I0417 18:46:08.514828 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0417 18:46:08.514955 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0417 18:46:08.515031 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0417 18:46:08.522014 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0417 18:46:08.522928 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0417 18:46:08.522975 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0417 18:46:08.523007 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0417 18:46:08.527491 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0417 18:46:08.546737 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0417 18:46:08.552208 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0417 18:46:08.555488 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0417 18:46:08.555695 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0417 18:46:08.563439 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0417 18:46:08.567932 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0417 18:46:08.568023 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0417 18:46:08.570406 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0417 18:46:08.570430 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0417 18:46:08.570548 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0417 18:46:08.572516 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0417 18:46:08.574424 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0417 18:46:08.576250 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0417 18:46:08.581588 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0417 18:46:08.586647 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0417 18:46:08.589756 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0417 18:46:08.591653 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0417 18:46:08.591730 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0417 18:46:08.593896 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0417 18:46:08.595888 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0417 18:46:08.597822 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0417 18:46:08.599884 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0417 18:46:08.601576 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0417 18:46:08.607303 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0417 18:46:08.607349 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0417 18:46:08.611619 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.611892 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.613017 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.613183 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.627019 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.646158 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.668879 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.682945 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.702389 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:08.706684 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 18:46:18.931468 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-17 18:46:18.931450642 +0000 UTC m=+10.448785494 I0417 18:46:19.679161 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:46:19.679153 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-17 18:46:19.679136122 +0000 UTC m=+11.196470974 I0417 18:46:19.679217 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-17 18:46:19.679211944 +0000 UTC m=+11.196546766 E0417 18:46:19.697606 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 18:46:19.697709 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-17 18:46:19.697701909 +0000 UTC m=+11.215036741 E0417 18:46:19.697735 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 18:46:19.698588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:19.698665 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:46:19.698730 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-17 18:46:19.698710482 +0000 UTC m=+11.216045314 E0417 18:46:19.709298 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0417 18:46:19.709502 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:46:19.709568 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:46:19.709638 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0417 18:46:19.741960 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-55vw4" condition "Approved" to 2026-04-17 18:46:19.741947022 +0000 UTC m=+11.259281854 I0417 18:46:19.758195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-55vw4" condition "Ready" to 2026-04-17 18:46:19.758181146 +0000 UTC m=+11.275515998 I0417 18:46:19.787182 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:46:19.787169486 +0000 UTC m=+11.304504318 I0417 18:46:19.804829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:19.805436 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:46:19.805424447 +0000 UTC m=+11.322759309 I0417 18:46:19.821650 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:19.821999 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:46:19.821985238 +0000 UTC m=+11.339320100 I0417 18:46:24.710701 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:46:24.710689258 +0000 UTC m=+16.228024080 I0417 18:46:46.090922 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:46:46.091350 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-17 18:46:46.090187877 +0000 UTC m=+37.607522749 I0417 18:46:46.091371 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-17 18:46:46.090989374 +0000 UTC m=+37.608324236 I0417 18:46:46.106139 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-17 18:46:46.106087213 +0000 UTC m=+37.623422075 I0417 18:46:46.124175 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:46.124319 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-17 18:46:46.124303322 +0000 UTC m=+37.641638184 I0417 18:46:46.671152 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:46.704229 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-prq4f" condition "Approved" to 2026-04-17 18:46:46.704214797 +0000 UTC m=+38.221549649 I0417 18:46:46.753891 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-prq4f" condition "Ready" to 2026-04-17 18:46:46.753860641 +0000 UTC m=+38.271195473 I0417 18:46:46.785294 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:46:46.785280276 +0000 UTC m=+38.302615108 I0417 18:46:46.811593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:46.812178 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:46:46.812166629 +0000 UTC m=+38.329501471 I0417 18:46:46.819874 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:46.833846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:46:46.834235 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:46:46.834224135 +0000 UTC m=+38.351558957 I0417 18:48:31.120758 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:48:31.120768 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-17 18:48:31.120740031 +0000 UTC m=+142.638074893 I0417 18:48:31.120823 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-17 18:48:31.120812763 +0000 UTC m=+142.638147595 E0417 18:48:31.133436 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 18:48:31.133599 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-17 18:48:31.133570829 +0000 UTC m=+142.650905661 I0417 18:48:31.133675 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 18:48:31.138157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:48:31.138249 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-17 18:48:31.138239923 +0000 UTC m=+142.655574755 E0417 18:48:31.146597 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0417 18:48:31.147359 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" E0417 18:48:31.147412 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 18:48:31.147468 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 18:48:31.147482 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-17 18:48:31.14747557 +0000 UTC m=+142.664810402 I0417 18:48:31.147359 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-17 18:48:31.147349247 +0000 UTC m=+142.664684079 E0417 18:48:31.147517 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0417 18:48:31.167533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:48:31.167634 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:48:31.167662 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-17 18:48:31.167650821 +0000 UTC m=+142.684985683 I0417 18:48:31.294001 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:48:31.325905 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-schvh" condition "Approved" to 2026-04-17 18:48:31.325887211 +0000 UTC m=+142.843222083 I0417 18:48:31.358540 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-schvh" condition "Ready" to 2026-04-17 18:48:31.358526742 +0000 UTC m=+142.875861574 I0417 18:48:31.390410 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:48:31.390391134 +0000 UTC m=+142.907725986 I0417 18:48:31.416658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:48:31.416957 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:48:31.416948219 +0000 UTC m=+142.934283051 I0417 18:48:31.437072 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:48:31.437522 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:48:31.437511999 +0000 UTC m=+142.954846831 I0417 18:48:31.497610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:48:31.504378 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-85x6t" condition "Approved" to 2026-04-17 18:48:31.504359525 +0000 UTC m=+143.021694407 I0417 18:48:31.521431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-85x6t" condition "Ready" to 2026-04-17 18:48:31.521420207 +0000 UTC m=+143.038755039 I0417 18:48:36.147858 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:48:36.147840662 +0000 UTC m=+147.665175494 I0417 18:48:36.167514 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-85x6t" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:48:36.167501382 +0000 UTC m=+147.684836214 I0417 18:48:36.198765 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:48:36.19874735 +0000 UTC m=+147.716082182 I0417 18:48:36.218653 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:19.498327 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-246.nip.io-tls" condition "Ready" to 2026-04-17 18:51:19.498200637 +0000 UTC m=+311.015535489 I0417 18:51:19.498435 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-246.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:19.498525 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-246.nip.io-tls" condition "Issuing" to 2026-04-17 18:51:19.498500185 +0000 UTC m=+311.015835047 I0417 18:51:19.516915 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-246.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-246.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:19.517018 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-246.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:51:19.517057 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-246.nip.io-tls" condition "Issuing" to 2026-04-17 18:51:19.517045395 +0000 UTC m=+311.034380237 I0417 18:51:19.690814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-246.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-246.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:19.701930 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-246.nip.io-tls-cpnsf" condition "Approved" to 2026-04-17 18:51:19.70191372 +0000 UTC m=+311.219248582 I0417 18:51:19.727036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-246.nip.io-tls-cpnsf" condition "Ready" to 2026-04-17 18:51:19.72701135 +0000 UTC m=+311.244346212 I0417 18:51:19.753717 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-246.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:19.753710066 +0000 UTC m=+311.271044908 I0417 18:51:19.779654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-246.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-246.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:51:19.780776 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-246.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:51:19.780765129 +0000 UTC m=+311.298099991 I0417 18:51:19.796877 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-246.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-246.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:32.893048 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:52:32.893110 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-17 18:52:32.893098325 +0000 UTC m=+384.410433157 I0417 18:52:32.893107 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-17 18:52:32.893076335 +0000 UTC m=+384.410411187 I0417 18:52:32.910026 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:32.910105 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-17 18:52:32.91009767 +0000 UTC m=+384.427432502 E0417 18:52:32.912635 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 18:52:32.912803 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-17 18:52:32.91278813 +0000 UTC m=+384.430122992 E0417 18:52:32.912935 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:52:32.933635 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0417 18:52:32.934523 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:52:32.934677 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 18:52:32.934755 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0417 18:52:32.939998 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:32.972833 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-rl4z8" condition "Approved" to 2026-04-17 18:52:32.972811467 +0000 UTC m=+384.490146319 I0417 18:52:32.986220 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-rl4z8" condition "Ready" to 2026-04-17 18:52:32.986206119 +0000 UTC m=+384.503540951 I0417 18:52:33.013680 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:52:33.01366284 +0000 UTC m=+384.530997692 I0417 18:52:33.033063 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:33.086801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:52:37.934987 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:52:37.934969477 +0000 UTC m=+389.452304329 I0417 18:53:18.422079 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:18.422158 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-17 18:53:18.422150724 +0000 UTC m=+429.939485556 I0417 18:53:18.422495 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 18:53:18.422489962 +0000 UTC m=+429.939824794 I0417 18:53:18.424328 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-17 18:53:18.424295683 +0000 UTC m=+429.941630505 I0417 18:53:18.424920 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:18.424957 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-17 18:53:18.424952207 +0000 UTC m=+429.942287039 I0417 18:53:18.433865 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:18.434144 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-17 18:53:18.434133376 +0000 UTC m=+429.951468198 I0417 18:53:18.434160 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-17 18:53:18.434151826 +0000 UTC m=+429.951486648 I0417 18:53:18.450330 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:18.450415 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 18:53:18.450399065 +0000 UTC m=+429.967733897 I0417 18:53:18.453808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:18.453898 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:18.453925 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-17 18:53:18.453918395 +0000 UTC m=+429.971253217 I0417 18:53:18.468047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:18.468110 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-17 18:53:18.468101876 +0000 UTC m=+429.985436708 I0417 18:53:18.559913 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:18.607573 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tc9h7" condition "Approved" to 2026-04-17 18:53:18.607562068 +0000 UTC m=+430.124896890 I0417 18:53:18.627098 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tc9h7" condition "Ready" to 2026-04-17 18:53:18.627090161 +0000 UTC m=+430.144424983 I0417 18:53:18.651394 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:18.651378431 +0000 UTC m=+430.168713273 I0417 18:53:18.675582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:18.675923 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:18.675911407 +0000 UTC m=+430.193246229 I0417 18:53:18.703795 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:18.704174 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:18.704164688 +0000 UTC m=+430.221499550 I0417 18:53:18.772716 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-645bq" condition "Approved" to 2026-04-17 18:53:18.772699652 +0000 UTC m=+430.290034504 I0417 18:53:18.793206 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-645bq" condition "Ready" to 2026-04-17 18:53:18.793187636 +0000 UTC m=+430.310522458 I0417 18:53:18.829583 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:18.829560301 +0000 UTC m=+430.346895173 I0417 18:53:18.851962 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:18.852181 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:18.852170843 +0000 UTC m=+430.369505665 E0417 18:53:18.963138 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-tnmfw\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0417 18:53:19.064802 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:19.263570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:19.318831 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-x8hdr" condition "Approved" to 2026-04-17 18:53:19.318820954 +0000 UTC m=+430.836155776 I0417 18:53:19.421941 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-x8hdr" condition "Ready" to 2026-04-17 18:53:19.42192728 +0000 UTC m=+430.939262132 I0417 18:53:19.915043 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:19.91502044 +0000 UTC m=+431.432355302 I0417 18:53:20.013441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:20.013964 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:20.013951343 +0000 UTC m=+431.531286175 I0417 18:53:20.263176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:20.313436 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:27.050482 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" condition "Ready" to 2026-04-17 18:53:27.050458362 +0000 UTC m=+438.567793194 I0417 18:53:27.050734 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:27.050811 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" condition "Issuing" to 2026-04-17 18:53:27.050802661 +0000 UTC m=+438.568137523 I0417 18:53:27.067222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:27.067326 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:27.067359 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" condition "Issuing" to 2026-04-17 18:53:27.067349846 +0000 UTC m=+438.584684708 I0417 18:53:27.279951 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:27.297604 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4c5dl-rjg8h" condition "Approved" to 2026-04-17 18:53:27.297582086 +0000 UTC m=+438.814916948 I0417 18:53:27.319674 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4c5dl-rjg8h" condition "Ready" to 2026-04-17 18:53:27.319653036 +0000 UTC m=+438.836987868 I0417 18:53:27.350400 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:27.350385473 +0000 UTC m=+438.867720295 I0417 18:53:27.369279 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:27.984522 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4c5dl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:55.265011 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:55.265043 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 18:53:55.26503572 +0000 UTC m=+466.782370542 I0417 18:53:55.265367 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-17 18:53:55.265344277 +0000 UTC m=+466.782679139 I0417 18:53:55.285070 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:55.285226 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:53:55.285268 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 18:53:55.285257948 +0000 UTC m=+466.802592800 I0417 18:53:55.432428 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-g4bsb" condition "Approved" to 2026-04-17 18:53:55.432416786 +0000 UTC m=+466.949751618 I0417 18:53:55.449591 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-g4bsb" condition "Ready" to 2026-04-17 18:53:55.449578185 +0000 UTC m=+466.966913007 I0417 18:53:55.483766 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:55.483753839 +0000 UTC m=+467.001088671 I0417 18:53:55.499659 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:53:55.500199 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:53:55.500187722 +0000 UTC m=+467.017522584 I0417 18:53:55.518701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:16.007176 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-17 18:57:16.007126055 +0000 UTC m=+667.524460917 I0417 18:57:16.007194 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:57:16.007583 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-17 18:57:16.007566355 +0000 UTC m=+667.524901287 I0417 18:57:16.025016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:16.025082 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:57:16.025096 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-17 18:57:16.025089932 +0000 UTC m=+667.542424754 I0417 18:57:16.173587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:16.181294 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xdbcb" condition "Approved" to 2026-04-17 18:57:16.181285203 +0000 UTC m=+667.698620025 I0417 18:57:16.198666 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xdbcb" condition "Ready" to 2026-04-17 18:57:16.198650176 +0000 UTC m=+667.715985018 I0417 18:57:16.230444 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:57:16.230426226 +0000 UTC m=+667.747761058 I0417 18:57:16.255208 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:16.255515 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:57:16.255508305 +0000 UTC m=+667.772843137 I0417 18:57:16.273498 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:16.274724 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:57:16.275015 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:57:16.275007717 +0000 UTC m=+667.792342549 I0417 18:59:46.448473 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:59:46.448568 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-17 18:59:46.448555389 +0000 UTC m=+817.965890251 I0417 18:59:46.448473 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-17 18:59:46.448438897 +0000 UTC m=+817.965773779 I0417 18:59:46.468866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:59:46.468975 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 18:59:46.469007 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-17 18:59:46.468994864 +0000 UTC m=+817.986329726 I0417 18:59:46.763134 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9vngr" condition "Approved" to 2026-04-17 18:59:46.7631209 +0000 UTC m=+818.280455722 I0417 18:59:46.782398 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9vngr" condition "Ready" to 2026-04-17 18:59:46.782387698 +0000 UTC m=+818.299722520 I0417 18:59:46.806024 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:59:46.806009985 +0000 UTC m=+818.323344847 I0417 18:59:46.827575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:59:46.827875 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:59:46.827868792 +0000 UTC m=+818.345203624 I0417 18:59:46.853371 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 18:59:46.853697 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 18:59:46.853687918 +0000 UTC m=+818.371022760 I0417 19:00:56.769278 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 19:00:56.769338 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-17 19:00:56.769331733 +0000 UTC m=+888.286666565 I0417 19:00:56.769333 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-17 19:00:56.769315123 +0000 UTC m=+888.286649995 I0417 19:00:56.792124 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:00:56.792421 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 19:00:56.792503 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-17 19:00:56.792489599 +0000 UTC m=+888.309824501 I0417 19:00:57.417367 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:00:57.428353 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-ftpnk" condition "Approved" to 2026-04-17 19:00:57.428342815 +0000 UTC m=+888.945677637 I0417 19:00:57.455629 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-ftpnk" condition "Ready" to 2026-04-17 19:00:57.455619024 +0000 UTC m=+888.972953856 I0417 19:00:57.501142 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 19:00:57.501112357 +0000 UTC m=+889.018447189 I0417 19:00:57.538346 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:00:57.538653 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 19:00:57.538645028 +0000 UTC m=+889.055979860 I0417 19:00:57.557814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:00:57.558029 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 19:00:57.558022319 +0000 UTC m=+889.075357151 I0417 19:04:04.994408 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 19:04:04.994492 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-17 19:04:04.994487663 +0000 UTC m=+1076.511822495 I0417 19:04:04.994410 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-17 19:04:04.99435849 +0000 UTC m=+1076.511693362 I0417 19:04:05.012467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:04:05.012567 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-17 19:04:05.012558256 +0000 UTC m=+1076.529893088 I0417 19:04:05.156826 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:04:05.187448 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-f57wd" condition "Approved" to 2026-04-17 19:04:05.187429128 +0000 UTC m=+1076.704763990 I0417 19:04:05.207222 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-f57wd" condition "Ready" to 2026-04-17 19:04:05.207207921 +0000 UTC m=+1076.724542753 I0417 19:04:05.238269 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 19:04:05.238248911 +0000 UTC m=+1076.755583743 I0417 19:04:05.275800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 19:04:05.276188 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 19:04:05.276177139 +0000 UTC m=+1076.793511961 I0417 19:04:05.300683 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"