I0512 12:36:34.187108 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0512 12:36:34.187244 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0512 12:36:34.187312 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0512 12:36:34.190647 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0512 12:36:34.190952 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0512 12:36:34.191274 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0512 12:36:34.191272 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0512 12:36:34.193446 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0512 12:36:34.244137 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0512 12:36:34.250409 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0512 12:36:34.254172 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0512 12:36:34.263556 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0512 12:36:34.268905 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0512 12:36:34.270656 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0512 12:36:34.272846 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0512 12:36:34.272978 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0512 12:36:34.274659 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0512 12:36:34.276228 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0512 12:36:34.277880 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0512 12:36:34.280087 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0512 12:36:34.280130 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0512 12:36:34.282189 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0512 12:36:34.288729 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0512 12:36:34.293428 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0512 12:36:34.295804 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0512 12:36:34.298023 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0512 12:36:34.300333 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0512 12:36:34.303263 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0512 12:36:34.303312 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0512 12:36:34.303324 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0512 12:36:34.306369 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0512 12:36:34.306483 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0512 12:36:34.306438 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0512 12:36:34.313213 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.313510 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.315486 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.362543 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.371854 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.402276 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.414670 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.459647 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.537384 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:36:34.640057 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 12:42:07.894699 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-05-12 12:42:07.89468822 +0000 UTC m=+333.759742014 I0512 12:42:07.895766 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 12:42:07.895798 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-12 12:42:07.895789325 +0000 UTC m=+333.760843109 I0512 12:42:07.911339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:07.911437 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 12:42:07.911461 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-12 12:42:07.911455167 +0000 UTC m=+333.776508951 I0512 12:42:08.129412 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-447r6" condition "Approved" to 2026-05-12 12:42:08.129395928 +0000 UTC m=+333.994449702 I0512 12:42:08.153406 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-447r6" condition "Ready" to 2026-05-12 12:42:08.153396689 +0000 UTC m=+334.018450463 I0512 12:42:08.182581 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:42:08.182565494 +0000 UTC m=+334.047619278 I0512 12:42:08.205866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:49.830940 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-12 12:42:49.830924717 +0000 UTC m=+375.695978521 I0512 12:42:49.831381 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 12:42:49.831428 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 12:42:49.831415848 +0000 UTC m=+375.696469662 I0512 12:42:49.852571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:49.852629 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 12:42:49.852642 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 12:42:49.852636876 +0000 UTC m=+375.717690660 I0512 12:42:50.043862 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-h79j2" condition "Approved" to 2026-05-12 12:42:50.043846876 +0000 UTC m=+375.908900660 I0512 12:42:50.064525 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-h79j2" condition "Ready" to 2026-05-12 12:42:50.06451687 +0000 UTC m=+375.929570644 I0512 12:42:50.092999 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:42:50.092977611 +0000 UTC m=+375.958031385 I0512 12:42:50.118126 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:50.118475 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:42:50.118469384 +0000 UTC m=+375.983523158 I0512 12:42:50.134880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 12:42:50.135346 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 12:42:50.135334134 +0000 UTC m=+376.000387938