I0504 01:40:12.662677 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0504 01:40:12.662802 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0504 01:40:12.662879 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0504 01:40:12.669423 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0504 01:40:12.670059 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0504 01:40:12.670098 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0504 01:40:12.670147 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0504 01:40:12.673412 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0504 01:40:12.689758 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0504 01:40:12.695389 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0504 01:40:12.698820 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0504 01:40:12.702988 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0504 01:40:12.703051 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0504 01:40:12.703114 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0504 01:40:12.706698 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0504 01:40:12.709625 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0504 01:40:12.714847 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0504 01:40:12.719253 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0504 01:40:12.722223 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0504 01:40:12.722260 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0504 01:40:12.724931 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0504 01:40:12.731753 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0504 01:40:12.736066 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0504 01:40:12.736108 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0504 01:40:12.736120 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0504 01:40:12.736122 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0504 01:40:12.740038 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0504 01:40:12.742297 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0504 01:40:12.744281 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0504 01:40:12.746247 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0504 01:40:12.748203 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0504 01:40:12.750156 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0504 01:40:12.754874 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0504 01:40:12.758444 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.758625 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.758735 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.778383 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.795278 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.830960 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.863283 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.864875 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.881909 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:12.896685 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 01:40:29.191271 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-04 01:40:29.191258 +0000 UTC m=+16.560936571 I0504 01:40:29.891360 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-04 01:40:29.891346127 +0000 UTC m=+17.261024708 I0504 01:40:29.891429 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:40:29.891497 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-04 01:40:29.89148808 +0000 UTC m=+17.261166651 E0504 01:40:29.907864 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0504 01:40:29.907923 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-04 01:40:29.907916962 +0000 UTC m=+17.277595523 E0504 01:40:29.907941 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0504 01:40:29.909584 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:29.909632 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:40:29.909646 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-04 01:40:29.909642298 +0000 UTC m=+17.279320859 E0504 01:40:29.917530 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0504 01:40:29.917626 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 01:40:29.917667 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 01:40:29.917711 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0504 01:40:29.949187 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6ccqc" condition "Approved" to 2026-05-04 01:40:29.949176141 +0000 UTC m=+17.318854712 I0504 01:40:29.961544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6ccqc" condition "Ready" to 2026-05-04 01:40:29.961532028 +0000 UTC m=+17.331210599 I0504 01:40:29.988743 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:40:29.988716255 +0000 UTC m=+17.358394846 I0504 01:40:30.008536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:30.008796 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:40:30.008787942 +0000 UTC m=+17.378466513 I0504 01:40:30.025792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:30.026185 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:40:30.026173624 +0000 UTC m=+17.395852185 I0504 01:40:30.028603 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:34.919005 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:40:34.918977382 +0000 UTC m=+22.288655983 I0504 01:40:55.394860 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-04 01:40:55.394808979 +0000 UTC m=+42.764487570 I0504 01:40:55.395260 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:40:55.395303 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-04 01:40:55.395294579 +0000 UTC m=+42.764973150 I0504 01:40:55.405302 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-04 01:40:55.405288159 +0000 UTC m=+42.774966740 I0504 01:40:55.414424 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:55.414515 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:40:55.414543 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-04 01:40:55.414535464 +0000 UTC m=+42.784214045 I0504 01:40:55.625696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:55.639789 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-zgstx" condition "Approved" to 2026-05-04 01:40:55.63977469 +0000 UTC m=+43.009453291 I0504 01:40:55.667903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-zgstx" condition "Ready" to 2026-05-04 01:40:55.667895731 +0000 UTC m=+43.037574302 I0504 01:40:55.701642 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:40:55.70162826 +0000 UTC m=+43.071306831 I0504 01:40:55.729920 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:55.730165 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:40:55.730158799 +0000 UTC m=+43.099837360 I0504 01:40:55.746118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:40:55.746336 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:40:55.74633136 +0000 UTC m=+43.116009931 I0504 01:42:41.328482 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-04 01:42:41.328433032 +0000 UTC m=+148.698111623 I0504 01:42:41.328612 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:42:41.328648 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-04 01:42:41.328637876 +0000 UTC m=+148.698316477 E0504 01:42:41.343410 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0504 01:42:41.343491 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-05-04 01:42:41.343478918 +0000 UTC m=+148.713157489 I0504 01:42:41.343550 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0504 01:42:41.346513 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:42:41.346608 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:42:41.346635 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-04 01:42:41.346627574 +0000 UTC m=+148.716306145 E0504 01:42:41.355925 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0504 01:42:41.356084 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0504 01:42:41.356133 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0504 01:42:41.356172 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0504 01:42:41.358350 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-04 01:42:41.358342619 +0000 UTC m=+148.728021190 I0504 01:42:41.358476 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:42:41.358500 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-04 01:42:41.358494912 +0000 UTC m=+148.728173483 I0504 01:42:41.378269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:42:41.378443 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:42:41.378518 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-04 01:42:41.378490231 +0000 UTC m=+148.748168802 I0504 01:42:41.571765 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9mt5t" condition "Approved" to 2026-05-04 01:42:41.571747361 +0000 UTC m=+148.941425952 I0504 01:42:41.593470 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9mt5t" condition "Ready" to 2026-05-04 01:42:41.593452176 +0000 UTC m=+148.963130747 I0504 01:42:41.644768 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-9ktk2" condition "Approved" to 2026-05-04 01:42:41.644745431 +0000 UTC m=+149.014424032 I0504 01:42:41.668916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-9ktk2" condition "Ready" to 2026-05-04 01:42:41.668900588 +0000 UTC m=+149.038579159 I0504 01:42:41.700017 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:42:41.700003929 +0000 UTC m=+149.069682500 I0504 01:42:41.718518 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:42:41.718752 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:42:41.718745832 +0000 UTC m=+149.088424393 I0504 01:42:41.738724 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:42:46.357247 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:42:46.357226842 +0000 UTC m=+153.726905433 I0504 01:42:46.373166 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-9mt5t" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:42:46.373145986 +0000 UTC m=+153.742824577 I0504 01:42:46.402376 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:42:46.402360328 +0000 UTC m=+153.772038899 I0504 01:42:46.419665 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:42:46.420149 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:42:46.420140031 +0000 UTC m=+153.789818602 I0504 01:42:46.429457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:42:46.441647 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:45:13.364185 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-141.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:45:13.364221 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Issuing" to 2026-05-04 01:45:13.364214925 +0000 UTC m=+300.733893496 I0504 01:45:13.364507 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready" to 2026-05-04 01:45:13.364491451 +0000 UTC m=+300.734170022 I0504 01:45:13.383363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:45:13.383449 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-141.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:45:13.383467 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Issuing" to 2026-05-04 01:45:13.383460906 +0000 UTC m=+300.753139477 I0504 01:45:13.542738 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:45:13.554138 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-141.nip.io-tls-msxp9" condition "Approved" to 2026-05-04 01:45:13.55411358 +0000 UTC m=+300.923792151 I0504 01:45:13.573851 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-141.nip.io-tls-msxp9" condition "Ready" to 2026-05-04 01:45:13.573831782 +0000 UTC m=+300.943510373 I0504 01:45:13.596554 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:45:13.596503086 +0000 UTC m=+300.966181687 I0504 01:45:13.616692 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:45:13.617109 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:45:13.617100995 +0000 UTC m=+300.986779576 I0504 01:45:13.621781 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:45:13.635680 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:45:13.635983 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:45:13.635976128 +0000 UTC m=+301.005654699 I0504 01:46:24.103605 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:46:24.103654 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-04 01:46:24.103644153 +0000 UTC m=+371.473322744 I0504 01:46:24.104120 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-04 01:46:24.104111783 +0000 UTC m=+371.473790374 I0504 01:46:24.116321 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:46:24.116512 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:46:24.116563 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-04 01:46:24.116553579 +0000 UTC m=+371.486232150 E0504 01:46:24.117945 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0504 01:46:24.117999 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-04 01:46:24.11798762 +0000 UTC m=+371.487666211 E0504 01:46:24.118063 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 01:46:24.131210 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0504 01:46:24.131911 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 01:46:24.132118 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 01:46:24.132292 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0504 01:46:24.153003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:46:24.153843 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jd9p4" condition "Approved" to 2026-05-04 01:46:24.153821908 +0000 UTC m=+371.523500509 I0504 01:46:24.165479 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jd9p4" condition "Ready" to 2026-05-04 01:46:24.165452596 +0000 UTC m=+371.535131197 I0504 01:46:24.188504 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:46:24.188486249 +0000 UTC m=+371.558164850 I0504 01:46:24.205322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:46:24.205565 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:46:24.205555704 +0000 UTC m=+371.575234275 I0504 01:46:24.221403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:46:24.221774 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:46:24.221762311 +0000 UTC m=+371.591440902 I0504 01:46:29.131657 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:46:29.131643288 +0000 UTC m=+376.501321889 I0504 01:47:07.379972 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:07.380030 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-04 01:47:07.380017836 +0000 UTC m=+414.749696437 I0504 01:47:07.380166 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-04 01:47:07.380139249 +0000 UTC m=+414.749817850 I0504 01:47:07.391576 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:07.391616 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-04 01:47:07.391607674 +0000 UTC m=+414.761286225 I0504 01:47:07.392309 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-04 01:47:07.39230523 +0000 UTC m=+414.761983791 I0504 01:47:07.392611 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:07.392627 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-04 01:47:07.392623967 +0000 UTC m=+414.762302528 I0504 01:47:07.392691 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-04 01:47:07.392675198 +0000 UTC m=+414.762353769 I0504 01:47:07.403739 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:07.403846 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:07.403878 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-04 01:47:07.403869807 +0000 UTC m=+414.773548368 I0504 01:47:07.417400 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:07.417471 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-04 01:47:07.417462928 +0000 UTC m=+414.787141489 I0504 01:47:07.418457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:07.418493 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:07.418510 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-04 01:47:07.418507331 +0000 UTC m=+414.788185882 I0504 01:47:07.605589 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:07.635203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:07.639344 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hn4f8" condition "Approved" to 2026-05-04 01:47:07.639332347 +0000 UTC m=+415.009010918 I0504 01:47:07.645942 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-qhksc" condition "Approved" to 2026-05-04 01:47:07.645932528 +0000 UTC m=+415.015611099 I0504 01:47:07.660279 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-srb9d" condition "Approved" to 2026-05-04 01:47:07.660259205 +0000 UTC m=+415.029937786 I0504 01:47:07.660499 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hn4f8" condition "Ready" to 2026-05-04 01:47:07.660476199 +0000 UTC m=+415.030154780 I0504 01:47:07.697798 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-qhksc" condition "Ready" to 2026-05-04 01:47:07.697784128 +0000 UTC m=+415.067462689 I0504 01:47:07.698413 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-srb9d" condition "Ready" to 2026-05-04 01:47:07.698402761 +0000 UTC m=+415.068081322 I0504 01:47:07.927127 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:07.927098065 +0000 UTC m=+415.296776636 I0504 01:47:08.033846 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:08.033832441 +0000 UTC m=+415.403511012 I0504 01:47:08.125479 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:08.125467881 +0000 UTC m=+415.495146472 I0504 01:47:08.226409 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:08.226838 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:08.22682934 +0000 UTC m=+415.596507931 I0504 01:47:08.329971 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:08.330377 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:08.330370207 +0000 UTC m=+415.700048778 I0504 01:47:08.426078 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:08.426743 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:08.4267312 +0000 UTC m=+415.796409791 I0504 01:47:08.926137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:09.029441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:09.075518 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:09.126297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:09.177743 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:15.231440 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" condition "Ready" to 2026-05-04 01:47:15.23141829 +0000 UTC m=+422.601096881 I0504 01:47:15.231554 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:15.231634 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" condition "Issuing" to 2026-05-04 01:47:15.231624644 +0000 UTC m=+422.601303235 I0504 01:47:15.255319 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:15.255384 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:15.255399 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" condition "Issuing" to 2026-05-04 01:47:15.255394593 +0000 UTC m=+422.625073164 I0504 01:47:15.464785 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:15.475871 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-s2hkj-z2vwq" condition "Approved" to 2026-05-04 01:47:15.475852871 +0000 UTC m=+422.845531472 I0504 01:47:15.497716 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-s2hkj-z2vwq" condition "Ready" to 2026-05-04 01:47:15.497706079 +0000 UTC m=+422.867384640 I0504 01:47:15.535279 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:15.535264043 +0000 UTC m=+422.904942614 I0504 01:47:15.555522 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:15.555767 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:15.555759352 +0000 UTC m=+422.925437913 I0504 01:47:15.576692 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:15.577038 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-s2hkj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:15.577031117 +0000 UTC m=+422.946709678 I0504 01:47:33.134757 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:33.134881 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-04 01:47:33.134871936 +0000 UTC m=+440.504550507 I0504 01:47:33.134809 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-04 01:47:33.134793264 +0000 UTC m=+440.504471835 I0504 01:47:33.152946 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:33.153149 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:47:33.153231 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-04 01:47:33.153223116 +0000 UTC m=+440.522901677 I0504 01:47:33.532785 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-jpbp8" condition "Approved" to 2026-05-04 01:47:33.532757432 +0000 UTC m=+440.902436003 I0504 01:47:33.557640 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-jpbp8" condition "Ready" to 2026-05-04 01:47:33.557622292 +0000 UTC m=+440.927300893 I0504 01:47:33.589952 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:47:33.58993027 +0000 UTC m=+440.959608841 I0504 01:47:33.611597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:47:33.662495 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:51:01.910461 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:51:01.910597 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-04 01:51:01.910587393 +0000 UTC m=+649.280265994 I0504 01:51:01.910522 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-04 01:51:01.910503311 +0000 UTC m=+649.280181932 I0504 01:51:01.931454 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:51:01.931533 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:51:01.931555 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-04 01:51:01.931548438 +0000 UTC m=+649.301227009 I0504 01:51:02.041243 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nlfsh" condition "Approved" to 2026-05-04 01:51:02.041230606 +0000 UTC m=+649.410909167 I0504 01:51:02.064176 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nlfsh" condition "Ready" to 2026-05-04 01:51:02.064162102 +0000 UTC m=+649.433840673 I0504 01:51:02.092448 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:51:02.092430922 +0000 UTC m=+649.462109493 I0504 01:51:02.113872 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:51:02.114310 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:51:02.114300376 +0000 UTC m=+649.483978947 I0504 01:51:02.126997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:51:02.138777 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:51:02.140643 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:51:02.141003 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:51:02.140989182 +0000 UTC m=+649.510667743 I0504 01:53:36.458477 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-04 01:53:36.458102442 +0000 UTC m=+803.827781013 I0504 01:53:36.458520 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:53:36.458618 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-04 01:53:36.458606472 +0000 UTC m=+803.828285063 I0504 01:53:36.478762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:53:36.478901 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:53:36.478936 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-04 01:53:36.478926494 +0000 UTC m=+803.848605085 I0504 01:53:36.719997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:53:36.728190 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-j65xf" condition "Approved" to 2026-05-04 01:53:36.728177737 +0000 UTC m=+804.097856318 I0504 01:53:36.754100 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-j65xf" condition "Ready" to 2026-05-04 01:53:36.754083157 +0000 UTC m=+804.123761748 I0504 01:53:36.783801 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:53:36.783781398 +0000 UTC m=+804.153459969 I0504 01:53:36.804911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:53:36.854229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:54:44.466698 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-04 01:54:44.466667263 +0000 UTC m=+871.836345864 I0504 01:54:44.467364 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:54:44.467394 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-04 01:54:44.467386078 +0000 UTC m=+871.837064689 I0504 01:54:44.483512 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:54:44.483589 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:54:44.483608 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-04 01:54:44.483600771 +0000 UTC m=+871.853279372 I0504 01:54:44.627529 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:54:44.637704 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-47d4s" condition "Approved" to 2026-05-04 01:54:44.637692255 +0000 UTC m=+872.007370856 I0504 01:54:44.657319 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-47d4s" condition "Ready" to 2026-05-04 01:54:44.657307139 +0000 UTC m=+872.026985710 I0504 01:54:44.697809 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:54:44.697798034 +0000 UTC m=+872.067476595 I0504 01:54:44.725579 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:54:44.727351 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:54:44.725889037 +0000 UTC m=+872.095567608 I0504 01:54:44.746082 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:54:44.746548 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:54:44.746537734 +0000 UTC m=+872.116216305 I0504 01:54:44.750125 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:57:54.187789 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 01:57:54.187874 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-04 01:57:54.187864419 +0000 UTC m=+1061.557542980 I0504 01:57:54.188218 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-04 01:57:54.188192466 +0000 UTC m=+1061.557871057 I0504 01:57:54.206363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:57:54.206497 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-04 01:57:54.206484275 +0000 UTC m=+1061.576162866 I0504 01:57:54.426181 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 01:57:54.459879 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5pr52" condition "Approved" to 2026-05-04 01:57:54.459863858 +0000 UTC m=+1061.829542429 I0504 01:57:54.483717 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5pr52" condition "Ready" to 2026-05-04 01:57:54.483708452 +0000 UTC m=+1061.853387013 I0504 01:57:54.522621 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 01:57:54.522600247 +0000 UTC m=+1061.892278848 I0504 01:57:54.544754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 02:04:07.040695 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 02:04:07.040705 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-04 02:04:07.04066041 +0000 UTC m=+1434.410339261 I0504 02:04:07.040754 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-04 02:04:07.040742191 +0000 UTC m=+1434.410420792 I0504 02:04:07.059176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 02:04:07.059302 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-04 02:04:07.059292314 +0000 UTC m=+1434.428970875 I0504 02:04:07.297251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 02:04:07.334172 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-9bpjr" condition "Approved" to 2026-05-04 02:04:07.334150626 +0000 UTC m=+1434.703829197 I0504 02:04:07.353974 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-9bpjr" condition "Ready" to 2026-05-04 02:04:07.353951565 +0000 UTC m=+1434.723630166 I0504 02:04:07.384198 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 02:04:07.384185508 +0000 UTC m=+1434.753864079 I0504 02:04:07.415160 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 02:04:07.415606 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 02:04:07.415596637 +0000 UTC m=+1434.785275208 I0504 02:04:07.435989 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 02:05:45.230571 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-04 02:05:45.230550087 +0000 UTC m=+1532.600228658 I0504 02:05:45.230598 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 02:05:45.230974 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-04 02:05:45.230959105 +0000 UTC m=+1532.600637696 I0504 02:05:45.249390 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 02:05:45.249541 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 02:05:45.249575 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-04 02:05:45.249564768 +0000 UTC m=+1532.619243359 I0504 02:05:45.402326 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-5gqqp" condition "Approved" to 2026-05-04 02:05:45.402313001 +0000 UTC m=+1532.771991572 I0504 02:05:45.423364 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-5gqqp" condition "Ready" to 2026-05-04 02:05:45.423350134 +0000 UTC m=+1532.793028685 I0504 02:05:45.450895 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 02:05:45.450876693 +0000 UTC m=+1532.820555284 I0504 02:05:45.469842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 02:05:45.470358 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 02:05:45.470348034 +0000 UTC m=+1532.840026605 I0504 02:05:45.489667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again"