I0505 22:12:27.909545 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 22:12:27.909705 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 22:12:27.909765 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 22:12:27.912798 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 22:12:27.913178 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 22:12:27.913338 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 22:12:27.913343 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 22:12:27.919289 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 22:12:27.932607 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 22:12:27.937260 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 22:12:27.941996 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 22:12:27.943904 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 22:12:27.943972 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 22:12:27.945882 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 22:12:27.950704 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 22:12:27.950818 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 22:12:27.954574 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 22:12:27.956813 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 22:12:27.959109 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 22:12:27.959201 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 22:12:27.961512 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 22:12:27.963106 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 22:12:27.965006 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 22:12:27.968751 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 22:12:27.969811 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 22:12:27.971910 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 22:12:27.973658 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 22:12:27.975305 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 22:12:27.975440 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 22:12:27.977325 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 22:12:27.979054 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 22:12:27.980721 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 22:12:27.980759 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 22:12:27.983742 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:27.985597 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:27.985707 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:28.002655 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:28.015553 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:28.032872 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:28.049034 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:28.063695 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:28.076131 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:28.084623 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 22:12:39.520834 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 22:12:39.520821126 +0000 UTC m=+11.637147781 I0505 22:12:40.222882 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:12:40.223023 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 22:12:40.22300239 +0000 UTC m=+12.339329055 I0505 22:12:40.223080 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 22:12:40.223064411 +0000 UTC m=+12.339391056 E0505 22:12:40.238963 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 22:12:40.239061 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 22:12:40.239053679 +0000 UTC m=+12.355380294 E0505 22:12:40.239104 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 22:12:40.246347 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:12:40.246504 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 22:12:40.246494009 +0000 UTC m=+12.362820634 E0505 22:12:40.247420 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 22:12:40.248162 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:12:40.248288 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:12:40.248357 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 22:12:40.262234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:12:40.262498 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 22:12:40.262486888 +0000 UTC m=+12.378813513 I0505 22:12:40.265370 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nmzt4" condition "Approved" to 2026-05-05 22:12:40.265363254 +0000 UTC m=+12.381689879 I0505 22:12:40.279680 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nmzt4" condition "Ready" to 2026-05-05 22:12:40.279667985 +0000 UTC m=+12.395994610 I0505 22:12:40.299380 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:12:40.299365593 +0000 UTC m=+12.415692248 I0505 22:12:40.315627 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:12:40.316072 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:12:40.316064283 +0000 UTC m=+12.432390908 I0505 22:12:40.338869 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:12:45.248299 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:12:45.248283061 +0000 UTC m=+17.364609686 I0505 22:13:06.354732 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 22:13:06.354680449 +0000 UTC m=+38.471007084 I0505 22:13:06.357637 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:13:06.357692 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 22:13:06.357686412 +0000 UTC m=+38.474013037 I0505 22:13:06.365144 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 22:13:06.365132447 +0000 UTC m=+38.481459062 I0505 22:13:06.388630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:13:06.388946 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 22:13:06.388940044 +0000 UTC m=+38.505266659 I0505 22:13:06.500489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:13:06.537018 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-rf7cn" condition "Approved" to 2026-05-05 22:13:06.537004276 +0000 UTC m=+38.653330901 I0505 22:13:06.571415 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-rf7cn" condition "Ready" to 2026-05-05 22:13:06.571404232 +0000 UTC m=+38.687730857 I0505 22:13:06.605605 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:13:06.605593085 +0000 UTC m=+38.721919710 I0505 22:13:06.632594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:17:11.612344 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-83.nip.io-tls" condition "Ready" to 2026-05-05 22:17:11.61232838 +0000 UTC m=+283.728655015 I0505 22:17:11.612628 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-83.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:17:11.612699 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-83.nip.io-tls" condition "Issuing" to 2026-05-05 22:17:11.612692097 +0000 UTC m=+283.729018712 I0505 22:17:11.629201 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-83.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-83.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:17:11.629393 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-83.nip.io-tls" condition "Ready" to 2026-05-05 22:17:11.629378283 +0000 UTC m=+283.745704948 I0505 22:17:11.966432 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-83.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-83.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:17:11.991181 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-83.nip.io-tls-bd725" condition "Approved" to 2026-05-05 22:17:11.991168656 +0000 UTC m=+284.107495271 I0505 22:17:12.016061 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-83.nip.io-tls-bd725" condition "Ready" to 2026-05-05 22:17:12.016049072 +0000 UTC m=+284.132375697 I0505 22:17:12.046535 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-83.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:17:12.046521556 +0000 UTC m=+284.162848191 I0505 22:17:12.072497 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-83.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-83.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:17:12.072893 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-83.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:17:12.072886081 +0000 UTC m=+284.189212706 I0505 22:17:12.088211 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-83.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-83.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:17:12.094813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-83.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-83.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:17:12.095184 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-83.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:17:12.095175976 +0000 UTC m=+284.211502601 I0505 22:18:15.945629 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 22:18:15.945610193 +0000 UTC m=+348.061936848 I0505 22:18:15.946093 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:18:15.946150 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 22:18:15.946141887 +0000 UTC m=+348.062468512 E0505 22:18:15.959675 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 22:18:15.959710 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 22:18:15.959702666 +0000 UTC m=+348.076029281 E0505 22:18:15.959751 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 22:18:15.962851 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:18:15.963050 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:18:15.963134 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 22:18:15.96312577 +0000 UTC m=+348.079452415 E0505 22:18:15.969485 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 22:18:15.969614 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:18:15.969645 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:18:15.969907 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 22:18:15.995685 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:18:16.001869 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gctp9" condition "Approved" to 2026-05-05 22:18:16.001861501 +0000 UTC m=+348.118188146 I0505 22:18:16.013552 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gctp9" condition "Ready" to 2026-05-05 22:18:16.013542354 +0000 UTC m=+348.129868979 I0505 22:18:16.034339 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:18:16.034307233 +0000 UTC m=+348.150633858 I0505 22:18:16.054066 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:18:16.054258 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:18:16.054252076 +0000 UTC m=+348.170578681 I0505 22:18:16.065511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:18:16.065752 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:18:16.065745651 +0000 UTC m=+348.182072266 I0505 22:18:20.969948 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:18:20.969926681 +0000 UTC m=+353.086253326 I0505 22:19:01.331297 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:01.331328 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 22:19:01.331322623 +0000 UTC m=+393.447649238 I0505 22:19:01.331478 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 22:19:01.331474909 +0000 UTC m=+393.447801524 I0505 22:19:01.333227 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 22:19:01.333214124 +0000 UTC m=+393.449540739 I0505 22:19:01.333391 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:01.343628 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 22:19:01.343617115 +0000 UTC m=+393.459943720 I0505 22:19:01.333498 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:01.343731 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 22:19:01.343729 +0000 UTC m=+393.460055605 I0505 22:19:01.333580 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 22:19:01.333576598 +0000 UTC m=+393.449903203 I0505 22:19:01.370922 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.371329 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 22:19:01.371320466 +0000 UTC m=+393.487647131 I0505 22:19:01.377231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.377381 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:01.378778 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 22:19:01.378764696 +0000 UTC m=+393.495091331 I0505 22:19:01.378902 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.378940 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:01.378959 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 22:19:01.378955524 +0000 UTC m=+393.495282139 I0505 22:19:01.486620 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.513110 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-shljf" condition "Approved" to 2026-05-05 22:19:01.513079854 +0000 UTC m=+393.629406499 I0505 22:19:01.533244 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-shljf" condition "Ready" to 2026-05-05 22:19:01.533232091 +0000 UTC m=+393.649558716 I0505 22:19:01.559194 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:01.559183897 +0000 UTC m=+393.675510522 I0505 22:19:01.601799 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.604268 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.605609 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.606139 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:01.606131891 +0000 UTC m=+393.722458516 I0505 22:19:01.655101 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-phd4h" condition "Approved" to 2026-05-05 22:19:01.655089651 +0000 UTC m=+393.771416266 I0505 22:19:01.671649 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:01.671879 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:01.671873382 +0000 UTC m=+393.788199997 I0505 22:19:01.705223 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-phd4h" condition "Ready" to 2026-05-05 22:19:01.705206965 +0000 UTC m=+393.821533580 I0505 22:19:01.761908 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:01.761894065 +0000 UTC m=+393.878220700 I0505 22:19:01.862789 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:02.313535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:02.366023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rm4rv" condition "Approved" to 2026-05-05 22:19:02.36601157 +0000 UTC m=+394.482338195 I0505 22:19:02.420112 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rm4rv" condition "Ready" to 2026-05-05 22:19:02.420096786 +0000 UTC m=+394.536423441 I0505 22:19:02.913309 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:02.913297026 +0000 UTC m=+395.029623651 I0505 22:19:03.012453 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:03.012847 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:03.012840462 +0000 UTC m=+395.129167087 I0505 22:19:03.210863 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:09.324214 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:09.324245 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" condition "Issuing" to 2026-05-05 22:19:09.324237233 +0000 UTC m=+401.440563858 I0505 22:19:09.324573 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" condition "Ready" to 2026-05-05 22:19:09.324552135 +0000 UTC m=+401.440878770 I0505 22:19:09.343498 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:09.343563 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" condition "Ready" to 2026-05-05 22:19:09.343554969 +0000 UTC m=+401.459881594 I0505 22:19:09.515452 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:09.544528 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-jmmkn-dffn7" condition "Approved" to 2026-05-05 22:19:09.544513444 +0000 UTC m=+401.660840069 I0505 22:19:09.562959 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-jmmkn-dffn7" condition "Ready" to 2026-05-05 22:19:09.562946538 +0000 UTC m=+401.679273173 I0505 22:19:09.596514 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:09.596502625 +0000 UTC m=+401.712829230 I0505 22:19:09.615051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jmmkn-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:21.425895 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:21.425929 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 22:19:21.425920369 +0000 UTC m=+413.542246994 I0505 22:19:21.425885 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 22:19:21.425865517 +0000 UTC m=+413.542192142 I0505 22:19:21.455290 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:21.455419 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:19:21.455448 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 22:19:21.455440735 +0000 UTC m=+413.571767360 I0505 22:19:21.889545 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-frjtz" condition "Approved" to 2026-05-05 22:19:21.889532261 +0000 UTC m=+414.005858886 I0505 22:19:21.909418 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-frjtz" condition "Ready" to 2026-05-05 22:19:21.909407209 +0000 UTC m=+414.025733824 I0505 22:19:21.931007 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:21.930998897 +0000 UTC m=+414.047325512 I0505 22:19:21.947907 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:21.948523 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:19:21.948514822 +0000 UTC m=+414.064841447 I0505 22:19:21.965733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:19:21.966311 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:22:41.012536 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:22:41.012739 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 22:22:41.012727071 +0000 UTC m=+613.129053696 I0505 22:22:41.012926 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 22:22:41.012899095 +0000 UTC m=+613.129225730 I0505 22:22:41.033527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:22:41.033589 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 22:22:41.033582244 +0000 UTC m=+613.149908869 I0505 22:22:41.400523 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:22:41.428477 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ndkpl" condition "Approved" to 2026-05-05 22:22:41.428466364 +0000 UTC m=+613.544792979 I0505 22:22:41.449522 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ndkpl" condition "Ready" to 2026-05-05 22:22:41.449512042 +0000 UTC m=+613.565838657 I0505 22:22:41.471798 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:22:41.471781219 +0000 UTC m=+613.588107844 I0505 22:22:41.509364 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:22:41.565879 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:22.280512 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:23:22.280543 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 22:23:22.280536305 +0000 UTC m=+654.396862930 I0505 22:23:22.281122 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 22:23:22.281099668 +0000 UTC m=+654.397426373 I0505 22:23:22.294729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:22.294789 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:23:22.294804 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 22:23:22.29479915 +0000 UTC m=+654.411125775 I0505 22:23:22.481544 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:22.489892 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9nvz8" condition "Approved" to 2026-05-05 22:23:22.489877832 +0000 UTC m=+654.606204487 I0505 22:23:22.507319 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9nvz8" condition "Ready" to 2026-05-05 22:23:22.50731116 +0000 UTC m=+654.623637775 I0505 22:23:22.536870 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:23:22.536789303 +0000 UTC m=+654.653115938 I0505 22:23:22.562245 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:22.562726 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:23:22.562718113 +0000 UTC m=+654.679044728 I0505 22:23:22.590479 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"