936911326 I0417 06:04:12.412102 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:04:12.482416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:07:32.996760 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-17 06:07:32.996708256 +0000 UTC m=+660.537570634 I0417 06:07:32.996990 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:07:32.997081 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-17 06:07:32.997028055 +0000 UTC m=+660.537890403 I0417 06:07:33.019863 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:07:33.019993 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-17 06:07:33.01998105 +0000 UTC m=+660.560843398 I0417 06:07:33.574097 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:07:33.607025 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-bsv6x" condition "Approved" to 2026-04-17 06:07:33.60700959 +0000 UTC m=+661.147871938 I0417 06:07:33.626243 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-bsv6x" condition "Ready" to 2026-04-17 06:07:33.626236253 +0000 UTC m=+661.167098601 I0417 06:07:33.653014 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:07:33.653000223 +0000 UTC m=+661.193862581 I0417 06:07:33.676763 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:07:33.727894 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:09:54.272907 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-17 06:09:54.272202818 +0000 UTC m=+801.813065216 I0417 06:09:54.273083 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:09:54.273518 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-17 06:09:54.273321176 +0000 UTC m=+801.814183524 I0417 06:09:54.292108 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:09:54.292203 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-17 06:09:54.292194613 +0000 UTC m=+801.833056961 I0417 06:09:54.509824 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:09:54.542372 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-gxd85" condition "Approved" to 2026-04-17 06:09:54.542362389 +0000 UTC m=+802.083224727 I0417 06:09:54.559003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-gxd85" condition "Ready" to 2026-04-17 06:09:54.558990743 +0000 UTC m=+802.099853091 I0417 06:09:54.588757 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:09:54.588743723 +0000 UTC m=+802.129606061 I0417 06:09:54.616486 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:09:54.676836 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:11:03.218623 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-17 06:11:03.218594453 +0000 UTC m=+870.759456801 I0417 06:11:03.219101 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:11:03.219130 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-17 06:11:03.219126476 +0000 UTC m=+870.759988834 I0417 06:11:03.237202 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:11:03.237317 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-17 06:11:03.237303636 +0000 UTC m=+870.778166024 I0417 06:11:03.375673 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:11:03.438082 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-d7whv" condition "Approved" to 2026-04-17 06:11:03.438065125 +0000 UTC m=+870.978927463 I0417 06:11:03.462822 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-d7whv" condition "Ready" to 2026-04-17 06:11:03.462811705 +0000 UTC m=+871.003674053 I0417 06:11:03.499825 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:11:03.499807712 +0000 UTC m=+871.040670060 I0417 06:11:03.527750 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:11:03.528033 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:11:03.528025856 +0000 UTC m=+871.068888194 I0417 06:11:03.543794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:11:03.544095 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:11:03.544088276 +0000 UTC m=+871.084950624 I0417 06:14:02.624409 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-17 06:14:02.624355031 +0000 UTC m=+1050.165217409 I0417 06:14:02.624479 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 06:14:02.624558 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-17 06:14:02.624542936 +0000 UTC m=+1050.165405314 I0417 06:14:02.642256 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:14:02.642379 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-17 06:14:02.64236466 +0000 UTC m=+1050.183227048 I0417 06:14:02.807676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 06:14:02.839604 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-k7dhb" condition "Approved" to 2026-04-17 06:14:02.839591757 +0000 UTC m=+1050.380454135 I0417 06:14:02.856539 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-k7dhb" condition "Ready" to 2026-04-17 06:14:02.856527709 +0000 UTC m=+1050.397390057 I0417 06:14:02.885884 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 06:14:02.885869834 +0000 UTC m=+1050.426732182 I0417 06:14:02.910566 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"