I0505 17:59:19.151473 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0505 17:59:19.151895 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0505 17:59:19.152082 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 17:59:19.156145 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0505 17:59:19.156765 1 controller.go:156] "cert-manager/controller: starting leader election" I0505 17:59:19.156872 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0505 17:59:19.156901 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0505 17:59:19.161066 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... E0505 17:59:19.161827 1 leaderelection.go:327] error retrieving resource lock cert-manager/cert-manager-controller: Get "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: connect: connection refused E0505 17:59:38.932590 1 leaderelection.go:327] error retrieving resource lock cert-manager/cert-manager-controller: Get "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: connect: connection refused I0505 18:00:10.328770 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0505 18:00:10.329593 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0505 18:00:10.337710 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0505 18:00:10.338223 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0505 18:00:10.343537 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0505 18:00:10.345239 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0505 18:00:10.347485 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0505 18:00:10.350127 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0505 18:00:10.350198 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0505 18:00:10.353201 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0505 18:00:10.354239 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0505 18:00:10.358636 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0505 18:00:10.362631 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0505 18:00:10.366019 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0505 18:00:10.367298 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0505 18:00:10.368977 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0505 18:00:10.370598 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0505 18:00:10.372172 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0505 18:00:10.372425 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0505 18:00:10.374262 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0505 18:00:10.376108 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0505 18:00:10.377807 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0505 18:00:10.379560 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0505 18:00:10.379625 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0505 18:00:10.386905 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0505 18:04:36.125998 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-05-05 18:04:36.125963383 +0000 UTC m=+317.021427161 I0505 18:04:36.126534 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:04:36.126597 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-05 18:04:36.126583917 +0000 UTC m=+317.022047705 I0505 18:04:36.147342 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:04:36.147420 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:04:36.147438 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-05 18:04:36.147430976 +0000 UTC m=+317.042894764 I0505 18:04:36.425606 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-lxj2l" condition "Approved" to 2026-05-05 18:04:36.425587782 +0000 UTC m=+317.321051600 I0505 18:04:36.635251 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-lxj2l" condition "Ready" to 2026-05-05 18:04:36.635232957 +0000 UTC m=+317.530696755 I0505 18:04:36.748954 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:04:36.748932544 +0000 UTC m=+317.644396332 I0505 18:04:36.807892 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:04:36.986107 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:05:17.018149 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:05:17.018188 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 18:05:17.018184251 +0000 UTC m=+357.913648039 I0505 18:05:17.018152 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 18:05:17.01812106 +0000 UTC m=+357.913584838 I0505 18:05:17.040913 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:05:17.041061 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 18:05:17.041048545 +0000 UTC m=+357.936512363 I0505 18:05:17.214008 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:05:17.250814 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-6lwd9" condition "Approved" to 2026-05-05 18:05:17.250796943 +0000 UTC m=+358.146260751 I0505 18:05:17.299170 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-6lwd9" condition "Ready" to 2026-05-05 18:05:17.29915457 +0000 UTC m=+358.194618348 I0505 18:05:17.340300 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:05:17.340275075 +0000 UTC m=+358.235738853 I0505 18:05:17.364471 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:05:17.364917 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:05:17.364909789 +0000 UTC m=+358.260373567 I0505 18:05:17.397474 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"