I0424 14:26:44.518822 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0424 14:26:44.519017 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0424 14:26:44.519147 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0424 14:26:44.524440 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0424 14:26:44.525190 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0424 14:26:44.525283 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0424 14:26:44.525293 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0424 14:26:44.528241 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0424 14:26:44.546503 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0424 14:26:44.546764 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0424 14:26:44.554449 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0424 14:26:44.554593 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0424 14:26:44.558876 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0424 14:26:44.561378 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0424 14:26:44.563673 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0424 14:26:44.566125 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0424 14:26:44.567625 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0424 14:26:44.567662 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0424 14:26:44.569382 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0424 14:26:44.574573 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0424 14:26:44.576354 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0424 14:26:44.578025 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0424 14:26:44.579770 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0424 14:26:44.579927 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0424 14:26:44.581499 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0424 14:26:44.581610 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0424 14:26:44.583494 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0424 14:26:44.585235 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0424 14:26:44.586896 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0424 14:26:44.597064 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0424 14:26:44.597224 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0424 14:26:44.600287 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0424 14:26:44.600691 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0424 14:26:44.604444 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.607360 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.607545 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.607934 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.608696 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.610246 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.610295 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.610461 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.610492 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:26:44.732186 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0424 14:27:23.094161 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-24 14:27:23.094143872 +0000 UTC m=+38.613290417 I0424 14:27:23.956533 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-24 14:27:23.95652056 +0000 UTC m=+39.475667085 I0424 14:27:23.956597 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:27:23.956642 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-24 14:27:23.956637572 +0000 UTC m=+39.475784097 I0424 14:27:23.985870 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" E0424 14:27:23.986028 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0424 14:27:23.986123 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-24 14:27:23.986115544 +0000 UTC m=+39.505262069 E0424 14:27:23.986148 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0424 14:27:23.986217 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:27:23.986303 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-24 14:27:23.986291548 +0000 UTC m=+39.505438093 E0424 14:27:23.996872 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0424 14:27:23.997005 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0424 14:27:23.997043 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0424 14:27:23.997078 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0424 14:27:24.056741 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hzv9f" condition "Approved" to 2026-04-24 14:27:24.056720284 +0000 UTC m=+39.575866799 I0424 14:27:24.072882 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hzv9f" condition "Ready" to 2026-04-24 14:27:24.072870531 +0000 UTC m=+39.592017046 I0424 14:27:24.106374 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:27:24.106353491 +0000 UTC m=+39.625500036 I0424 14:27:24.126760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:24.127299 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:27:24.127289354 +0000 UTC m=+39.646435859 I0424 14:27:24.145188 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:24.148764 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:28.998072 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:27:28.998056152 +0000 UTC m=+44.517202707 I0424 14:27:29.398451 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:27:29.398493 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-24 14:27:29.398486632 +0000 UTC m=+44.917633157 I0424 14:27:29.399213 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-24 14:27:29.399205808 +0000 UTC m=+44.918352323 I0424 14:27:29.420090 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-24 14:27:29.420078459 +0000 UTC m=+44.939224974 I0424 14:27:29.427254 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:29.427354 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-24 14:27:29.42734462 +0000 UTC m=+44.946491145 I0424 14:27:29.566646 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:29.603033 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-48pf5" condition "Approved" to 2026-04-24 14:27:29.603022663 +0000 UTC m=+45.122169178 I0424 14:27:29.641540 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-48pf5" condition "Ready" to 2026-04-24 14:27:29.641506853 +0000 UTC m=+45.160653378 I0424 14:27:29.675731 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:27:29.675716099 +0000 UTC m=+45.194862614 I0424 14:27:29.699780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:29.700037 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:27:29.700030837 +0000 UTC m=+45.219177352 I0424 14:27:29.715652 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:29.732792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:35.374446 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:27:35.374485 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-24 14:27:35.374478236 +0000 UTC m=+50.893624751 I0424 14:27:35.374914 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-24 14:27:35.374908975 +0000 UTC m=+50.894055490 I0424 14:27:35.388494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:35.388569 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-24 14:27:35.388562097 +0000 UTC m=+50.907708642 I0424 14:27:35.409625 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:35.439288 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-v2mg5" condition "Approved" to 2026-04-24 14:27:35.439260168 +0000 UTC m=+50.958406713 I0424 14:27:35.473883 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-v2mg5" condition "Ready" to 2026-04-24 14:27:35.473867313 +0000 UTC m=+50.993013858 I0424 14:27:35.509596 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:27:35.509573272 +0000 UTC m=+51.028719807 I0424 14:27:35.533434 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:36.084601 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-24 14:27:36.08458775 +0000 UTC m=+51.603734265 I0424 14:27:36.084929 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:27:36.085047 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-24 14:27:36.08503072 +0000 UTC m=+51.604177265 I0424 14:27:36.114218 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:36.114311 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-24 14:27:36.114302427 +0000 UTC m=+51.633448942 I0424 14:27:36.134145 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:36.134225 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-24 14:27:36.134213987 +0000 UTC m=+51.653360522 I0424 14:27:36.156563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-nkdl9" condition "Approved" to 2026-04-24 14:27:36.156547091 +0000 UTC m=+51.675693616 I0424 14:27:36.175184 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-nkdl9" condition "Ready" to 2026-04-24 14:27:36.175167452 +0000 UTC m=+51.694313967 I0424 14:27:36.199789 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:27:36.199769976 +0000 UTC m=+51.718916521 I0424 14:27:36.235164 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:36.288120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:27:36.876786 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-04-24 14:27:36.876768758 +0000 UTC m=+52.395915313 I0424 14:27:37.633218 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-04-24 14:27:37.633205076 +0000 UTC m=+53.152351601 I0424 14:30:07.239168 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:30:07.239224 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-24 14:30:07.239212379 +0000 UTC m=+202.758358924 I0424 14:30:07.239967 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-24 14:30:07.239955306 +0000 UTC m=+202.759102281 E0424 14:30:07.254048 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0424 14:30:07.254093 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-24 14:30:07.254085569 +0000 UTC m=+202.773232094 I0424 14:30:07.254133 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0424 14:30:07.257927 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:30:07.258021 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:30:07.258049 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-24 14:30:07.2580429 +0000 UTC m=+202.777189425 E0424 14:30:07.267216 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0424 14:30:07.267359 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0424 14:30:07.267391 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0424 14:30:07.267429 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0424 14:30:07.273688 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:30:07.273724 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-24 14:30:07.273714968 +0000 UTC m=+202.792861503 I0424 14:30:07.273744 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-24 14:30:07.273727209 +0000 UTC m=+202.792873864 I0424 14:30:07.311519 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:30:07.311689 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:30:07.311740 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-24 14:30:07.311727897 +0000 UTC m=+202.830874452 I0424 14:30:07.429633 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-lttq5" condition "Approved" to 2026-04-24 14:30:07.429614643 +0000 UTC m=+202.948761158 I0424 14:30:07.451791 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-lttq5" condition "Ready" to 2026-04-24 14:30:07.45177881 +0000 UTC m=+202.970925335 I0424 14:30:07.482527 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:30:07.482508923 +0000 UTC m=+203.001655448 I0424 14:30:07.505075 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-pvtgd" condition "Approved" to 2026-04-24 14:30:07.505059788 +0000 UTC m=+203.024206303 I0424 14:30:07.507441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:30:07.507833 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:30:07.507823032 +0000 UTC m=+203.026969557 I0424 14:30:07.527931 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-pvtgd" condition "Ready" to 2026-04-24 14:30:07.527910181 +0000 UTC m=+203.047056706 I0424 14:30:07.536065 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:30:07.536872 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:30:07.536857886 +0000 UTC m=+203.056004441 I0424 14:30:12.267950 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:30:12.267928652 +0000 UTC m=+207.787075207 I0424 14:30:12.289345 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-pvtgd" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:30:12.289331641 +0000 UTC m=+207.808478186 I0424 14:30:12.317954 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:30:12.317931805 +0000 UTC m=+207.837078360 I0424 14:30:12.347199 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:30:12.418840 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:35:01.490209 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-3.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0424 14:35:01.490261 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Issuing" to 2026-04-24 14:35:01.490250548 +0000 UTC m=+497.009397093 I0424 14:35:01.490253 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready" to 2026-04-24 14:35:01.490232178 +0000 UTC m=+497.009378733 I0424 14:35:01.508781 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:35:01.508944 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready" to 2026-04-24 14:35:01.508935299 +0000 UTC m=+497.028081814 I0424 14:35:01.779981 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:35:01.814332 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-wpm79" condition "Approved" to 2026-04-24 14:35:01.81431099 +0000 UTC m=+497.333457526 I0424 14:35:01.834185 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-wpm79" condition "Ready" to 2026-04-24 14:35:01.834168168 +0000 UTC m=+497.353314693 I0424 14:35:01.871644 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:35:01.871623802 +0000 UTC m=+497.390770357 I0424 14:35:01.910983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0424 14:35:01.911366 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-24 14:35:01.911360089 +0000 UTC m=+497.430506604 I0424 14:35:01.939483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again"