I0404 10:14:16.064536 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0404 10:14:16.064650 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0404 10:14:16.064885 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0404 10:14:16.068894 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0404 10:14:16.069781 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0404 10:14:16.069801 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0404 10:14:16.069821 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0404 10:14:16.075286 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0404 10:14:16.094155 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0404 10:14:16.094593 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0404 10:14:16.101020 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0404 10:14:16.104148 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0404 10:14:16.106345 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0404 10:14:16.110751 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0404 10:14:16.110768 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0404 10:14:16.110776 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0404 10:14:16.110984 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0404 10:14:16.112789 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0404 10:14:16.114366 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0404 10:14:16.116122 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0404 10:14:16.116209 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0404 10:14:16.117993 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0404 10:14:16.119736 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0404 10:14:16.121407 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0404 10:14:16.125455 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0404 10:14:16.129421 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0404 10:14:16.132515 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0404 10:14:16.135250 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0404 10:14:16.135413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0404 10:14:16.137832 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0404 10:14:16.140016 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0404 10:14:16.141809 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0404 10:14:16.144160 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0404 10:14:16.144956 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.146254 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.148706 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.167216 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.181061 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.200496 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.215922 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.234422 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.239819 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:16.256779 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:14:28.076814 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-04 10:14:28.076802784 +0000 UTC m=+12.040406154 I0404 10:14:28.798077 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:14:28.798203 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-04 10:14:28.798192343 +0000 UTC m=+12.761795713 I0404 10:14:28.798209 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-04 10:14:28.798201564 +0000 UTC m=+12.761804934 I0404 10:14:28.811450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:14:28.811638 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:14:28.811701 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-04 10:14:28.811691241 +0000 UTC m=+12.775294621 E0404 10:14:28.813823 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:14:28.813886 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-04 10:14:28.813881501 +0000 UTC m=+12.777484881 E0404 10:14:28.813910 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:14:28.826310 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0404 10:14:28.826553 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:14:28.826644 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:14:28.826727 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0404 10:14:28.857898 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qvn5w" condition "Approved" to 2026-04-04 10:14:28.857883558 +0000 UTC m=+12.821486928 I0404 10:14:28.872725 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qvn5w" condition "Ready" to 2026-04-04 10:14:28.87271416 +0000 UTC m=+12.836317530 I0404 10:14:28.898175 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:14:28.898160732 +0000 UTC m=+12.861764102 I0404 10:14:28.920096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:14:33.827775 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:14:33.827744514 +0000 UTC m=+17.791347914 I0404 10:14:54.515257 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:14:54.515335 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-04 10:14:54.515327751 +0000 UTC m=+38.478931111 I0404 10:14:54.515252 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-04 10:14:54.515234914 +0000 UTC m=+38.478838284 I0404 10:14:54.537848 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-04 10:14:54.53783548 +0000 UTC m=+38.501438840 I0404 10:14:54.554059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:14:54.554832 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:14:54.554857 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-04 10:14:54.554851391 +0000 UTC m=+38.518454751 I0404 10:14:54.692081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:14:54.700844 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bw8ns" condition "Approved" to 2026-04-04 10:14:54.700831708 +0000 UTC m=+38.664435088 I0404 10:14:54.740982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bw8ns" condition "Ready" to 2026-04-04 10:14:54.740969575 +0000 UTC m=+38.704572945 I0404 10:14:54.770020 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:14:54.770007936 +0000 UTC m=+38.733611296 I0404 10:14:54.803828 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:14:54.804152 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:14:54.804145494 +0000 UTC m=+38.767748864 I0404 10:14:54.827565 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:14:54.827875 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:14:54.82786703 +0000 UTC m=+38.791470410 I0404 10:14:54.830103 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.049177 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-115.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:19:17.049176 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready" to 2026-04-04 10:19:17.049138582 +0000 UTC m=+301.012741972 I0404 10:19:17.049221 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Issuing" to 2026-04-04 10:19:17.049211486 +0000 UTC m=+301.012814876 I0404 10:19:17.065145 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.065212 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-115.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:19:17.065231 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Issuing" to 2026-04-04 10:19:17.065224983 +0000 UTC m=+301.028828353 I0404 10:19:17.393734 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.403061 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-115.nip.io-tls-p484x" condition "Approved" to 2026-04-04 10:19:17.403051146 +0000 UTC m=+301.366654516 I0404 10:19:17.427771 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-115.nip.io-tls-p484x" condition "Ready" to 2026-04-04 10:19:17.427743953 +0000 UTC m=+301.391347343 I0404 10:19:17.456230 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:17.456217245 +0000 UTC m=+301.419820615 I0404 10:19:17.477833 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.478201 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:17.478193241 +0000 UTC m=+301.441796611 I0404 10:19:17.479605 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.496220 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.496493 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:17.496486187 +0000 UTC m=+301.460089557 I0404 10:20:21.725262 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:20:21.725423 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-04 10:20:21.725410432 +0000 UTC m=+365.689013842 I0404 10:20:21.725301 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-04 10:20:21.725291395 +0000 UTC m=+365.688894765 E0404 10:20:21.736951 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:20:21.736983 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-04 10:20:21.736976997 +0000 UTC m=+365.700580367 E0404 10:20:21.737056 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:20:21.737666 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:20:21.737808 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-04 10:20:21.737795505 +0000 UTC m=+365.701398885 E0404 10:20:21.750719 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0404 10:20:21.750972 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:20:21.751079 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:20:21.751163 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0404 10:20:21.755491 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:20:21.772238 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gd9b7" condition "Approved" to 2026-04-04 10:20:21.77222669 +0000 UTC m=+365.735830060 I0404 10:20:21.784041 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gd9b7" condition "Ready" to 2026-04-04 10:20:21.784033538 +0000 UTC m=+365.747636898 I0404 10:20:21.809905 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:20:21.809893525 +0000 UTC m=+365.773496895 I0404 10:20:21.827336 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:20:26.751293 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:20:26.75127927 +0000 UTC m=+370.714882660 I0404 10:21:09.007669 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:09.008498 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-04 10:21:09.00849235 +0000 UTC m=+412.972095710 I0404 10:21:09.007873 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-04 10:21:09.007864282 +0000 UTC m=+412.971467642 I0404 10:21:09.007935 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-04 10:21:09.007932646 +0000 UTC m=+412.971536006 I0404 10:21:09.008032 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:09.011759 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-04 10:21:09.011745471 +0000 UTC m=+412.975348821 I0404 10:21:09.027640 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-04 10:21:09.027628816 +0000 UTC m=+412.991232176 I0404 10:21:09.027668 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:09.027717 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-04 10:21:09.027712601 +0000 UTC m=+412.991315971 I0404 10:21:09.050361 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.051295 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:09.051453 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-04 10:21:09.051351623 +0000 UTC m=+413.014954993 I0404 10:21:09.052025 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.052057 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:09.052081 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-04 10:21:09.052077897 +0000 UTC m=+413.015681257 I0404 10:21:09.067140 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.067186 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-04 10:21:09.067179934 +0000 UTC m=+413.030783284 I0404 10:21:09.196200 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.204484 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xfl67" condition "Approved" to 2026-04-04 10:21:09.204475276 +0000 UTC m=+413.168078636 I0404 10:21:09.220350 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xfl67" condition "Ready" to 2026-04-04 10:21:09.22033216 +0000 UTC m=+413.183935530 I0404 10:21:09.249802 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:09.249791219 +0000 UTC m=+413.213394589 I0404 10:21:09.272300 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.272622 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:09.272615652 +0000 UTC m=+413.236219012 I0404 10:21:09.311608 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.315897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.316102 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:09.316096941 +0000 UTC m=+413.279700291 I0404 10:21:09.442699 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rnzx4" condition "Approved" to 2026-04-04 10:21:09.442688806 +0000 UTC m=+413.406292176 I0404 10:21:09.472774 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rnzx4" condition "Ready" to 2026-04-04 10:21:09.472764333 +0000 UTC m=+413.436367703 I0404 10:21:09.505818 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.546526 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:09.546516192 +0000 UTC m=+413.510119562 I0404 10:21:09.640125 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:09.640475 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:09.640468613 +0000 UTC m=+413.604071983 I0404 10:21:09.694373 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4xkgp" condition "Approved" to 2026-04-04 10:21:09.694345561 +0000 UTC m=+413.657948931 I0404 10:21:10.002528 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4xkgp" condition "Ready" to 2026-04-04 10:21:10.002514797 +0000 UTC m=+413.966118167 I0404 10:21:10.296498 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:10.341303 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:10.597879 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:10.597869592 +0000 UTC m=+414.561472962 I0404 10:21:10.692467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:17.289967 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:17.289995 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" condition "Issuing" to 2026-04-04 10:21:17.289989225 +0000 UTC m=+421.253592585 I0404 10:21:17.290286 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" condition "Ready" to 2026-04-04 10:21:17.290282564 +0000 UTC m=+421.253885924 I0404 10:21:17.303058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tp68z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:17.303143 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" condition "Ready" to 2026-04-04 10:21:17.303134557 +0000 UTC m=+421.266737907 I0404 10:21:17.436602 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tp68z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:17.473273 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-tp68z-8nffs" condition "Approved" to 2026-04-04 10:21:17.473256857 +0000 UTC m=+421.436860247 I0404 10:21:17.493847 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-tp68z-8nffs" condition "Ready" to 2026-04-04 10:21:17.493837319 +0000 UTC m=+421.457440689 I0404 10:21:17.521253 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:17.521225293 +0000 UTC m=+421.484828673 I0404 10:21:17.542380 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tp68z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tp68z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:31.167652 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-04 10:21:31.167639434 +0000 UTC m=+435.131242794 I0404 10:21:31.167818 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:31.167856 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-04 10:21:31.167848637 +0000 UTC m=+435.131452007 I0404 10:21:31.187506 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:31.187591 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:21:31.187618 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-04 10:21:31.187607602 +0000 UTC m=+435.151210982 I0404 10:21:31.427794 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-kg7lx" condition "Approved" to 2026-04-04 10:21:31.427781855 +0000 UTC m=+435.391385225 I0404 10:21:31.452392 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-kg7lx" condition "Ready" to 2026-04-04 10:21:31.452378583 +0000 UTC m=+435.415981953 I0404 10:21:31.486582 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:31.48657129 +0000 UTC m=+435.450174650 I0404 10:21:31.505647 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:31.506159 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:21:31.506147534 +0000 UTC m=+435.469750904 I0404 10:21:31.525599 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:21:31.540751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:24:39.625474 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-04 10:24:39.625432582 +0000 UTC m=+623.589035952 I0404 10:24:39.625546 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:24:39.625652 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-04 10:24:39.625637021 +0000 UTC m=+623.589240461 I0404 10:24:39.651153 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:24:39.652386 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-04 10:24:39.652340455 +0000 UTC m=+623.615943855 I0404 10:24:39.851318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:24:39.876597 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-l22xf" condition "Approved" to 2026-04-04 10:24:39.876580779 +0000 UTC m=+623.840184169 I0404 10:24:39.893152 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-l22xf" condition "Ready" to 2026-04-04 10:24:39.89314414 +0000 UTC m=+623.856747500 I0404 10:24:39.927023 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:24:39.927014159 +0000 UTC m=+623.890617519 I0404 10:24:39.951593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:24:40.002805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:25:18.890398 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-04 10:25:18.890386387 +0000 UTC m=+662.853989757 I0404 10:25:18.891013 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:25:18.891049 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-04 10:25:18.891041709 +0000 UTC m=+662.854645109 I0404 10:25:18.906134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:25:18.906199 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:25:18.906222 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-04 10:25:18.906216413 +0000 UTC m=+662.869819773 I0404 10:25:19.293017 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-cf7zz" condition "Approved" to 2026-04-04 10:25:19.293006902 +0000 UTC m=+663.256610282 I0404 10:25:19.312576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-cf7zz" condition "Ready" to 2026-04-04 10:25:19.312557018 +0000 UTC m=+663.276160388 I0404 10:25:19.356668 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:25:19.356658131 +0000 UTC m=+663.320261501 I0404 10:25:19.377037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:25:19.377562 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:25:19.377553723 +0000 UTC m=+663.341157103 I0404 10:25:19.405273 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"