I0325 16:52:03.051566 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0325 16:52:03.051702 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0325 16:52:03.051812 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0325 16:52:03.056022 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0325 16:52:03.056434 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0325 16:52:03.056485 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0325 16:52:03.056535 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0325 16:52:03.059621 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0325 16:52:03.072611 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0325 16:52:03.079222 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0325 16:52:03.082350 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0325 16:52:03.085035 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0325 16:52:03.087577 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0325 16:52:03.090088 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0325 16:52:03.092562 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0325 16:52:03.094354 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0325 16:52:03.094397 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0325 16:52:03.094400 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0325 16:52:03.099207 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0325 16:52:03.101630 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0325 16:52:03.103888 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0325 16:52:03.106230 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0325 16:52:03.106259 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0325 16:52:03.106264 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0325 16:52:03.108381 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0325 16:52:03.110111 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0325 16:52:03.112287 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0325 16:52:03.113854 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0325 16:52:03.113876 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0325 16:52:03.113924 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0325 16:52:03.119915 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0325 16:52:03.122397 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0325 16:52:03.125010 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0325 16:52:03.127320 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.128109 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.128768 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.128930 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.149014 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.166525 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.178228 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.193496 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.207795 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:03.215766 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 16:52:15.977162 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-25 16:52:15.977146337 +0000 UTC m=+12.959521696 I0325 16:52:16.715268 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 16:52:16.715250425 +0000 UTC m=+13.697625804 I0325 16:52:16.715474 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:52:16.715580 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-25 16:52:16.715563795 +0000 UTC m=+13.697939124 E0325 16:52:16.729759 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 16:52:16.729864 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-25 16:52:16.729853861 +0000 UTC m=+13.712229210 E0325 16:52:16.729919 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 16:52:16.731852 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:16.731969 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 16:52:16.731935477 +0000 UTC m=+13.714310837 E0325 16:52:16.745868 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0325 16:52:16.746226 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 16:52:16.746280 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 16:52:16.746313 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0325 16:52:16.748807 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:16.748886 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 16:52:16.748879158 +0000 UTC m=+13.731254497 I0325 16:52:16.756691 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-g642x" condition "Approved" to 2026-03-25 16:52:16.756674007 +0000 UTC m=+13.739049366 I0325 16:52:16.768208 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-g642x" condition "Ready" to 2026-03-25 16:52:16.768191695 +0000 UTC m=+13.750567044 I0325 16:52:16.792429 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:52:16.792412778 +0000 UTC m=+13.774788137 I0325 16:52:16.808431 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:16.855265 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:21.747218 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:52:21.747205249 +0000 UTC m=+18.729580598 I0325 16:52:47.676977 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:52:47.677024 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-25 16:52:47.677015053 +0000 UTC m=+44.659390382 I0325 16:52:47.677037 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-25 16:52:47.677021163 +0000 UTC m=+44.659396522 I0325 16:52:47.693253 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-25 16:52:47.693242406 +0000 UTC m=+44.675617725 I0325 16:52:47.706739 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:47.706819 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:52:47.706839 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-25 16:52:47.706833807 +0000 UTC m=+44.689209136 I0325 16:52:47.853612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:47.862067 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fbmg6" condition "Approved" to 2026-03-25 16:52:47.862055119 +0000 UTC m=+44.844430478 I0325 16:52:47.901096 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fbmg6" condition "Ready" to 2026-03-25 16:52:47.901081894 +0000 UTC m=+44.883457243 I0325 16:52:47.939372 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:52:47.939352805 +0000 UTC m=+44.921728154 I0325 16:52:47.965611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:47.965971 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:52:47.965961547 +0000 UTC m=+44.948336876 I0325 16:52:47.985681 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:52:47.995151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:02.851841 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-25 16:55:02.851819767 +0000 UTC m=+179.834195096 I0325 16:55:02.852101 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:55:02.852182 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-25 16:55:02.852170879 +0000 UTC m=+179.834546208 E0325 16:55:02.864960 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 16:55:02.865016 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-25 16:55:02.865009444 +0000 UTC m=+179.847384783 I0325 16:55:02.865053 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 16:55:02.867803 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:02.867911 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:55:02.867944 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-25 16:55:02.867932126 +0000 UTC m=+179.850307505 E0325 16:55:02.875231 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0325 16:55:02.875536 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 16:55:02.875571 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0325 16:55:02.875615 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0325 16:55:02.881381 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-25 16:55:02.88136954 +0000 UTC m=+179.863744869 I0325 16:55:02.881649 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:55:02.881680 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 16:55:02.88167274 +0000 UTC m=+179.864048069 I0325 16:55:02.896246 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:02.896348 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:55:02.896386 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 16:55:02.896374433 +0000 UTC m=+179.878749792 I0325 16:55:03.042511 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-g42zz" condition "Approved" to 2026-03-25 16:55:03.042492296 +0000 UTC m=+180.024867655 I0325 16:55:03.050611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:03.053588 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-q7262" condition "Approved" to 2026-03-25 16:55:03.053578136 +0000 UTC m=+180.035953455 I0325 16:55:03.063478 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-g42zz" condition "Ready" to 2026-03-25 16:55:03.063448157 +0000 UTC m=+180.045823496 I0325 16:55:03.081037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-q7262" condition "Ready" to 2026-03-25 16:55:03.081021082 +0000 UTC m=+180.063396411 I0325 16:55:03.112677 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:55:03.112660721 +0000 UTC m=+180.095036050 I0325 16:55:03.131988 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:07.876298 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:55:07.876283812 +0000 UTC m=+184.858659171 I0325 16:55:07.893453 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-g42zz" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:55:07.893437034 +0000 UTC m=+184.875812383 I0325 16:55:07.923213 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:55:07.923194983 +0000 UTC m=+184.905570312 I0325 16:55:07.945843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:07.946171 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:55:07.946162108 +0000 UTC m=+184.928537447 I0325 16:55:07.952568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:07.962323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:55:07.962706 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:55:07.96269523 +0000 UTC m=+184.945070549 I0325 16:57:46.130340 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-69.nip.io-tls" condition "Ready" to 2026-03-25 16:57:46.130327206 +0000 UTC m=+343.112702555 I0325 16:57:46.130794 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-69.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:57:46.130829 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-69.nip.io-tls" condition "Issuing" to 2026-03-25 16:57:46.130822632 +0000 UTC m=+343.113197991 I0325 16:57:46.146628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-69.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-69.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:57:46.146731 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-69.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:57:46.146760 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-69.nip.io-tls" condition "Issuing" to 2026-03-25 16:57:46.146751932 +0000 UTC m=+343.129127291 I0325 16:57:46.320700 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-69.nip.io-tls-cbdxd" condition "Approved" to 2026-03-25 16:57:46.320689406 +0000 UTC m=+343.303064725 I0325 16:57:46.339548 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-69.nip.io-tls-cbdxd" condition "Ready" to 2026-03-25 16:57:46.339533618 +0000 UTC m=+343.321908967 I0325 16:57:46.364045 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-69.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:57:46.364038668 +0000 UTC m=+343.346413997 I0325 16:57:46.383631 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-69.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-69.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:58:57.153871 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-25 16:58:57.153861185 +0000 UTC m=+414.136236514 I0325 16:58:57.154126 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:58:57.154204 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-25 16:58:57.154194935 +0000 UTC m=+414.136570264 E0325 16:58:57.168506 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 16:58:57.169332 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-25 16:58:57.16859063 +0000 UTC m=+414.150965989 E0325 16:58:57.169432 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 16:58:57.170654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:58:57.170740 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:58:57.170772 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-25 16:58:57.170764849 +0000 UTC m=+414.153140178 E0325 16:58:57.181685 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0325 16:58:57.181788 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 16:58:57.181833 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 16:58:57.181881 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0325 16:58:57.203967 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:58:57.205490 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xldnz" condition "Approved" to 2026-03-25 16:58:57.205472455 +0000 UTC m=+414.187847814 I0325 16:58:57.217872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xldnz" condition "Ready" to 2026-03-25 16:58:57.217857606 +0000 UTC m=+414.200232955 I0325 16:58:57.240628 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:58:57.240616535 +0000 UTC m=+414.222991854 I0325 16:58:57.256483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:58:57.256927 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:58:57.25691521 +0000 UTC m=+414.239290559 I0325 16:58:57.272806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:58:57.272817 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:02.182055 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:02.182041676 +0000 UTC m=+419.164417015 I0325 16:59:40.340948 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-25 16:59:40.34093765 +0000 UTC m=+457.323312959 I0325 16:59:40.341627 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:59:40.341651 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-25 16:59:40.341648233 +0000 UTC m=+457.324023552 I0325 16:59:40.343163 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-25 16:59:40.343137889 +0000 UTC m=+457.325513218 I0325 16:59:40.343394 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:59:40.343462 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-25 16:59:40.343447629 +0000 UTC m=+457.325822968 I0325 16:59:40.349302 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-25 16:59:40.349283214 +0000 UTC m=+457.331658553 I0325 16:59:40.349630 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:59:40.349729 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-25 16:59:40.349674866 +0000 UTC m=+457.332050215 I0325 16:59:40.387307 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:40.387363 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:59:40.387414 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-25 16:59:40.387407406 +0000 UTC m=+457.369782725 I0325 16:59:40.389310 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:40.389322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:40.389365 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:59:40.389383 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-25 16:59:40.389378158 +0000 UTC m=+457.371753477 I0325 16:59:40.389805 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-25 16:59:40.389797071 +0000 UTC m=+457.372172440 I0325 16:59:40.611457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:40.612308 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:40.619640 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-z94sc" condition "Approved" to 2026-03-25 16:59:40.619616898 +0000 UTC m=+457.601992247 I0325 16:59:40.622415 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-44vn7" condition "Approved" to 2026-03-25 16:59:40.622401676 +0000 UTC m=+457.604777035 I0325 16:59:40.627727 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:40.645859 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-z94sc" condition "Ready" to 2026-03-25 16:59:40.645842356 +0000 UTC m=+457.628217685 I0325 16:59:40.649936 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-44vn7" condition "Ready" to 2026-03-25 16:59:40.649925644 +0000 UTC m=+457.632301003 I0325 16:59:40.668340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-kj5rv" condition "Approved" to 2026-03-25 16:59:40.668329235 +0000 UTC m=+457.650704564 I0325 16:59:40.677135 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:40.677124022 +0000 UTC m=+457.659499341 I0325 16:59:40.695450 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-kj5rv" condition "Ready" to 2026-03-25 16:59:40.695438339 +0000 UTC m=+457.677813668 I0325 16:59:40.928576 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:40.928562511 +0000 UTC m=+457.910937840 I0325 16:59:41.030387 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:41.363462 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:41.364276 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:41.364250071 +0000 UTC m=+458.346625400 I0325 16:59:41.417559 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:41.417539231 +0000 UTC m=+458.399914560 I0325 16:59:41.681297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:41.681655 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:41.681630199 +0000 UTC m=+458.664005548 I0325 16:59:41.909133 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:42.179892 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:42.230406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:53.870191 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:59:53.870190 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" condition "Ready" to 2026-03-25 16:59:53.870169163 +0000 UTC m=+470.852544512 I0325 16:59:53.870229 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" condition "Issuing" to 2026-03-25 16:59:53.870221464 +0000 UTC m=+470.852596783 I0325 16:59:53.885602 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:53.885686 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 16:59:53.885707 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" condition "Issuing" to 2026-03-25 16:59:53.885698842 +0000 UTC m=+470.868074191 I0325 16:59:54.049868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j7xzr-shblm" condition "Approved" to 2026-03-25 16:59:54.049790687 +0000 UTC m=+471.032166006 I0325 16:59:54.074716 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j7xzr-shblm" condition "Ready" to 2026-03-25 16:59:54.074702202 +0000 UTC m=+471.057077531 I0325 16:59:54.115523 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:54.115509239 +0000 UTC m=+471.097884558 I0325 16:59:54.148130 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:54.148529 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:54.1485218 +0000 UTC m=+471.130897129 I0325 16:59:54.154861 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:54.165519 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 16:59:54.166666 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 16:59:54.166658042 +0000 UTC m=+471.149033361 I0325 16:59:54.191651 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7xzr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:00:37.076699 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 17:00:37.076680628 +0000 UTC m=+514.059055977 I0325 17:00:37.077051 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:00:37.077097 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-25 17:00:37.077088771 +0000 UTC m=+514.059464120 I0325 17:00:37.093199 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:00:37.093284 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 17:00:37.093276412 +0000 UTC m=+514.075651751 I0325 17:00:37.416571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:00:37.446847 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-7d6gs" condition "Approved" to 2026-03-25 17:00:37.4468334 +0000 UTC m=+514.429208729 I0325 17:00:37.466399 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-7d6gs" condition "Ready" to 2026-03-25 17:00:37.466385018 +0000 UTC m=+514.448760347 I0325 17:00:37.491514 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:00:37.491477521 +0000 UTC m=+514.473852840 I0325 17:00:37.514852 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:03:55.690174 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-25 17:03:55.690154733 +0000 UTC m=+712.672530082 I0325 17:03:55.690510 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:03:55.690628 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-25 17:03:55.690589207 +0000 UTC m=+712.672964566 I0325 17:03:55.705690 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:03:55.705798 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:03:55.705822 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-25 17:03:55.705815547 +0000 UTC m=+712.688190876 I0325 17:03:55.844083 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xkwpq" condition "Approved" to 2026-03-25 17:03:55.844070331 +0000 UTC m=+712.826445650 I0325 17:03:55.863141 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xkwpq" condition "Ready" to 2026-03-25 17:03:55.863132003 +0000 UTC m=+712.845507332 I0325 17:03:55.890246 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:03:55.890236158 +0000 UTC m=+712.872611477 I0325 17:03:55.909053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:03:55.909820 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:03:55.909813686 +0000 UTC m=+712.892189015 I0325 17:03:55.923087 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:03:55.934595 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:03:55.934939 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:03:55.934930978 +0000 UTC m=+712.917306297 I0325 17:06:24.004249 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-25 17:06:24.004222795 +0000 UTC m=+860.986598134 I0325 17:06:24.004237 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:06:24.005370 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-25 17:06:24.00535077 +0000 UTC m=+860.987726129 I0325 17:06:24.023045 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:06:24.023301 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:06:24.023353 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-25 17:06:24.023344689 +0000 UTC m=+861.005720018 I0325 17:06:24.559812 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-j7jll" condition "Approved" to 2026-03-25 17:06:24.559791914 +0000 UTC m=+861.542167263 I0325 17:06:24.583374 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-j7jll" condition "Ready" to 2026-03-25 17:06:24.583361129 +0000 UTC m=+861.565736458 I0325 17:06:24.621028 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:06:24.621008309 +0000 UTC m=+861.603383628 I0325 17:06:24.655075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:06:24.721037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:07:39.665352 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-25 17:07:39.665341835 +0000 UTC m=+936.647717154 I0325 17:07:39.665548 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:07:39.665625 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-25 17:07:39.665617573 +0000 UTC m=+936.647992902 I0325 17:07:39.681918 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:07:39.682015 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-25 17:07:39.682002659 +0000 UTC m=+936.664378018 I0325 17:07:39.823817 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:07:39.856331 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-vcc4m" condition "Approved" to 2026-03-25 17:07:39.856318829 +0000 UTC m=+936.838694158 I0325 17:07:39.878146 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-vcc4m" condition "Ready" to 2026-03-25 17:07:39.878135706 +0000 UTC m=+936.860511035 I0325 17:07:39.909582 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:07:39.909567246 +0000 UTC m=+936.891942595 I0325 17:07:39.931614 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:07:39.983250 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:10:51.386848 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:10:51.386909 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 17:10:51.386902808 +0000 UTC m=+1128.369278137 I0325 17:10:51.386892 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-25 17:10:51.386873567 +0000 UTC m=+1128.369248927 I0325 17:10:51.408658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:10:51.408746 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 17:10:51.408765 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 17:10:51.408758466 +0000 UTC m=+1128.391133795 I0325 17:10:51.612017 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fp6p5" condition "Approved" to 2026-03-25 17:10:51.611996443 +0000 UTC m=+1128.594371812 I0325 17:10:51.632160 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fp6p5" condition "Ready" to 2026-03-25 17:10:51.632150348 +0000 UTC m=+1128.614525677 I0325 17:10:51.687987 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:10:51.687969145 +0000 UTC m=+1128.670344504 I0325 17:10:51.716362 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 17:10:51.716813 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 17:10:51.716803412 +0000 UTC m=+1128.699178771 I0325 17:10:51.777315 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"