I0521 04:56:19.443522 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0521 04:56:19.443675 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0521 04:56:19.443781 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0521 04:56:19.447041 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0521 04:56:19.448017 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0521 04:56:19.448201 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0521 04:56:19.448308 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0521 04:56:19.453068 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0521 04:56:19.473957 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0521 04:56:19.479216 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0521 04:56:19.481918 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0521 04:56:19.481958 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0521 04:56:19.486938 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0521 04:56:19.490466 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0521 04:56:19.493419 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0521 04:56:19.495923 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0521 04:56:19.498442 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0521 04:56:19.498487 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0521 04:56:19.498497 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0521 04:56:19.501588 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0521 04:56:19.504494 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0521 04:56:19.507445 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0521 04:56:19.515620 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0521 04:56:19.518483 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0521 04:56:19.520984 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0521 04:56:19.521052 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0521 04:56:19.523613 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0521 04:56:19.525999 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0521 04:56:19.528631 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0521 04:56:19.530567 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0521 04:56:19.532251 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0521 04:56:19.532276 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0521 04:56:19.534377 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0521 04:56:19.538439 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.539975 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.540156 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.540205 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.540237 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.540505 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.541031 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.541355 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.541722 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:19.627306 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 04:56:33.611803 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-21 04:56:33.611786658 +0000 UTC m=+14.206870324 I0521 04:56:34.739591 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 04:56:34.739623 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-21 04:56:34.73961634 +0000 UTC m=+15.334699986 I0521 04:56:34.740094 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-21 04:56:34.740076665 +0000 UTC m=+15.335160341 E0521 04:56:35.336263 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0521 04:56:35.336318 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-21 04:56:35.336308549 +0000 UTC m=+15.931392225 E0521 04:56:35.336376 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0521 04:56:35.341621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:56:35.341753 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-21 04:56:35.341740375 +0000 UTC m=+15.936824021 E0521 04:56:35.704449 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0521 04:56:35.704546 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 04:56:35.704578 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 04:56:35.704620 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0521 04:56:35.858285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:56:36.254023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-gv7vh" condition "Approved" to 2026-05-21 04:56:36.25400644 +0000 UTC m=+16.849090106 I0521 04:56:36.281601 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-gv7vh" condition "Ready" to 2026-05-21 04:56:36.281353248 +0000 UTC m=+16.876436894 I0521 04:56:36.324002 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 04:56:36.32398469 +0000 UTC m=+16.919068326 I0521 04:56:36.346665 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:56:36.347081 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 04:56:36.347073447 +0000 UTC m=+16.942157093 I0521 04:56:36.358144 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:56:36.365534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:56:40.705146 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 04:56:40.705127967 +0000 UTC m=+21.300211633 I0521 04:57:16.101178 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-21 04:57:16.101143202 +0000 UTC m=+56.696226848 I0521 04:57:16.101365 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 04:57:16.101481 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-21 04:57:16.10146697 +0000 UTC m=+56.696550656 I0521 04:57:16.124645 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-21 04:57:16.12462994 +0000 UTC m=+56.719713616 I0521 04:57:16.217703 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:57:16.217844 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 04:57:16.217898 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-21 04:57:16.217891876 +0000 UTC m=+56.812975512 I0521 04:57:17.991757 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:57:17.992482 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ql5bw" condition "Approved" to 2026-05-21 04:57:17.992469008 +0000 UTC m=+58.587552684 I0521 04:57:18.548220 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ql5bw" condition "Ready" to 2026-05-21 04:57:18.548207667 +0000 UTC m=+59.143291313 I0521 04:57:19.587985 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 04:57:19.587963897 +0000 UTC m=+60.183047573 I0521 04:57:20.227992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0521 04:57:20.228431 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 04:57:20.228423946 +0000 UTC m=+60.823507592 I0521 04:57:20.363784 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:04:20.509007 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-168.nip.io-tls" condition "Ready" to 2026-05-21 05:04:20.508965551 +0000 UTC m=+481.104049187 I0521 05:04:20.509147 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-168.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:04:20.509266 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-168.nip.io-tls" condition "Issuing" to 2026-05-21 05:04:20.509251225 +0000 UTC m=+481.104334911 I0521 05:04:20.530262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-168.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-168.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:04:20.530360 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-168.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:04:20.530388 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-168.nip.io-tls" condition "Issuing" to 2026-05-21 05:04:20.530381107 +0000 UTC m=+481.125464783 I0521 05:04:20.723943 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-168.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-168.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:04:20.736115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-168.nip.io-tls-dczf4" condition "Approved" to 2026-05-21 05:04:20.736103592 +0000 UTC m=+481.331187238 I0521 05:04:20.761620 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-168.nip.io-tls-dczf4" condition "Ready" to 2026-05-21 05:04:20.761609876 +0000 UTC m=+481.356693522 I0521 05:04:20.789956 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-168.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:04:20.789943418 +0000 UTC m=+481.385027064 I0521 05:04:20.812002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-168.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-168.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:05:26.855695 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-21 05:05:26.855656819 +0000 UTC m=+547.450740475 I0521 05:05:26.856139 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:05:26.856206 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-21 05:05:26.856197617 +0000 UTC m=+547.451281263 I0521 05:05:26.885182 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:05:26.885277 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:05:26.885399 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-21 05:05:26.885387575 +0000 UTC m=+547.480471241 E0521 05:05:26.890036 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0521 05:05:26.890088 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-21 05:05:26.890076951 +0000 UTC m=+547.485160627 E0521 05:05:26.890160 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 05:05:26.947527 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0521 05:05:26.948039 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 05:05:26.948074 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 05:05:26.948121 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0521 05:05:27.020457 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8fznd" condition "Approved" to 2026-05-21 05:05:27.020441359 +0000 UTC m=+547.615525035 I0521 05:05:27.020733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:05:27.041165 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8fznd" condition "Ready" to 2026-05-21 05:05:27.041156741 +0000 UTC m=+547.636240377 I0521 05:05:27.085124 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:05:27.085111565 +0000 UTC m=+547.680195211 I0521 05:05:27.107269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:05:27.107495 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:05:27.107489146 +0000 UTC m=+547.702572792 I0521 05:05:27.130459 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:05:27.146841 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:05:31.949218 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:05:31.949201604 +0000 UTC m=+552.544285280 I0521 05:06:13.525982 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:06:13.526028 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-21 05:06:13.526022923 +0000 UTC m=+594.121106549 I0521 05:06:13.526049 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:06:13.526092 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-21 05:06:13.526086045 +0000 UTC m=+594.121169681 I0521 05:06:13.526209 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-21 05:06:13.526206468 +0000 UTC m=+594.121290094 I0521 05:06:13.526330 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:06:13.526347 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-21 05:06:13.526344723 +0000 UTC m=+594.121428359 I0521 05:06:13.526093 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-21 05:06:13.525995022 +0000 UTC m=+594.121078658 I0521 05:06:13.526248 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-21 05:06:13.52624627 +0000 UTC m=+594.121329906 I0521 05:06:13.586630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:13.586686 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-21 05:06:13.586680058 +0000 UTC m=+594.181763704 I0521 05:06:13.588718 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:13.588775 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:06:13.588790 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-21 05:06:13.588786225 +0000 UTC m=+594.183869871 I0521 05:06:13.589211 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:13.589325 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-21 05:06:13.589316101 +0000 UTC m=+594.184399747 I0521 05:06:13.778691 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:13.829032 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-snh82" condition "Approved" to 2026-05-21 05:06:13.828941974 +0000 UTC m=+594.424025650 I0521 05:06:13.872034 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-snh82" condition "Ready" to 2026-05-21 05:06:13.872025232 +0000 UTC m=+594.467108868 I0521 05:06:13.932582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:13.969743 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:13.969732442 +0000 UTC m=+594.564816078 I0521 05:06:13.987219 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wxdh6" condition "Approved" to 2026-05-21 05:06:13.987203827 +0000 UTC m=+594.582287473 I0521 05:06:14.012471 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:14.012937 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:14.012932232 +0000 UTC m=+594.608015868 I0521 05:06:14.018961 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wxdh6" condition "Ready" to 2026-05-21 05:06:14.018950943 +0000 UTC m=+594.614034579 I0521 05:06:14.059742 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:14.068689 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:14.068675057 +0000 UTC m=+594.663758693 I0521 05:06:14.120580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:14.120930 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:14.120923742 +0000 UTC m=+594.716007378 I0521 05:06:14.177950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:14.390477 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vr25t" condition "Approved" to 2026-05-21 05:06:14.390463138 +0000 UTC m=+594.985546784 I0521 05:06:14.735439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vr25t" condition "Ready" to 2026-05-21 05:06:14.735427922 +0000 UTC m=+595.330511568 I0521 05:06:14.922983 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:14.922852898 +0000 UTC m=+595.517936544 I0521 05:06:15.142231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:15.142550 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:15.142544086 +0000 UTC m=+595.737627722 I0521 05:06:15.235887 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:15.321817 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:25.771713 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:06:25.771756 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" condition "Issuing" to 2026-05-21 05:06:25.771746268 +0000 UTC m=+606.366829924 I0521 05:06:25.771877 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" condition "Ready" to 2026-05-21 05:06:25.771859222 +0000 UTC m=+606.366942858 I0521 05:06:25.787107 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-prwcs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:25.787175 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" condition "Ready" to 2026-05-21 05:06:25.787168566 +0000 UTC m=+606.382252202 I0521 05:06:26.023634 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-prwcs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:26.059413 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-prwcs-q6vx9" condition "Approved" to 2026-05-21 05:06:26.05938904 +0000 UTC m=+606.654472706 I0521 05:06:26.084141 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-prwcs-q6vx9" condition "Ready" to 2026-05-21 05:06:26.084129436 +0000 UTC m=+606.679213082 I0521 05:06:26.114166 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:26.114147925 +0000 UTC m=+606.709231571 I0521 05:06:26.157697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-prwcs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-prwcs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:51.139647 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:06:51.139763 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-21 05:06:51.139751854 +0000 UTC m=+631.734835500 I0521 05:06:51.139936 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-21 05:06:51.139917669 +0000 UTC m=+631.735001345 I0521 05:06:51.178324 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:51.178481 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-21 05:06:51.178473807 +0000 UTC m=+631.773557443 I0521 05:06:51.710898 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:06:51.763119 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-968g6" condition "Approved" to 2026-05-21 05:06:51.763108779 +0000 UTC m=+632.358192425 I0521 05:06:51.783043 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-968g6" condition "Ready" to 2026-05-21 05:06:51.783032617 +0000 UTC m=+632.378116263 I0521 05:06:51.825195 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:06:51.825179541 +0000 UTC m=+632.420263187 I0521 05:06:51.851095 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:11:36.959867 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:11:36.959936 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-21 05:11:36.95992666 +0000 UTC m=+917.555010316 I0521 05:11:36.963532 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-21 05:11:36.963509683 +0000 UTC m=+917.558593409 I0521 05:11:36.979630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:11:36.979705 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-21 05:11:36.979697011 +0000 UTC m=+917.574780657 I0521 05:11:37.255564 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:11:37.297337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kzn9q" condition "Approved" to 2026-05-21 05:11:37.297324115 +0000 UTC m=+917.892407751 I0521 05:11:37.325580 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kzn9q" condition "Ready" to 2026-05-21 05:11:37.325568547 +0000 UTC m=+917.920652203 I0521 05:11:37.354733 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:11:37.354717758 +0000 UTC m=+917.949801414 I0521 05:11:37.379436 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:11:37.438843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:12:20.468918 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-21 05:12:20.46888713 +0000 UTC m=+961.063970776 I0521 05:12:20.469567 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:12:20.469637 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-21 05:12:20.469627884 +0000 UTC m=+961.064711510 I0521 05:12:20.486177 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 05:12:20.486278 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 05:12:20.486534 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-21 05:12:20.486519115 +0000 UTC m=+961.081602801 I0521 05:12:20.660139 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9zlbk" condition "Approved" to 2026-05-21 05:12:20.660128391 +0000 UTC m=+961.255212027 I0521 05:12:20.686735 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9zlbk" condition "Ready" to 2026-05-21 05:12:20.686723352 +0000 UTC m=+961.281806998 I0521 05:12:20.718832 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 05:12:20.718815109 +0000 UTC m=+961.313898755 I0521 05:12:20.736927 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"