I0512 05:38:08.035209 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0512 05:38:08.035370 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0512 05:38:08.035462 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0512 05:38:08.039723 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0512 05:38:08.040190 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0512 05:38:08.040339 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0512 05:38:08.040323 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0512 05:38:08.048469 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0512 05:38:08.066056 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0512 05:38:08.076046 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0512 05:38:08.081010 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0512 05:38:08.082056 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0512 05:38:08.082195 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0512 05:38:08.084431 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0512 05:38:08.086705 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0512 05:38:08.088641 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0512 05:38:08.090756 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0512 05:38:08.096360 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0512 05:38:08.100509 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0512 05:38:08.100554 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0512 05:38:08.103136 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0512 05:38:08.103169 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0512 05:38:08.105779 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0512 05:38:08.108304 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0512 05:38:08.111040 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0512 05:38:08.113222 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0512 05:38:08.114921 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0512 05:38:08.119328 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0512 05:38:08.119432 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0512 05:38:08.123300 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0512 05:38:08.125744 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0512 05:38:08.125773 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0512 05:38:08.126186 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0512 05:38:08.128114 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.131112 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.131563 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.132188 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.153034 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.174291 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.191616 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.207956 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.223200 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:08.225701 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0512 05:38:30.349438 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-12 05:38:30.349416963 +0000 UTC m=+22.356432433 I0512 05:38:31.092929 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-12 05:38:31.092915824 +0000 UTC m=+23.099931294 I0512 05:38:31.093109 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:38:31.093423 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-12 05:38:31.093412588 +0000 UTC m=+23.100428078 E0512 05:38:31.108830 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:38:31.108972 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-12 05:38:31.108892406 +0000 UTC m=+23.115907876 E0512 05:38:31.109056 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:38:31.111954 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:38:31.112011 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:38:31.112800 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-12 05:38:31.112793254 +0000 UTC m=+23.119808754 E0512 05:38:31.123647 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0512 05:38:31.123828 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:38:31.123961 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:38:31.124117 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0512 05:38:31.156550 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rxwqw" condition "Approved" to 2026-05-12 05:38:31.156534563 +0000 UTC m=+23.163550033 I0512 05:38:31.167951 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rxwqw" condition "Ready" to 2026-05-12 05:38:31.167938988 +0000 UTC m=+23.174954458 I0512 05:38:31.193718 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:38:31.19371018 +0000 UTC m=+23.200725650 I0512 05:38:31.215322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:38:31.215649 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:38:31.215642456 +0000 UTC m=+23.222657926 I0512 05:38:31.226914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:38:31.227243 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:38:31.227234666 +0000 UTC m=+23.234250137 I0512 05:38:36.124271 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:38:36.124256953 +0000 UTC m=+28.131272423 I0512 05:38:57.691359 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-12 05:38:57.691321031 +0000 UTC m=+49.698336501 I0512 05:38:57.691386 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:38:57.691430 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-12 05:38:57.691421573 +0000 UTC m=+49.698437043 I0512 05:38:57.705543 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-12 05:38:57.705533165 +0000 UTC m=+49.712548625 I0512 05:38:57.739520 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:38:57.739763 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:38:57.739874 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-12 05:38:57.739861515 +0000 UTC m=+49.746877015 I0512 05:38:57.881003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-h9dc5" condition "Approved" to 2026-05-12 05:38:57.880992103 +0000 UTC m=+49.888007593 I0512 05:38:57.908535 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-h9dc5" condition "Ready" to 2026-05-12 05:38:57.908509992 +0000 UTC m=+49.915525482 I0512 05:38:57.942098 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:38:57.942086307 +0000 UTC m=+49.949101777 I0512 05:38:57.979322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:38:57.979704 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:38:57.979693885 +0000 UTC m=+49.986709355 I0512 05:38:57.994050 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:38:58.001275 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:38:58.001793 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:38:58.001784661 +0000 UTC m=+50.008800181 I0512 05:43:07.447114 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:43:07.447182 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Issuing" to 2026-05-12 05:43:07.447163943 +0000 UTC m=+299.454179413 I0512 05:43:07.447708 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready" to 2026-05-12 05:43:07.447702376 +0000 UTC m=+299.454717846 I0512 05:43:07.462946 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:43:07.463104 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:43:07.463143 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Issuing" to 2026-05-12 05:43:07.46313442 +0000 UTC m=+299.470149890 I0512 05:43:07.675684 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:43:07.703307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-248.nip.io-tls-7fq9n" condition "Approved" to 2026-05-12 05:43:07.703293768 +0000 UTC m=+299.710309238 I0512 05:43:07.771879 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-248.nip.io-tls-7fq9n" condition "Ready" to 2026-05-12 05:43:07.771863782 +0000 UTC m=+299.778879282 I0512 05:43:07.849061 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:43:07.849041161 +0000 UTC m=+299.856056651 I0512 05:43:07.876879 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:43:07.877282 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:43:07.877273392 +0000 UTC m=+299.884288852 I0512 05:43:07.934965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:11.664034 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:44:11.664107 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-12 05:44:11.664070657 +0000 UTC m=+363.671086127 I0512 05:44:11.664137 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-12 05:44:11.664123328 +0000 UTC m=+363.671138868 E0512 05:44:11.678199 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:44:11.678255 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-12 05:44:11.678248964 +0000 UTC m=+363.685264434 E0512 05:44:11.678273 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0512 05:44:11.681206 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:11.681252 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:44:11.681270 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-12 05:44:11.68126584 +0000 UTC m=+363.688281310 E0512 05:44:11.693777 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0512 05:44:11.694016 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:44:11.694059 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0512 05:44:11.694085 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0512 05:44:11.716272 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:11.719103 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8j5cs" condition "Approved" to 2026-05-12 05:44:11.71907265 +0000 UTC m=+363.726088120 I0512 05:44:11.729118 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8j5cs" condition "Ready" to 2026-05-12 05:44:11.729107039 +0000 UTC m=+363.736122509 I0512 05:44:11.748616 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:11.748608245 +0000 UTC m=+363.755623705 I0512 05:44:11.768713 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:11.769772 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:11.769290313 +0000 UTC m=+363.776305783 I0512 05:44:11.783187 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:11.783448 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:11.783439389 +0000 UTC m=+363.790454859 I0512 05:44:11.785094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:11.785805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:16.694651 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:16.694641321 +0000 UTC m=+368.701656791 I0512 05:44:57.285329 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:44:57.285307 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-12 05:44:57.285266445 +0000 UTC m=+409.292281905 I0512 05:44:57.285355 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-12 05:44:57.285351786 +0000 UTC m=+409.292367246 I0512 05:44:57.296146 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-12 05:44:57.296128318 +0000 UTC m=+409.303143788 I0512 05:44:57.296342 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:44:57.296381 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-12 05:44:57.296371152 +0000 UTC m=+409.303386612 I0512 05:44:57.298707 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-12 05:44:57.298699319 +0000 UTC m=+409.305714779 I0512 05:44:57.299017 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:44:57.302431 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-12 05:44:57.302425118 +0000 UTC m=+409.309440598 I0512 05:44:57.320963 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.321024 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-12 05:44:57.321017266 +0000 UTC m=+409.328032726 I0512 05:44:57.325611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.326528 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:44:57.326621 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-12 05:44:57.326614815 +0000 UTC m=+409.333630275 I0512 05:44:57.338638 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.338778 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-12 05:44:57.338727368 +0000 UTC m=+409.345742838 I0512 05:44:57.608044 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.663985 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.737561 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.748307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tzwsv" condition "Approved" to 2026-05-12 05:44:57.748282065 +0000 UTC m=+409.755297535 I0512 05:44:57.773573 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hvkt6" condition "Approved" to 2026-05-12 05:44:57.773560628 +0000 UTC m=+409.780576088 I0512 05:44:57.779568 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tzwsv" condition "Ready" to 2026-05-12 05:44:57.779559484 +0000 UTC m=+409.786574944 I0512 05:44:57.826027 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hvkt6" condition "Ready" to 2026-05-12 05:44:57.826009546 +0000 UTC m=+409.833025016 I0512 05:44:57.832311 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:57.832299836 +0000 UTC m=+409.839315296 I0512 05:44:57.875058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.875375 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:57.875358104 +0000 UTC m=+409.882373554 I0512 05:44:57.894186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.976593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:57.976883 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:57.976875824 +0000 UTC m=+409.983891284 I0512 05:44:58.005872 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:58.049548 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" resource_name="alertmanager-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="alertmanager-tls-hvkt6" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="alertmanager-tls-n2mvh" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0512 05:44:58.256740 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-grkwv" condition "Approved" to 2026-05-12 05:44:58.256720038 +0000 UTC m=+410.263735498 I0512 05:44:58.409697 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-grkwv" condition "Ready" to 2026-05-12 05:44:58.409667371 +0000 UTC m=+410.416682871 I0512 05:44:58.953049 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:58.953027307 +0000 UTC m=+410.960042797 I0512 05:44:59.060485 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-jffz9" condition "Approved" to 2026-05-12 05:44:59.060470075 +0000 UTC m=+411.067485545 I0512 05:44:59.153488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:44:59.154015 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:44:59.154007138 +0000 UTC m=+411.161022608 I0512 05:44:59.462986 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-jffz9" condition "Ready" to 2026-05-12 05:44:59.462961598 +0000 UTC m=+411.469977088 I0512 05:44:59.923419 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" resource_name="grafana-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="grafana-tls-jffz9" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="grafana-tls-zgbbv" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0512 05:45:00.000729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:00.050700 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:00.255138 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lwzr9" condition "Approved" to 2026-05-12 05:45:00.255116839 +0000 UTC m=+412.262132309 I0512 05:45:00.415456 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lwzr9" condition "Ready" to 2026-05-12 05:45:00.415444824 +0000 UTC m=+412.422460294 I0512 05:45:00.810684 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:45:00.810671723 +0000 UTC m=+412.817687173 I0512 05:45:00.901101 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:05.613077 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" condition "Ready" to 2026-05-12 05:45:05.613054053 +0000 UTC m=+417.620069523 I0512 05:45:05.613706 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:45:05.613748 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" condition "Issuing" to 2026-05-12 05:45:05.613739594 +0000 UTC m=+417.620755084 I0512 05:45:05.642975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:05.643085 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:45:05.643170 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" condition "Issuing" to 2026-05-12 05:45:05.643106181 +0000 UTC m=+417.650121651 I0512 05:45:05.813188 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qpjmp-mwbtk" condition "Approved" to 2026-05-12 05:45:05.813169918 +0000 UTC m=+417.820185378 I0512 05:45:05.846644 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qpjmp-mwbtk" condition "Ready" to 2026-05-12 05:45:05.846635339 +0000 UTC m=+417.853650789 I0512 05:45:05.890628 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:45:05.890603254 +0000 UTC m=+417.897618704 I0512 05:45:05.920108 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:05.920849 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:45:05.920822874 +0000 UTC m=+417.927838344 I0512 05:45:05.949448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qpjmp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:17.575434 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:45:17.575465 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-12 05:45:17.575458845 +0000 UTC m=+429.582474305 I0512 05:45:17.575568 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-12 05:45:17.575545476 +0000 UTC m=+429.582560936 I0512 05:45:17.593997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:17.594055 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-12 05:45:17.594049845 +0000 UTC m=+429.601065305 I0512 05:45:17.767483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:45:17.803332 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2wfmv" condition "Approved" to 2026-05-12 05:45:17.803316637 +0000 UTC m=+429.810332117 I0512 05:45:17.820982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2wfmv" condition "Ready" to 2026-05-12 05:45:17.820970553 +0000 UTC m=+429.827986023 I0512 05:45:17.871740 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:45:17.871724495 +0000 UTC m=+429.878739955 I0512 05:45:17.897636 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:35.188942 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-12 05:48:35.188911861 +0000 UTC m=+627.195927331 I0512 05:48:35.189600 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:48:35.189716 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-12 05:48:35.18970486 +0000 UTC m=+627.196720360 I0512 05:48:35.210845 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:35.211181 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:48:35.211296 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-12 05:48:35.211286199 +0000 UTC m=+627.218301669 I0512 05:48:35.495428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:35.511553 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wbqbp" condition "Approved" to 2026-05-12 05:48:35.511543156 +0000 UTC m=+627.518558626 I0512 05:48:35.536232 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wbqbp" condition "Ready" to 2026-05-12 05:48:35.536211447 +0000 UTC m=+627.543226917 I0512 05:48:35.565086 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:48:35.565069215 +0000 UTC m=+627.572084685 I0512 05:48:35.596807 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:35.596998 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:35.597465 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:48:35.59745767 +0000 UTC m=+627.604473130 I0512 05:48:35.616801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:48:35.617043 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:48:35.617035358 +0000 UTC m=+627.624050818 I0512 05:49:15.369914 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-12 05:49:15.369902794 +0000 UTC m=+667.376918264 I0512 05:49:15.370416 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0512 05:49:15.370520 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-12 05:49:15.37050826 +0000 UTC m=+667.377523760 I0512 05:49:15.390278 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:15.390523 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-12 05:49:15.390508197 +0000 UTC m=+667.397523697 I0512 05:49:15.915580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:15.953722 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-p4lxs" condition "Approved" to 2026-05-12 05:49:15.953706763 +0000 UTC m=+667.960722233 I0512 05:49:15.994732 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-p4lxs" condition "Ready" to 2026-05-12 05:49:15.994720058 +0000 UTC m=+668.001735518 I0512 05:49:16.104537 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:16.104517831 +0000 UTC m=+668.111533291 I0512 05:49:16.137130 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:16.141113 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:16.141103658 +0000 UTC m=+668.148119118 I0512 05:49:16.152032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:16.160630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0512 05:49:16.160905 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-12 05:49:16.160898782 +0000 UTC m=+668.167914242