I0402 16:51:25.614161 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0402 16:51:25.614294 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0402 16:51:25.614391 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0402 16:51:25.619363 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0402 16:51:25.619954 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0402 16:51:25.619982 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0402 16:51:25.620163 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0402 16:51:25.624364 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0402 16:51:25.641190 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0402 16:51:25.641433 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0402 16:51:25.646743 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0402 16:51:25.650241 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0402 16:51:25.653889 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0402 16:51:25.655773 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0402 16:51:25.657529 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0402 16:51:25.657586 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0402 16:51:25.659548 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0402 16:51:25.661628 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0402 16:51:25.664424 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0402 16:51:25.667409 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0402 16:51:25.672563 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0402 16:51:25.674678 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0402 16:51:25.676745 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0402 16:51:25.679144 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0402 16:51:25.681362 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0402 16:51:25.681580 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0402 16:51:25.684220 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0402 16:51:25.684245 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0402 16:51:25.684290 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0402 16:51:25.687162 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0402 16:51:25.687343 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0402 16:51:25.689059 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0402 16:51:25.691409 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0402 16:51:25.696293 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.698395 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.698866 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.699346 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.718220 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.739401 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.754731 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.768330 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.788498 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:25.796321 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 16:51:44.850650 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-02 16:51:44.850633227 +0000 UTC m=+19.279516962 I0402 16:51:46.339752 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-02 16:51:46.339724625 +0000 UTC m=+20.768608360 I0402 16:51:46.340496 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:51:46.340524 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 16:51:46.340519842 +0000 UTC m=+20.769403577 E0402 16:51:46.511590 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 16:51:46.511696 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-02 16:51:46.511683863 +0000 UTC m=+20.940567618 E0402 16:51:46.511781 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 16:51:46.517783 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:51:46.517887 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:51:46.517922 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 16:51:46.517912912 +0000 UTC m=+20.946796667 E0402 16:51:46.547205 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0402 16:51:46.548443 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 16:51:46.548531 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 16:51:46.548571 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0402 16:51:47.006034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:51:47.204992 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-r2vk7" condition "Approved" to 2026-04-02 16:51:47.204971636 +0000 UTC m=+21.633855411 I0402 16:51:47.356755 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-r2vk7" condition "Ready" to 2026-04-02 16:51:47.356744472 +0000 UTC m=+21.785628197 I0402 16:51:47.640613 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:51:47.640595713 +0000 UTC m=+22.069479448 I0402 16:51:47.999658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:51:48.000034 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:51:48.000026856 +0000 UTC m=+22.428910601 I0402 16:51:48.166551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:51:48.167532 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:51:51.548502 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:51:51.548487584 +0000 UTC m=+25.977371339 I0402 16:52:29.962319 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-02 16:52:29.962270741 +0000 UTC m=+64.391154506 I0402 16:52:29.962720 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:52:29.962837 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-02 16:52:29.962825993 +0000 UTC m=+64.391709758 I0402 16:52:29.980708 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-02 16:52:29.980692403 +0000 UTC m=+64.409576168 I0402 16:52:29.987272 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:52:29.987339 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:52:29.988460 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-02 16:52:29.988440606 +0000 UTC m=+64.417324341 I0402 16:52:30.543377 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vdbkx" condition "Approved" to 2026-04-02 16:52:30.543360413 +0000 UTC m=+64.972244168 I0402 16:52:30.573614 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vdbkx" condition "Ready" to 2026-04-02 16:52:30.573598889 +0000 UTC m=+65.002482654 I0402 16:52:30.655496 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:52:30.655474701 +0000 UTC m=+65.084358466 I0402 16:52:30.708472 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:52:30.708918 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:52:30.708907637 +0000 UTC m=+65.137791372 I0402 16:52:30.951896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:52:30.951901 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:56:03.575505 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-02 16:56:03.575491257 +0000 UTC m=+278.004374992 I0402 16:56:03.575621 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:56:03.575728 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-02 16:56:03.575714782 +0000 UTC m=+278.004598537 E0402 16:56:03.592044 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 16:56:03.592190 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-02 16:56:03.592174079 +0000 UTC m=+278.021057844 I0402 16:56:03.592279 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 16:56:03.593273 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:56:03.593347 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:56:03.593371 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-02 16:56:03.593364145 +0000 UTC m=+278.022247880 E0402 16:56:03.601653 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0402 16:56:03.601795 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 16:56:03.601836 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0402 16:56:03.601903 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0402 16:56:03.606959 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:56:03.607031 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-02 16:56:03.606987369 +0000 UTC m=+278.035871134 I0402 16:56:03.607177 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-02 16:56:03.607010119 +0000 UTC m=+278.035893884 I0402 16:56:03.627945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:56:03.627997 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:56:03.628039 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-02 16:56:03.628033878 +0000 UTC m=+278.056917613 I0402 16:56:03.824369 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2zzvm" condition "Approved" to 2026-04-02 16:56:03.824334814 +0000 UTC m=+278.253218579 I0402 16:56:03.855541 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2zzvm" condition "Ready" to 2026-04-02 16:56:03.855526439 +0000 UTC m=+278.284410164 I0402 16:56:03.968557 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:56:03.968538028 +0000 UTC m=+278.397421803 I0402 16:56:04.093348 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:56:04.097375 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:56:04.109639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-mtjnj" condition "Approved" to 2026-04-02 16:56:04.109623692 +0000 UTC m=+278.538507457 I0402 16:56:04.169821 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-mtjnj" condition "Ready" to 2026-04-02 16:56:04.169805124 +0000 UTC m=+278.598688879 I0402 16:56:08.602879 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:56:08.60286509 +0000 UTC m=+283.031748855 I0402 16:56:08.619015 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-mtjnj" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:56:08.61899865 +0000 UTC m=+283.047882385 I0402 16:56:08.655830 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:56:08.655816241 +0000 UTC m=+283.084699976 I0402 16:56:08.676304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:56:08.676615 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:56:08.676607785 +0000 UTC m=+283.105491510 I0402 16:56:08.700554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:59:26.059156 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-249.nip.io-tls" condition "Ready" to 2026-04-02 16:59:26.059142308 +0000 UTC m=+480.488026073 I0402 16:59:26.059764 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-249.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:59:26.059796 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-249.nip.io-tls" condition "Issuing" to 2026-04-02 16:59:26.059790002 +0000 UTC m=+480.488673757 I0402 16:59:26.079480 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-249.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-249.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:59:26.079560 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-249.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 16:59:26.079579 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-249.nip.io-tls" condition "Issuing" to 2026-04-02 16:59:26.079573183 +0000 UTC m=+480.508456918 I0402 16:59:26.341234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-249.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-249.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:59:26.365265 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-249.nip.io-tls-k6qnj" condition "Approved" to 2026-04-02 16:59:26.365253204 +0000 UTC m=+480.794136969 I0402 16:59:26.386067 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-249.nip.io-tls-k6qnj" condition "Ready" to 2026-04-02 16:59:26.38605024 +0000 UTC m=+480.814934005 I0402 16:59:26.423711 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-249.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:59:26.42370085 +0000 UTC m=+480.852584585 I0402 16:59:26.442970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-249.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-249.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:59:26.443423 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-249.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 16:59:26.44340993 +0000 UTC m=+480.872293705 I0402 16:59:26.457452 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-249.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-249.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 16:59:26.462197 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-249.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-249.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:00:38.222865 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-02 17:00:38.222837855 +0000 UTC m=+552.651721610 I0402 17:00:38.223820 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:00:38.223857 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-02 17:00:38.223849607 +0000 UTC m=+552.652733362 E0402 17:00:38.236087 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 17:00:38.236166 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-02 17:00:38.23615845 +0000 UTC m=+552.665042185 E0402 17:00:38.236329 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 17:00:38.238307 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:00:38.238512 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:00:38.238538 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-02 17:00:38.238532572 +0000 UTC m=+552.667416307 E0402 17:00:38.245690 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0402 17:00:38.245873 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 17:00:38.245937 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 17:00:38.246025 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0402 17:00:38.275342 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:00:38.278684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-6dfqf" condition "Approved" to 2026-04-02 17:00:38.278673968 +0000 UTC m=+552.707557703 I0402 17:00:38.290454 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-6dfqf" condition "Ready" to 2026-04-02 17:00:38.290441258 +0000 UTC m=+552.719324993 I0402 17:00:38.310425 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:00:38.310316617 +0000 UTC m=+552.739200352 I0402 17:00:38.331823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:00:38.332169 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:00:38.332160189 +0000 UTC m=+552.761043954 I0402 17:00:38.338741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:00:38.346114 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:00:43.246235 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:00:43.24622138 +0000 UTC m=+557.675105135 I0402 17:01:20.079697 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:01:20.079782 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-02 17:01:20.079774888 +0000 UTC m=+594.508658633 I0402 17:01:20.080039 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-02 17:01:20.080026224 +0000 UTC m=+594.508909949 I0402 17:01:20.084014 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-02 17:01:20.084003832 +0000 UTC m=+594.512887547 I0402 17:01:20.084134 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:01:20.084149 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-02 17:01:20.084146815 +0000 UTC m=+594.513030540 I0402 17:01:20.084230 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:01:20.084243 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-02 17:01:20.084240817 +0000 UTC m=+594.513124542 I0402 17:01:20.085586 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 17:01:20.084332549 +0000 UTC m=+594.513216274 I0402 17:01:20.119554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:20.119670 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-02 17:01:20.119661275 +0000 UTC m=+594.548545010 I0402 17:01:20.119812 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:20.119891 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-02 17:01:20.119883399 +0000 UTC m=+594.548767134 I0402 17:01:20.120850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:20.120917 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 17:01:20.120912422 +0000 UTC m=+594.549796157 I0402 17:01:20.245299 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:20.291595 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r8zq6" condition "Approved" to 2026-04-02 17:01:20.291586686 +0000 UTC m=+594.720470411 I0402 17:01:20.308527 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r8zq6" condition "Ready" to 2026-04-02 17:01:20.308516932 +0000 UTC m=+594.737400677 I0402 17:01:20.348860 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:01:20.348936 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-02 17:01:20.34892887 +0000 UTC m=+594.777812595 I0402 17:01:20.361340 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:20.361329796 +0000 UTC m=+594.790213531 I0402 17:01:20.378872 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:20.380661 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:20.380649925 +0000 UTC m=+594.809533690 I0402 17:01:20.389060 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:20.413727 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-m9pbh" condition "Approved" to 2026-04-02 17:01:20.41371313 +0000 UTC m=+594.842596885 I0402 17:01:20.438529 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-m9pbh" condition "Ready" to 2026-04-02 17:01:20.438519922 +0000 UTC m=+594.867403647 I0402 17:01:20.566746 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:20.667059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:21.029508 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-pdtkg" condition "Approved" to 2026-04-02 17:01:21.029497657 +0000 UTC m=+595.458381392 I0402 17:01:21.088287 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-z4jgm" condition "Approved" to 2026-04-02 17:01:21.088266643 +0000 UTC m=+595.517150418 I0402 17:01:21.182158 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-pdtkg" condition "Ready" to 2026-04-02 17:01:21.18214698 +0000 UTC m=+595.611030715 I0402 17:01:21.536976 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-z4jgm" condition "Ready" to 2026-04-02 17:01:21.536960036 +0000 UTC m=+595.965843791 I0402 17:01:22.021694 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:22.02168025 +0000 UTC m=+596.450563975 I0402 17:01:22.124687 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:22.12466843 +0000 UTC m=+596.553552185 I0402 17:01:22.221253 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:22.221808 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:22.221798078 +0000 UTC m=+596.650681843 I0402 17:01:22.368956 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:22.369322 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:22.369315717 +0000 UTC m=+596.798199452 I0402 17:01:22.820794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:22.867939 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:22.919532 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:22.970734 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:30.021204 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7874b-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:01:30.021241 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7874b-tls" condition "Issuing" to 2026-04-02 17:01:30.021233013 +0000 UTC m=+604.450116758 I0402 17:01:30.021492 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7874b-tls" condition "Ready" to 2026-04-02 17:01:30.021472729 +0000 UTC m=+604.450356494 I0402 17:01:30.056320 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7874b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7874b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:30.056424 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7874b-tls" condition "Ready" to 2026-04-02 17:01:30.056416025 +0000 UTC m=+604.485299760 I0402 17:01:30.117366 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7874b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7874b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:30.154740 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-7874b-xhg5g" condition "Approved" to 2026-04-02 17:01:30.15472778 +0000 UTC m=+604.583611505 I0402 17:01:30.175943 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-7874b-xhg5g" condition "Ready" to 2026-04-02 17:01:30.175931282 +0000 UTC m=+604.604815027 I0402 17:01:30.212344 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-7874b-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:01:30.212323301 +0000 UTC m=+604.641207066 I0402 17:01:30.233216 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7874b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7874b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:01:30.296550 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7874b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7874b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:12.814209 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:02:12.814218 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-02 17:02:12.814205958 +0000 UTC m=+647.243089683 I0402 17:02:12.814245 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-02 17:02:12.814238239 +0000 UTC m=+647.243121964 I0402 17:02:12.830211 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:12.830277 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-02 17:02:12.830269535 +0000 UTC m=+647.259153270 I0402 17:02:13.042935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:13.077679 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-gbg59" condition "Approved" to 2026-04-02 17:02:13.077667934 +0000 UTC m=+647.506551669 I0402 17:02:13.102161 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-gbg59" condition "Ready" to 2026-04-02 17:02:13.102145548 +0000 UTC m=+647.531029303 I0402 17:02:13.139879 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:02:13.139862746 +0000 UTC m=+647.568746481 I0402 17:02:13.161942 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:02:13.162313 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:02:13.162302565 +0000 UTC m=+647.591186300 I0402 17:02:13.187492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:05:38.041426 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:05:38.041422 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-02 17:05:38.041406035 +0000 UTC m=+852.470289760 I0402 17:05:38.041482 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-02 17:05:38.041475117 +0000 UTC m=+852.470358842 I0402 17:05:38.059843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:05:38.059958 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-02 17:05:38.059947991 +0000 UTC m=+852.488831746 I0402 17:05:38.235454 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:05:38.266273 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pps2f" condition "Approved" to 2026-04-02 17:05:38.26625559 +0000 UTC m=+852.695139335 I0402 17:05:38.284235 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pps2f" condition "Ready" to 2026-04-02 17:05:38.284224533 +0000 UTC m=+852.713108278 I0402 17:05:38.315459 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:05:38.315444014 +0000 UTC m=+852.744327779 I0402 17:05:38.341068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:05:38.341473 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:05:38.341466088 +0000 UTC m=+852.770349813 I0402 17:05:38.360318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:05:38.362230 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:05:38.362863 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:05:38.362852867 +0000 UTC m=+852.791736622 I0402 17:08:05.241187 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:08:05.241296 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-02 17:08:05.24128295 +0000 UTC m=+999.670166725 I0402 17:08:05.241368 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-02 17:08:05.241352422 +0000 UTC m=+999.670236157 I0402 17:08:05.256143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:08:05.256238 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:08:05.256264 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-02 17:08:05.256257226 +0000 UTC m=+999.685140971 I0402 17:08:05.468658 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9l45n" condition "Approved" to 2026-04-02 17:08:05.468646837 +0000 UTC m=+999.897530562 I0402 17:08:05.488912 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9l45n" condition "Ready" to 2026-04-02 17:08:05.48890148 +0000 UTC m=+999.917785205 I0402 17:08:05.518753 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:08:05.518742286 +0000 UTC m=+999.947626021 I0402 17:08:05.544441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:09:31.035560 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-02 17:09:31.035550648 +0000 UTC m=+1085.464434373 I0402 17:09:31.035821 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:09:31.035855 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-02 17:09:31.035852425 +0000 UTC m=+1085.464736150 I0402 17:09:31.058767 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:09:31.059995 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-02 17:09:31.059988273 +0000 UTC m=+1085.488872008 I0402 17:09:31.166691 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:09:31.227934 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-dzgsc" condition "Approved" to 2026-04-02 17:09:31.227919086 +0000 UTC m=+1085.656802831 I0402 17:09:31.248023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-dzgsc" condition "Ready" to 2026-04-02 17:09:31.248012463 +0000 UTC m=+1085.676896188 I0402 17:09:31.284679 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:09:31.2846664 +0000 UTC m=+1085.713550115 I0402 17:09:31.306424 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:12:49.029255 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:12:49.029312 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-02 17:12:49.029306471 +0000 UTC m=+1283.458190206 I0402 17:12:49.029357 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-02 17:12:49.029327311 +0000 UTC m=+1283.458211036 I0402 17:12:49.047409 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:12:49.047532 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 17:12:49.047575 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-02 17:12:49.047562777 +0000 UTC m=+1283.476446542 I0402 17:12:49.315826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fjvp7" condition "Approved" to 2026-04-02 17:12:49.315808887 +0000 UTC m=+1283.744692612 I0402 17:12:49.337366 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fjvp7" condition "Ready" to 2026-04-02 17:12:49.337348068 +0000 UTC m=+1283.766231833 I0402 17:12:49.364237 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:12:49.364219766 +0000 UTC m=+1283.793103501 I0402 17:12:49.389511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:12:49.389847 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:12:49.389838637 +0000 UTC m=+1283.818722372 I0402 17:12:49.404995 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 17:12:49.405320 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 17:12:49.405312652 +0000 UTC m=+1283.834196387